Study On SQL Injection Attacks: Detection And Prevention

Abstract

SQL injection also referred to as SQLI in short. It is the most dangerous way in which our data can be hacked. Hackers can get to our databases prudently through Web Interface and can delete, modify the important content of database. The principle behind SQL Injection is very simple, but utter dangerous and powerful. When the application takes input from user through any form etc. the malicious users get opportunity to enter the diligently crafted data which will be interpreted as the SQL query instead of the data. This query will extract the database details and will let the doors wide open for the opportunists to misuse the data. Not only database modification of database, this will let the hackers to get unauthorized access to the application services also. Injection attack is at the first place of the top 10 web attacks that are executed in 2013. SQL injection is a method for exploiting web applications that use client supplied data in SQL queries. SQL Injection refers to the technique of inserting SQL meta characters and commands into Web based input fields in order to manipulate the execution of the backend SQL queries. The occurrence of SQLI is triggered when hacker changes the functioning of query by inserting SQL commands. Our goal is to implement different SQLI attacks and through the results we will see how important data is compromised by changing the query. This loss of data can cause a company to lose in millions. We will try to analyse various attacks in order to get an in depth knowledge of how these attacks work.

Authors and Affiliations

Rishab Garg, Priya Gupta, Rohan Kr Sachdeva

Keywords

Related Articles

High Speed Reconfigurable Accelerator for Word Matching Stage of Blast In.

BLAST (basic local alignment search tool) is one of the most popular sequence analysis tools used by molecular biologists. It is designed to efficiently find similar regions between two sequences that have biological si...

Combating Cybercrime: A Growing Trend Malvertising and Ransomware

Malware developers trick users to download their malware. By studying how Malvertising occurs, how sites are tricked and how to prevent it, one can better understand Malvertising. People across the globe are subjected t...

Synthesis, Characterization and Magnetic Properties of Mn2+ Doped Cdga2-2xo4 Oxide Spinels

Mn2+ doped CdGa2-2xO4 oxide spinels with ‘x’ values ranging from 0.15, 0.30, 0.45, and 0.60 were synthesized by sol – gel method via nitrate citrate route. X-ray powder diffraction analysis confirms the presence of cubi...

Experimental study on Self Compacting Concrete Using Fly ash with Glass Powder

Self compacting concrete is a type of concrete that get’s under its self weight. It is commonly abbreviated as the concrete. Which can placed and compacted in to every corner of a formwork; purely means of its self weig...

Big Data – Literature Survey

In the past few years, tremendous changes are happening in Cloud Computing, Big Data, Communication technology and Internet of things. Shift to the latest technology is envisaging new upcoming challenges. Big Data is b...

Download PDF file
  • EP ID EP24833
  • DOI -
  • Views 418
  • Downloads 14

How To Cite

Rishab Garg, Priya Gupta, Rohan Kr Sachdeva (2017). Study On SQL Injection Attacks: Detection And Prevention. International Journal for Research in Applied Science and Engineering Technology (IJRASET), 5(7), -. https://europub.co.uk/articles/-A-24833