Jurnal Lentera ICT
Vol. 9 No. 2 (2024): JURNAL LENTERA ICT, NOVEMBER 2024

VULNERABILITY SCANNING WEBSITE PMB MENGGUNAKAN OPEN WEB APPLICATION SECURITY PROJECT (OWASP)

Sari Prabandari (Unknown)



Article Info

Publish Date
19 Jan 2025

Abstract

Information and communication technology has increased significantly over the past few decades. Websites are often the target of cyber attacks because there are vulnerabilities that can be exploited by attackers. This study aims to conduct a Vulnerability Assessment (VA) on the website of admission of new students by following the guidelines of the Open Web Application Security Project (OWASP). OWASP provides a list of the top ten vulnerabilities that are often found in web applications, such as SQL Injection, XSS (Cross-Site Scripting), and CSRF (Cross- Site Request Forgery). This study uses the Vulnerability Assessment and Penetration Testing (VAPT) method, which consists of several stages: information gathering, scanning to identify security holes, and generating reports. The tool that used include OWASPZAP to detect and test vulnerabilities. This study produces a report that identifies 33,3% medium risk level vulnerabilities (six flags), 38% low risk level vulnerabilities (seven flags), 27,7% Informational Risk Level ( 5 flags) and no high-level vulnerabilities. It is hoped that these results can help IT staff in improving the security and convenience of accessing their pmb websites.

Copyrights © 2024






Journal Info

Abbrev

jrict

Publisher

Subject

Computer Science & IT

Description

Jurnal Lentera ICT (E-ISSN 2338-3143, P-ISSN 2986-9951) ini merupakan jurnal ilmiah berkala yang ditujukan untuk mempublikasikan karya ilmiah hasil penelitian, pengembangan dan studi pustaka di bidang manajemen informatika meliputi peminatan ilmu komputer. Jurnal ini terbit dua kali setahun setiap ...