TECHNIQUES TO PREVENT SQL INJECTION AND CROSS-SITE SCRIPTING

ТАТУ хабарлари · 2024-yil

Annotatsiya

The article discusses a method for preventing SQL injections and cross-site scripting using the Knuth-Morris-Pratt string matching algorithm.SQL injection and cross-site scripting remain a major threat to data-driven web applications.There are more and more cases where hackers gain unlimited access to the internal database of web applications in order to steal, edit and destroy confidential data.Therefore, measures must be taken to curb the growing threats of SQL injection and XSS attacks.This study presents a technique to detect and prevent these threats using the Knuth-Morris-Pratt string matching algorithm.The algorithm was used to match the user's input string with a stored injection string pattern to detect any malicious code.The implementation was carried out using the PHP scripting language and the Apache XAMPP server.The security level of the method was measured using various test cases of SQL injection, cross-site scripting (XSS), and code injection attacks.The results obtained showed that the proposed technique is able to successfully detect and prevent attacks, register an attack record in the database, block the system by its mac address, and also generate a warning message.Thus, the proposed technique turned out to be more effective in detecting and preventing SQL injections and XSS attacks.

Maqola ma’lumotlari
JurnalТАТУ хабарлари
Nashr sanasi2024-02-14
DOI10.61663/241tuitmct2

ТАТУ хабарлари jurnalidan boshqa maqolalar

ТАТУ хабарлари — barcha maqolalar