论文部分内容阅读
Web服务器脚本攻击事件的增多反映出各种Web服务器漏洞的非严密性,而其中的ASP或者PHP注入漏洞尤为突出,其两者的SQL注入攻击也成为攻击主流方式。文章简要介绍了SQL注入攻击的概念和原理,以及SQL注入攻击的特点和实现过程,并在此基础上叙述了如何检测SQL注入攻击,总结了一般的SQL注入攻击的防范方法。
The increase in Web server script attacks reflects the vulnerabilities of various Web server vulnerabilities, especially ASP or PHP injection vulnerabilities, and the SQL injection attacks of both have also become the mainstream mode of attack. The article briefly introduces the concept and principle of SQL injection attacks, and the characteristics and implementation process of SQL injection attacks. Based on this, it describes how to detect SQL injection attacks and summarizes the precautions of normal SQL injection attacks.