Securing native XML database-driven web applications from XQuery injection vulnerabilities
详细信息    查看全文
文摘

Detects XQuery injection vulnerabilities in web applications using native XML DBs.

Implements a prototype system “XQueryFuzzer” based on the proposed approach.

Demonstrates the effectiveness of the prototype on benchmark web applications.

Three types of XQuery injection attacks unlisted in OWASP are identified.

© 2004-2018 中国地质图书馆版权所有 京ICP备05064691号 京公网安备11010802017129号

地址:北京市海淀区学院路29号 邮编:100083

电话:办公室:(+86 10)66554848;文献借阅、咨询服务、科技查新:66554700