Publication:
Machine Learning-Based Technique to Detect SQL Injection Attack

Research Projects

Organizational Units

Journal Issue

Abstract

Lack of secure codes implemented in the web apps will lead to cyber-attack because of vulnerabilities. The statistic shows that highest record on the data theft related cyber-attacks are through the SQL injection technique. Hence, an effective SQL injection detection is needed in any web system to combat this threat. In this research, machine learning technique is used where training is provided to the SQL injection detector using a training data and then is evaluated against a testing data. The research relies on the preparation of the training and testing datasets. Training sets are used by the detector to establish the knowledge base and the test set is used to evaluate the performance of the detector. The result of the detection shows that the proposed technique produces high accuracy in recognizing malicious and benign web requests.

Description

Keywords

Machine Learning, Signature-Based, Knowledge-Based, SQL Injection, SQL Injection Tools

Citation

Azman, M. A., Marhusin, M. F. & Sulaiman, R. (2021). Machine Learning-Based Technique to Detect SQL Injection Attack. Journal of Computer Science, 17(3), 296-303. https://doi.org/10.3844/jcssp.2021.296.303