Vulnerability Assessment of Some Key Nigeria Government Websites

Ministries, Department and Agencies (MDA's) websites are useful constituents for information dissemination and citizen centric services. Various vulnerabilities exist in this websites. In this paper, vulnerabilities found in MDA's website are categorized and analyzed based on Open Web Appl...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:International journal of digital information and wireless communications 2017-07, Vol.7 (3), p.143-152
Hauptverfasser: Idris, Ismaila, Majigi, Mohammad Umar, Abdulhamid, Shafii, Olalere, Morufu, Rambo, Saidu Isah
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Ministries, Department and Agencies (MDA's) websites are useful constituents for information dissemination and citizen centric services. Various vulnerabilities exist in this websites. In this paper, vulnerabilities found in MDA's website are categorized and analyzed based on Open Web Application Security Project (OWASP) Top 10 to understand impact of these vulnerabilities on web security of MDA's websites. In this study we have analyzed security pertaining to 10 MDA's websites. We found vulnerabilities in all websites with different degree of security risk. To achieve the results we have cross tabulated vulnerabilities found in these websites with their security risk level. As a result the research work found that vulnerability A4-insecure direct object reference with 49% is the main contributor of web security risk in MDA's websites. Apart from this it is clearly evident that majority of the vulnerabilities found in MDA's websites belongs to informational risk group with 45.82% but still few high impacting vulnerabilities exists and needs to be handle without delay. Thus, the paper contributed towards the understanding of web security risk in MDA's websites.
ISSN:2225-658X
2225-658X
DOI:10.17781/P002309