Intelligent techniques for securing web applications from SQL injections and XSS attacks

dc.contributor.guideKannan, Aen_US
dc.creator.researcherSelvamani Ken_US
dc.date.accessioned2013-12-05T05:04:24Z
dc.date.available2013-12-05T05:04:24Z
dc.date.awardedn.d.en_US
dc.date.completed2011en_US
dc.date.issued2013-12-05
dc.date.registeredn.d.en_US
dc.description.abstractIn this thesis, an architectural framework for an web application security system that secures web applications intelligently from Cross Site Scripting (XSS) attacks and Structured Query Language (SQL) injection attacks has been proposed and implemented. This system provides intelligent techniques for effective detection and prevention of stored XSS attacks and reflected XSS attacks in the browser and server side of web applications. For this purpose, new techniques have been proposed for intelligent query classification that helps to classify queries into normal and malicious queries. In this thesis, an architectural framework for an web application security system that secures web applications intelligently from Cross Site Scripting (XSS) attacks and Structured Query Language (SQL) injection attacks has been proposed and implemented. This system provides intelligent techniques for effective detection and prevention of stored XSS attacks and reflected XSS attacks in the browser and server side of web applications. For this purpose, new techniques have been proposed for intelligent query classification that helps to classify queries into normal and malicious queries. Finally, this thesis provides a web based anomaly intrusion detection technique that uses fuzzy rules to detect and prevent the anomalies in web applications. For this purpose, this system uses a new Role Based Access Control (RBAC) policy which is enforced using intelligent rules by an access control manager. This role based access control technique provides options to the user for executing the prevention techniques based on the anomaly score level received from the fuzzy rules. Moreover, this newly proposed technique is capable of making effective decisions by using probability values in order to reduce the SQL injections attacks and anomalies on web applications. newline newline newlineen_US
dc.format.accompanyingmaterialNoneen_US
dc.format.dimensions23.5 cm x 15 cmen_US
dc.format.extentxiv, 117en_US
dc.identifier.urihttp://hdl.handle.net/10603/13663
dc.languageEnglishen_US
dc.publisher.institutionFaculty of Information and Communication Engineeringen_US
dc.publisher.placeChennaien_US
dc.publisher.universityAnna Universityen_US
dc.relation120en_US
dc.rightsuniversityen_US
dc.source.universityUniversityen_US
dc.subject.keywordIntelligent techniques, web applications, SQL injections, Cross Site Scripting, Structured Query Languageen_US
dc.titleIntelligent techniques for securing web applications from SQL injections and XSS attacksen_US
dc.type.degreePh.D.en_US

Files

Original bundle

Now showing 1 - 5 of 15
Loading...
Thumbnail Image
Name:
01_title.pdf
Size:
34.35 KB
Format:
Adobe Portable Document Format
Description:
Attached File
Loading...
Thumbnail Image
Name:
02_certificates.pdf
Size:
1.84 MB
Format:
Adobe Portable Document Format
Loading...
Thumbnail Image
Name:
03_abstract.pdf
Size:
13.61 KB
Format:
Adobe Portable Document Format
Loading...
Thumbnail Image
Name:
04_acknowledgement.pdf
Size:
763.24 KB
Format:
Adobe Portable Document Format
Loading...
Thumbnail Image
Name:
05_contents.pdf
Size:
29.6 KB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.79 KB
Format:
Plain Text
Description: