首页 | 本学科首页   官方微博 | 高级检索  
     

基于同态加密的防止SQL注入攻击解决方案
引用本文:杨玉龙,彭长根,周洲.基于同态加密的防止SQL注入攻击解决方案[J].信息网络安全,2014(1):30-33.
作者姓名:杨玉龙  彭长根  周洲
作者单位:[1]贵州大学计算机科学与技术学院,贵州贵阳550025 [2]贵州大学理学院,贵州贵阳550025 [3]贵州大学密码学与数据安全研究所,贵州贵阳550025
基金项目:基金项目:国家自然科学基金[61262073]、全国统计科学研究计划[2013LZ46]、贵州省自然科学基金[20092113]、贵州省高层次人才科研条件特助经费项目[TZJF-2008-33】
摘    要:将加密技术应用在系统开发中能够解决系统的安全问题。文章研究同态加密在防止SQL注入攻击方面的应用,提出了一种防止SQL注入攻击的同态加密方案,并给出了该方案防止SQL注入攻击的详细分析,指出同态加密可以有效防止SQL注入攻击。在此方案的基础上,将同态加密应用到SQL集函数中,实现了在重要信息保密的情况下获得需求信息。

关 键 词:同态加密  SQL注入攻击  集函数  解决方案

A Solution of Preventing SQL Injection Attacks based on Homomorphic Encryption
YANG Yu-long,PENG Chang-gen,ZHOU Zhou.A Solution of Preventing SQL Injection Attacks based on Homomorphic Encryption[J].Netinfo Security,2014(1):30-33.
Authors:YANG Yu-long  PENG Chang-gen  ZHOU Zhou
Affiliation:1 .College of Computer Science &lnformation, Guizhou University, Guiyang Guizhou 550025,China;2. College of Science, Guizhou University, Guiyang Guizhou 550025, China;3. Institute of Cryptography & Data Security, Guizhou University, Guiyang Guizhou 550025, China)
Abstract:Encryption technology that is applied to the system development can solve the security problems. This paper studies the application of homomorphic encryption in preventing SQL injection attacks and presents a solution of homomorphic encryption to prevent SQL injection attacks. At the same time, a detailed analysis of the scheme for preventing SQL injection attacks is given, pointing out that the homomorphism encryption scheme can effectively prevent SQL injection attacks. On the basis of the scheme, the homomorphic encryption is applied to the aggregation functions of SQL, which realizes to acquire the demand information in condition of the important information in secrecy.
Keywords:homomorphic encryption  SQL injection attacks  aggregation function  solution
本文献已被 CNKI 维普 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号