Scalable Detection of SQL Injection in Cyber Physical Systems

  • Michael Silva UECE
  • Silvio Ribeiro UECE
  • Vanessa Carvalho UECE
  • Francisco Cardoso UECE
  • Rafael Lopes Gomes UECE

Resumo

Cyber Physical Systems generate a significant volume of heterogeneous data often stored in relational databases. These databases are susceptible to various threats, including SQL Injection (SQLi) attacks. Consequently, there is a need for security solutions that are not only efficient in detection, but also meet the processing time requirements of detection. In this context, this article introduces a solution for SQLi Scalable Threat Detection (S-SQLi) based on Regular Expressions (RegEx). This solution acts as an initial filtering service, protecting against SQLi threats by addressing response time and scalability concerns. The experiments using a real dataset suggest that S-SQLi offers adequate detection efficiency for SQLi threats while addressing the scalability needs of CPSs.
Publicado
2023-10-16
Como Citar
SILVA, Michael et al. Scalable Detection of SQL Injection in Cyber Physical Systems. Anais do Workshop on Security, Privacy and Reliability on Wireless Sensing Networks (WSENSING), [S.l.], p. 220–225, out. 2023. ISSN 0000-0000. Disponível em: <https://sol.sbc.org.br/index.php/wsensing/article/view/25994>. Acesso em: 15 maio 2024.