ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED

Web-based platform security is an important aspect that developers must consider. However, numerous developer still exhibit insufficient attention to enhancing the security level of their websites, thereby increasing the likelihood of these platforms becoming targets of cyber attacks. To address th...

Full description

Saved in:
Bibliographic Details
Main Authors: Aulia Rahman, Indra Indra, Nuralamsah Zulkarnaim, Muhammad Mukhram, Agung Rizaldi
Format: Article
Language:Indonesian
Published: Politeknik Caltex Riau 2025-06-01
Series:Jurnal Komputer Terapan
Subjects:
Online Access:https://jurnal.pcr.ac.id/index.php/jkt/article/view/6430
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1850129695641698304
author Aulia Rahman
Indra Indra
Nuralamsah Zulkarnaim
Muhammad Mukhram
Agung Rizaldi
author_facet Aulia Rahman
Indra Indra
Nuralamsah Zulkarnaim
Muhammad Mukhram
Agung Rizaldi
author_sort Aulia Rahman
collection DOAJ
description Web-based platform security is an important aspect that developers must consider. However, numerous developer still exhibit insufficient attention to enhancing the security level of their websites, thereby increasing the likelihood of these platforms becoming targets of cyber attacks. To address this challenge, the utilization of tools such as Nuclei Vulnerability Scnner and Owasp Zap presents an effective solution for the rapid detection of potential vulnerabilities  in web-based platforms. This research involved testing a locally developed dummy web application , with scanning processes conducted using the Nuclei Vulnerability Scanner and Owasp Zap tools. The findings reveal that Nuclei Vulnerability Scanner proves effective in identifying vulnerabilities at the network layer, particularly in relation to SSL/TLS protocols and proxy configurations. In contrast, Owasp Zap is more focused on detecting vulnerabilities  within the web application layer, especially concerning security header configurations  that may be exploited through browser-based attacks such as XSS and clickjacking. Mitigation of the identified  vulnerabilities resulted in a substantial reduction in their severity, with a 90% decrease in Nuclei and an 80% reduction in Owasp Zap. Both tools demonstrated high accuracy and efficient scanning times, establishing them as effective solutions for enhancing security across both network and application layers. This study recommends the integration of these tools into a comprehensive cyber security strategy  to safeguard system integrity and availability while addressing the continuously  evolving threat landscape, in alignment with the layered security principle advocated in contemporary literature.
format Article
id doaj-art-2a35122c2b2c4806b7cb96e13635cac3
institution OA Journals
issn 2443-4159
2460-5255
language Indonesian
publishDate 2025-06-01
publisher Politeknik Caltex Riau
record_format Article
series Jurnal Komputer Terapan
spelling doaj-art-2a35122c2b2c4806b7cb96e13635cac32025-08-20T02:32:53ZindPoliteknik Caltex RiauJurnal Komputer Terapan2443-41592460-52552025-06-0111110.35143/jkt.v11i1.6430ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED Aulia Rahman0Indra Indra1Nuralamsah Zulkarnaim2Muhammad Mukhram3Agung Rizaldi4Universitas Sulawesi BaratUniversitas Sulawesi BaratUniversitas Sulawesi BaratUniversitas Sulawesi BaratUniversitas Sulawesi Barat Web-based platform security is an important aspect that developers must consider. However, numerous developer still exhibit insufficient attention to enhancing the security level of their websites, thereby increasing the likelihood of these platforms becoming targets of cyber attacks. To address this challenge, the utilization of tools such as Nuclei Vulnerability Scnner and Owasp Zap presents an effective solution for the rapid detection of potential vulnerabilities  in web-based platforms. This research involved testing a locally developed dummy web application , with scanning processes conducted using the Nuclei Vulnerability Scanner and Owasp Zap tools. The findings reveal that Nuclei Vulnerability Scanner proves effective in identifying vulnerabilities at the network layer, particularly in relation to SSL/TLS protocols and proxy configurations. In contrast, Owasp Zap is more focused on detecting vulnerabilities  within the web application layer, especially concerning security header configurations  that may be exploited through browser-based attacks such as XSS and clickjacking. Mitigation of the identified  vulnerabilities resulted in a substantial reduction in their severity, with a 90% decrease in Nuclei and an 80% reduction in Owasp Zap. Both tools demonstrated high accuracy and efficient scanning times, establishing them as effective solutions for enhancing security across both network and application layers. This study recommends the integration of these tools into a comprehensive cyber security strategy  to safeguard system integrity and availability while addressing the continuously  evolving threat landscape, in alignment with the layered security principle advocated in contemporary literature. https://jurnal.pcr.ac.id/index.php/jkt/article/view/6430CybersecurityNucleiOwasp ZapVulnerability ScannerWebsite Security
spellingShingle Aulia Rahman
Indra Indra
Nuralamsah Zulkarnaim
Muhammad Mukhram
Agung Rizaldi
ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED
Jurnal Komputer Terapan
Cybersecurity
Nuclei
Owasp Zap
Vulnerability Scanner
Website Security
title ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED
title_full ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED
title_fullStr ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED
title_full_unstemmed ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED
title_short ANALISIS IMPLEMENTASI NUCKLEI VULNERABILITY DAN OWASP-ZAP SCANNER UNTUK DETEKSI KERENTANAN KEAMANAN (SECURE SYSTEM) PADA PLATFORM WEB BASED
title_sort analisis implementasi nucklei vulnerability dan owasp zap scanner untuk deteksi kerentanan keamanan secure system pada platform web based
topic Cybersecurity
Nuclei
Owasp Zap
Vulnerability Scanner
Website Security
url https://jurnal.pcr.ac.id/index.php/jkt/article/view/6430
work_keys_str_mv AT auliarahman analisisimplementasinuckleivulnerabilitydanowaspzapscanneruntukdeteksikerentanankeamanansecuresystempadaplatformwebbased
AT indraindra analisisimplementasinuckleivulnerabilitydanowaspzapscanneruntukdeteksikerentanankeamanansecuresystempadaplatformwebbased
AT nuralamsahzulkarnaim analisisimplementasinuckleivulnerabilitydanowaspzapscanneruntukdeteksikerentanankeamanansecuresystempadaplatformwebbased
AT muhammadmukhram analisisimplementasinuckleivulnerabilitydanowaspzapscanneruntukdeteksikerentanankeamanansecuresystempadaplatformwebbased
AT agungrizaldi analisisimplementasinuckleivulnerabilitydanowaspzapscanneruntukdeteksikerentanankeamanansecuresystempadaplatformwebbased