An improved SQL injection detection model in signature based IDS using tree structure

While online services usage on the Internet increases every day, the number of security threats also grows dramatically. One of the most serious and dangerous web application attacks is SQL injection (SQLI). This attack took place by inserting portion of malicious SQL query through a non-validated i...

Full description

Bibliographic Details
Main Author: Sadeghian, Amirmohammad
Format: Thesis
Published: 2014
Subjects:
_version_ 1796859300573872128
author Sadeghian, Amirmohammad
author_facet Sadeghian, Amirmohammad
author_sort Sadeghian, Amirmohammad
collection ePrints
description While online services usage on the Internet increases every day, the number of security threats also grows dramatically. One of the most serious and dangerous web application attacks is SQL injection (SQLI). This attack took place by inserting portion of malicious SQL query through a non-validated input from the user into the legitimate query statement and consequently database management system will execute these commands and eventually leads to an SQL injection. A successful SQL injection attack interfere confidentiality,integrity and availability of information in the database. Based on statistical researches, this type of attack had a high impact on business, so it is necessary to find the proper solution to stop or mitigate the attack. One of the most used solutions to detect SQLI attack is using Intrusion Detection Systems (IDS). IDSs use many techniques to detect potential attacks but signature based techniques is likely to be more successful in aspect of correct detection. The main drawback of this technique is that they need many rule sets or signatures to compare the input data against them and this can be time and resource consuming. Even though the SQL request is legitimate it needs to be compared against all the signatures. In this research all types of SQL injection attacks studied, and current techniques and tools for detection and prevention of the SQL injection reviewed. This research reviewed the most relevant solutions for improving signature based IDSs performance. An improved model of SQL injection detection by using a tree structure is proposed. Finally the performance of proposed model tested and evaluated by making a prototype.
first_indexed 2024-03-05T19:25:07Z
format Thesis
id utm.eprints-48340
institution Universiti Teknologi Malaysia - ePrints
last_indexed 2024-03-05T19:25:07Z
publishDate 2014
record_format dspace
spelling utm.eprints-483402017-08-17T06:49:03Z http://eprints.utm.my/48340/ An improved SQL injection detection model in signature based IDS using tree structure Sadeghian, Amirmohammad QA76 Computer software While online services usage on the Internet increases every day, the number of security threats also grows dramatically. One of the most serious and dangerous web application attacks is SQL injection (SQLI). This attack took place by inserting portion of malicious SQL query through a non-validated input from the user into the legitimate query statement and consequently database management system will execute these commands and eventually leads to an SQL injection. A successful SQL injection attack interfere confidentiality,integrity and availability of information in the database. Based on statistical researches, this type of attack had a high impact on business, so it is necessary to find the proper solution to stop or mitigate the attack. One of the most used solutions to detect SQLI attack is using Intrusion Detection Systems (IDS). IDSs use many techniques to detect potential attacks but signature based techniques is likely to be more successful in aspect of correct detection. The main drawback of this technique is that they need many rule sets or signatures to compare the input data against them and this can be time and resource consuming. Even though the SQL request is legitimate it needs to be compared against all the signatures. In this research all types of SQL injection attacks studied, and current techniques and tools for detection and prevention of the SQL injection reviewed. This research reviewed the most relevant solutions for improving signature based IDSs performance. An improved model of SQL injection detection by using a tree structure is proposed. Finally the performance of proposed model tested and evaluated by making a prototype. 2014 Thesis NonPeerReviewed Sadeghian, Amirmohammad (2014) An improved SQL injection detection model in signature based IDS using tree structure. Masters thesis, Universiti Teknologi Malaysia, Faculty of Computing.
spellingShingle QA76 Computer software
Sadeghian, Amirmohammad
An improved SQL injection detection model in signature based IDS using tree structure
title An improved SQL injection detection model in signature based IDS using tree structure
title_full An improved SQL injection detection model in signature based IDS using tree structure
title_fullStr An improved SQL injection detection model in signature based IDS using tree structure
title_full_unstemmed An improved SQL injection detection model in signature based IDS using tree structure
title_short An improved SQL injection detection model in signature based IDS using tree structure
title_sort improved sql injection detection model in signature based ids using tree structure
topic QA76 Computer software
work_keys_str_mv AT sadeghianamirmohammad animprovedsqlinjectiondetectionmodelinsignaturebasedidsusingtreestructure
AT sadeghianamirmohammad improvedsqlinjectiondetectionmodelinsignaturebasedidsusingtreestructure