EVALUATING THE SECURITY RISKS AND PROTECTION STRATEGIES FOR SQL INSERT QUERIES AGAINST INJECTION ATTACKS

Fuente: Zenodo
Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Yarashov, Inomjon, Akbarov, Mirabbos
Format: Recurso digital
Veröffentlicht: Zenodo 2025
Online-Zugang:
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
_version_ 1866902089933783040
author Yarashov, Inomjon
Akbarov, Mirabbos
author_facet Yarashov, Inomjon
Akbarov, Mirabbos
contents <p><span lang="EN-US">The study explores the security risks associated with the use of Insert queries generated from user-provided data. In order to evaluate the vulnerability of Insert queries to SQL injection attacks and identify effective defense strategies, we conducted an experiment. This experiment demonstrated how an attacker could extract sensitive information, such as the database user credentials, details about the database itself, and the version of the server being used. Moreover, during a root user session, access to the attacked server’s file system was achievable. Our findings emphasize that, to safeguard against such vulnerabilities, it is crucial to implement stringent filtering of user input data.</span></p>
format Recurso digital
id zenodo_https___doi_org_10_5281_zenodo_15396515
institution Zenodo
language
publishDate 2025
publisher Zenodo
record_format zenodo
spellingShingle EVALUATING THE SECURITY RISKS AND PROTECTION STRATEGIES FOR SQL INSERT QUERIES AGAINST INJECTION ATTACKS
Yarashov, Inomjon
Akbarov, Mirabbos
<p><span lang="EN-US">The study explores the security risks associated with the use of Insert queries generated from user-provided data. In order to evaluate the vulnerability of Insert queries to SQL injection attacks and identify effective defense strategies, we conducted an experiment. This experiment demonstrated how an attacker could extract sensitive information, such as the database user credentials, details about the database itself, and the version of the server being used. Moreover, during a root user session, access to the attacked server’s file system was achievable. Our findings emphasize that, to safeguard against such vulnerabilities, it is crucial to implement stringent filtering of user input data.</span></p>
title EVALUATING THE SECURITY RISKS AND PROTECTION STRATEGIES FOR SQL INSERT QUERIES AGAINST INJECTION ATTACKS
url https://doi.org/10.5281/zenodo.15396515