The Experts below are selected from a list of 33 Experts worldwide ranked by ideXlab platform

Babubhai Chavda Pratik - One of the best experts on this subject based on the ideXlab platform.

  • Online Food Directory Listing Script
    ScholarWorks@GVSU, 2019
    Co-Authors: Babubhai Chavda Pratik
    Abstract:

    This project is based on getting every food business of the city or area online on one platform. Online food Directory system is a web-based script which helps every food or restaurant business in the city to put their information online on our platform so that it can get an online identity and people searching for The Places to eat can find almost all the information such as name, address, menu items and price of the items at one place. I have Developed this system in php and designed it in the HTML/CSS and JavaScript, containing backend, dynamic front end aligned with the MySQL database. I have created a MySQL database and hosted it into XAMPP local server. This database is directly connected to the backend and the front end of the system, so whatever the data which will be entered through the dashboard will be stored in the MySQL database. The project is developed mainly in three phases, the initial phase was the database design and Development, then I have developed the admin panel from which site owner can do the data entry and manage the information. Everything can be managed through a master administrative panel which work as a back-End of the website The last phase was to design the front end and get all the data dynamically from the database to require place. For that purpose, I have used php and fraction of its frameworks functionalities to get the desired features. The front-end side of the website basically consist of 4 main pages. Home page, Restaurant Listing page, individual restaurant’s information page and the contact us page. Any business owner can contact the website to put their business on this website via contact form given in the contact us page

Muharman Lubis - One of the best experts on this subject based on the ideXlab platform.

  • vulnerability assessment and penetration testing vapt framework case study of government s website
    International Journal on Advanced Science Engineering and Information Technology, 2020
    Co-Authors: Ahmad Almaarif, Muharman Lubis
    Abstract:

    Information security often neglected by individual or employee or even by the enterprise, with there is no proper strategy to raise awareness, promote consistency and maintain performance regarding protect sensitive, confidential, and critical data. One of the common techniques used is a vulnerability assessment and penetration testing (VAPT) to assure the security strategy has been implemented into the computer system by analyzing both its strength and weakness. SQL plays an essential role in the Relation Database Management System (RDBMS) and its relationship to the existence of a website and its flexible operation because of its simplicity and integrity. To anticipate these types of threats or other Internet attacks, a goal-oriented penetration test that has a framework is recommended to identify specific types of vulnerabilities that lead to business concessions and to avoid the risks that adversely affect the enterprise Thus. This study conducts VAPT to uncover the possibility of threats and evaluate the potential impact to be reported to the system owner through a proper engagement framework that allows systematic measurement. Government websites have been identified for this purpose of the research to show the current trend that occurred in cyber communities, especially in Indonesia. This study has found various vulnerabilities lies in the Directory Listing, full path disclosure, PHP info disclosure, folder webserver disclosure, and other potential threats, which present 2 (two) critical, 6 (six) medium, and 2 (two) low level of risk.

Lubis Muharman - One of the best experts on this subject based on the ideXlab platform.

  • Vulnerability Assessment and Penetration Testing (VAPT) Framework: Case Study of Government’s Website
    'Insight Society', 2020
    Co-Authors: Almaarif Ahmad, Lubis Muharman
    Abstract:

    Information security often neglected by individual or employee or even by the enterprise, with there is no proper strategy to raise awareness, promote consistency and maintain performance regarding protect sensitive, confidential, and critical data. One of the common techniques used is a vulnerability assessment and penetration testing (VAPT) to assure the security strategy has been implemented into the computer system by analyzing both its strength and weakness. SQL plays an essential role in the Relation Database Management System (RDBMS) and its relationship to the existence of a website and its flexible operation because of its simplicity and integrity. To anticipate these types of threats or other Internet attacks, a goal-oriented penetration test that has a framework is recommended to identify specific types of vulnerabilities that lead to business concessions and to avoid the risks that adversely affect the enterprise Thus. This study conducts VAPT to uncover the possibility of threats and evaluate the potential impact to be reported to the system owner through a proper engagement framework that allows systematic measurement. Government websites have been identified for this purpose of the research to show the current trend that occurred in cyber communities, especially in Indonesia. This study has found various vulnerabilities lies in the Directory Listing, full path disclosure, PHP info disclosure, folder webserver disclosure, and other potential threats, which present 2 (two) critical, 6 (six) medium, and 2 (two) low level of risk

Castillo Fiallos, Jessica Nataly - One of the best experts on this subject based on the ideXlab platform.

  • Propuesta de implementación de un modelo para la reducción de riesgos de seguridad informática en servicios web de la ESPOCH
    Escuela Superior Politécnica de Chimborazo, 2016
    Co-Authors: Castillo Fiallos, Jessica Nataly
    Abstract:

    Se implementó un Modelo para la Reducción de Riesgos de Seguridad Informática en Servicios Web de la Escuela Superior Politécnica de Chimborazo (ESPOCH). Para el desarrollo del Modelo se analizó la problemática y falencia interna, la vulnerabilidad que presentan actualmente, debido a defectos del software, al recurso humano de la Dirección de Tecnologías de Información y Comunicación (DTIC). Se compararon los valores del indicador número de vulnerabilidades y se aplicó la estadística inferencial para demostrar la hipótesis. La herramienta que se utilizó fue VEGA, la cual permitió escanear las vulnerabilidades web. Para lo que se identificaron los activos relevantes, amenazas, salvaguardas, se escanearon las Uniform Resource Locator (URLs) de los Servicios Web de la ESPOCH, impactos y se midió el nivel de riesgo. Se compararon los resultados obtenidos en base al número de vulnerabilidades, determinando que la implementación del modelo para la reducción de riesgos ayudo a reducir las vulnerabilidades encontradas, mitigando las mismas que se encontraron en el análisis preliminar de la investigación, las vulnerabilidades fueron: altas 416, medias 175 y bajas 1475, tres de las vulnerabilidades más frecuentes fueron: Structured Query Language (SQL) Injection, Hypertext Preprocessor (PHP) Error Detected y Directory Listing Detected. Resultado de la aplicación del modelo bajo la Plataforma VEGA fue de un 84% de reducción de vulnerabilidades. Se recomienda aplicar el Modelo propuesto cada trimestral en los diferentes Servicios Web.The research Proposal Implementation of a Model for reduction of Computer Security Risks in Web Services ESPOCH held in Riobamba city. It helps to reduce security risks in Web Services of Escuela Superior Politécnica de Chimborazo. The scientific method was used because it uses steps to obtain knowledge and valid and reliable results. It was considered a problem and internal flaw the vulnerability that currently present due to software defects, human resource DTIC (Department of Information Technology and Communication). It did not meet the appropriate processes when modifying web services. Due to it did not keep constant and consistent training with the roles these factors have. The indicator values were compared number of vulnerabilities and inferential statistics was applied to test the hypothesis. The tool used was VEGA, which allowed scan web vulnerabilities For what the relevant assets, threats, safeguards were identified. URLs (Uniform Resource Locator) of the Web Services ESPOCH, impacts were scanned and the level of risk was measured. The results based on the number of vulnerabilities were compared, determining that the implementation of the model for risk reduction helped reduce vulnerabilities found. Also, it mitigated the same as found in the preliminary analysis of the research. The vulnerabilities were high 416, medium 175 and low 1475, three of the most common vulnerabilities were: SQL (Structured Query Language) Injection, PHP (Hypertext Preprocessor) Error Detected and Directory Listing Detected. It is recommended to apply Improvement Plan proposed to minimize the Risks

Valcourt, Trevor J - One of the best experts on this subject based on the ideXlab platform.

  • Atlas: A Pathfinding Application Toolkit
    Digital WPI, 2018
    Co-Authors: Valcourt, Trevor J
    Abstract:

    Atlas is a web-based pathfinding framework designed for finding the shortest path between two locations. Using a component based approach built upon Facebook’s flux architecture, this framework will be useful in many applications where pathfinding is needed, such as university campuses, airports, museums or hospitals. The framework provides modeling tools to turn digital maps into a routable representation of the location to assist users in navigating unfamiliar places. A toolkit allows developers to select features they would like to include, such as operation hours, handicapped routes, or a Directory Listing. This application is deployable on any web compatible device, such as a desktop, smartphone, tablet, or kiosk