Journal of Advanced Database Management & Systems

SQL Injection: A Hazard to Databases Security via Web Application

  1. jagjit kaur
  2. Miss Amrita
  3. Miss Mankiran

Abstract

Databases are the first target of the hackers. Weak authentication is one of biggest reason for which we lose our confidential data. We usually share our sensitive information such as debit/credit card numbers, SSN etc. without caring for the fact that when our system will interact in the internet through the WWW environment, huge amount of data is being created which may have user’s personal information. It may cause a breach in the user’s privacy, if this data is fetched by any unauthorized party. Hence, the big question is that how can we ensure the database security against cyber-attacks. In recent times, SQL injection attacks have emerged as a major threat to database security. SQL injection attack has been around for over a decade. It allows attackers to obtain unauthorized access at the back-end database to change the intended application-generated SQL queries. Such attacks target the databases through web front-end layer taking the advantage of flaws happening at the user’s end. For the purpose of security, we have surveyed various SQL injection techniques, which cause threat to database security. We will discuss various technical methods, terminologies used to handle these attacks.Cite this ArticleJagjit Kaur, Amrita, Mankiran. SQL Injection: A Hazard to Databases Security via Web Application. Journal of Advanced Database Management & Systems. 2016; 3(1): 30–36p.

Keywords

Support