Papers1 provider Β· 1 record
August 3, 2026Β· SENTINEL
article

Implementasi dan Analisa Token CSRF dalam Meningkatkan Keamanan Website Modern

Authors:Rifky KurniawanAlvine AdityaElfina Maulid

Abstract

The rapid development of digital technology has increased the use of web applications, making security a crucial aspect of their development. One often overlooked threat is Cross-Site Request Forgery (CSRF), which enables attackers to execute commands on behalf of users without their knowledge. This study aims to implement and evaluate CSRF token mechanisms in the CodeIgniter 4 framework as a preventive measure. The testing method used is penetration testing with various attack scenarios, both on applications without CSRF protection and with protection using the Secret Validation Token and Random Validation Token. The results show that the implementation of CSRF tokens significantly improves web application security. Compared to the Secret Validation Token, the Random Validation Token proved more effective in minimizing the success rate of attacks. Without CSRF protection, applications are highly vulnerable to unauthorized command execution through valid authentication sessions. In conclusion, consistent implementation of CSRF tokens, especially with token regeneration after validation, is an essential step to strengthening modern web application security. Keywords β€” web security, CSRF, codeigniter 4, penetration testing, CSRF token

Community

0 comments
Use Connect Wallet in the navigation

No discussion yet

Be the first to share a question or observation.