Please use this identifier to cite or link to this item:
http://hdl.handle.net/10603/13663
Title: | Intelligent techniques for securing web applications from SQL injections and XSS attacks |
Researcher: | Selvamani K |
Guide(s): | Kannan, A |
Keywords: | Intelligent techniques, web applications, SQL injections, Cross Site Scripting, Structured Query Language |
Upload Date: | 5-Dec-2013 |
University: | Anna University |
Completed Date: | 2011 |
Abstract: | In this thesis, an architectural framework for an web application security system that secures web applications intelligently from Cross Site Scripting (XSS) attacks and Structured Query Language (SQL) injection attacks has been proposed and implemented. This system provides intelligent techniques for effective detection and prevention of stored XSS attacks and reflected XSS attacks in the browser and server side of web applications. For this purpose, new techniques have been proposed for intelligent query classification that helps to classify queries into normal and malicious queries. In this thesis, an architectural framework for an web application security system that secures web applications intelligently from Cross Site Scripting (XSS) attacks and Structured Query Language (SQL) injection attacks has been proposed and implemented. This system provides intelligent techniques for effective detection and prevention of stored XSS attacks and reflected XSS attacks in the browser and server side of web applications. For this purpose, new techniques have been proposed for intelligent query classification that helps to classify queries into normal and malicious queries. Finally, this thesis provides a web based anomaly intrusion detection technique that uses fuzzy rules to detect and prevent the anomalies in web applications. For this purpose, this system uses a new Role Based Access Control (RBAC) policy which is enforced using intelligent rules by an access control manager. This role based access control technique provides options to the user for executing the prevention techniques based on the anomaly score level received from the fuzzy rules. Moreover, this newly proposed technique is capable of making effective decisions by using probability values in order to reduce the SQL injections attacks and anomalies on web applications. newline newline newline |
Pagination: | xiv, 117 |
URI: | http://hdl.handle.net/10603/13663 |
Appears in Departments: | Faculty of Information and Communication Engineering |
Files in This Item:
File | Description | Size | Format | |
---|---|---|---|---|
01_title.pdf | Attached File | 34.35 kB | Adobe PDF | View/Open |
02_certificates.pdf | 1.89 MB | Adobe PDF | View/Open | |
03_abstract.pdf | 13.61 kB | Adobe PDF | View/Open | |
04_acknowledgement.pdf | 763.24 kB | Adobe PDF | View/Open | |
05_contents.pdf | 29.6 kB | Adobe PDF | View/Open | |
06_chapter 1.pdf | 65.24 kB | Adobe PDF | View/Open | |
07_chapter 2.pdf | 74.33 kB | Adobe PDF | View/Open | |
08_chapter 3.pdf | 39.78 kB | Adobe PDF | View/Open | |
09_chapter 4.pdf | 156.56 kB | Adobe PDF | View/Open | |
10_chapter 5.pdf | 80.15 kB | Adobe PDF | View/Open | |
11_chapter 6.pdf | 78.63 kB | Adobe PDF | View/Open | |
12_chapter 7.pdf | 19.39 kB | Adobe PDF | View/Open | |
13_references.pdf | 50.65 kB | Adobe PDF | View/Open | |
14_publications.pdf | 14.27 kB | Adobe PDF | View/Open | |
15_vitae.pdf | 11.33 kB | Adobe PDF | View/Open |
Items in Shodhganga are licensed under Creative Commons Licence Attribution-NonCommercial-ShareAlike 4.0 International (CC BY-NC-SA 4.0).
Altmetric Badge: