MATRIK : Jurnal Manajemen, Teknik Informatika, dan Rekayasa Komputer
Vol 22 No 3 (2023)

OWASP Framework-based Network Forensics to Analyze the SQLi Attacks on Web Servers

Imam Riadi (Universitas Ahmad Dahlan, Yogyakarta, Indonesia)
Abdul Fadlil (Universitas Ahmad Dahlan, Yogyakarta, Indonesia)
Muhammad Amirul Mu'min (Universitas Ahmad Dahlan, Yogyakarta, Indonesia)



Article Info

Publish Date
06 Jul 2023

Abstract

One of dangerous vulnerabilities that attack the web is SQLi. With this vulnerability, someone can obtain user data information, then change and delete that data. The solution to this attack problem is that the design website must improve security by paying attention to input validation and installing a firewall. This study's objective is to use network forensic tools to examine the designlink website's security against SQLi attacks, namely Whois, SSL Scan, Nmap, OWASP Zap, and SQL Map. OWASP is the framework that is employed; it is utilized for web security testing. According to the research findings, there are 14 vulnerabilities in the design website, with five medium level, seven low level, and two informational level. When using SQL commands with the SQL Map tool to get username and password information on its web server design. The OWASP framework may be used to verify the security of websites against SQLi attacks using network forensic tools, according to the study's findings. So that information about the vulnerabilities found on the website can be provided. The results of this study contribute to forensic network knowledge against SQLi attacks using the OWASP framework as well as for parties involved in website security.

Copyrights © 2023






Journal Info

Abbrev

matrik

Publisher

Subject

Computer Science & IT

Description

MATRIK adalah salah satu Jurnal Ilmiah yang terdapat di Universitas Bumigora Mataram (eks STMIK Bumigora Mataram) yang dikelola dibawah Lembaga Penelitian dan Pengabadian kepada Masyarakat (LPPM). Jurnal ini bertujuan untuk memberikan wadah atau sarana publikasi bagi para dosen, peneliti dan ...