期刊文献+

SQL防注入检测分析 被引量:1

Research of Anti-SQL Injection
下载PDF
导出
摘要 SQL防注入检测软件的开发初衷是为了帮助网站管理员检测本部门网站是否存在SQL注入漏洞,通过完整展示注入过程,使管理员达到了解和掌握本部门网站的薄弱环节,从而更新和改进,做到积极防御网络入侵的目的。该软件具有检测、分析速度快,应用平台广泛、内存占用小、运行速度快等特点,软件使用目前大众化的、易掌握的Visual Basic语言编写,使用时直接打开,无需安装。文章就实际操作软件的网站浏览检测、注入点分析和网站后台地址扫描三部分作了详细介绍。 The original purpose of Anti-SQL Injection program is to help the website administrators detect whether there are any SQL Injection vulnerabilities existing in their own departments' websites. The program shows the whole process of injecting, making the administrators aware and master the weak links of their own department websites, in order to update and improve the websites, so that they could prevent the web invasion positively. This program has lots of characteristics such as scanning, analyzing and running fast, taking small size of ROM, and can be installed in different operating systems, The program is developed by Visual Basic which is a currently popular and easily learned developing language. This article focuses on introducing the three parts of the program, website scanning, the analysis of injection link, and backstage management address scanning.
作者 韩猛
出处 《信息网络安全》 2012年第9期70-72,共3页 Netinfo Security
关键词 SQL注入 软件 检测 SQL injection program detection
  • 相关文献

参考文献4

  • 1百度文库.SQL注入攻击[EB/OL]. http://baike.baidu.com/view/ 983303.htm,2012-06-17.
  • 2H3C. SQL注入攻击与防御技术白皮书[EB/OL]. http://www.h3c. com.cn,2010—12—14.
  • 3(美)JustinClarke. SQL注入攻击与防御[M].黄晓蟲,李化.北京: 清华大学出版社,2010. 20-56.
  • 4(美)JustinClarke. SQL注入攻击与防御[M].黄晓磊,李化.北 京:清华大学出版社,2010.60-73.

同被引文献3

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部