Abstract. We present a practical protection mechanism against SQL injection attacks. Such attacks target databases that are accessible through a web frontend, and take advantage of flaws in the input validation logic of Web components such as CGI scripts. We apply the concept of instruction-set randomization to SQL, creating instances of the language that are unpredictable to the attacker. Queries injected by the attacker will be caught and terminated by the database parser. We show how to use this technique with the MySQL database using an intermediary proxy that translates the random SQL to its standard language. Our mechanism imposes negligible performance overhead to query processing and can be easily retrofitted to existing systems.
Tourism has long been pursued by governments as a means of development in rural areas. Negatively, rural areas have certain characteristics that inhibit their ability to achieve the full benefits of tourism. Consequently, many rural tourism destinations to date have found that the benefits to be gained are over-stated. Stakeholder collaboration has been deemed critical for the success of sustainable tourism. In fact, in the context of rural tourism destinations stakeholder collaboration can be particularly advantageous in addressing specific factors relevant to rural tourism destinations that may inhibit the success of the destination. However, successful attempts to implement stakeholder collaboration have been limited. A growing body of literature reveals that successful stakeholder collaboration relies on numerous elements, which have to be incorporated for the success of the process. The paper reveals how simply attempting to implement stakeholder collaboration is not enough for its success, instead various components need to be incorporated throughout the continuous process, in particular attention is paid to establishing trust across the various stakeholder group.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.