Web Security: Crafting Fortified Online Platforms

Year : 2024 | Volume :11 | Issue : 01 | Page : 27-31
By

    Riya Premarajan Vechiot

  1. Yogita Vijay Biradar

  1. Research Scholar, MCA, Thakur Institute of Management Studies, Career Development & Research (TIMSCDR), Mumbai, Maharashtra, India
  2. Research Scholar, MCA, Thakur Institute of Management Studies, Career Development & Research (TIMSCDR), Mumbai, Maharashtra, India

Abstract

With incidents of cyber-attacks on websites and breaches of sensitive data on the rise, adopting secure coding or development practices to build strong web applications is long overdue. These practices encompass a variety of strategies, including but not limited to, input validation to prevent SQL injection and XSS attacks, secure session management, encryption of sensitive data, and the implementation of robust authentication and authorization mechanisms. This approach not only fortifies applications against known web vulnerabilities but also ingrains a culture of security within the development process. Drawing from a wealth of knowledge shared by industry professionals, this research work underscores the importance of incorporating these secure development practices from the outset. Furthermore, adopting a security-first mindset encourages the ongoing evaluation and updating of security measures to combat evolving cyber threats. This research work compiles insights from various sources by industry experts. Applying these practices at the development stage would result in applications that are not susceptible to known web application vulnerabilities.

Keywords: Web-security, web applications, best practices, vulnerability prevention, security-first development

[This article belongs to Journal of Web Engineering & Technology(jowet)]

How to cite this article: Riya Premarajan Vechiot, Yogita Vijay Biradar.Web Security: Crafting Fortified Online Platforms.Journal of Web Engineering & Technology.2024; 11(01):27-31.
How to cite this URL: Riya Premarajan Vechiot, Yogita Vijay Biradar , Web Security: Crafting Fortified Online Platforms jowet 2024 {cited 2024 Apr 03};11:27-31. Available from: https://journals.stmjournals.com/jowet/article=2024/view=138477


References

  1. Alabdulrazzaq Haneen. Securing Web Applications: Web Application Flow Whitelisting to Improve Security. PhD Dissertation. Auburn, AL: Auburn University;
  2. Baars Nanne. (2018 May 22). Web Application Security: 10 Things Developers Need to Know. [Online]. www.youtube.com. youtu.be/qjrkV4RjgIU?si=ZIPfOCqWmNOqIj pr. Accessed 7 Oct. 2023.
  3. Beer E. (2022). Infosys leak: IT firm left AWS key exposed on PyPi since Feb 2021. [online] The Stack. Available from: https://www.thestack.technology/infosys-leak-aws-key-exposed-on-pypi/
  4. Marin Bratanov. (2019 Nov 06). First 5 Tips for Building Secure (Web) Apps. [Online]. Telerik Blogs. www.telerik. com/blogs/first-5-tips-for-building-secure-web-apps. Accessed 30 Oct. 2023.
  5. OWASP Cheat Sheet Series. Secrets Management Cheat Sheets. [Online]. cheatsheet series.owasp.org/cheatsheets/Secrets_Manage ment_Cheat_Sheet.html. Accessed 22 Oct. 2023.
  6. What Is a Web Application Firewall (WAF)? [Online]. www.f5.com/glossary/web-application- firewall-waf. Accessed 27 Oct. 2023.
  7. Haider A. (2023 Nov 16). Top 21 .NET Security Best Practices for Web Applications. [Online]. Clickysoft. Clickysoft. Available from: https://clickysoft.com/dot-net-security-best-practices/ ‌
  8. (2011). Can I fully prevent SQL injection by PDO Prepared statement without bind_param? [Online]. Stack Overflow. Available from: https://stackoverflow.com/questions/7915952/can-i-fully-prevent-sql-injection-by-pdo-prepared-statement-without-bind-param ‌
  9. Gayatri R. (2020 May 23). Stored Cross-Site Scripting(Non-Privileged User to Anyone). [Online]. Medium. Available from: https://gaya3-r.medium.com/stored-cross-site-scripting-non-privileged-user-to-anyone-1754e0a053d6 ‌

Regular Issue Subscription Review Article
Volume 11
Issue 01
Received February 29, 2024
Accepted March 30, 2024
Published April 3, 2024