A cybersecurity method to detect SQL injection attacks using heuristic-driven feature selection and machine learning algorithms

dc.authorid0000-0003-0081-041X
dc.contributor.authorBahman Arasteh Abbasabad
dc.contributor.authorMohammadbagher Karimi
dc.contributor.authorHuseyin Kusetogullari
dc.contributor.authorFarzad Kianı
dc.contributor.authorKeyvan Arasteh
dc.date.accessioned2026-01-27T12:22:57Z
dc.date.available2026-01-27T12:22:57Z
dc.date.issued26/12/2025
dc.departmentKapadokya Üniversitesi
dc.description.abstractSQL injection is a serious security risk that allows attackers to access application databases. SQL injection attacks can be identified using various methods, including machine learning algorithms. Finding the top-performing features in the training dataset is a combinatorial optimization problem known to be NP-complete. Finding the dataset's most effective and significant features is the goal of feature selection. This study aims to optimize the sensitivity, specificity, and accuracy of the SQL injection detection method. The first stage of the suggested method involved creating a unique training dataset with 13 characteristics. A binary form of the Whale Optimization Algorithm was suggested to find the most effective features in the dataset. An effective SQL injection detection system was developed by combining the whale algorithm as a feature selector with various machine learning techniques. The suggested SQL injection detector achieved 98.88% accuracy, 99.35% sensitivity, and a 98.83% F1-score using an artificial neural network and the whale optimizer. Using the proposed strategy to select about 31% of the features improved the performance of the attack detectors.
dc.identifier.doi10.1007/s11227-025-08165-y
dc.identifier.issn1573-0484
dc.identifier.scopusqualityQ2
dc.identifier.urihttps://link.springer.com/article/10.1007/s11227-025-08165-y
dc.identifier.urihttps://hdl.handle.net/20.500.12695/3949
dc.identifier.wosqualityQ2
dc.indekslendigikaynakWeb of Science
dc.language.isoen
dc.publisherSpringer Nature
dc.relation.publicationcategoryMakale - Uluslararası - Editör Denetimli Dergi - Başka Kurum Yazarı
dc.rightsinfo:eu-repo/semantics/restrictedAccess
dc.subjectCybersecurity · SQL injection · Optimal feature selection · Binary whale algorithm · Machine learning algorithms
dc.titleA cybersecurity method to detect SQL injection attacks using heuristic-driven feature selection and machine learning algorithms
dc.typeArticle

Dosyalar

Orijinal paket
Listeleniyor 1 - 1 / 1
Yükleniyor...
Küçük Resim
İsim:
s11227-025-08165-y.pdf
Boyut:
2.3 MB
Biçim:
Adobe Portable Document Format
Lisans paketi
Listeleniyor 1 - 1 / 1
[ X ]
İsim:
license.txt
Boyut:
1.17 KB
Biçim:
Item-specific license agreed upon to submission
Açıklama: