Analisa Dan Perbaikan Keamanan Pada Website SDN 9 Bantan

Febriansyah, Muhammad Zuhri (2025) Analisa Dan Perbaikan Keamanan Pada Website SDN 9 Bantan. Other thesis, Politeknik Negeri Bengkalis.

[thumbnail of Abstract] Text (Abstract)
1. SK-6404211030-Abstract.pdf - Submitted Version
Available under License Creative Commons Attribution Share Alike.

Download (11kB)
[thumbnail of Bab I Pendahuluan] Text (Bab I Pendahuluan)
2. SK-6404211030-Bab I Pendahuluan.pdf - Submitted Version
Available under License Creative Commons Attribution Share Alike.

Download (80kB)
[thumbnail of Daftrar Pustaka] Text (Daftrar Pustaka)
3. SK-6404211030-Daftar Pustaka.pdf - Submitted Version
Available under License Creative Commons Attribution Share Alike.

Download (75kB)
[thumbnail of Full Text] Text (Full Text)
4. SK-6404211030-Full Text.pdf - Submitted Version
Restricted to Registered users only
Available under License Creative Commons Attribution Share Alike.

Download (2MB) | Request a copy

Abstract

Website security is currently one of the main focuses, because websites contain sensitive and valuable information and data. This research aims to determine the level of website security and provide improvements to security gaps on the SDN 9 Bantan website using the Vulnerability Assessment method and using the OWASP ZAP and Mozilla Observatory tools. From the scan results, several gaps were found on the SDN 9 Bantan website such as Content Security Policy (CSP) Header Not Set which allows XSS attacks to occur, Missing Anti-clickjacking Header, absence of anti-clickjacking header opens clickjacking gaps, absence of Content Security Policy (CSP) increases the risk of XSS attacks, insecure
redirection can be exploited for phishing, absence of Strict Transport Security (HSTS) makes the site vulnerable to Man-in-the-Middle (MitM) attacks, and without X-Frame-Options increases the risk of clickjacking attacks. To overcome this security gap, a Vulnerability Assessment was carried out to determine the risk
level of the SDN 9 Bantan website security gap which is at the medium level. After the repair process, several security gaps were successfully removed in the Mozilla Observatory. However, gaps such as Content Security Policy (CSP) Header Not Set is still detected in OWASP ZAP.

Item Type: Thesis (Other)
Uncontrolled Keywords: Analysis, Website, Repair, Security, Vulnerability Assessment
Subjects: 000 – UMUM, ILMU KOMPUTER, DAN INFORMASI > 005 – Pemrograman, Perangkat Lunak > 005.8 Keamanan dan Perlindungan Sistem
Divisions: Jurusan Teknik Informatika > Sarjana Terapan (D-IV) Keamanan Sistem Informasi > SKRIPSI
Depositing User: D-IV Keamanan Sistem Informasi Kelas A
Date Deposited: 16 Aug 2025 08:58
Last Modified: 16 Aug 2025 08:58
URI: https://eprints.polbeng.ac.id/id/eprint/1705

Actions (login required)

View Item
View Item