Practical Insight Into Injections

Injections are one of the most common yet critical web application attacks and it is at the first position of the OWASP Top 10 Attacks. They are found frequently is web applications and this paper aims to explain this vulnerability and provide the mitigations to prevent from injection based attacks.

Key Pointers:
  • Covering different types of injection based attacks
    1. Host Header Injection
    2. SQL Injection and its types
    3. Automated tools to perform sql injections
    4. SMTP Injection
    5. XPATH Injection
    6. OS Command Injection
    7. HTML Injection
    8. SSI Injection
    9. LDAP Injection
  • Setting up the labs and performing each injection attack while understanding how they work.
  • Discussing the remediations for each type of injection based attack to prevent them.
