• Home
  • Search
  • Web application database protection from SQLIA using permutation encoding
  • Cite Icon5
  • https://doi.org/10.1145/3459955.3460594Copy DOI Icon

Web application database protection from SQLIA using permutation encoding

  • Mar 17, 2021
  • Mohammed Abdulridha Hussain +6 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Web application is the base of online businesses through the Internet. The emergence of COVID 19 forced almost every job to operate online so as to bridge the distance amongst individuals. The rapid increment in the needs of web application increases security threats on information and data. According to the Open Web Application Security Project, Structured Query Language Injection Attack (SQLIA) is a top security threat for web application. SQLIA inserts malicious code to gain access or to manipulate database information by cheating the server to bypass the code to the database, thereby causing a severe impact on web application. In this paper, permutation encoding method has been proposed to prevent SQLIA, which is based on encoding all database information using the proposed method. Initially, a special character is inserted to restrict the method from reversing. Subsequently, permutation encoding method is applied. Permutation refers to the method wherein the bit location is changed within three characters and then radix encoding is applied. Permutation is based on the primitive root value. Encoding has been used to hide permutation. The proposed method is implemented and tested using PHP and MySQL databases, where the proposal result has been compared with those of other proposal methods. The results with security analysis prove that the proposal method prevents SQLIA and protects database information.

Similar Papers
  • Research Article
  • Citations13

Mitigation of SQL Injection Attacks using Threat Modeling

  • Dec 09, 2014
  • ACM SIGSOFT Software Engineering Notes
  • Navdeep Kaur +1
  • Research Article
  • Citations7

SECURING WEB APPLICATIONS WITH OWASP ZAP FOR COMPREHENSIVE SECURITY TESTING

  • Dec 31, 2024
  • INTERNATIONAL JOURNAL OF ADVANCES IN SIGNAL AND IMAGE SCIENCES
  • S P Maniraj +2
  • Conference Article
  • Citations5

A security analysis tool for web application reinforcement against SQL injection attacks (SQLIAs)

  • Aug 01, 2013
  • Z Lashkaripour +1
  • PDF
  • Research Article
  • Citations30

A Semantic Learning-Based SQL Injection Attack Detection Technology

  • Mar 12, 2023
  • Electronics
  • Dongzhe Lu +2
  • Book Chapter
  • Citations7

Automated Security Testing Framework for Detecting SQL Injection Vulnerability in Web Application

  • Jan 01, 2015
  • Nor Fatimah Awang +1
  • PDF
  • Research Article
  • Citations17

A deep learning approach based on multi-view consensus for SQL injection detection

  • Jan 09, 2024
  • International Journal of Information Security
  • Arzu Gorgulu Kakisim
  • Book Chapter
  • Citations1

Vulnerability Detection and Sanitization Synthesis

  • Jan 01, 2017
  • Tevfik Bultan +3
  • Conference Article
  • Citations13

Detecting SQL Injection On Web Application Using Deep Learning Techniques: A Systematic Literature Review

  • Oct 03, 2020
  • Muhammad Takdir Muslihi +1
  • Research Article
  • Citations76

An algorithm for detecting SQL injection vulnerability using black-box testing

  • Feb 07, 2019
  • Journal of Ambient Intelligence and Humanized Computing
  • Muhammad Saidu Aliero +3
  • Conference Article

Defensive programming: Developing a web application with a secure coding practices

  • Jan 01, 2022
  • AIP conference proceedings
  • Syarifah Bahiyah Rahayu +2
  • Book Chapter
  • Citations2

A Study of International Trend Analysis on Web Service Vulnerabilities in OWASP and WASC

  • Jan 01, 2009
  • Soonseok Kim +4
  • Research Article
  • Citations3

CONTINGENCY PLANNING PADA WEBSITE UNIVERSITAS WIDYA DHARMA

  • Feb 01, 2017
  • Respati
  • Agustinus Suradi +1
  • Research Article

Web Application Security in Digital Health: A Dual Analysis and a Context-Aware OWASP-Based Tool Proposal.

  • Oct 02, 2025
  • Studies in health technology and informatics
  • Ylenia Murgia +2
  • PDF
  • Research Article
  • Citations11

Analisis Keamanan Sistem Informasi Berbasis Website Dengan Metode Open Web Application Security Project (OWASP) Versi 4: Systematic Review

  • Jul 31, 2020
  • CESS (Journal of Computer Engineering, System and Science)
  • Anggi Elanda +1
  • Research Article
  • Citations13

A Method of Detecting Sql Injection Attack to Secure Web Applications

  • Nov 30, 2012
  • International Journal of Distributed and Parallel systems
  • Sruthy Manmadhan
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.