Dissertation > Excellent graduate degree dissertation topics show

Research on Web Security Penetration Testing

Author: PuShi
Tutor: ZhangYuQing
School: Xi'an University of Electronic Science and Technology
Course: Cryptography
Keywords: Web Security Penetration testing SQL Injection XSS
CLC: TP393.08
Type: Master's thesis
Year: 2010
Downloads: 446
Quote: 5
Read: Download Dissertation

Abstract


With the development of the Internet , Web applications have become a common channel for many companies do business with the outside world . Web technology is widely deployed in current information systems . But for malicious attacker , which provides them with two opportunities : first , http and https traffic is usually normal to the flow of information through the firewall and filtering technology . The second opportunity lies in increasing Web vulnerabilities . Emerging Web security issues , this paper focuses on the two main vulnerabilities against Web applications , SQL injection and XSS vulnerabilities , and the Web security penetration testing techniques . The main work of this paper the following aspects: 1 ) build local analysis environment , in-depth analysis of the causes of SQL injection and XSS vulnerabilities ; 2 ) Wireshark packet capture and analysis of some existing SQL injection detection tool comparison analysis different tools for SQL injection vulnerability detection method and detection character ; 3 ) according to the analysis of SQL injection and XSS vulnerability detection method , some actual website and TRP project website penetration testing and risk assessment found that some harm larger the vulnerability , which design method is effective to a certain extent .

Related Dissertations

  1. Double defensive methods of SQL injection attacks,TP393.08
  2. Query Tokenization Approach to the Detection and Prevention of SQL Injection Attacks,TP311.13
  3. Research of Attack and Defence Technique of Oracle Database,TP311.13
  4. The Reasearch and Application of Real-time Random SQL Injection Detection Methods,TP393.08
  5. Design and Implementation of Web monitoring and Web tamper-proof system,TP393.092
  6. The website assessment infiltration System Research and Implementation,TP393.092
  7. Research on Multi-level Website Security System,TP393.08
  8. Research and Implementation of SQL injection detection method,TP309
  9. Research of Web Security and Intrusion Detection Technology,TP393.08
  10. In Partial Fulfillment of the Requirements for the Master Degree of Communication and Information Engineering,TP393.08
  11. Web Security Testing Research and Design,TP393.08
  12. Design and Implementation of Web application security vulnerability scanning tools,TP393.08
  13. SQL injection attack defense methods study,TP393.08
  14. The Research of SQL Injection Against Oracle Database,TP311.13
  15. The Study and Realize of a Kind of Automatic SQL Injection Detecting and Utilizing System,TP311.13
  16. Research of SQL Injection Detection in the Data Access Middleware of a Mud Logging System,TP311.13
  17. The Design and Implementation of Prevention Model of SQL Injection and XSS,TP393.08
  18. Research and Implementation of WEB application security vulnerabilities mining,TP393.08
  19. Based on the Crawler to Mine the SQL Injection and XSS Vulnerability,TP393.08
  20. The Implementation of a Multi-function SQL Injection Detection System and Research on Prevention,TP393.08
  21. The Study of SQL Injection and the Security of SQL Server,TP311.138

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile