Empirical study on network exploitation tools and vulnerability detection tool
*Kirti SharmaCorresponding authorkkirti.sharma@yahoo.comAmbedkar Institute of Advanced Communication Technologies and Research (AIACTR)Government Engineering CollegeAffiliated to Guru Gobind Singh Indraprastha University (GGSIU)Geeta Colony, Delhi, 110031, IndiaView full profile → , Shobha Bhattbhattsho@gmail.comAmbedkar Institute of Advanced Communication Technologies and Research (AIACTR)Government Engineering CollegeAffiliated to Guru Gobind Singh Indraprastha University (GGSIU)Geeta Colony, Delhi, 110031, IndiaView full profile → , Manju Kharimanjukhari@yahoo.comAmbedkar Institute of Advanced Communication Technologies and Research (AIACTR)Government Engineering CollegeAffiliated to Guru Gobind Singh Indraprastha University (GGSIU)Geeta Colony, Delhi, 110031, IndiaView full profile →
* Corresponding author · click or hover a name for details
- Received:
- 12 Nov 2019
- Published Online:
- 31 Mar 2025
- Article type:
- Research Article
- Language:
- EN
- Article no.:
- JIOS-1508
- Pages:
- 1439–1458
Abstract
Keywords
Subject Classifications
References
[1] O. Adeyinka, “Internet attack methods and internet security technology,” Modeling & Simulation, 2008. AICMS 08. Second Asia International Conference on, vol., no., pp. 77-82, 13-15 May (2008).
[2] J. Andress, “IPv6: the next internet protocol,” Apr. (2005). [Online]. Available: www.usenix.com/publications/login/2005-04/pdfs/andress0504.pdf.
[3] S. B. Chavan and B. B. Meshram, “Classification of web application vulnerabilities,” International Journal of Engineering Science and Innovative Technology (IJESIT), vol. 2, pp. 241 (2013).
[4] J. Fonseca, M. Vieira, and H. Madeira, “Testing and comparing web vulnerability scanning tools for SQL injection and XSS attacks,” Dependable Computing, 2007. PRDC 2007. 13th Pacific Rim International Symposium on, IEEE (2007).
[5] W. G. Halfond, J. Viegas, and A. Orso, “A classification of SQL-injection attacks and countermeasures,” Proceedings of the IEEE International Symposium on Secure Software Engineering, vol. 1, IEEE (2006).
[6] “Enterprise Security Articles - Bright Hub,” [Online]. Available: http://www.brighthub.com/computing/enterprise-security/articles/61557.aspx.
[7] W. Ahmad, “Network security attacks, tools, and techniques,” [Online]. Available: http://www.slideshare.net/waqasahmad1995/network-securityattacks-tools-and-techniques-52207382.
[8] Vulnerability Scanning Tools, [Online]. Available: https://books.google.co.in/books?hl=en&lr=&id=RoS9BwAAQBAJ&oi=fnd&pg=PA295&dq=vulnerability+scanning+tool&ots=K63mbzlMwa&sig=hX4RvFLF69Kvla3MYhlRqUgdDjk#v=onepage&q=vulnerability%20scanning%20tool&f=false.
[9] “Evolution of Network Security,” ECPI University Blog, [Online]. Available: https://www.ecpi.edu/blog/evolution-of-network-security.
[10] R. Johari and P. Sharma, “A survey on web application vulnerabilities (SQLIA, XSS) exploitation and security engine for SQL injection,” Communication Systems and Network Technologies (CSNT), 2012 International Conference on, IEEE (2012).
[11] K. Kumar, D. Jena, and R. Kumar, “A novel approach to detect SQL injection in web applications,” International Journal of Application or Innovation in Engineering & Management, vol. 6, pp. 37-43 (2013).
[12] X. Li and Y. Xue, “A survey on server-side approaches to securing web applications,” ACM Computing Surveys (CSUR), vol. 46, no. 4, pp. 54 (2014).
[13] G. A. Marin, “Network security basics,” Security & Privacy, IEEE, vol. 3, no. 6, pp. 68-72, Nov.-Dec. (2005).
[14] M. P. Pathak, N. Kausar Khan, and T. C. Tantak, “Novel approach to detect and prevent web attacks,” (2016).
[15] A. Saravanan, M. S. Irfan Ahmed, and S. SathyaBama, “A survey on exposed vulnerabilities in web applications,” Asia Pacific Journal of Research, vol. I, Issue XXXV (2016).
[16] S. Shalini and S. Usha, “Prevention of cross-site scripting attacks (XSS) on web applications in the client side,” IJCSI International Journal of Computer Science Issues, vol. 8, no. 4 (2011).
[17] L. K. Shar and H. B. K. Tan, “Automated removal of cross site scripting vulnerabilities in web applications,” Information and Software Technology, vol. 54, no. 5, pp. 467-478 (2012).
[18] T. Van Goethem, B. Van Dongen, W. Joosen, and F. Piessens, “Large-scale security analysis of the web: Challenges and findings,” in Proc. International Conference on Trust and Trustworthy Computing, Springer International Publishing, pp. 3-21 (2014).
[19] Y. Wang and J. Yang, “Ethical hacking and network defense: Choose your best network vulnerability scanning tool,” Advanced Information Networking and Applications Workshops (WAINA), 2017 31st International Conference on, IEEE (2017).




