Journix: Journal of Informatics and Computing
Vol. 1 No. 1 (2025): April

Security Analysis of XYZ Website Using OWASP Zap Tools

Muhammad Amirul Mu'min (Universitas Muhammadiyah Bima)
Yana Safitri (Universitas Qamarul Huda Badaruddin Bagu)
Galih Pramuja Inngam Fanani (Universitas ‘Aisyiyah Surakarta)
Setiawan Ardi Wijaya (Universitas Muhammadiyah Riau)
Novi Tristanti (Universitas Muhammadiyah Karanganyar)



Article Info

Publish Date
13 Mar 2025

Abstract

In the growing digital era, website security is a critical aspect that must be considered. Vulnerabilities such as Cross-Site Scripting (XSS), Clickjacking, and Man-in-the-Middle can pose serious risks to data integrity and security. Therefore, effective tools are needed to identify and evaluate such vulnerabilities to prevent costly exploitation. This research aims to analyze security vulnerabilities on the website using OWASP ZAP (Zed Attack Proxy) as a penetration testing tool, and provide mitigation recommendations to improve system security. The method used is penetration testing by utilizing OWASP ZAP to identify security vulnerabilities on the website. The research stages include testing, analyzing the results, and preparing mitigation recommendations based on the findings of vulnerabilities such as A01, A03, and A04. The results showed that OWASP ZAP successfully identified various vulnerabilities, including XSS, Clickjacking, and Man-in-the-Middle. Recommended mitigation measures include configuring security headers and protecting sensitive data to prevent exploitation. OWASP ZAP proved to be effective in detecting and evaluating security vulnerabilities on websites. In addition, the tool also raises awareness of the importance of strong security policies. With the implementation of mitigation recommendations, website owners can better protect sensitive data, maintain user trust, and stay safe in an increasingly complex digital environment.

Copyrights © 2025






Journal Info

Abbrev

journix

Publisher

Subject

Computer Science & IT

Description

Journix: Journal of Informatics and Computing is a peer-reviewed scientific journal published by Ran Edu Center, dedicated to disseminating high-quality research and studies in the fields of informatics and computing. This journal serves as a platform for researchers, practitioners, and academicians ...