WEB APPLICATION SECURITY ASSESSMENT USING OWASP TOP 10 AND BURP SUITE
DOI:
https://doi.org/10.64751/Abstract
Web applications have become an essential part of modern digital services, but their increasing complexity also introduces significant security risks. Applications communicate with databases, APIs, authentication systems, and external services, creating multiple areas that require security evaluation. Vulnerabilities in these components can result in unauthorized access, data exposure, account compromise, or disruption of services. Therefore, systematic web application security assessment is essential for identifying and addressing potential weaknesses. The proposed Web Application Security Assessment Using OWASP Top 10 and Burp Suite project provides a structured methodology for evaluating web application security within an authorized testing environment. The system uses the OWASP Top 10 as a reference framework for organizing common categories of web application security risks. Burp Suite can be used as an assessment tool for inspecting application traffic, analyzing requests and responses, and supporting authorized security testing. The assessment process examines security-related aspects such as authentication, authorization, input validation, session management, security configuration, sensitivedata protection, and other relevant application behaviors. Findings are documented and mapped to appropriate OWASP Top 10 categories. This structured approach makes it easier for developers and security analysts to understand the nature and potential impact of identified security issues. The proposed platform can organize assessment findings according to severity and priority. A centralized dashboard can display the number of findings, OWASP categories, severity distribution, affected application components, and assessment progress. The system can also maintain assessment history and generate structured reports containing findings, evidence, risk levels, and recommended remediation actions. The primary objective of the project is to improve the effectiveness and consistency of web application security assessment. By combining the OWASP Top 10 framework with Burp Suite-assisted testing, structured analysis, risk classification, visualization, and reporting, the system can help organizations identify security weaknesses and improve application security.
Downloads
Published
Issue
Section
License

This work is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International License.







