<?xml version="1.0" encoding="UTF-8" ?>
<modsCollection xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.loc.gov/mods/v3" xmlns:slims="http://slims.web.id" xsi:schemaLocation="http://www.loc.gov/mods/v3 http://www.loc.gov/standards/mods/v3/mods-3-3.xsd">
<mods version="3.3" id="10178">
 <titleInfo>
  <title>SQL Injection and Cross Site Scripting Prevention Using OWASP WEB Application Firewall</title>
 </titleInfo>
 <name type="Personal Name" authority="">
  <namePart>Robinson</namePart>
  <role>
   <roleTerm type="text">Primary Author</roleTerm>
  </role>
 </name>
 <name type="Personal Name" authority="">
  <namePart>1455301068</namePart>
  <role>
   <roleTerm type="text">Additional Author</roleTerm>
  </role>
 </name>
 <typeOfResource manuscript="no" collection="yes">mixed material</typeOfResource>
 <genre authority="marcgt">bibliography</genre>
 <originInfo>
  <place>
   <placeTerm type="text">Pekanbaru</placeTerm>
   <publisher>Perpustakaan Politeknik Caltex Riau</publisher>
   <dateIssued>2018</dateIssued>
  </place>
 </originInfo>
 <language>
  <languageTerm type="code">id</languageTerm>
  <languageTerm type="text">Indonesia</languageTerm>
 </language>
 <physicalDescription>
  <form authority="gmd">Text</form>
  <extent>x, 80hlm.; Ilus.: 21cm</extent>
 </physicalDescription>
 <note>Web application or website are widely used to provide functionality that allows companies to build and maintain relationships with their customers. The information stored by web applications is often confidential and, if obtained by malicious attackers, its exposure could result in susbtantial losses for both consumers and companies. SQL Injection and Cross Site Scripting are attacks that aiming web application database vulnerabilities. Its can allow malicious attackers to manipulate web server database that can cause various data lost, information thieving, and incosistent of data. Therefore, this research propose the Open Web Application Security Project (OWASP) ModSecurity Core Rule et which can help administrator securing the web servers. OWASP operate by blocking IP Address which try to breaking the security rule, monitoring network traffic and preventing suspicious network requesting from outside.All request by the client will be filter by the OWASP ModSecurity first before send it into web application and getting response. For the result, OWASP ModSecurity successfully securing Web Application from SQL Injection (manual ), SQL Injection using SQLmap exploitation tool and also Cross Site Scripting using XSSer exploitation tools, but in otherside, ModSecurity failed to detect and securing web application from Cross Site Scripting Stored type which test by using BeEF Exploitation tool. Using OWASP ModSecurity didn’t affect the web application performance. Key Word: Web Application, SQL Injection, Cros Site Scripting, Open Web Application Security Project. &#13;
</note>
 <note type="statement of responsibility"></note>
 <subject authority="">
  <topic>PA Teknologi Informatika</topic>
 </subject>
 <classification>PA TI</classification>
 <identifier type="isbn"></identifier>
 <location>
  <physicalLocation>Politeknik Caltex Riau Politeknik Caltex Riau</physicalLocation>
  <shelfLocator>PA TI</shelfLocator>
  <holdingSimple>
   <copyInformation>
    <numerationAndChronology type="1">PA1455301068</numerationAndChronology>
    <sublocation>Perpustakaan PCR (R)</sublocation>
    <shelfLocator>PA TI</shelfLocator>
   </copyInformation>
  </holdingSimple>
 </location>
 <slims:digitals/>
 <recordInfo>
  <recordIdentifier>10178</recordIdentifier>
  <recordCreationDate encoding="w3cdtf">2019-05-24 16:09:14</recordCreationDate>
  <recordChangeDate encoding="w3cdtf">2019-05-24 16:09:40</recordChangeDate>
  <recordOrigin>machine generated</recordOrigin>
 </recordInfo>
</mods>
</modsCollection>