Sql injection detecting method based on characteristic pattern recognition
A feature pattern and detection method technology, applied in the field of network security, can solve problems such as inaccurate distinction between grammatical units and data, false positives, etc., to achieve the effect of reducing false negatives, reducing false positives, and improving work efficiency
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0026] The present invention will be further described below in conjunction with the accompanying drawings and specific embodiments.
[0027] figure 1 A kind of sql injection detection method based on feature pattern recognition of the present embodiment comprises the following steps:
[0028] 1. Based on sql syntax analysis and sql semantic analysis, generate sql injection characteristic mode abstract syntax tree library:
[0029] After preventive parsing, the following grammatical elements are obtained:
[0030] A. Keywords, reserved keywords of sql statements such as select, from, etc.
[0031] B. Constants, constant values in sql statements such as character constant 'aa', numeric constant 123, etc.
[0032] C. Variables, variables used in sql statements such as bind variables.
[0033] D. Identifiers, identifiers in sql statements such as table names, field names, etc.
[0034] E. Data type, the data type of the object in the sql statement, such as character type, ...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com