Topic: security leaks and weaknesses
Topic: database security
| |
Wassermann, G., Su, Z.,
"Sound and precise analysis of web applications for injection vulnerabilities",
PLDI'07 Proceedings of the 2007 ACM SIGPLAN Conference on Programming Language Design & Implementation, San Diego, California, USA, June 2007, ACM SIGPLAN, ACM SIGSOFT, pp. 32-41.
abstract ;;Quote: precise, sound, efficient analysis for SQL injection; tracks user input non-terminals of a context-free grammar for string variables; tested with PHP
| abstract+;;Quote: an SQL injection attack changes the intended syntactic structure of generated queries
Related Topics
Topic: security leaks and weaknesses (67 items)
Topic: database security (12 items)