Journal Of Network security

OCL Fault Injection-Based Detection & Prevention of LDAP Query Injection Vulnerabilities

  1. Anjumol T Many
  2. Ushus Maria Joseph

Abstract

Security for web application is a prime concern today. Lightweight Directory Access Protocol (LDAP) is used in web applications for enforcing authentication. It may suffer from LDAP injection vulnerabilities and that leads to some security breaches such as login bypass and privilege escalation. This is because of poor implementation of LDAP applications. Here we propose a technique, OCL fault injection-based detection and prevention of LDAP injection vulnerabilities. Here the design level information and constraints that are expressed in OCL are extracted and then randomly altered test cases are generated; they have the capability to uncover LDAP injection vulnerabilities. We propose an algorithm to alter constraints and generate appropriate test cases that produce dissimilar results between original and altered constraints.Cite this ArticleMany Anjumol T, Ushus Maria Joseph. OCL Fault Injection-Based Detection and Prevention of LDAP Query Injection Vulnerabilities. Journal of Network Security. 2018; 6(3): 5–8p.

Keywords

Support