Jurnal Riset Sistem Informasi
Vol. 1 No. 4 (2024): Oktober : Jurnal Riset Sistem Informasi

PENGUJIAN PENETRASI JARINGAN MENGGUNAKAN OWASP ZAP DAN SQLMAP UNTUK MENGIDENTIFIKASI KERENTANAN KEAMANAN WEBSITE

Rakhmadi Rahman (Unknown)
Fatkhur Razak, Danang (Unknown)



Article Info

Publish Date
02 Oct 2024

Abstract

Web application security is becoming increasingly critical amidst increasing cyber threats that can result in data leakage and other losses. This research aims to identify and exploit security vulnerabilities in a web application using two popular tools, OWASP ZAP and SQLMAP. OWASP ZAP is used to find various vulnerabilities such as Cross-Site Scripting (XSS) and insecure configuration, while SQLMAP is focused on the detection and exploitation of SQL Injection vulnerabilities. Through a series of automated scans and in-depth analysis, this research successfully identified several vulnerabilities with medium and low risk levels. The test results show that both tools are effective in identifying vulnerabilities, providing important insights into mitigation steps that need to be taken to improve web application security. This research also emphasizes the importance of input validation and sanitization, the use of parameterized queries, and security configuration updates as key mitigation measures. The findings are expected to contribute to improved security practices in web application development and reduce the risk against cyberattacks.

Copyrights © 2024






Journal Info

Abbrev

jissi

Publisher

Subject

Computer Science & IT Education Other

Description

Jurnal Riset Sistem Informasi (JISSI) dengan 3047-9010, p-ISSN : 3047-9029 diterbitkan oleh Denasya Smart Publisher. Jurnal Riset Sistem Informasi(JISSI) memuat naskah hasil-hasil penelitian di bidang Sistem Informasi. Jurnal Riset Sistem Informasi (JISSI) berkomitmen untuk memuat artikel berbahasa ...