Claim Missing Document
Check
Articles

Found 1 Documents
Search
Journal : Jurnal Mantik

Testing posketanmu website with google penetration testing and OWASP Top 10 Sebrina, Aida Fitriya; Junaidi, Achmad; Sihananto, Andreas Nugroho
Jurnal Mantik Vol. 8 No. 1 (2024): May: Manajemen, Teknologi Informatika dan Komunikasi (Mantik)
Publisher : Institute of Computer Science (IOCS)

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35335/mantik.v8i1.5204

Abstract

Data integrity has become vital in the quickly evolving digital era, pushing cybersecurity to a critical concern. Securing cybersecurity is crucial for systems such as the Posketanmu website in Mojokerto Regency, as it is responsible for safeguarding sensitive personal information. The objective of this research is to detect, evaluate, and exploit on any security weaknesses present on the Posketanmu website. The methodology combines the Google Penetration Testing strategy with the latest OWASP Top 10 2021 criteria. The penetration testing procedure comprises five distinct steps: Initially, the process involves collecting data and comprehending the platform by utilizing several programs such as Nmap, Nslookup, Wappalizer, Whatweb, Whois, and Google Hacking. Furthermore, the process involves utilizing ZAP to do vulnerability scanning, resulting in the creation of thorough reports. Furthermore, doing a vulnerability assessment, which involves manual testing and classification according to OWASP standards. Furthermore, effectively capitalizing on all eleven identified vulnerabilities. Ultimately, the task involves adhering to the OWASP Top 10 2021 standards by documenting, reporting, and suggesting solutions for any identified issues. This investigation found and resolved four significant security vulnerabilities on the Posketanmu website: stored XSS, unset CSP header, unset Strict-Transport-Security header, and open redirect. The implementation of Google Penetration Testing and adherence to the OWASP Top 10 2021 criteria have greatly improved the security of the Posketanmu website, ensuring the protection of Mojokerto Regency citizens' data.
Co-Authors Abdul Rezha Efrat Najaf Abdurrahman, Nizar Achmad Junaidi Aditya Primayudha Aditya Rizqi Ardhana Afifudin, Muhammad Afriani, Regita Agung Mustika Rizki, Agung Mustika Agussalim, Agussalim Alifah, Nurul Aini Amalia, Nadhia Rizqy Amri Muhaimin Anggraini PS Anggraini Puspita Sari Ani Dijah, Rahajoe Ar Romandhon, Mitzaqon Gholizhan Ardiansyah, Muhammad Dafa Arif Widiasan Subagio Basuki Rahmat Masdi Siduppa Christianty, Theressa Marry Dwi Arman Prasetya Edi Sugiyanto Edi Sugiyanto Eristya Maya Safitri Fakhruddin, Fikri Farkhan Fauzi, Zaky Ahmad Fetty Tri Anggraeny Gusti Ahmad Fanshuri Alfarisy, Gusti Ahmad Fanshuri Izzatul Fithriyah Kartini Kartini Kartini Lesmana, Benedictus Rafael M Shochibul Burhan, M Shochibul M. Arif Mardhavi M. Shochibul Burhan Mardhavi, Arif Marselina, Anif Fitria Dewi Maulana, Hendra Maulana, Yoga Mohammad, Farrel Adel Muhammad Afifudin Muhammad Dafa Ardiansyah Muhammad Muharrom Al Haromainy Naila, Amelia Maslaqun Nurhaliza, Risma Nurlaili, Afina Lina Octaviani, Vincentia Indri Pangestu, Arif Fajar Parlika, Rizky Pradana, Ilham Akbar Prami, Made Hanindia Putra, Chrystia Aji Putra, Gredy Christian Hendrawan Putra, Raditya Lungguk Satya Ramadhan, Dimas Dharu Rasjid, Azka Avicenna Ratna Yulistiani Retno Mumpuni Reza, Reno Alfa Safitri, Erista Maya Santosa, Mochammad Kevin Saputra, Dewa Raka Krisna Saputri, Asih Sebrina, Aida Fitriya Shahab, Muhammad Syaugi Suryandari, Sabrina Heryanti Taufiqurrahman, Rahmadany Fahreza Tirana Noor Fatyanosa, Tirana Noor Trianingsih, Arini Trimono, Trimono Wayan Firdaus Mahmudy Wiwik Handayani Yisti Vita Via Yudistira, Mochammad Ervinda Yulianto, Rusman