@thesis{thesis, author={Priambodo Priambodo Antonius}, title ={Pengujian Celah Keamanan Aplikasi Berbasis Web mengunakan Tehnik Penetration Testing}, year={2024}, url={http://eprints.ukmc.ac.id/11977/}, abstract={Penetration testing Execution Standard (PTES) and OWASP Web Security Testing Guide (WSTG) are two structured frameworks in Penetration testing and web application security. This research uses WSTG methodology with testing scheme to identify security vulnerabilities in specified domains. The first step is to determine the scope of testing, followed by the implementation of scanning functions such as SQL Injection and subdomain scanning. Weak cryptographic checks are not possible because the site is encrypted. This research provides an understanding of code implementation and its dependencies as well as the need for permissions and rules related to security and scanning. However, it is important to improve the flexibility and security of the code, perform input validation and sanitization, and perform further verification before production use. This research contributes to basic safety testing, but further testing is needed.} }