Intelligent platform for automating vulnerability detection in web applications

Bibliographic Details
Main Author: Moreira, D.
Publication Date: 2025
Other Authors: Seara, J. P., Pavia, J. P., Serrão, C.
Format: Article
Language: eng
Source: Repositórios Científicos de Acesso Aberto de Portugal (RCAAP)
Download full: http://hdl.handle.net/10071/32895
Summary: In a world increasingly dependent on technology and in an era where connectivity is omnipresent, Web applications have become an essential part of our everyday life. The evolution of these applications, combined with the exponential increase in the number of users, has brought with it not only convenience but also significant challenges in terms of security. Ensuring the security of Web applications and their data is increasingly a priority for companies, although many companies lack the know-how, time, and money to do so. This research project studied and developed a system with the aim of automating the process of detecting vulnerabilities in Web applications by exploiting the benefits of the interoperability of the two forms of automation of the tool selected to carry out this analysis. The developed solution is low-cost and requires very little user intervention. In order to validate and evaluate the developed platform, experiments were carried out on applications with different types of vulnerabilities known in advance and on real applications. It is essential to guarantee the security of Web applications, and the developed system proved capable of automating the detection of vulnerability risks and returning the results in a relatively simple way for the user.
id RCAP_1d8f7420ce6e4e89bfef329943641d71
oai_identifier_str oai:repositorio.iscte-iul.pt:10071/32895
network_acronym_str RCAP
network_name_str Repositórios Científicos de Acesso Aberto de Portugal (RCAAP)
repository_id_str https://opendoar.ac.uk/repository/7160
spelling Intelligent platform for automating vulnerability detection in web applicationsWeb applicationVulnerabilitySecurityScannerAutomationDetectionIn a world increasingly dependent on technology and in an era where connectivity is omnipresent, Web applications have become an essential part of our everyday life. The evolution of these applications, combined with the exponential increase in the number of users, has brought with it not only convenience but also significant challenges in terms of security. Ensuring the security of Web applications and their data is increasingly a priority for companies, although many companies lack the know-how, time, and money to do so. This research project studied and developed a system with the aim of automating the process of detecting vulnerabilities in Web applications by exploiting the benefits of the interoperability of the two forms of automation of the tool selected to carry out this analysis. The developed solution is low-cost and requires very little user intervention. In order to validate and evaluate the developed platform, experiments were carried out on applications with different types of vulnerabilities known in advance and on real applications. It is essential to guarantee the security of Web applications, and the developed system proved capable of automating the detection of vulnerability risks and returning the results in a relatively simple way for the user.MDPI2025-01-06T12:55:04Z2025-01-01T00:00:00Z20252025-01-06T12:55:50Zinfo:eu-repo/semantics/publishedVersioninfo:eu-repo/semantics/articleapplication/pdfhttp://hdl.handle.net/10071/32895eng2079-929210.3390/electronics14010079Moreira, D.Seara, J. P.Pavia, J. P.Serrão, C.info:eu-repo/semantics/openAccessreponame:Repositórios Científicos de Acesso Aberto de Portugal (RCAAP)instname:FCCN, serviços digitais da FCT – Fundação para a Ciência e a Tecnologiainstacron:RCAAP2025-01-12T01:16:59Zoai:repositorio.iscte-iul.pt:10071/32895Portal AgregadorONGhttps://www.rcaap.pt/oai/openaireinfo@rcaap.ptopendoar:https://opendoar.ac.uk/repository/71602025-05-28T19:38:53.356786Repositórios Científicos de Acesso Aberto de Portugal (RCAAP) - FCCN, serviços digitais da FCT – Fundação para a Ciência e a Tecnologiafalse
dc.title.none.fl_str_mv Intelligent platform for automating vulnerability detection in web applications
title Intelligent platform for automating vulnerability detection in web applications
spellingShingle Intelligent platform for automating vulnerability detection in web applications
Moreira, D.
Web application
Vulnerability
Security
Scanner
Automation
Detection
title_short Intelligent platform for automating vulnerability detection in web applications
title_full Intelligent platform for automating vulnerability detection in web applications
title_fullStr Intelligent platform for automating vulnerability detection in web applications
title_full_unstemmed Intelligent platform for automating vulnerability detection in web applications
title_sort Intelligent platform for automating vulnerability detection in web applications
author Moreira, D.
author_facet Moreira, D.
Seara, J. P.
Pavia, J. P.
Serrão, C.
author_role author
author2 Seara, J. P.
Pavia, J. P.
Serrão, C.
author2_role author
author
author
dc.contributor.author.fl_str_mv Moreira, D.
Seara, J. P.
Pavia, J. P.
Serrão, C.
dc.subject.por.fl_str_mv Web application
Vulnerability
Security
Scanner
Automation
Detection
topic Web application
Vulnerability
Security
Scanner
Automation
Detection
description In a world increasingly dependent on technology and in an era where connectivity is omnipresent, Web applications have become an essential part of our everyday life. The evolution of these applications, combined with the exponential increase in the number of users, has brought with it not only convenience but also significant challenges in terms of security. Ensuring the security of Web applications and their data is increasingly a priority for companies, although many companies lack the know-how, time, and money to do so. This research project studied and developed a system with the aim of automating the process of detecting vulnerabilities in Web applications by exploiting the benefits of the interoperability of the two forms of automation of the tool selected to carry out this analysis. The developed solution is low-cost and requires very little user intervention. In order to validate and evaluate the developed platform, experiments were carried out on applications with different types of vulnerabilities known in advance and on real applications. It is essential to guarantee the security of Web applications, and the developed system proved capable of automating the detection of vulnerability risks and returning the results in a relatively simple way for the user.
publishDate 2025
dc.date.none.fl_str_mv 2025-01-06T12:55:04Z
2025-01-01T00:00:00Z
2025
2025-01-06T12:55:50Z
dc.type.status.fl_str_mv info:eu-repo/semantics/publishedVersion
dc.type.driver.fl_str_mv info:eu-repo/semantics/article
format article
status_str publishedVersion
dc.identifier.uri.fl_str_mv http://hdl.handle.net/10071/32895
url http://hdl.handle.net/10071/32895
dc.language.iso.fl_str_mv eng
language eng
dc.relation.none.fl_str_mv 2079-9292
10.3390/electronics14010079
dc.rights.driver.fl_str_mv info:eu-repo/semantics/openAccess
eu_rights_str_mv openAccess
dc.format.none.fl_str_mv application/pdf
dc.publisher.none.fl_str_mv MDPI
publisher.none.fl_str_mv MDPI
dc.source.none.fl_str_mv reponame:Repositórios Científicos de Acesso Aberto de Portugal (RCAAP)
instname:FCCN, serviços digitais da FCT – Fundação para a Ciência e a Tecnologia
instacron:RCAAP
instname_str FCCN, serviços digitais da FCT – Fundação para a Ciência e a Tecnologia
instacron_str RCAAP
institution RCAAP
reponame_str Repositórios Científicos de Acesso Aberto de Portugal (RCAAP)
collection Repositórios Científicos de Acesso Aberto de Portugal (RCAAP)
repository.name.fl_str_mv Repositórios Científicos de Acesso Aberto de Portugal (RCAAP) - FCCN, serviços digitais da FCT – Fundação para a Ciência e a Tecnologia
repository.mail.fl_str_mv info@rcaap.pt
_version_ 1833598229846949888