JEITECH (JOURNAL OF ELECTRICAL ENGINEERING AND INFORMATION TECHNOLOGY)
Vol. 2 No. 1 (2024): Edisi Maret 2024

Penetration Testing untuk Menguji Sistem Keamanan pada Website

Muhammad Arif Madani (Universitas Mataram)



Article Info

Publish Date
30 Mar 2024

Abstract

The use of websites has a significant role in increasing efficiency, transparency, and public participation in public administration processes. Websites have become effective tools for providing accurate and up-to-date information about public policies, programs, and services. Although the use of websites has contributed positively, challenges such as website security need to be improved. The goal to be achieved in this study is to conduct penetration testing with the Black Box method by referring to the Open Web Application Security Project (OWASP) Top 10-2021. The number of subdomains tested was 3 identified subdomains. All vulnerability assessments are carried out in 4 stages consisting of footprinting, scanning, exploitation, and reporting. This penetration testing refers to Web Security Guide (WSTG) guidance document version 4.2. The result of this study was the discovery of 3 vulnerabilities with a distribution of 1 High, 1 Low, and 1 Informational. The final process of this research is in the form of recommendations that can be used as a reference for website application developers to deal with vulnerabilities, especially loss of service availability and data leakage.

Copyrights © 2024






Journal Info

Abbrev

jeitech

Publisher

Subject

Computer Science & IT Control & Systems Engineering Electrical & Electronics Engineering Engineering

Description

The Aims and scope of the JEITECH are Power System, Telecommunication, electronics and computer of informatics , including: Electrical Power Systems High Voltage Technology Renewable Energy Power Electronics Sensing and Automation Telecommunication system and technique Signal Processing Image ...