{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,26]],"date-time":"2025-03-26T11:12:11Z","timestamp":1742987531628,"version":"3.40.3"},"publisher-location":"Cham","reference-count":15,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030026066"},{"type":"electronic","value":"9783030026073"}],"license":[{"start":{"date-parts":[[2018,10,17]],"date-time":"2018-10-17T00:00:00Z","timestamp":1539734400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-02607-3_13","type":"book-chapter","created":{"date-parts":[[2018,10,16]],"date-time":"2018-10-16T08:53:30Z","timestamp":1539680010000},"page":"137-147","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["SQL Injection in Cloud: An Actual Case Study"],"prefix":"10.1007","author":[{"given":"Xiao","family":"Fu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhijian","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yong","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yunfeng","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hao","family":"Wu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2018,10,17]]},"reference":[{"key":"13_CR1","first-page":"524","volume-title":"Lecture Notes in Computer Science","author":"Roshni Chandrashekhar","year":"2012","unstructured":"Chandrashekhar, R., Mardithaya, M., Thilagam, S.: SQL injection attack mechanisms and prevention techniques. In: Advanced Computing, Networking and Security, pp. 524\u2013533. Springer, Heidelberg (2012)"},{"key":"13_CR2","unstructured":"Anley, C.: Advanced SQL injection in SQL server applications. NGS Software Insight Security Research Publication (2002)"},{"key":"13_CR3","unstructured":"OWASP Foundation: OWASP Top 10 \u2013 2017 The Ten Most Critical Web Application Security Risks. www.owasp.org (2018)"},{"key":"13_CR4","unstructured":"Halfond, W.G., Viegas, J., Orso, A.: A classification of SQL-injection attacks and countermeasures. In: Proceedings of the IEEE International Symposium on Secure Software Engineering, pp. 13\u201315 (2006)"},{"issue":"2","key":"13_CR5","doi-asserted-by":"publisher","first-page":"50","DOI":"10.1109\/MSP.2010.115","volume":"9","author":"B Grobauer","year":"2011","unstructured":"Grobauer, B., Walloschek, T., Stocker, E.: Understanding cloud computing vulnerabilities. IEEE Secur. Priv. 9(2), 50\u201357 (2011)","journal-title":"IEEE Secur. Priv."},{"key":"13_CR6","doi-asserted-by":"crossref","unstructured":"Foster, I., Zhao, Y., Raicu, I., Lu, S.: Cloud computing and grid computing 360-degree compared. In: IEEE Grid Computing Environments Workshop, pp. 1\u201310 (2008)","DOI":"10.1109\/GCE.2008.4738445"},{"issue":"2","key":"13_CR7","first-page":"203","volume":"32","author":"JQ Yang","year":"2016","unstructured":"Yang, J.Q., Wang, Z.J., Xiao, F., Wang, Y.: A method of employing self-destructing data in object-relational mapping files. J. Harbin Univ. Commer. (Nat. Sci. Ed.) 32(2), 203\u2013211 (2016)","journal-title":"J. Harbin Univ. Commer. (Nat. Sci. Ed.)"},{"key":"13_CR8","doi-asserted-by":"crossref","unstructured":"Kieyzun, A., Guo, P.J., Jayaraman, K., Ernst, M.D.: Automatic creation of SQL injection and cross-site scripting attacks. In: IEEE Proceedings of the 31st International Conference on Software Engineering, pp. 199\u2013209 (2009)","DOI":"10.1109\/ICSE.2009.5070521"},{"key":"13_CR9","unstructured":"Kelbley, J., Sterling, M., Stewart, A.: Windows Server 2008 Hyper-V: Insider\u2019s Guide to Microsoft\u2019s Hypervisor. Wiley, Hoboken (2008)"},{"key":"13_CR10","doi-asserted-by":"crossref","unstructured":"Chen, J.M., Wu, C.L.: An automated vulnerability scanner for injection attack based on injection point. IEEE International Computer Symposium (ICS), pp. 113\u2013118 (2010)","DOI":"10.1109\/COMPSYM.2010.5685537"},{"key":"13_CR11","unstructured":"Cerrudo, C.: Manipulating Microsoft SQL Server Using SQL Injection. Application Security White Paper (2002)"},{"key":"13_CR12","unstructured":"Velte, A., Velte, T.: Microsoft Virtualization with Hyper-V. McGraw-Hill, Inc., New York (2009)"},{"key":"13_CR13","unstructured":"Hinchcliffe, D.: Comparing Amazon\u2019s and Google\u2019s Platform-as-a-Service (PaaS) Offerings. Enterprise Web 2.0 ZDNet.com (2008)"},{"key":"13_CR14","doi-asserted-by":"publisher","first-page":"285","DOI":"10.1007\/978-1-4302-6212-1_19","volume-title":"Protecting Oracle Database 12c","author":"Paul Wright","year":"2014","unstructured":"Wright, P.: \u201cThe Cloud\u201d and Privileged Access. Protecting Oracle Database 12c, pp. 285\u2013293. Apress, Berkeley (2014)"},{"key":"13_CR15","doi-asserted-by":"crossref","unstructured":"Nguyen-Tuong, A., Guarnieri, S., Greene, D., Shirley, J., Evans, D.: Automatically hardening web applications using precise tainting. In: IFIP International Information Security Conference, pp. 295\u2013307. Springer, Boston (2005)","DOI":"10.1007\/0-387-25660-1_20"}],"container-title":["Lecture Notes on Data Engineering and Communications Technologies","Advances on P2P, Parallel, Grid, Cloud and Internet Computing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-02607-3_13","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,6,22]],"date-time":"2024-06-22T15:09:40Z","timestamp":1719068980000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-02607-3_13"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,10,17]]},"ISBN":["9783030026066","9783030026073"],"references-count":15,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-02607-3_13","relation":{},"ISSN":["2367-4512","2367-4520"],"issn-type":[{"type":"print","value":"2367-4512"},{"type":"electronic","value":"2367-4520"}],"subject":[],"published":{"date-parts":[[2018,10,17]]},"assertion":[{"value":"17 October 2018","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"3PGCIC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on P2P, Parallel, Grid, Cloud and Internet Computing","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Taichung","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Taiwan","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"27 October 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29 October 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"pgcic2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}