Open Access
Security testing on web application
Tausif Aghariya
- 01 Jan 2015
1
TL;DR: This dissert focuses on how efficiently can the authors deal with these web security vulnerabilities, thus addressing active issues primarily with SQL injection attacks and the approach which could be followed to address the exploits which could occur due to vulnerabilities.
read more
Abstract: Approach towards most web-applications were ad-hoc, thus arose a need to raise security standards as it requires much efforts to maintain in meeting its quality standards. With existing and new technologies like ASP, VB scripts, CGI, it's quite hard enough task to assess the quality of web because of the factors that influence the performance of the website. With data all over the place and with users having no minimal knowledge on how to protect their data, the dark side of technology always tried to devise its own path and is now posing a serious threat to web security with new set of computer security vulnerabilities, SQL injection and cross-site scripting (XSS). Though there were some exploits such as buffer overflow, these SQL-Injections and cross-site scripting vulnerabilities are instances of the broader class of input validation, which are a result of changing business requirements. These input validation-based vulnerabilities therefore require fundamentally new techniques to characterize and mitigate them. This dissert focuses on how efficiently can we deal with these web security vulnerabilities , thus addressing active issues primarily with SQL injection attacks. Further we will bisect the field of web applications to understand vulnerable domains and will focus on the approach which could be followed to address the exploits which could occur due to vulnerabilities and the approach or methodologies which we can use to give proper security to the web applciation.
read more
Chat with Paper
AI Agents for this Paper
Find similar papers on Google Scholar, PubMed and Arxiv
Write a critical review of this paper
Analyze citations of this paper to find unaddressed research gaps
Citations
A Fuzzy Classifier-Based Penetration Testing for Web Applications
John K. Alhassan,Sanjay Misra,A. Umar,Rytis Maskeliūnas,Robertas Damaševičius,Adewole Adewumi +5 more
- 10 Jan 2018
TL;DR: Fuzzy Classifier-based Vulnerability and Assessment Testing (FCVAPT) model is proposed to provide security for sensitive data/information in Web applications and is considerably effective for detecting vulnerability and ascertaining the nature of threats/risks available to Web applications.
12
References
A Fuzzy Classifier-Based Penetration Testing for Web Applications
John K. Alhassan,Sanjay Misra,A. Umar,Rytis Maskeliūnas,Robertas Damaševičius,Adewole Adewumi +5 more
- 10 Jan 2018
TL;DR: Fuzzy Classifier-based Vulnerability and Assessment Testing (FCVAPT) model is proposed to provide security for sensitive data/information in Web applications and is considerably effective for detecting vulnerability and ascertaining the nature of threats/risks available to Web applications.
12
Related Papers (5)
P.S Aarya,Akhila Rajan,K.P.S Sachin,Reshma Gopi,G. Sreenu +4 more
- 01 Jun 2018
James Walden
- 16 Oct 2008
Pratap Kumar,Ravi Sheth +1 more
- 04 Mar 2016