The ILIAS distance learning platform of the NIJ, in accordance with the requirements of international security standards OWASP

28. 10. 2019

The National Institute of Justice obtained the certificate for conducting security tests in accordance with the requirements of international standards OWASP - international non-profit organization dedicated to the security of web applications, and the test set included OWASP TOP10 2017.

In order to detect possible breaches of the ILIAS distance learning platform of the National Institute of Justice - a platform on which are also conducted the admission electronic exams - performance and security (penetration) tests of the respective system were performed.

The main objective of the tests consisted in evaluating the ILIAS Platform's ability to guarantee the confidentiality and integrity of the information processed, stored and transmitted by simulating a cyber attack that could be executed by an entity with malicious intent, as well as to ensure a good functioning of the platform.

As a result of the tests carried out, the evaluator concluded that the ILIAS distance learning platform of the National Institute of Justice can be used and operated in its processes of activity and of providing services to the interested parties, not identifying vulnerabilities that would present risks of compromising the security of its exploitation by the potential perpetrators.

The security tests were carried out between August 1-26, 2019, thanks to the support of the United Nations Development Program.