Security Testing Sistem Penerimaan Mahasiswa Baru Universitas XYZ Menggunakan Open Source Security Testing Methodology Manual (OSSTMM)
DOI:
https://doi.org/10.24014/coreit.v2i1.2354Abstract
Teknologi aplikasi web berkembang pesat sehingga digunakan untuk berbagai tujuan seperti keperluan akademik pada suatu universitas. Namun teknologi ini tidak bisa lepas dari tingginya ancaman kemanan yang tinggi sehingga bisa merugikan pihak-pihak tertentu. Pada dunia keamanan informasi dikenal security testing yakni suatu proses yang menguji seberapa tinggi tingkat kemanan suatu aplikasi yakni aplikasi web sehingga dapat diketahui nilai dan tingkat keamanan dan rekomendasi yang berguna. Salahsatu metode security testing yang efektif adalah Open Source Security Testing Methodology Manual (OSSTMM). OSSTMM adalah metode tertentu untuk melakukan security testing dan menyajikan hasil berupa RAV dan STAR. Aplikasi web yang diteliti adalah Sistem Penerimaan Mahasiswa Baru Universitas XYZ sehingga didapatkan hasil dan rekomendasi yang berguna dalam pengembangan lebih lanjut dimasa yang akan datang. Hasil penilaian yang didapatkan yakni dengan nilai Actual Security 74,5877.References
Cenzic. 2014. Application Vulnerability
Trends Report
Erdogan, Gencer. 2009, Security Testing of
Web Based Applications. Norwegia:
University of Science and Technology.
Guiomar Corral, Xavier Cadenas, Agustín
Zaballos, M.Teresa Cadenas. "A
Distributed Vulnerability Detection System
for WLANs", Proceedings of the First
International Conference on Wireless
Internet. 2005.
Herzog, Pete. 2010, Open Source Security
Testing Methodology Manual 3.0. United
States of America: ISECOM.
Prandini dan Ramili. 2010, "Towards a
practical and effective security testing
methodology", Computers
and Communications (ISCC). 2010.
Guiomar Corral, Xavier Cadenas, Agustín
Zaballos, M.Teresa Cadenas. "A
Distributed Vulnerability Detection System
for WLANs", Proceedings of the First
International Conference on Wireless
Internet. 2005.
Downloads
Published
Issue
Section
License
The Authors submitting a manuscript do so on the understanding that if accepted for publication, copyright of the article shall be assigned to CoreIT journal and published by Informatics Engineering Department Universitas Islam Negeri Sultan Syarif Kasim Riau as publisher of the journal.
Authors who publish with this journal agree to the following terms:
Authors automatically transfer the copyright to the journal and grant the journal right of first publication with the work simultaneously licensed under a Creative Commons Attribution-ShareAlike (CC BY SA) that allows others to share the work with an acknowledgement of the work's authorship and initial publication in this journal.
Authors are able to enter into separate permission for non-exclusive distribution of the journal's published version of the work (e.g., post it to an institutional repository or publish it in a book), with an acknowledgement of its initial publication in this journal.
Authors are permitted and encouraged to post their work online (e.g., in institutional repositories or on their website) prior to and during the submission process, as it can lead to productive exchanges, as well as earlier and greater citation of published work (See The Effect of Open Access).