DSpace Repository

SAISAN: An automated Local File Inclusion vulnerability detection model

Show simple item record

dc.contributor.author Hassan, Md Maruf
dc.contributor.author Bhuyian, Touhid
dc.contributor.author Sohel, M. Khaled
dc.contributor.author Sharif, Saikat
dc.date.accessioned 2019-05-19T08:39:46Z
dc.date.available 2019-05-19T08:39:46Z
dc.date.issued 2018
dc.identifier.issn 2227-524X
dc.identifier.uri http://hdl.handle.net/123456789/94
dc.description.abstract Communicating and delivering services to the consumers through web applications are now become very popular due to its user-friendly interface, global accessibility, and easy manageability. Careless design and development of web applications are the key reasons for security breaches which are very alarming for the users as well as the web administrators. Currently, Local File Inclusion (LFI) vulnerability is found present commonly in several web applications that lead to remote code execution in host server and initiates sensitive information disclosure. Detection of LFI vulnerability is getting very critical concern for the web owner to take effective measures to mitigate the risk. After reviewing literatures, we found insignificant researches conducted on automated detection of LFI vulnerability. This paper has proposed an automated LFI vulnerability detection model, SAISAN for web applications and implemented it through a tool. 265 web applications of four different sectors has been examined and received 88% accuracy from the tool comparing with the manual penetration testing method. en_US
dc.language.iso en_US en_US
dc.publisher International Journal of Engineering & Technology en_US
dc.subject Cyber Security en_US
dc.subject Web Application Security en_US
dc.subject Web Application Vulnerability en_US
dc.subject Automated Vulnerability Detection Tool en_US
dc.subject Local File Inclusion en_US
dc.title SAISAN: An automated Local File Inclusion vulnerability detection model en_US
dc.type Article en_US


Files in this item

This item appears in the following Collection(s)

Show simple item record

Search DSpace


Browse

My Account

Statistics