EVALUATING THE SECURITY RISKS AND PROTECTION STRATEGIES FOR SQL INSERT QUERIES AGAINST INJECTION ATTACKS
Fuente:
Zenodo
Gespeichert in:
| Hauptverfasser: | , |
|---|---|
| Format: | Recurso digital |
| Veröffentlicht: |
Zenodo
2025
|
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
| _version_ | 1866902089933783040 |
|---|---|
| author | Yarashov, Inomjon Akbarov, Mirabbos |
| author_facet | Yarashov, Inomjon Akbarov, Mirabbos |
| contents | <p><span lang="EN-US">The study explores the security risks associated with the use of Insert queries generated from user-provided data. In order to evaluate the vulnerability of Insert queries to SQL injection attacks and identify effective defense strategies, we conducted an experiment. This experiment demonstrated how an attacker could extract sensitive information, such as the database user credentials, details about the database itself, and the version of the server being used. Moreover, during a root user session, access to the attacked server’s file system was achievable. Our findings emphasize that, to safeguard against such vulnerabilities, it is crucial to implement stringent filtering of user input data.</span></p> |
| format | Recurso digital |
| id | zenodo_https___doi_org_10_5281_zenodo_15396515 |
| institution | Zenodo |
| language | |
| publishDate | 2025 |
| publisher | Zenodo |
| record_format | zenodo |
| spellingShingle | EVALUATING THE SECURITY RISKS AND PROTECTION STRATEGIES FOR SQL INSERT QUERIES AGAINST INJECTION ATTACKS Yarashov, Inomjon Akbarov, Mirabbos <p><span lang="EN-US">The study explores the security risks associated with the use of Insert queries generated from user-provided data. In order to evaluate the vulnerability of Insert queries to SQL injection attacks and identify effective defense strategies, we conducted an experiment. This experiment demonstrated how an attacker could extract sensitive information, such as the database user credentials, details about the database itself, and the version of the server being used. Moreover, during a root user session, access to the attacked server’s file system was achievable. Our findings emphasize that, to safeguard against such vulnerabilities, it is crucial to implement stringent filtering of user input data.</span></p> |
| title | EVALUATING THE SECURITY RISKS AND PROTECTION STRATEGIES FOR SQL INSERT QUERIES AGAINST INJECTION ATTACKS |
| url | https://doi.org/10.5281/zenodo.15396515 |