• DocumentCode
    3691915
  • Title

    Vulnerability assessment of web applications - a testing approach

  • Author

    Robert Vibhandik;Arijit Kumar Bose

  • Author_Institution
    ABB Corporate Research Center, India
  • fYear
    2015
  • fDate
    9/1/2015 12:00:00 AM
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    Cyber security is becoming an important aspect in every industry like in banking sector, power and automation sectors. Servers are critical assets in these industries where business critical sensitive data is stored. These servers often incorporates web servers in them through which any business data and operations are performed remotely. Hence, it is obvious that for a reliable operation, security of web servers is very imperative. This paper provides a new testing approach for vulnerability assessment of web applications by means of analyzing and using a combined set of tools to address a wide range of security issues. We demonstrate the vulnerability assessment tests of a web application by using combination of W3AF and Nikto tools. It shows how with a combination of tools, one can increase the vulnerability testing coverages for web applications, considering the OWASP Top 10 [1] based threat modelling of web applications.
  • Keywords
    "Decision support systems","Security","Web servers","Testing","Industries","Business"
  • Publisher
    ieee
  • Conference_Titel
    e-Technologies and Networks for Development (ICeND),2015 Forth International Conference on
  • Type

    conf

  • DOI
    10.1109/ICeND.2015.7328531
  • Filename
    7328531