<node id="51744">
  <nid>51744</nid>
  <type>news</type>
  <uid>
    <user id="27154"><![CDATA[27154]]></user>
  </uid>
  <created>1265752016</created>
  <changed>1475895912</changed>
  <title><![CDATA[Computing Professor Addresses Deadliest Web Site Attacks]]></title>
  <body><![CDATA[<p><strong>ATLANTA (June 23, 2006)</strong>--Alessandro Orso, assistant professor within the College's Computing Sciences &amp; Systems (CSS) division, was cited in a recent <em>Atlanta Business Chronicle</em> article for his research on countering Web-application attacks. Orso is the PI on a $400,000 grant from the Department of Homeland Security and U.S. Air Force to develop techniques against SQL injection. The title of the project is "Preventing SQL Code Injection by Combining Static and Runtime Analysis."</p>
<p>Many organizations need to store sensitive information, such as customer records or private documents, and make this information available over the network. For this reason, Web applications have become widely deployed in enterprise systems and on the Internet, and people use these applications daily when reading the news, paying bills, and shopping online. As the availability of these services grows however, companies are witnessing an increase in the number and sophistication of attacks that target them.</p>
<p>Orso's work combines static and dynamic program analysis techniques to identify, stop, and report these attacks against Web applications. "It's hard to find companies glad to tell you that they are being attacked," says Orso in the article, but with the help of his research, companies hopefully won't need to.</p>
<p>Read <em>Atlanta Business Chronicle’s</em> recent article about the rise of SQL injection attacks by <a href="images/news_articles/2006/abc_orso_090906.pdf" target="_blank">clicking here</a>.</p>
<p>For more information about Alex Orso, <a href="http://www.cc.gatech.edu/component/option,com_peopledb/task,view/contact_id,285067566/Itemid,238/" target="_blank">click here</a></p>]]></body>
  <field_subtitle>
    <item>
      <value><![CDATA[]]></value>
    </item>
  </field_subtitle>
  <field_dateline>
    <item>
      <value>2006-06-23T00:00:00-04:00</value>
      <timezone><![CDATA[America/New_York]]></timezone>
    </item>
  </field_dateline>
  <field_summary_sentence>
    <item>
      <value><![CDATA[]]></value>
    </item>
  </field_summary_sentence>
  <field_summary>
    <item>
      <value><![CDATA[<p>Assistant Professor Alex Orso is developing techniques to fight SQL injection attacks which are on the rise.</p>]]></value>
    </item>
  </field_summary>
  <field_media>
      </field_media>
  <field_contact_email>
    <item>
      <email><![CDATA[]]></email>
    </item>
  </field_contact_email>
  <field_location>
    <item>
      <value><![CDATA[]]></value>
    </item>
  </field_location>
  <field_contact>
    <item>
      <value><![CDATA[]]></value>
    </item>
  </field_contact>
  <field_sidebar>
    <item>
      <value><![CDATA[]]></value>
    </item>
  </field_sidebar>
  <field_boilerplate>
    <item>
      <nid><![CDATA[]]></nid>
    </item>
  </field_boilerplate>
  <!--  TO DO: correct to not conflate categories and news room topics  -->
  <!--  Disquisition: it's funny how I write these TODOs and then never
         revisit them. It's as though the act of writing the thing down frees me
         from the responsibility to actually solve the problem. But what can I
         say? There are more problems than there's time to solve.  -->
  <links_related> </links_related>
  <files> </files>
  <og_groups>
          <item>47223</item>
      </og_groups>
  <og_groups_both>
      </og_groups_both>
  <field_categories>
      </field_categories>
  <core_research_areas>
      </core_research_areas>
  <field_news_room_topics>
      </field_news_room_topics>
  <links_related>
      </links_related>
  <files>
      </files>
  <og_groups>
          <item>47223</item>
      </og_groups>
  <og_groups_both>
          <item><![CDATA[College of Computing]]></item>
      </og_groups_both>
  <field_keywords>
      </field_keywords>
  <field_userdata>
      <![CDATA[]]>
  </field_userdata>
</node>
