An Analytical Scanning Technique to Detect and Prevent the Transformed SQL Injection and XSS Attacks

Mohammad Qbeah, Saed Alrabaee, Djedjiga Mouheb

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Among the most critical and dangerous attacks is the one that exploits Base64 or Hex encoding technique in SQL Injection (SQLIA) and Cross Site Scripting (XSS) attacks, instead of using plain text. This technique is widely used in most dangerous attacks because it evades detection. Therefore, it is possible to bypass many filters such as IDS, without taking into account the transformation methodologies of the symbols and characters. Moreover, it reserves the same semantics with different syntax. Attackers can exploit this serious technique to reach unseen data and gain valuable benefits. To the best of our knowledge, this paper presents the first technique that focuses on detecting and preventing transformed SQLIA and XSS from Base64 and Hex encoding. We perform scanning and analyzing methods by targeting two places: (i) Input boxes and (ii) Strings in page URLs. Then, we decode the inputs and compare them with our stored suspicious tokens. Finally, we perform string matching and mutation mechanisms to revoke the activity of malicious inputs. We have evaluated our technique and the results showed that it is capable to detect and prevent this transformed attack.

Original languageEnglish
Title of host publicationICISSP 2020 - Proceedings of the 6th International Conference on Information Systems Security and Privacy
EditorsSteven Furnell, Paolo Mori, Edgar R. Weippl, Olivier Camp
PublisherScience and Technology Publications, Lda
Pages603-610
Number of pages8
ISBN (Print)9789897583995
DOIs
Publication statusPublished - 2020
Event6th International Conference on Information Systems Security and Privacy , ICISSP 2020 - Prague, Czech Republic
Duration: Feb 25 2020Feb 27 2020

Publication series

NameInternational Conference on Information Systems Security and Privacy
ISSN (Electronic)2184-4356

Conference

Conference6th International Conference on Information Systems Security and Privacy , ICISSP 2020
Country/TerritoryCzech Republic
CityPrague
Period2/25/202/27/20

Keywords

  • Android Attack
  • Base64 Encoding
  • Cross Site Scripting
  • Encoding
  • Hex Encodings
  • References
  • SQL Injection Attack
  • SQLIA
  • XSS

ASJC Scopus subject areas

  • Computer Science (miscellaneous)
  • Information Systems

Fingerprint

Dive into the research topics of 'An Analytical Scanning Technique to Detect and Prevent the Transformed SQL Injection and XSS Attacks'. Together they form a unique fingerprint.

Cite this