Dinamik
Vol 31 No 2 (2026)

Analisis Keamanan Sistem Informasi menggunakan Metode Penetration Testing berbasis Metasploit Framework

Purwadi Purwadi (Universitas budi Luhur)
Herriyawan Herriyawan (Universitas Budi Luhur)
Arief Wibowo (Universitas Budi Luhur)



Article Info

Publish Date
01 Jul 2026

Abstract

Abstract Information system security has become a crucial aspect as organizations' reliance on digital technology increases. Increasingly complex cyber threats demand systematic and ongoing security evaluations. This study aims to analyze the security level of information systems by applying a penetration testing method based on the Metasploit Framework. The research methodology refers to the Penetration Testing Execution Standard (PTES), which includes pre-engagement, intelligence gathering, vulnerability analysis, exploitation, post-exploitation, and reporting stages. The test results showed that of the 10 vulnerabilities identified, four were categorized as high risk, three as medium risk, and three as low risk. The exploitation phase demonstrated a 70% success rate, allowing researchers to gain initial access to the target system. In the post-exploitation phase, the access gained allowed attackers to access system files, read configurations, and escalate limited privileges. These findings confirm that implementing regular penetration testing can help organizations improve their information system security posture and minimize the risk of data leaks and service disruptions.

Copyrights © 2026






Journal Info

Abbrev

fti1

Publisher

Subject

Computer Science & IT

Description

The Jurnal DINAMIK aims to: Promote a comprehensive approach to informatics engineering and management incorporating viewpoints of different applications (computer graphics, computer networks and security, computer vision, computational intelligence, databases, big data, IT project management, and ...