Search
Program Calendar
Browse By Day
Search Tips
Virtual Exhibit Hall
Personal Schedule
Sign In
The purpose of this paper is to provide an overview and demonstration of SQL Injection, a type of e-commerce threat. While AIS textbooks commonly include a chapter on e-commerce systems and the security controls associated with e-commerce systems, specific threats such as SQL injection are not discussed in detail. This has prompted questions from students such as: “How do e-commerce threats (such as a virus) work?” This paper helps Accounting Information Systems (AIS) educators demonstrate how a popular e-business threat, SQL Injection, works. By demonstrating how this threat works, it is hoped that students will develop a deeper understanding of how of e-business threats and why they are important.
David Lockhart Henderson, University of Mary Washington
Michael Lapke, University of Mary Washington
Christopher Garcia, University of Mary Washington