Unlock instant, AI-driven research and patent intelligence for your innovation.

Database injection detection method, device, electronic equipment and storage medium

A detection method and database technology, applied in the field of data processing, can solve the problems of complex detection process, false positives, and inability to meet security applications, and achieve good performance and stability.

Active Publication Date: 2021-02-23
NAT UNIV OF DEFENSE TECH
View PDF17 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] In the prior art, SQL injection detection needs to obtain SQL access request parameter values ​​multiple times and extract complete SQL statement lexicals, resulting in a complicated detection process and insufficient detection accuracy of SQL injection points. Moreover, for some SQL statements with complex structures and some The feature is not an obvious SQL fragment, and there are false positives and false negatives, which cannot meet the needs of security applications

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Database injection detection method, device, electronic equipment and storage medium
  • Database injection detection method, device, electronic equipment and storage medium
  • Database injection detection method, device, electronic equipment and storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0050] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments It is only some embodiments of the present invention, but not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0051] A database injection detection method, device, electronic equipment and storage medium provided by the present invention will be described in more detail below with reference to the accompanying drawings and embodiments.

[0052] figure 1 For the flow chart of the database injection detection method proposed by the present invention, ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The present invention proposes a database injection detection method, device, electronic equipment, and storage medium. The method includes: acquiring the injected database statement; performing statement processing according to the database statement, and obtaining a sub-statement set of the database statement; according to the The sub-statement set is to obtain a database statement set; according to the database statement set, the data query system druid is used to detect the database statement and obtain the detection result. The invention uses the druid middleware to realize the detection of the injection risk of the current mainstream relational databases, reduces the need to switch between different databases, can well complete the detection of different databases, and can achieve the detection effect of what you see is what you get, performance and stability Good sex.

Description

technical field [0001] The invention belongs to the technical field of data processing, and in particular relates to a database injection detection method, device, electronic equipment and storage medium. Background technique [0002] In computer network attacks, SQL (English full name: Structured Query Language, English abbreviation SQL) injection attack is one of the most common means of attacking data. The attacker constructs the SQL statement, inserts the SQL statement into the web form submission or enters the query string of the domain name or page request, and finally achieves bypassing the server verification to obtain the content in the database, or executes malicious SQL commands. [0003] In the prior art, SQL injection detection needs to obtain SQL access request parameter values ​​multiple times and extract complete SQL statement lexicals, which makes the detection process complicated, and the detection accuracy of SQL injection points is not enough, and for som...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06G06F21/56
CPCG06F21/562G06F2221/033H04L63/1416H04L63/1466
Inventor 杨星马涛束义志施凡沈毅束妮娜周先东朱静轩孟彦朱东涛
Owner NAT UNIV OF DEFENSE TECH