DocumentCode :
173318
Title :
SQL injection attack detection method using the approximation function of zeta distribution
Author :
Oosawa, Taiki ; Matsuda, Tadamitsu
Author_Institution :
Shizuoka Inst. of Sci. & Technol., Fukuroi, Japan
fYear :
2014
fDate :
5-8 Oct. 2014
Firstpage :
819
Lastpage :
824
Abstract :
SQL injection attack is one of web application attack which intend to give damage to database on web application, it is the growing serious problem with increasing internet users. Generally, SQL injection attack is detected by listing system using web application firewall, but listing system has weakness for detecting a new attack. In order to overcome the weakness, detection method using machine learning and probabilistic model have been studied. However, that still has not reached a basic solution. In this paper, we give the formula to calculate the parameter of zeta distribution, and we propose a SQL injection attack detection method using the above formula. In addition, we have experimented to evaluate the performance of our proposed method, and we confirmed that the detection performance of attack data is well by comparing some conventional method.
Keywords :
Internet; SQL; approximation theory; database management systems; learning (artificial intelligence); security of data; Internet users; SQL injection attack detection method; Web application attack; Web application firewall; approximation function; database; machine learning; probabilistic model; zeta distribution; zeta distribution parameter; Conferences; Cybernetics; Detection method; Parameter estimation; SQL injection attack; Zeta distribution;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Systems, Man and Cybernetics (SMC), 2014 IEEE International Conference on
Conference_Location :
San Diego, CA
Type :
conf
DOI :
10.1109/SMC.2014.6974012
Filename :
6974012
Link To Document :
بازگشت