Search
108 articles for “web application security”
-
Securing Web Applications: A Machine Learning Approach for SQL Injection Threats
Abstract: The rapid evolution and widespread adoption of the internet have significantly transformed the world, leading to an increased number of cyberattacks. Cybersecurity has become one of the most critical challenges for society, incurring substantial financial losses annually. This research focuses on SQL injection attacks, the specific threat to web applications, aiming to detect malicious queries designed to exploit vulnerabilities and access sensitive data. In recent years, the frequency of SQLi …
Published in International Journal of Information Security Engineering · Vol. 4, Issue 1, 2026 · pp. 16–22 Read article
-
A Potential Framework to Secure Web Application and Database against SQL Injection Attacks
Abstract: With the rise of the Internet, web applications have become one of the most important communication channels between various kinds of service providers and clients on the Internet. The use of web-based services (such as online banking, online shopping, web-based email etc.) has become a wide-spread routine in today’s economic and social life. SQL injection attacks are the dominating type of attack on web based applications. It is the act …
Published in Journal of Web Engineering & Technology · Vol. 3, Issue 1, 2016 · pp. 27–34 Read article
-
WAF for Serverless Application Frameworks
Abstract: In today's digital landscape, where online presence is crucial for businesses and organizations, safeguarding web applications against a myriad of cyber threats has become a paramount concern. Enter the Web Application Firewall (WAF), a formidable fortress shielding these digital gateways from malicious intrusions and attacks. Its significance transcends mere technical jargon, as it serves as a sentinel, perpetually vigilant against sophisticated hacking techniques that can compromise sensitive data and disrupt …
Published in Journal of Web Engineering & Technology · Vol. 10, Issue 2, 2023 · pp. 34–40 Read article
-
How Beagle View of OWASP Top-10 Can Restrict the Optimal Web-App Security: The Security Ladder for Optimal Posture
Abstract: Is OWASP Top-10 good enough to ensure that your web application is secure enough? When it comes to application security, many of us in the information security community, are generally overwhelmed with the OWASP Top-10. Even when we deliberate with developers, OWASP Top-10 is on top of our agenda, and surprisingly the only agenda in many discussions. The approach adopted for this paper is two-pronged: Secondary data – Open source, …
Published in International Journal of Information Security Engineering · Vol. 3, Issue 1, 2025 · pp. 19–39 Read article
-
SQL Injection: A Hazard to Databases Security via Web Application
Abstract: Databases are the first target of the hackers. Weak authentication is one of biggest reason for which we lose our confidential data. We usually share our sensitive information such as debit/credit card numbers, SSN etc. without caring for the fact that when our system will interact in the internet through the WWW environment, huge amount of data is being created which may have user’s personal information. It may cause a …
Published in Journal of Advanced Database Management & Systems · Vol. 3, Issue 1, 2016 · pp. 30–36 Read article
-
AI-Resistant Video CAPTCHA System
Abstract: CAPTCHA, which stands for Completely Automated Public Turing test to tell Computers and Humans Apart, is a tool that separates human users from automated bots. It is commonly used in web applications to stop bulk registrations, spam submissions, credential stuffing, and misuse of online services. Typically, CAPTCHAs involve recognizing distorted text, selecting images, or transcribing audio. These tasks are easy for people but challenging for automated programs. However, recent advances …
Published in Journal of Web Engineering & Technology · Vol. 13, Issue 2, 2026 · pp. 1–7 Read article
-
Comparative Study on Penetration Testing Methods
Abstract: Present research work is to determine the best available methods for penetration testing. Basically, uses the methods which are Web application security test, Network service test, and client-side test. Web Application Penetration Testing method offsets the classes of loopholes contour in the unlocked Web Application Security Project. It has two substantial components, namely Vulnerability Assessment (VA) and Penetration Testing (PT). Various automated tools and human testing techniques are used in …
Published in Journal of Web Engineering & Technology · Vol. 9, Issue 2, 2022 · pp. 6–13 Read article
-
Web Security: Crafting Fortified Online Platforms
Abstract: With incidents of cyber-attacks on websites and breaches of sensitive data on the rise, adopting secure coding or development practices to build strong web applications is long overdue. These practices encompass a variety of strategies, including but not limited to, input validation to prevent SQL injection and XSS attacks, secure session management, encryption of sensitive data, and the implementation of robust authentication and authorization mechanisms. This approach not only fortifies …
Published in Journal of Web Engineering & Technology · Vol. 11, Issue 1, 2024 · pp. 27–31 Read article
-
Electronic Eye for Security Systems
Abstract: Abstract: Electronic eye delineates the arrangement and execution of Entryway picture find by utilization of security based on microcontroller structure for society and work environments. It outfits the customer with gainful and tried and true security structure for Entryway picture get for home, working environments and endeavors that support the usage of a sensor at the best approach to send the signs to keep an eye with ringer alarm for …
Published in Journal of Open Source Developments · Vol. 6, Issue 3, 2019 · pp. 8–11 Read article
-
Securities Control in Ad Hoc Network on Scatternet
Abstract: This study presents and evaluates an ad hoc network formatting algorithm. The algorithm is discussed to feature the specifications of Bluetooth under a designed purpose, a limited range device with a host and numbers of connected devices wirelessly. There are many research and analyses done till today’s date for the selection of secured devices. Proposed solutions have been evaluated utilizing the Open Web Application Security Project (OWASP). Nowadays, Bluetooth is …
Published in Journal Of Network security · Vol. 10, Issue 2, 2022 · pp. 24–29 Read article
-
A Review on Web Application with Vulnerabilities Protection
Abstract: Abstract— Web application vulnerabilities as easy to misuse Vulnerable Web applications not only put network frameworks and devices at substantially more greater risk, they likewise offer an immediate channel to confidential customer data, for example, credit card numbers, account history and health records, and also to corporate data. The security requirements of web applications by giving an analysis of the objects, principals and the features of present day web applications. …
Published in Journal of Multimedia Technology & Recent Advancements · Vol. 4, Issue 3, 2017 · pp. 31–38 Read article
-
Bug Tracking System on Software Development with Operating Systems
Abstract: Defects or bugs have long been a source of concern in systems, and they are almost always unavoidable in software development. The majority of software faults are caused by human flaws in the source code or technical design of a programme. During the construction of a system, a large number of defects were discovered. Managing bugs in simple word documents or remembering everything in one’s head was difficult. As a …
Published in Journal of Open Source Developments · Vol. 8, Issue 3, 2021 · pp. 1–10 Read article
-
Mobile Security: Threats and Prevention
Abstract: In this era of digitalization, the mobile devices are the essential part of our lives. Mobile gadgets could make the lifestyles as smooth as possible. The Mobile technologies help people to connect through and share data among them. With the boom of virtual technologies, they fulfill all forms of desires of users. But now a day the security threats are the big issue for the smart phones. With the increase …
Published in Journal of Mobile Computing, Communications & Mobile Networks · Vol. 8, Issue 2, 2021 · pp. 8–11 Read article
-
AI-Based Machine Learning Web Application Firewall (ML-WAF)
Abstract: This research investigates the use of deep learning techniques for the real-time detection of malicious activities in web traffic and proposes an intelligent, AI-driven Web Application Firewall (WAF) designed to provide automated and adaptive security. The system analyzes diverse components of HTTP requests, including request methods, URLs, headers, cookies, and payload content, to accurately identify and classify malicious behavior. The proposed model targets a wide range of common and critical …
Published in Journal of Computer Technology & Applications · Vol. 17, Issue 1, 2026 Read article
-
OCL Fault Injection-Based Detection & Prevention of LDAP Query Injection Vulnerabilities
Abstract: Security for web application is a prime concern today. Lightweight Directory Access Protocol (LDAP) is used in web applications for enforcing authentication. It may suffer from LDAP injection vulnerabilities and that leads to some security breaches such as login bypass and privilege escalation. This is because of poor implementation of LDAP applications. Here we propose a technique, OCL fault injection-based detection and prevention of LDAP injection vulnerabilities. Here the design …
Published in Journal Of Network security · Vol. 6, Issue 3, 2018 · pp. 5–8 Read article
-
Personalized Web Search Over Encrypted Databases
Abstract: This paper involves the study of every user as the internet having an interest on his personalized personal search. To personal search the web content data on encrypted data bases and performing related data, collection data tasks while preserving data confidentiality is a desirable capability when a database is stored on a server maintained by a third-party service provider. This paper addresses the problem of enabling personalized web content-based collection …
Published in Journal of Web Engineering & Technology · Vol. 1, Issue 2, 2014 · pp. 1–8 Read article
-
NexCart – The Ultimate Shopping Platform: A Full-Stack E-Commerce Web Application
Abstract: The rapid growth of internet technology has significantly transformed traditional shopping methods into digital commerce platforms. This paper presents NexCart, a web-based e-commerce application designed to provide a simple, scalable, and secure online shopping experience. The system allows users to browse products, manage shopping carts, place orders, and perform secure transactions efficiently. The platform is built with HTML, CSS, and JavaScript on the frontend, while the backend and server-side functionality …
Published in Journal of Open Source Developments · Vol. 13, Issue 1, 2026 · pp. 16–23 Read article
-
Secured Mail Server with (3FA) Three Factor Authentication for Web-based Cloud Services
Abstract: A more secure way is to use three-factor authentication (3FA). 3FA is very common among web-based e-mail sharing services. In addition to a username/password, the user is also required to have a device to display a one-time password and finger print. Some systems may require the user to have a mobile phone while the one-time password will be sent to the mobile phone through SMS during the login process. By …
Published in Journal of Advances in Shell Programming · Vol. 7, Issue 1, 2020 · pp. 33–40 Read article
-
Efficient Security Enhancement Analysis for Cross-site Scripting and Code Injection Attacks for Web Security
Abstract: SQL code injection and XSSs cross-site scripting are two new fields of computer security flaws introduced by web applications that have surpassed buffer overflows as the most common class of flaws in recent years in both new vulnerability reports and exploit reports. Both SQL injection and XSS are examples of a larger group of vulnerabilities that rely on input validation. Studying the cross-site scripting and SQL server injection vulnerabilities is …
Published in Recent Trends in Programming languages · Vol. 10, Issue 1, 2023 · pp. 1–6 Read article
-
Cloud Based Online Examination Portal using Docker
Abstract: Online examination portal is a cloud-based web application, which allows any industry or institute to arrange, conduct and manage examinations via an online environment. It can be done through the Internet/Intranet /Local Area Network environments. Some of the problems faced during manual examination systems are the delays occurred in result processing, filing poses a problem, and filtering of records is difficult. The chance of loss of records is high; also …
Published in Journal of Advances in Shell Programming · Vol. 8, Issue 1, 2021 · pp. 12–17 Read article