International Peer-Reviewed JournalOpen AccessISSN 2456-8880
irejournals@gmail.com+91-7433024337

Home / Current Issue / Paper 1712995

1712995PublishedVol 9 · Issue 6

A Survey on Hybrid SQL Injection Detection: Feature-Selection, Classical Machine Learning, and Deep Learning Approaches to Obfuscated, Blind, and Time-Based SQLi

Pushkar Y Jane , Roshani K Mukadam

Subject area: Science,Engineering and Technology  ·  Area of research: Cyber Security

DOI: https://doi.org/10.64388/IREV9I6-1712995

Abstract

SQL Injection (SQLi) remains one of the most persistent and damaging classes of web application vulnerabilities. As attackers adopt more sophisticated techniques ? obfuscation, blind channels, and time-based inference ? traditional detection techniques (rule/signature based and shallow ML) show limited robustness. Recently, hybrid approaches that combine feature selection, classical machine learning (ML) for fast filtering, and deep learning (DL) for semantic verification have gained traction. This survey thoroughly analyzes contemporary SQL Injection (SQLi) detection methods, specifically focusing on hybrid architectures capable of identifying obfuscated, blind, and time-based variants. This section details the SQLi attack taxonomy and corresponding defensive mechanisms. It further explores the application of advanced feature engineering techniques, such as Chi-Square ranking, to enhance detection. The analysis concludes with a performance evaluation (benchmarking) of both Machine Learning (ML) and Deep Learning (DL) models employed in this security domain.

How to cite this paper

Pushkar Y Jane , , Roshani K Mukadam "A Survey on Hybrid SQL Injection Detection: Feature-Selection, Classical Machine Learning, and Deep Learning Approaches to Obfuscated, Blind, and Time-Based SQLi" Iconic Research And Engineering Journals Volume 9 Issue 6 2025 Page 1485-1489 https://doi.org/10.64388/IREV9I6-1712995
Pushkar Y Jane , , Roshani K Mukadam "A Survey on Hybrid SQL Injection Detection: Feature-Selection, Classical Machine Learning, and Deep Learning Approaches to Obfuscated, Blind, and Time-Based SQLi" Iconic Research And Engineering Journals, vol. 9, no. 6, Dec. 2025, doi: https://doi.org/10.64388/IREV9I6-1712995
Pushkar Y Jane , , Roshani K Mukadam (2025). A Survey on Hybrid SQL Injection Detection: Feature-Selection, Classical Machine Learning, and Deep Learning Approaches to Obfuscated, Blind, and Time-Based SQLi. Iconic Research And Engineering Journals, 9(6). doi: https://doi.org/10.64388/IREV9I6-1712995
Pushkar Y Jane , , Roshani K Mukadam "A Survey on Hybrid SQL Injection Detection: Feature-Selection, Classical Machine Learning, and Deep Learning Approaches to Obfuscated, Blind, and Time-Based SQLi" Iconic Research And Engineering Journals, vol. 9, no. 6, Dec. 2025. Crossref, https://doi.org/10.64388/IREV9I6-1712995
@article{1712995,
      author = {Pushkar Y Jane , , Roshani K Mukadam},
      title = {A Survey on Hybrid SQL Injection Detection: Feature-Selection, Classical Machine Learning, and Deep Learning Approaches to Obfuscated, Blind, and Time-Based SQLi},
      journal = {Iconic Research And Engineering Journals},
      year = {2025},
      volume = {9},
      number = {6},
      pages = {1485-1489},
      issn = {2456-8880},
      url = {https://www.irejournals.com/formatedpaper/1712995.pdf},
      abstract = {SQL Injection (SQLi) remains one of the most persistent and damaging classes of web application vulnerabilities. As attackers adopt more sophisticated techniques ? obfuscation, blind channels, and time-based inference ? traditional detection techniques (rule/signature based and shallow ML) show limited robustness. Recently, hybrid approaches that combine feature selection, classical machine learning (ML) for fast filtering, and deep learning (DL) for semantic verification have gained traction. This survey thoroughly analyzes contemporary SQL Injection (SQLi) detection methods, specifically focusing on hybrid architectures capable of identifying obfuscated, blind, and time-based variants. This section details the SQLi attack taxonomy and corresponding defensive mechanisms. It further explores the application of advanced feature engineering techniques, such as Chi-Square ranking, to enhance detection. The analysis concludes with a performance evaluation (benchmarking) of both Machine Learning (ML) and Deep Learning (DL) models employed in this security domain.},
      month = {December},
      doi = {https://doi.org/10.64388/IREV9I6-1712995}
  }