Loading [a11y]/accessibility-menu.js
Evaluating Compliance of of the XYZ Ministry’s Android Messaging Applications with OWASP MASVS: A Comprehensive Case Study | IEEE Conference Publication | IEEE Xplore

Evaluating Compliance of of the XYZ Ministry’s Android Messaging Applications with OWASP MASVS: A Comprehensive Case Study


Abstract:

Safeguarding the security of government communication tools is crucial for protecting sensitive information. This study presents a thorough case analysis that assesses th...Show More

Abstract:

Safeguarding the security of government communication tools is crucial for protecting sensitive information. This study presents a thorough case analysis that assesses the compliance of the XYZ Ministry's Android messaging app with the OWASP Mobile Application Security Verification Standard (MASVS). OWASP MASVS offers a robust framework for evaluating the security stance of mobile applications, encompassing vital areas such as data protection, authentication, and network security. The study applied the OWASP MASVS standard to the XYZ Ministry's messaging application using automated and manual testing approaches to gauge adherence to security standards. Specifically, the research concentrated on MASVS-NETWORK-2 security controls. The primary goal of this research was to uncover vulnerabilities, evaluate compliance, and put forth actionable recommendations for enhancing application security. The findings indicated that the tested application failed to meet two of the five test sections in MASVS-NETWORK-2. The recommended course of action is to modify the code in Network Security Settings to accept certificates from the system exclusively.
Date of Conference: 22-23 November 2024
Date Added to IEEE Xplore: 04 February 2025
ISBN Information:
Conference Location: Jember, Indonesia

Contact IEEE to Subscribe

References

References is not available for this document.