Evaluasi Kerentanan Website Polbeng Menggunakan Metode Penetration Testing Execution Standard (PTES)

Ardiansyah, Novan Rusdy (2026) Evaluasi Kerentanan Website Polbeng Menggunakan Metode Penetration Testing Execution Standard (PTES). Diploma thesis, Politeknik Negeri Bengkalis.

[thumbnail of Abstract] Text (Abstract)
1.TA-6404211076-Abstract1.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (228kB)
[thumbnail of Bab 1 Pendahuluan] Text (Bab 1 Pendahuluan)
2.TA-6404211076-Bab 1 Pendahuluan1.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (145kB)
[thumbnail of Daftar Pustaka] Text (Daftar Pustaka)
3.TA-6404211076-Daftar Pustaka1.pdf - Submitted Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (157kB)
[thumbnail of Full Text] Text (Full Text)
4.TA-6404211076-Full Text1.pdf - Submitted Version
Restricted to Registered users only
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download (3MB) | Request a copy

Abstract

Website security plays a critical role in maintaining the integrity and availability of information services. This research aims to analyze the security level of the polbeng.ac.id website using several penetration testing techniques, including vulnerability scannning, brute-force testing, and Cross-Site Scripting (XSS) evaluation. The tools used in this study include WPScann, Hydra, XSStrike, and XSSer. The brute-force testing conducted on the WordPress login page did not succeed, as the server’s security system was able to detect and limit repeated login attempts. XSS testing using XSStrike identified reflected input in the search parameter, but the payloads could not be executed, indicating that the website is not vulnerable to XSS through that vector. Meanwhile, XSSer was only able to execute payloads on a simulated URL and not on the actual website, meaning that no real vulnerability could be confirmed. Overall, the results show that the website has implemented adequate security mechanisms to mitigate brute-force and XSS attacks, although continuous monitoring and regular system updates remain essential. This research is expected to serve as a reference for improving website security and supporting ongoing maintenance efforts within the system.

Item Type: Thesis (Diploma)
Uncontrolled Keywords: Website Security, Penetration Testing, PTES, WPScann, Hydra, XSS, XSStrike, XSSer.
Subjects: 000 – UMUM, ILMU KOMPUTER, DAN INFORMASI > 001 – Pengetahuan Umum
Divisions: Jurusan Teknik Informatika > Sarjana Terapan (D-IV) Keamanan Sistem Informasi > SKRIPSI
Depositing User: D-IV Keamanan Sistem Informasi Kelas B
Date Deposited: 19 Aug 2026 09:06
Last Modified: 19 Aug 2026 09:06
URI: https://eprints.polbeng.ac.id/id/eprint/6567

Actions (login required)

View Item
View Item