Web App Penetration Testing Method: A Review


연구 분야: Strategies



학회: 2024 International Conference on Information Technology Systems and Innovation (ICITSI)


초록

The increasing reliance on web applications in modern businesses has brought both opportunities and heightened risks of cyberattacks. Penetration testing (pen-testing) has emerged as a proactive action to find vulnerabilities, thereby safeguarding web applications from exploitation. This review examines various pen-testing methodologies, pen-testing tools, and vulnerabilities. It particularly highlights the integration of machine learning in pen-testing, a promising development that enhances testing efficiency. The use of benchmarking tools and the evaluation of standard environments are also discussed. Seven key research questions guide the analysis, including methodologies, algorithms, tools, environments, and tested vulnerabilities.


Author Profile
Lit Malem Ginting

School of Electrical Engineering and Informatics Institut Teknologi Bandung Bandung Indonesia

Andorra
Author Profile
Suhardi

School of Electrical Engineering and Informatics Institut Teknologi Bandung Bandung Indonesia

Andorra
Author Profile
Kusprasapta Mutijarsa

School of Electrical Engineering and Informatics Institut Teknologi Bandung Bandung Indonesia

Andorra

📄 논문 정보

발행 연도 2024년
인용수 119
출판 국가 Andorra
사이트 IEEE
좋아요 수 0

연관 논문 목록 (251건)