期刊论文详细信息
Journal of computer sciences
Machine Learning-Based Technique to Detect SQL Injection Attack
article
Muhammad Amirulluqman Azman1  Mohd Fadzli Marhusin1  Rossilawati Sulaiman2 
[1] Universiti Sains Islam Malaysia;Universiti Kebangsaan Malaysia
关键词: Machine Learning;    Signature-Based;    Knowledge-Based;    SQL Injection;    SQL Injection Tools;   
DOI  :  10.3844/jcssp.2021.296.303
学科分类:计算机科学(综合)
来源: Science Publications
PDF
【 摘 要 】

Lack of secure codes implemented in the web apps will lead to cyber-attack because of vulnerabilities. The statistic shows that highest record on the data theft related cyber-attacks are through the SQL injection technique. Hence, an effective SQL injection detection is needed in any web system to combat this threat. In this research, machine learning technique is used where training is provided to the SQL injection detector using a training data and then is evaluated against a testing data. The research relies on the preparation of the training and testing datasets. Training sets are used by the detector to establish the knowledge base and the test set is used to evaluate the performance of the detector. The result of the detection shows that the proposed technique produces high accuracy in recognizing malicious and benign web requests.

【 授权许可】

CC BY   

【 预 览 】
附件列表
Files Size Format View
RO202107250000254ZK.pdf 533KB PDF download
  文献评价指标  
  下载次数:14次 浏览次数:5次