Title | Swarm Intelligence applied to SQL Injection |
Publication Type | Conference Paper |
Year of Publication | 2022 |
Authors | Baptista, Kevin, Bernardino, Eugénia, Bernardino, Anabela |
Conference Name | 2022 17th Iberian Conference on Information Systems and Technologies (CISTI) |
Keywords | application security, composability, compositionality, Information systems, particle swarm optimization, pubcrawl, SQL Injection, Structured Query Language, Swam Intelligence, swarm intelligence, Vulnerabilities in Web Applications |
Abstract | The Open Web Application Security Project (OWASP) (a non-profit foundation that works to improve computer security) considered, in 2021, injection as one of the biggest risks in web applications. SQL injection despite being a vulnerability easily avoided has a great insurgency in web applications, and its impact is quite nefarious. To identify and exploit vulnerabilities in a system, algorithms based on Swarm Intelligence (SI) can be used. This article proposes and describes a new approach that uses SI and attack vectors to identify Structured Query Language (SQL) Injection vulnerabilities. The results obtained show the efficiency of the proposed approach. |
DOI | 10.23919/CISTI54924.2022.9820250 |
Citation Key | baptista_swarm_2022 |