메뉴 건너뛰기




Volumn , Issue , 2008, Pages 34-39

SAFELI - SQL injection scanner using symbolic execution

Author keywords

Automated testing; Constraint solver; SQL injection attack; Symbolic execution

Indexed keywords

AUTOMATED TESTING; CONSTRAINT SOLVER; CURRENT PROGRESSES; DATABASE SECURITIES; INITIAL VALUES; OPEN PROBLEMS; SECURITY VULNERABILITIES; SQL INJECTION ATTACK; SQL INJECTIONS; SQL QUERIES; STEP BY STEPS; SYMBOLIC EXECUTION; SYMBOLIC EXECUTIONS; TEST CASES; WEB APPLICATIONS; WEB CONTROLS;

EID: 57449084220     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1145/1390832.1390838     Document Type: Conference Paper
Times cited : (35)

References (21)
  • 2
    • 0038304275 scopus 로고    scopus 로고
    • Advanced SQL Injection In SQL Server Applications
    • White Paper, 2002
    • C. Anley. Advanced SQL Injection In SQL Server Applications. Next Generation Security Software LTD. White Paper, 2002.
    • Next Generation Security Software LTD
    • Anley, C.1
  • 4
    • 35048851186 scopus 로고    scopus 로고
    • SQLrand: Preventing SQL injection attacks
    • Proceedings of the 2nd Applied Cryptography and Network Security (ACNS) Conference, of, Springer
    • S. W. Boyd and A. D. Keromytis. SQLrand: Preventing SQL injection attacks. In Proceedings of the 2nd Applied Cryptography and Network Security (ACNS) Conference, volume 3089 of Lecture Notes in Computer Science, pages 292-304. Springer, 2004.
    • (2004) Lecture Notes in Computer Science , vol.3089 , pp. 292-304
    • Boyd, S.W.1    Keromytis, A.D.2
  • 6
    • 57449095937 scopus 로고    scopus 로고
    • Shigeru Chiba. Java assist tutorial, http://www.csg.is.titech.ac.jp/- chiba/javassist/.
    • Shigeru Chiba. Java assist tutorial, http://www.csg.is.titech.ac.jp/- chiba/javassist/.
  • 10
    • 37349043549 scopus 로고    scopus 로고
    • X. Fu, X. Lu, K. Qian, B. Peltsverger, and S. Chen. A Static Analysis Framework for Detecting SQL Injection Vulnerabilities. In Proceedings of 31st Annual International Computer Software and Applications Conference COMPSAC2007, pages 87-96, 2007
    • X. Fu, X. Lu, K. Qian, B. Peltsverger, and S. Chen. A Static Analysis Framework for Detecting SQL Injection Vulnerabilities. In Proceedings of 31st Annual International Computer Software and Applications Conference (COMPSAC2007), pages 87-96, 2007.
  • 14
    • 35248872018 scopus 로고    scopus 로고
    • Generalized symbolic execution for model checking and testing
    • Proceedings of the 9th International Conference on Tools and Algorithms for the Construction and Analysis of Systems TACAS, of
    • S. Khurshid, C. S. Pasǎreǎnu, and W. Visser. Generalized symbolic execution for model checking and testing. In Proceedings of the 9th International Conference on Tools and Algorithms for the Construction and Analysis of Systems (TACAS), volume 2619 of LNCS, 2003.
    • (2003) LNCS , vol.2619
    • Khurshid, S.1    Pasǎreǎnu, C.S.2    Visser, W.3
  • 15
    • 0016971687 scopus 로고
    • Symbolic execution and program testing
    • J. C. King. Symbolic execution and program testing. Communications of the ACM, 19(7):385-394, 1976.
    • (1976) Communications of the ACM , vol.19 , Issue.7 , pp. 385-394
    • King, J.C.1


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.