Data processing: database and file management or data structures – Database and file access – Query optimization
Reexamination Certificate
2011-08-30
2011-08-30
Wong, Don (Department: 2163)
Data processing: database and file management or data structures
Database and file access
Query optimization
C707S724000, C707S754000
Reexamination Certificate
active
08010522
ABSTRACT:
System, method and program product for detecting a malicious SQL query in a parameter value field of a request. The parameter value field is searched for query operands, characters and/or symbols and combinations of query operands, characters and/or symbols indicative of malicious SQL injection. A respective score assigned to each of the query operands, characters and/or symbols or combinations of query operands, characters and/or symbols found in the parameter value field is added to yield a total score for at least two of the query operands, characters and/or symbols or combinations of query operands, characters and/or symbols found in the parameter value field. Responsive to the total score exceeding a threshold, the request is blocked.
REFERENCES:
patent: 7343626 (2008-03-01), Gallagher
patent: 7444331 (2008-10-01), Nachenberg et al.
patent: 2003/0204719 (2003-10-01), Ben-Itzhak
patent: 2005/0198099 (2005-09-01), Motsinger et al.
patent: 2005/0203921 (2005-09-01), Newman et al.
patent: 2006/0136374 (2006-06-01), Shelest et al.
patent: 2006/0212438 (2006-09-01), Ng
patent: 2006/0212941 (2006-09-01), Bronnikov et al.
patent: 2007/0074169 (2007-03-01), Chess et al.
patent: 2007/0143271 (2007-06-01), Yuval et al.
patent: 2007/0185863 (2007-08-01), Budzik et al.
patent: 2007/0192863 (2007-08-01), Kapoor et al.
patent: 2007/0294203 (2007-12-01), Seitz
patent: 2008/0016339 (2008-01-01), Shukla
patent: 2009/0049547 (2009-02-01), Fan
Jaroslaw Skaruz, Franciszek Seredynski, “Recurrent Neural Networks Towards Detection of SQL Attack”, Jan. 17, 2007.
Dewey David Bryan
Means David Charles
Ho Binh V
International Business Machines - Corporation
Samodovitz Arthur J.
Wong Don
LandOfFree
System, method and program product for detecting SQL queries... does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with System, method and program product for detecting SQL queries..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and System, method and program product for detecting SQL queries... will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-2796117