发明名称 System and method for internet security
摘要 A computer implemented method for preventing SQL injection attacks comprises intercepting a web request associated with a web service at a first software hook in a first web service execution context, persisting at least a portion of the intercepted web request in a storage location associated with the first software hook and accessible to at least one additional execution context, intercepting a database query generated by at least one web service processing operation at a second software hook associated with the execution of the query, wherein the query is generated in response to the intercepted web request and the second hook retrieves the persisted portion of the intercepted web request, comparing a portion of the persisted portion of the intercepted web request with at least a portion of the intercepted database query, and determining, prior to the query being executed, whether the query corresponds to a potential SQL injection attack.
申请公布号 US8578487(B2) 申请公布日期 2013.11.05
申请号 US20100939766 申请日期 2010.11.04
申请人 SOEDER DEREK A.;CYLANCE INC. 发明人 SOEDER DEREK A.
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址