摘要
简要介绍了在网站安全当中具有较大危害性的SQL注入攻击的定义、特点、基本原理、实施步骤,现有防御对策以及这些对策的局限性,面向对象数据库db4o的特点和优势。针对现有对策的局限性结合db4o的优点,提出了一种基于面向对象数据库db4o的全新的对策,对该对策进行了详细的分析,经过实验证明,本对策具有一定的理论和实际意义。
This paper introduces the definition,characteristic,fundamental theory,attack step of SQL injection attacks which have much harm to the websites security;the technology of defense the SQL injection attacks and these technologys limitations;The characteristic and advantages of db4o which is an object-oriented database.In response to these defenses limitations and db4os advantages,the author propose a type of new technology of defense which is based on object-oriented database and by detailed analyzing of this type of new technology proved it has much theoretical and practical significance.
出处
《计算机安全》
2010年第6期62-64,共3页
Network & Computer Security
基金
中南财经政法大学中央高校基本科研业务费资助。项目主持人:屈振新
副教授
1972