2021
DOI: 10.21831/jeatech.v1i2.35497
|View full text |Cite
|
Sign up to set email alerts
|

Hybrid method integrating SQL-IF and Naïve Bayes for SQL injection attack avoidance

Abstract: Web applications are the objects most targeted by attackers. The technique most often used to attack web applications is SQL injection. This attack is categorized as dangerous because it can be used to illegally retrieve, modify, delete data, and even take over databases and web applications. To prevent SQL injection attacks from being executed by the database, a system that can identify attack patterns and can learn to detect new patterns from various attack patterns that have occurred is required. This study… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
6
0

Year Published

2021
2021
2024
2024

Publication Types

Select...
3
2

Relationship

1
4

Authors

Journals

citations
Cited by 5 publications
(6 citation statements)
references
References 6 publications
0
6
0
Order By: Relevance
“…Hernawan et al [11] proposed a system that combines two methods, SQLI Free Secure (SQL-IF) and Naïve Bayes, to prevent SQLI attacks. SQL-IF is a method that checks for the presence of special characters, keywords, and Boolean in the input data to detect SQLI attacks.…”
Section: Discussionmentioning
confidence: 99%
“…Hernawan et al [11] proposed a system that combines two methods, SQLI Free Secure (SQL-IF) and Naïve Bayes, to prevent SQLI attacks. SQL-IF is a method that checks for the presence of special characters, keywords, and Boolean in the input data to detect SQLI attacks.…”
Section: Discussionmentioning
confidence: 99%
“…Several techniques for detecting and preventing SQLI have been proposed, with some focusing on statistical analysis [4,66,67,68,69,70] or dynamic analysis [71,72], others on Hybrid approach [32,73]. These techniques are used for web application vulnerability Fig.…”
Section: Existing Techniques For Sqli Detection and Preventionmentioning
confidence: 99%
“…The hybrid injection detection and prevention system (HIDPS) uses both ML classifiers and other statistical techniques to prevent and detect the rescues of SQLI attacks from different web applications and systems [32]. Accordingly, some of the previous research has used hybrid techniques [64,73,80]. This can be done by comparing the structure of the queries to detect attacks.…”
Section: Hybrid Techniquesmentioning
confidence: 99%
See 1 more Smart Citation
“…Furthermore, Gondalia et al proposed using Service Level Agreements (SLA) mechanism to mitigate the risk of chatbot services [57]. Another strategy to avoid SQL injection within user answer/ feedback in conversation with a chatbot is using SQL-IF and Naïve Bayes [58]. Using a combination of SQL-IF and Naive Bayes to detect the trigger or malicious code in the text inputted by the user will reduce the risk of response module attack.…”
Section: Security and Privacy Issuementioning
confidence: 99%