Automated test input generation for detecting SQL injection vulnerability using set theory concept

0Citations
Citations of this article
18Readers
Mendeley users who have this article in their library.
Get full text

Abstract

The use of web application has grown rapidly due to the change in lifestyle in doing business, daily activities and social life. E-commerce, E-banking, E-book, social applications and much more are among the examples of web applications. However, at the same time, the number of vulnerabilities existing in the web application has increased as well. SQL injection is among the most dangerous vulnerabilities in web applications that allow attackers to bypass the authentication and access the application database. Security testing is one of the techniques required to detect the existence of SQL injection vulnerability in a web application. However, inadequate test input during testing can affect the effectiveness of security testing. Therefore, the generation of test input is formulated by applying the Cartesian product in set theory concept to detect SQL injection vulnerability. The ideas obtained from our method will generate a set of test inputs automatically and able to exploit SQL injection vulnerability.

Cite

CITATION STYLE

APA

Awang, N. F., Manaf, A. A., & Jarno, A. D. (2019). Automated test input generation for detecting SQL injection vulnerability using set theory concept. International Journal of Recent Technology and Engineering, 8(2 Special Issue 8), 1378–1381. https://doi.org/10.35940/ijrte.B1070.0882S819

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free