SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector)

Securing the web against frequent cyber attacks is a big concern, attackers usually intend to snitch private info, deface, and damage websites, to prove their identities, this kind of vandalism may drive many corporations which conduct their business through the web to fall down. One of the most dan...

Full description

Saved in:
Bibliographic Details
Main Author: Shakhatreh, Ala' Yaseen Ibrahim
Format: Thesis
Language:eng
eng
Published: 2010
Subjects:
Online Access:https://etd.uum.edu.my/2141/1/Ala%27_Yaseen_Ibrahim_Shakhatreh.pdf
https://etd.uum.edu.my/2141/2/1.Ala%27_Yaseen_Ibrahim_Shakhatreh.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my-uum-etd.2141
record_format uketd_dc
spelling my-uum-etd.21412023-05-21T00:43:07Z SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector) 2010 Shakhatreh, Ala' Yaseen Ibrahim Mat Ali, Abdul Bashah College of Arts and Sciences (CAS) College of Arts and Sciences QA71-90 Instruments and machines Securing the web against frequent cyber attacks is a big concern, attackers usually intend to snitch private info, deface, and damage websites, to prove their identities, this kind of vandalism may drive many corporations which conduct their business through the web to fall down. One of the most dangerous cyber attacks is SQL-injection attack, this kind of attack can be launched through the web browsers. The vulnerability of SQL injection can be resulted from inappropriate programming practice, which leaves a lot of doors wide opened to the attackers to exploit them, and to gain the access to confidential info. In order to get rid of this vulnerability, it is feasible to detect it and enhance the coding structure of the system to avoid being an easy victim to this kind of cyber attacks, this kind of detection requires a powerful tool that can automatically create SQL-injection attacks using efficient features to detect the vulnerability. This study introduces a new web scanning tool (MySqlInjector) with enhanced features that will be able to conduct efficient penetration test on PHP based websites to detect SQL injection vulnerabilities. This tool will automate the penetration test process, to make it easy even for those who are not aware about hacking techniques. 2010 Thesis https://etd.uum.edu.my/2141/ https://etd.uum.edu.my/2141/1/Ala%27_Yaseen_Ibrahim_Shakhatreh.pdf text eng public https://etd.uum.edu.my/2141/2/1.Ala%27_Yaseen_Ibrahim_Shakhatreh.pdf text eng public masters masters Universiti Utara Malaysia
institution Universiti Utara Malaysia
collection UUM ETD
language eng
eng
advisor Mat Ali, Abdul Bashah
topic QA71-90 Instruments and machines
spellingShingle QA71-90 Instruments and machines
Shakhatreh, Ala' Yaseen Ibrahim
SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector)
description Securing the web against frequent cyber attacks is a big concern, attackers usually intend to snitch private info, deface, and damage websites, to prove their identities, this kind of vandalism may drive many corporations which conduct their business through the web to fall down. One of the most dangerous cyber attacks is SQL-injection attack, this kind of attack can be launched through the web browsers. The vulnerability of SQL injection can be resulted from inappropriate programming practice, which leaves a lot of doors wide opened to the attackers to exploit them, and to gain the access to confidential info. In order to get rid of this vulnerability, it is feasible to detect it and enhance the coding structure of the system to avoid being an easy victim to this kind of cyber attacks, this kind of detection requires a powerful tool that can automatically create SQL-injection attacks using efficient features to detect the vulnerability. This study introduces a new web scanning tool (MySqlInjector) with enhanced features that will be able to conduct efficient penetration test on PHP based websites to detect SQL injection vulnerabilities. This tool will automate the penetration test process, to make it easy even for those who are not aware about hacking techniques.
format Thesis
qualification_name masters
qualification_level Master's degree
author Shakhatreh, Ala' Yaseen Ibrahim
author_facet Shakhatreh, Ala' Yaseen Ibrahim
author_sort Shakhatreh, Ala' Yaseen Ibrahim
title SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector)
title_short SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector)
title_full SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector)
title_fullStr SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector)
title_full_unstemmed SQL-Injection Vulnerability Scanner Using Automatic Creation of SQL-Injection Attacks (MySqlinjector)
title_sort sql-injection vulnerability scanner using automatic creation of sql-injection attacks (mysqlinjector)
granting_institution Universiti Utara Malaysia
granting_department College of Arts and Sciences (CAS)
publishDate 2010
url https://etd.uum.edu.my/2141/1/Ala%27_Yaseen_Ibrahim_Shakhatreh.pdf
https://etd.uum.edu.my/2141/2/1.Ala%27_Yaseen_Ibrahim_Shakhatreh.pdf
_version_ 1776103594890625024