Defining and Preventing Code-injection Attacks

This thesis shows that existing definitions of code-injection attacks (e.g., SQL-injection attacks) are flawed. The flaws make it possible for attackers to circumvent existing mechanisms, by supplying code-injecting inputs that are not recognized as such. The flaws also make it possible for benign...

Full description

Bibliographic Details
Main Author: Ray, Donald
Format: Others
Published: Scholar Commons 2013
Subjects:
Online Access:http://scholarcommons.usf.edu/etd/4566
http://scholarcommons.usf.edu/cgi/viewcontent.cgi?article=5763&context=etd