Back to results

London Metropolitan University

SQL injection detection and exploitation framework for penetration testing

Abstract

dc:description.abstract

SQL injection is one of the complex and threatening attack used against SQL database servers and web applications. Attackers use SQL injection to get unauthorized access and perform unauthorized data modification. To mitigate the devastating problem of SQL injection attack, there are many existing tools and methods for detection and prevention. Due to the rapid SQL injection growth in recent years, the SQL injection security approaches have been experiencing a paradigm shift from the strenuous manual analysis, signature-based approach to a data-driven, machine learning-based dynamic approach. This research has provided a comprehensive analysis of SQL injection and literature review of the existing SQL injection security methods. The thesis presents a novel semi-automated SQL injection detection and exploitation (IDE) solution using constructive method by combining machine learning and advance Python computation.

Degree

thesis:*
Name dc:type.qualificationname
phd
Level dc:type.qualificationlevel
doctoral
Grantor dc:publisher.institution
London Metropolitan University
Year dc:date.issued
2019

Author and committee

dc:creator, dc:contributor.*
Author dc:creator
  • Kazmi, Muhammad Ali Naqi

Subjects

dc:subject × 1

Identifiers

dc:identifier.*
Dc Identifier Grantnumber
N/A
OAI identifier oai:identifier
oai:repository.londonmet.ac.uk:7345

Chain of custody

source
Harvested from
London Metropolitan University
Base URL
repository.londonmet.ac.uk/cgi/oai2
Last updated
2026-07-24
Source record
OAI-PMH GetRecord
citation

Kazmi, Muhammad Ali Naqi. SQL injection detection and exploitation framework for penetration testing. doctoral thesis, London Metropolitan University, 2019.