Developing a secure web application using OWASP guidelines.

Developing a secure Web application is very difficult task. Therefore developers need a guideline to help them to develop a secure Web application. Guideline can be used as a checklist for developer to achieve minimum standard of secure Web application. This study evaluates how good is OWASP guideli...

Full description

Saved in:
Bibliographic Details
Main Authors: Sedek, Khairul Anwar, Osman, Norlis, Osman, Mohd Nizam, Jusoff, Kamaruzaman
Format: Article
Language:English
Published: Canadian Center of Science and Education 2009
Online Access:http://psasir.upm.edu.my/id/eprint/13979/
http://www.ccsenet.org/journal/index.php/cis/issue/view/190
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.upm.eprints.13979
record_format eprints
spelling my.upm.eprints.139792014-06-11T06:05:46Z http://psasir.upm.edu.my/id/eprint/13979/ Developing a secure web application using OWASP guidelines. Sedek, Khairul Anwar Osman, Norlis Osman, Mohd Nizam Jusoff, Kamaruzaman Developing a secure Web application is very difficult task. Therefore developers need a guideline to help them to develop a secure Web application. Guideline can be used as a checklist for developer to achieve minimum standard of secure Web application. This study evaluates how good is OWASP guideline in helping developer to build secure Web application. The developed system is then tested using code auditing and penetration testing to identify the achievement of the system security for the application. After applying the testing techniques from Open Source Security Testing Methodology (OSSTMM) on the Top Ten Critical vulnerabilities as defined by OWASP, a standard measure score are calculated. The score is used to decide on the level of security of the developed web application. A high percentage score would indicate that the guideline helps in building a secured web application. Hence, the result proved that OWASP guideline is effective in ensuring the trustworthiness of the system and can be used as referral by other web developer especially in developing applications for a university. Canadian Center of Science and Education 2009 Article PeerReviewed Sedek, Khairul Anwar and Osman, Norlis and Osman, Mohd Nizam and Jusoff, Kamaruzaman (2009) Developing a secure web application using OWASP guidelines. Computer and Information Science, 2 (4). pp. 137-143. ISSN 1913-8989; ESSN: 1913-8997 http://www.ccsenet.org/journal/index.php/cis/issue/view/190 English
institution Universiti Putra Malaysia
building UPM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Putra Malaysia
content_source UPM Institutional Repository
url_provider http://psasir.upm.edu.my/
language English
description Developing a secure Web application is very difficult task. Therefore developers need a guideline to help them to develop a secure Web application. Guideline can be used as a checklist for developer to achieve minimum standard of secure Web application. This study evaluates how good is OWASP guideline in helping developer to build secure Web application. The developed system is then tested using code auditing and penetration testing to identify the achievement of the system security for the application. After applying the testing techniques from Open Source Security Testing Methodology (OSSTMM) on the Top Ten Critical vulnerabilities as defined by OWASP, a standard measure score are calculated. The score is used to decide on the level of security of the developed web application. A high percentage score would indicate that the guideline helps in building a secured web application. Hence, the result proved that OWASP guideline is effective in ensuring the trustworthiness of the system and can be used as referral by other web developer especially in developing applications for a university.
format Article
author Sedek, Khairul Anwar
Osman, Norlis
Osman, Mohd Nizam
Jusoff, Kamaruzaman
spellingShingle Sedek, Khairul Anwar
Osman, Norlis
Osman, Mohd Nizam
Jusoff, Kamaruzaman
Developing a secure web application using OWASP guidelines.
author_facet Sedek, Khairul Anwar
Osman, Norlis
Osman, Mohd Nizam
Jusoff, Kamaruzaman
author_sort Sedek, Khairul Anwar
title Developing a secure web application using OWASP guidelines.
title_short Developing a secure web application using OWASP guidelines.
title_full Developing a secure web application using OWASP guidelines.
title_fullStr Developing a secure web application using OWASP guidelines.
title_full_unstemmed Developing a secure web application using OWASP guidelines.
title_sort developing a secure web application using owasp guidelines.
publisher Canadian Center of Science and Education
publishDate 2009
url http://psasir.upm.edu.my/id/eprint/13979/
http://www.ccsenet.org/journal/index.php/cis/issue/view/190
_version_ 1643825494500573184
score 13.211869