Dissertation > Excellent graduate degree dissertation topics show
Research on Web Security Penetration Testing
Author: PuShi
Tutor: ZhangYuQing
School: Xi'an University of Electronic Science and Technology
Course: Cryptography
Keywords: Web Security Penetration testing SQL Injection XSS
CLC: TP393.08
Type: Master's thesis
Year: 2010
Downloads: 446
Quote: 5
Read: Download Dissertation
Abstract
|
With the development of the Internet , Web applications have become a common channel for many companies do business with the outside world . Web technology is widely deployed in current information systems . But for malicious attacker , which provides them with two opportunities : first , http and https traffic is usually normal to the flow of information through the firewall and filtering technology . The second opportunity lies in increasing Web vulnerabilities . Emerging Web security issues , this paper focuses on the two main vulnerabilities against Web applications , SQL injection and XSS vulnerabilities , and the Web security penetration testing techniques . The main work of this paper the following aspects: 1 ) build local analysis environment , in-depth analysis of the causes of SQL injection and XSS vulnerabilities ; 2 ) Wireshark packet capture and analysis of some existing SQL injection detection tool comparison analysis different tools for SQL injection vulnerability detection method and detection character ; 3 ) according to the analysis of SQL injection and XSS vulnerability detection method , some actual website and TRP project website penetration testing and risk assessment found that some harm larger the vulnerability , which design method is effective to a certain extent .
|
Related Dissertations
- Double defensive methods of SQL injection attacks,TP393.08
- Query Tokenization Approach to the Detection and Prevention of SQL Injection Attacks,TP311.13
- Research of Attack and Defence Technique of Oracle Database,TP311.13
- The Reasearch and Application of Real-time Random SQL Injection Detection Methods,TP393.08
- Design and Implementation of Web monitoring and Web tamper-proof system,TP393.092
- The website assessment infiltration System Research and Implementation,TP393.092
- Research on Multi-level Website Security System,TP393.08
- Research and Implementation of SQL injection detection method,TP309
- Research of Web Security and Intrusion Detection Technology,TP393.08
- In Partial Fulfillment of the Requirements for the Master Degree of Communication and Information Engineering,TP393.08
- Web Security Testing Research and Design,TP393.08
- Design and Implementation of Web application security vulnerability scanning tools,TP393.08
- SQL injection attack defense methods study,TP393.08
- The Research of SQL Injection Against Oracle Database,TP311.13
- The Study and Realize of a Kind of Automatic SQL Injection Detecting and Utilizing System,TP311.13
- Research of SQL Injection Detection in the Data Access Middleware of a Mud Logging System,TP311.13
- The Design and Implementation of Prevention Model of SQL Injection and XSS,TP393.08
- Research and Implementation of WEB application security vulnerabilities mining,TP393.08
- Based on the Crawler to Mine the SQL Injection and XSS Vulnerability,TP393.08
- The Implementation of a Multi-function SQL Injection Detection System and Research on Prevention,TP393.08
- The Study of SQL Injection and the Security of SQL Server,TP311.138
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|