Detection of SQL Injection Vulnerability in Embedded SQL
2020; Institute of Electronics, Information and Communication Engineers; Volume: E103.D; Issue: 5 Linguagem: Inglês
10.1587/transinf.2019edl8143
ISSN1745-1361
Autores Tópico(s)Cloud Data Security Solutions
ResumoEmbedded SQL inserts SQL statements into the host programming language and executes them at program run time. SQL injection is a known attack technique; however, detection techniques are not introduced in embedded SQL. This paper introduces a technique based on candidate code generation that can detect SQL injection vulnerability in the C/C++ host programming language.
Referência(s)