DEVELOPMENT OF VULNERABILITY IDENTIFICATION AND EXPLOIT KIT FOR WEB APPLICATION

DEVELOPMENT OF VULNERABILITY IDENTIFICATION AND EXPLOIT KIT FOR WEB APPLICATIONIn this period, data and information became most important things to protect in organization. Unfortunately, based on SANS 2017, not only small scale but also large scale organization suffered from incident. That phenomen...

Full description

Saved in:
Bibliographic Details
Main Author: Dwisatya Widigdha, Aryya
Format: Theses
Language:Indonesia
Online Access:https://digilib.itb.ac.id/gdl/view/36021
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Institut Teknologi Bandung
Language: Indonesia
Description
Summary:DEVELOPMENT OF VULNERABILITY IDENTIFICATION AND EXPLOIT KIT FOR WEB APPLICATIONIn this period, data and information became most important things to protect in organization. Unfortunately, based on SANS 2017, not only small scale but also large scale organization suffered from incident. That phenomenon happened because of increasing vulnerability which were not handled carefully. In other hand, exposed vulnerability increase risk to asset such as data and information so it need to be fixed as soon as possible. As security engineer team in organization, doing vulnerability identification took some times and some time produced many false positive. This paper proposed solution to decrease false positive in vulnerability identification result and fasten its process by integrating vulnerability identification tool as exploit kit. In the end, our solution can reduce vulnerability identification by 50% for two targets and increase vulnerability identification certainty by using manual analysis and proof of concept feature.