Files
splunk-security_content/docs/_stories/sql_injection.md
T
2021-09-20 18:35:03 -04:00

1.1 KiB

title, last_modified_at, toc, tags
title last_modified_at toc tags
SQL Injection 2017-09-19 true
Splunk Enterprise
Splunk Enterprise Security
Splunk Cloud
Web

Description

Use the searches in this Analytic Story to help you detect structured query language (SQL) injection attempts characterized by long URLs that contain malicious parameters.

  • ID: 4f6632f5-449c-4686-80df-57625f59bab3
  • Product: Splunk Enterprise, Splunk Enterprise Security, Splunk Cloud
  • Datamodel: Web
  • Last Updated: 2017-09-19
  • Author: Bhavin Patel, Splunk

Detection profiles

Name Technique Type
SQL Injection with Long URLs None TTP

Kill Chain Phase

Reference

version: 1