Libinjection - A C Library for SQLI Detection and Generation Through Lexical Analysis
Offered By: Black Hat via YouTube
Course Description
Overview
Explore a groundbreaking approach to SQL injection (SQLi) detection in this 40-minute Black Hat USA 2012 conference talk by Nick Galbreath. Delve into libinjection, an open-source C library that employs lexical analysis to identify and categorize SQLi attacks. Learn how this innovative solution overcomes the limitations of traditional regular expression-based methods, offering improved precision and accuracy. Discover how libinjection has been trained on vast datasets, including real SQLi attacks and user inputs from a top 50 website. Gain insights into the library's ability to generate templates for new attacks and fuzzing algorithms. Understand the potential applications of libinjection in web application firewalls, software development, and its adaptability to other programming languages. This talk is essential for security professionals, developers, and anyone interested in advancing SQLi detection techniques.
Syllabus
Black Hat USA 2012 - Libinjection: A C Library for SQLI Det. & Gen. Through Lexical Analysis
Taught by
Black Hat
Related Courses
Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security ChipBlack Hat via YouTube Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube