Search for collections on University of Merdeka Malang Repository

Penerapan Metode OWASP ZAP Dalam Menganalisis Keamanan Sistem Informasi Akademik Kampus (SIAKAD)

Ramadhan, M. Fery Afrizal (2024) Penerapan Metode OWASP ZAP Dalam Menganalisis Keamanan Sistem Informasi Akademik Kampus (SIAKAD). Undergraduate thesis, Fakultas Teknologi Informasi Universitas Merdeka Malang.

[thumbnail of HALAMAN AWAL.pdf] Text
HALAMAN AWAL.pdf

Download (993kB)
[thumbnail of BAB I.pdf] Text
BAB I.pdf

Download (126kB)
[thumbnail of BAB II.pdf] Text
BAB II.pdf
Restricted to Repository staff only

Download (152kB)
[thumbnail of BAB III.pdf] Text
BAB III.pdf
Restricted to Repository staff only

Download (145kB)
[thumbnail of BAB IV.pdf] Text
BAB IV.pdf
Restricted to Repository staff only

Download (414kB)
[thumbnail of BAB V.pdf] Text
BAB V.pdf
Restricted to Repository staff only

Download (44kB)
[thumbnail of DAFTAR PUSTAKA.pdf] Text
DAFTAR PUSTAKA.pdf

Download (112kB)
[thumbnail of HASIL CEK PLAGIASI.pdf] Text
HASIL CEK PLAGIASI.pdf

Download (255kB)

Abstract

Internet usage in Indonesia continues to increase, with the number of users reaching 221,563,479 in 2024. This development drives advancements in information technology, which is crucial for students to improve time efficiency and academic outcomes. Web-based academic information systems in campuses, such as those used by Universitas Merdeka Malang, are essential tools for managing student data and academic activities. However, these websites are also vulnerable to various cyber threats such as SQL injection, XSS, brute force, and DDoS attacks.
This research employs OWASP ZAP, a recognized tool for web security analysis, to identify security vulnerabilities in Universitas Merdeka Malang's academic information system. The testing results revealed 17 vulnerabilities with the
following distribution: 17.65% (3) High Risk Level, 17.65% (3) Medium Risk Level, 29.41% (5) Low Risk Level, and 35.29% (6) Informational Risk Level. Recommendations are provided, particularly for vulnerabilities in the OWASP A02 (Cryptographic Failures), A03 (Injection), A04 (Insecure Design), and A05 (Security Misconfiguration) categories. It is hoped that these findings can assist the IT staff of Universitas Merdeka Malang in enhancing the security and user experience of their academic information system website

Item Type: Thesis (Undergraduate)
Additional Information: M. Fery Afrizal Ramadhan NIM : 20083000054
Uncontrolled Keywords: OWASP, Penetration test, Threat Analysis, ZAP
Subjects: Q Science > QA Mathematics > QA75 Electronic computers. Computer science
Depositing User: Gendhis Dwi Aprilia
Date Deposited: 11 Mar 2025 07:15
Last Modified: 11 Mar 2025 07:15
URI: https://eprints.unmer.ac.id/id/eprint/4582

Actions (login required)

View Item View Item