Artigo Acesso aberto Revisado por pares

Detection of SQL Injection Vulnerability in Embedded SQL

2020; Institute of Electronics, Information and Communication Engineers; Volume: E103.D; Issue: 5 Linguagem: Inglês

10.1587/transinf.2019edl8143

ISSN

1745-1361

Autores

Young-Su JANG,

Tópico(s)

Cloud Data Security Solutions

Resumo

Embedded SQL inserts SQL statements into the host programming language and executes them at program run time. SQL injection is a known attack technique; however, detection techniques are not introduced in embedded SQL. This paper introduces a technique based on candidate code generation that can detect SQL injection vulnerability in the C/C++ host programming language.

Referência(s)