Research, analysis and testing of cybersecurity technology in a Web applications in case of unauthorized intrusions

Research, analysis and testing of cybersecurity technology in a Web applications in case of unauthorized intrusions

Authors

DOI:

https://doi.org/10.55956/

Keywords:

Web applications, cyber security, vulnerabilities, unauthorized access, security testing, OWASP, DevSecOps.

Abstract

Abstract. This article examines common security threats to web applications and presents a practical approach to assessing resilience against unauthorized access. The methodology follows a structured workflow including passive reconnaissance (OSINT), service inventory, resource enumeration, baseline configuration auditing, and manual verification of key observations through HTTP(S) traffic analysis. The results highlight that web application security cannot be achieved by a single control; instead, it requires a layered set of measures such as secure configuration, robust access control, secure development practices, and continuous assessment. The paper also emphasizes the value of evidence-based artifacts (scan outputs and reporting materials) to ensure repeatability and to evaluate the effectiveness of remediation actions.

References

1. Web Application Security: Exploitation and Countermeasures for Modern Web Applications. O’Reilly Media, 2020.

2. Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities. No Starch Press, 2021.

3. Ловушка для багов. Полевое руководство по веб-хакингу. Издательство «Питер», 2020.

4. Synopsys. What is the OWASP Top 10? Detailed understanding and context of the OWASP Top 10.

URL: https://www.synopsys.com/glossary/what-is-owasp-top-10.html

Downloads

Published online

2026-07-01

Issue

Section

Technical sciences
Loading...