Title
A Distributed Hierarchical Multi-agent Architecture for Detecting Injections in SQL Queries.
Abstract
SQL injections consist in inserting keywords and special symbols in the parameters of SQL queries to gain illegitimate access to a database. They are usually identified by analyzing the input parameters and removing the special symbols. In the case of websites, due to the great amount of queries and parameters, it is very common to find parameters without checking that allow bad-intentioned users to introduce keywords and special symbols. This work proposes a distributed architecture based on multi-agent systems that is able to detect SQL injection attacks. The multi-agent architecture incorporates cased-based reasoning, neural networks and support vector machines in order to classify and visualize the queries, allowing the detection and identification of SQL injections. The approach has been tested and the experimental results are presented in this paper.
Year
DOI
Venue
2010
10.1007/978-3-642-16626-6_6
COMPUTATIONAL INTELLIGENCE IN SECURITY FOR INFORMATION SYSTEMS 2010
Keywords
Field
DocType
SQL injection,Database Security,Intrusion Detection Systems,Multi-agent Systems,Case-based Reasoning,Unsupervised Projection Models
SQL,Data mining,Computer science,Database security,Multi-agent system,Agent architecture,Case-based reasoning,Artificial neural network,SQL injection,Intrusion detection system
Conference
Volume
ISSN
Citations 
85
1867-5662
2
PageRank 
References 
Authors
0.39
11
5
Name
Order
Citations
PageRank
Cristian Pinzón19911.80
Juan Francisco de Paz239552.24
ÁLvaro Herrero348750.88
Emilio Corchado42626210.70
Javier Bajo51451118.96