Research, analysis and testing of cybersecurity technology in a Web applications in case of unauthorized intrusions
DOI:
https://doi.org/10.55956/Keywords:
Web applications, cyber security, vulnerabilities, unauthorized access, security testing, OWASP, DevSecOps.Abstract
Abstract. This article examines common security threats to web applications and presents a practical approach to assessing resilience against unauthorized access. The methodology follows a structured workflow including passive reconnaissance (OSINT), service inventory, resource enumeration, baseline configuration auditing, and manual verification of key observations through HTTP(S) traffic analysis. The results highlight that web application security cannot be achieved by a single control; instead, it requires a layered set of measures such as secure configuration, robust access control, secure development practices, and continuous assessment. The paper also emphasizes the value of evidence-based artifacts (scan outputs and reporting materials) to ensure repeatability and to evaluate the effectiveness of remediation actions.
References
1. Web Application Security: Exploitation and Countermeasures for Modern Web Applications. O’Reilly Media, 2020.
2. Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities. No Starch Press, 2021.
3. Ловушка для багов. Полевое руководство по веб-хакингу. Издательство «Питер», 2020.
4. Synopsys. What is the OWASP Top 10? Detailed understanding and context of the OWASP Top 10.
URL: https://www.synopsys.com/glossary/what-is-owasp-top-10.html
Downloads
Published online
Issue
Section
License
Copyright (c) 2026 Жазира Тасжурекова, С.А. Агабек, М.А. Ахметжанов, Ж.Б. Садирмекова (Автор)

This work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License.
