SCANNING AND RECOVERY TOOL FOR SQL INJECTION FOR ASP.NET WEBSITES
Now a days most of the web attacks comes under the structured query language i.e. SQL. This SQL helps acts as the communicator between the user and the server. SQL is just a set of queries which helps the user to get the data from the prescribed server. This SQL just acts as the backend for all the web application project. Here attacker inserts SQL characters or keywords into a SQL statement via unrestricted user input parameters to change the intended query’s logic. By manipulating this data to modify the statements, an attacker can cause the application to issue arbitrary SQL commands and thereby compromise the database. To avoid this type of attacks in asp.net website we need to develop a Risk free website, calls for integrating defensive Coding practices with both vulnerability detection and runtime attack Prevention methods.
KARTHIK V, VENKATESH K. "SCANNING AND RECOVERY TOOL FOR SQL INJECTION FOR ASP.NET WEBSITES".INTERNATIONAL JOURNAL OF ENGINEERING DEVELOPMENT AND RESEARCH ISSN:2321-9939, Vol.2, Issue 2, pp.1533-1538, URL :https://rjwave.org/ijedr/papers/IJEDR1402040.pdf
Volume 2 Issue 2
Pages. 1533-1538