Skip to main content
zenodoopen

Appendix to Combinatorial Methods for Dynamic Gray-Box SQL Injection Testing

<p>This appendix contains the detailed results of our case study performed in the context of our article &quot;Combinatorial Methods for Dynamic Gray-Box SQL Injection Testing&quot;, published in the Journal of Software Testing, Verification and Reliability.</p> <p><br> For each web application investigated, one table exists, provided as a separate PDF file.<br> In each of these tables, the results are grouped by endpoint. For each investigated approach, we list the total number of submitted vectors, the number of injected vectors and the injection rate, the amount of executed vectors and the execution rate, and the total time required to submit the attack vectors and evaluate the responses.</p> <p>Please note that no false positive endpoints are listed for WAVSEP. Furthermore, some entries for the execution rate may be displayed as 0.00 despite some vectors having been executed; this is merely a consequence of rounding.</p>

ShareScore

32/100

Overall dataset sharing score

Score breakdown

These five areas show where the dataset supports — or may limit — practical reuse.

Stewardship
8
Harmonization
4
Access
12
Reuse readiness
8
Engagement
0

Topics