Analisis Keamanan Aplikasi Mobile Sistem Informasi Panen Sawit Menggunakan Mobile Security Framework

Nugraha, Fazri (2026) Analisis Keamanan Aplikasi Mobile Sistem Informasi Panen Sawit Menggunakan Mobile Security Framework. Other thesis, Politeknik Negeri Bengkalis.

[thumbnail of Abstract] Text (Abstract)
1. SK-6404221108-Abstrack.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (158kB)
[thumbnail of Bab I Pendahuluan] Text (Bab I Pendahuluan)
2. SK-6404221108-Bab I Pendahuluan.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (169kB)
[thumbnail of Daftar Pustaka] Text (Daftar Pustaka)
3. SK-6404221108-Daftar Pustaka.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (366kB)
[thumbnail of Full Text] Text (Full Text)
4. SK-6404221108-Full Text.pdf - Submitted Version
Restricted to Registered users only
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (4MB) | Request a copy

Abstract

The security of mobile applications has become a critical aspect due to the increasing use of Android-based applications that manage operational data. The Palm Harvest Information System is a mobile application developed to support the recording and management of palm oil harvest data; however, a comprehensive security evaluation had not been conducted prior to its deployment in an operational environment. This study aims to analyze the security of the application using the Mobile Security Framework (MobSF) through static and dynamic analysis approaches. Static analysis was used to identify structural vulnerabilities without executing the application, while dynamic analysis was conducted to observe runtime behavior and interactions with the backend API. The initial static analysis indicated that the application was categorized as Medium Risk with an App Security Score of 43/100. After five stages of security improvements validated through six scanning iterations, the security score increased to 67/100, placing the application in the Low Risk category. Dynamic analysis showed that the client-side application was relatively secure, as evidenced by encrypted HTTPS communication and normal runtime behavior. However, weaknesses were identified on the backend side, where several API endpoints were accessible without authentication and access validation, potentially leading to Broken Access Control and Insecure Direct Object Reference (IDOR) vulnerabilities. These findings indicate that although static improvements enhance structural security, strengthening backend security remains essential to ensure comprehensive application security.

Item Type: Thesis (Other)
Uncontrolled Keywords: Mobile Application Security, Mobile Security Framework (MobSF), static analysis, dynamic analysis, API backend.
Subjects: 000 – UMUM, ILMU KOMPUTER, DAN INFORMASI > 005 – Pemrograman, Perangkat Lunak > 005.8 Keamanan dan Perlindungan Sistem
Divisions: Jurusan Teknik Informatika > Sarjana Terapan (D-IV) Keamanan Sistem Informasi > SKRIPSI
Depositing User: D-IV Keamanan Sistem Informasi Kelas A
Date Deposited: 24 Jun 2026 01:10
Last Modified: 24 Jun 2026 01:10
URI: https://eprints.polbeng.ac.id/id/eprint/5149

Actions (login required)

View Item
View Item