메뉴 건너뛰기




Volumn 3858 LNCS, Issue , 2006, Pages 124-145

Defending against injection attacks through context-sensitive string evaluation

Author keywords

Injection attacks; Internal sensors; Intrusion prevention; PHP; Web applications

Indexed keywords

COMPUTER PROGRAMMING; ERROR ANALYSIS; METADATA; SECURITY OF DATA; SECURITY SYSTEMS; SOFTWARE PROTOTYPING; WORLD WIDE WEB;

EID: 33745661661     PISSN: 03029743     EISSN: 16113349     Source Type: Book Series    
DOI: 10.1007/11663812_7     Document Type: Conference Paper
Times cited : (119)

References (20)
  • 1
    • 0038304275 scopus 로고    scopus 로고
    • Advanced SQL injection in SQL server applications
    • NGSSoftware Insight Security Research
    • Anley, C.: Advanced SQL Injection In SQL Server Applications. Technical report, NGSSoftware Insight Security Research (2002).
    • (2002) Technical Report
    • Anley, C.1
  • 2
    • 33745653593 scopus 로고    scopus 로고
    • Advanced SQL injection
    • (more), NGSSoftware Insight Security Research
    • Anley, C.: (more) Advanced SQL Injection. Technical report, NGSSoftware Insight Security Research (2002).
    • (2002) Technical Report
    • Anley, C.1
  • 3
    • 35048851186 scopus 로고    scopus 로고
    • SQLrand: Preventing SQL injection attacks
    • Jakobsson, M., Yung, M., Zhou, J., eds.: Proceedings of the 2nd Applied Cryptography and Network Security (ACNS) Conference. Springer-Verlag
    • Boyd, S., Keromytis, A.: SQLrand: Preventing SQL injection attacks. In Jakobsson, M., Yung, M., Zhou, J., eds.: Proceedings of the 2nd Applied Cryptography and Network Security (ACNS) Conference. Volume 3089 of Lecture Notes in Computer Science., Springer-Verlag (2004) 292-304.
    • (2004) Lecture Notes in Computer Science , vol.3089 , pp. 292-304
    • Boyd, S.1    Keromytis, A.2
  • 5
    • 35248828504 scopus 로고    scopus 로고
    • Aspect-oriented programming
    • Aksjt, M., Matsuoka, S., eds.: Proceedings European Conference on Object-Oriented Programming. Springer-Verlag
    • Kiczales, G., Lamping, J., Menhdhekar, A., Maeda, C., Lopes, C., Loingtier, J.M., Irwin, J.: Aspect-Oriented Programming. In Aksjt, M., Matsuoka, S., eds.: Proceedings European Conference on Object-Oriented Programming. Volume 1241 of Lecture Notes in Computer Science., Springer-Verlag (1997) 220-242.
    • (1997) Lecture Notes in Computer Science , vol.1241 , pp. 220-242
    • Kiczales, G.1    Lamping, J.2    Menhdhekar, A.3    Maeda, C.4    Lopes, C.5    Loingtier, J.M.6    Irwin, J.7
  • 6
    • 85077733517 scopus 로고    scopus 로고
    • High coverage detection of input-related security faults
    • Washington D.C., USENIX
    • Larson, E., Austin, T.: High coverage detection of input-related security faults. In: Proceedings of the 12th USENIX Security Symposium, Washington D.C., USENIX (2003) 121-136.
    • (2003) Proceedings of the 12th USENIX Security Symposium , pp. 121-136
    • Larson, E.1    Austin, T.2
  • 8
    • 33745635923 scopus 로고    scopus 로고
    • SQL injection signatures evasion
    • Irnperva Application Defense Center
    • Maor, O., Shulman, A.: SQL Injection Signatures Evasion. Technical report, Irnperva Application Defense Center (2004).
    • (2004) Technical Report
    • Maor, O.1    Shulman, A.2
  • 11
    • 27644589395 scopus 로고    scopus 로고
    • NIST: ICAT Metabase. Web page at http://icat.nist.gov/ (2000-2004).
    • (2000) ICAT Metabase
  • 12
    • 3042546730 scopus 로고    scopus 로고
    • HTML code injection and cross-site scripting
    • Gunter Ollmann
    • Ollmann, G.: HTML Code Injection and Cross-site Scripting. Technical report, Gunter Ollmann (2002).
    • (2002) Technical Report
    • Ollmann, G.1
  • 13
    • 33745658114 scopus 로고    scopus 로고
    • Second-order code injection attacks
    • NGSSoftware Insight Security Research
    • Ollmann, G.: Second-order Code Injection Attacks. Technical report, NGSSoftware Insight Security Research (2004).
    • (2004) Technical Report
    • Ollmann, G.1
  • 14
  • 15
    • 33745669153 scopus 로고    scopus 로고
    • phpBB Group, T.: phpBB.com. Web page at http://www.phpbb.com (2001-2004).
    • (2001)
  • 16
    • 33745674093 scopus 로고    scopus 로고
    • SecurityFocus: BugTraq. Web page at http://www.securityfocus.com/bid (1998-2004).
    • (1998) BugTraq


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.