Dissertation > Excellent graduate degree dissertation topics show
Design and Implementation of Web application security vulnerability scanning tools
Author: TaoYaPing
Tutor: QiuHuiZhong
School: University of Electronic Science and Technology
Course: Computer Software and Theory
Keywords: Web application security vulnerability detection Web crawler SQL injection XSS
CLC: TP393.08
Type: Master's thesis
Year: 2010
Downloads: 207
Quote: 4
Read: Download Dissertation
Abstract
|
With the development of computer technology and information technology, Web applications are widely used in many areas, accompanied by attacks increased significantly. Web application development cycle is very short, but programmers lack the awareness and ability of security programming, loopholes in Web applications are inevitable. How to detect and assess security of Web applications is a serious problem of Web security.Web application security vulnerability detection techniques, working at the application layer protocol HTTP, to simulate the way that hacker attacks to send specific vulnerability characteristics of HTTP request to the server, look forward to discovering the Web application security vulnerabilities in the response from the server. Firewall, IDS/IPS provide security protection for Web systems at network level, Web application security vulnerability scanner is complementary with them, they all ensure the security of Web systems.Through the Web application security vulnerability scanning, Web application can be healthy checked before the attack happens, we can find out Web application security vulnerabilities earlier and carry out repairing to reduce the risk of the system under attack, that is the lowest cost and most effective Web security protection measure. Web security is one of the most serious problems of network security. It is a very meaningful work to research the Web application vulnerability detection technology.First the paper analyzed severe situations of Web application security and urgent requirements of Web application vulnerability detection technology. Then followed the domestic and international present condition of the web application security, finished studying the classification of Web application security vulnerability and the development of Web application vulnerability detection technology, summarized SQL injection and XSS vulnerability detection methods based on Web crawler. Based on those achievements, a scalable system infrastructure of Web application security vulnerability scanner is designed, the working principle of major components is introduced and its prototype is implemented. Then a test of the system prototype is carried out, which proofs the feasibility and rationality of the design. Finally the drawback of system is analyzed and un-done works are talked about.
|
Related Dissertations
- Based WebHarvest the Chinese financial news search engine design and implementation,TP311.52
- Double defensive methods of SQL injection attacks,TP393.08
- DNS Security Detection Technology,TP393.08
- Topic-based Web Information Monitoring System Strategy and Implementation,TP393.09
- Query Tokenization Approach to the Detection and Prevention of SQL Injection Attacks,TP311.13
- Research of Attack and Defence Technique of Oracle Database,TP311.13
- Research on Data Acquisition and Topic Analysis of Online Public Opinion,TP393.09
- The Research on Key Techniques for Page Segmentation Based Forum Crawler,TP393.092
- The Study and Implementation of Topic Search and Web Mining,TP391.3
- Static Program Analysis Assisted Dynamic Software Vulnerability Discovery,TP311.53
- The Research and Implementation of Security Vulnerability Detection Platform on PLD,TN406
- The website assessment infiltration System Research and Implementation,TP393.092
- Research on Multi-level Website Security System,TP393.08
- Based on OVAL Vulnerability Assessment System,TP393.08
- The Research and Application of Security Assurance Technology for Web Application in Software Development Lifecycle,TP311.52
- The Design and Implementation of Emotional Classification about the Users’ Comments,TP391.1
- Research and Implementation of WEB application security vulnerabilities mining,TP393.08
- The Study and Realization of Vertical Search Engine Oriented on the Car Subject,TP391.3
- Research and Application of Internet Chinese Text Classification,TP391.1
- Web-oriented book information extraction methods and implementation,TP311.52
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|