Enjelina, Wulan Febri (2026) Implementasi Prepared Statement Pada Form Input Untuk Mencegah Sql Injection Pada Aplikasi Web Peminjaman Fasilitas Kampus. Other thesis, Politeknik Negeri Bengkalis.
1. Skripsi-6404221123-Abstract.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.
Download (184kB)
2. Skripsi-6404221123-Bab I Pendahuluan.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.
Download (199kB)
3. Skripsi-6404221123-Daftar Pustaka.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.
Download (208kB)
4. Skripsi-6404221123-Full Text.pdf - Submitted Version
Restricted to Registered users only
Available under License Creative Commons Attribution Non-commercial Share Alike.
Download (1MB) | Request a copy
Abstract
Web applications for managing campus facility loans continue to grow due to the need for fast and integrated services. However, most facility loan web applications are built without implementing adequate security mechanisms on input forms, making them vulnerable to SQL Injection attacks. This vulnerability can lead to loan data being manipulated and leaked. To prevent SQL Injection, this research currently focuses on building a campus facility loan web application from scratch, by implementing comprehensive statements across all input forms, not just specific modules. This study aims to develop a web application for borrowing campus facilities and test the effectiveness of implementing prepared statements to prevent SQL injection attacks. The goal of this study is to create a web application for borrowing campus facilities that is not only operational but also offers a high level of security. The method used is software engineering, which includes requirements analysis, system design, implementation, and testing. System testing was conducted through functional testing (black-box testing) to ensure proper system operation, security testing using SQLMap to assess resilience to SQL injection attacks, and User Acceptance Testing (UAT) to assess user acceptance of the application. The results show that increased revenue leads to increased consumption, although not proportionally. Security testing proves that implementing prepared statements is effective in preventing SQL injection attacks, resulting in the application being well-received by users.
| Item Type: | Thesis (Other) |
|---|---|
| Uncontrolled Keywords: | prepared statements, SQL injection, web application security, campus facility management. |
| Subjects: | 000 – UMUM, ILMU KOMPUTER, DAN INFORMASI > 005 – Pemrograman, Perangkat Lunak > 005.8 Keamanan dan Perlindungan Sistem |
| Divisions: | Jurusan Teknik Informatika > Sarjana Terapan (D-IV) Keamanan Sistem Informasi > SKRIPSI |
| Depositing User: | D-IV Keamanan Sistem Informasi Kelas B |
| Date Deposited: | 28 Jul 2026 01:43 |
| Last Modified: | 28 Jul 2026 01:43 |
| URI: | https://eprints.polbeng.ac.id/id/eprint/5393 |
