OWASP Top 10 Vulnerability Exploitation
B Pratheek
, K Sai Bharath , T Bharghav Goud , P Kiran Kumar , Dr.G Aparna
In the past decade, web applications have become the dominant force for delivering services online. As these applications become ingrained in core business functions and handle increasingly complex tasks, their design and development processes grow more intricate. This rise in popularity and complexity makes web applications prime targets for malicious actors on the internet.
To combat this threat, Web Application Vulnerability Assessment and Penetration Testing (VAPT) has emerged as a critical security testing process. VAPT aims to identify and address potential security weaknesses within web applications. This process involves a comprehensive evaluation of the application's security posture, pinpointing vulnerabilities, and attempting to exploit them to determine their severity. Web applications can be susceptible to various attacks, including session hijacking, cross-site scripting (XSS), SQL injection, cross-site request forgery (CSRF), buffer overflows, and security misconfigurations.
The Open Web Application Security Project (OWASP) Top 10 provides a well-known list of these common vulnerabilities. A VAPT project typically encompasses three key phases: vulnerability assessment, penetration testing, and reporting. Vulnerability assessment involves using automated tools and manual techniques to identify potential weaknesses. Penetration testing simulates real-world attacks to exploit these vulnerabilities and assess their impact. Finally, a comprehensive report details the findings, including identified vulnerabilities, their severity levels, and recommended remediation steps. By implementing VAPT, organizations can proactively identify and address security weaknesses before attackers can exploit them. This proactive approach safeguards sensitive data and fosters a more secure online environment for users.
"OWASP Top 10 Vulnerability Exploitation", JNRID - JOURNAL OF NOVEL RESEARCH AND INNOVATIVE DEVELOPMENT (www.JNRID.org), ISSN:2984-8687, Vol.2, Issue 5, page no.a160-a164, May-2024, Available :https://tijer.org/JNRID/papers/JNRID2405017.pdf
Volume 2
Issue 5,
May-2024
Pages : a160-a164
Paper Reg. ID: JNRID_700297
Published Paper Id: JNRID2405017
Downloads: 000426
Research Area: Science and Technology
Country: Hyderabad, Telangana, India
ISSN: 2984-8687 | IMPACT FACTOR: 9.57 Calculated By Google Scholar | ESTD YEAR: 2023
An International Scholarly Open Access Journal, Peer-Reviewed, Refereed Journal Impact Factor 9.57 Calculate by Google Scholar and Semantic Scholar | AI-Powered Research Tool, Multidisciplinary, Monthly, Multilanguage Journal Indexing in All Major Database & Metadata, Citation Generator
Publisher: JNRID (IJ Publication) Janvi Wave