Design and Implementation of a Secure Web-Based Messaging Application Using Bcrypt Authentication
DOI:
https://doi.org/10.67378/z7jdae59Keywords:
Secure Messaging Application, Authentication, Bcrypt, Web Security, Access Control, Database Security.Abstract
The increasing reliance on digital communication has heightened concerns regarding the security and privacy of sensitive information exchanged through messaging platforms. Conventional communication systems remain vulnerable to unauthorized access, message interception, data breaches, and weak authentication mechanisms, thereby necessitating the development of more secure communication solutions. This study presents the design and implementation of a secure web-based messaging application that integrates user authentication, secure message management, and database security within a unified framework. The system was developed using the V-Model software development methodology and implemented using Laravel, PHP, MySQL, HTML, JavaScript, and JQuery. To enhance credential security, the Bcrypt hashing algorithm was employed for password protection and user authentication. Functional testing was conducted to evaluate key system operations, including user registration, login authentication, message transmission, message retrieval, and database management. The results indicate that the developed application successfully achieved all intended functionalities, providing reliable user authentication, efficient message management, and secure access control. Furthermore, the system demonstrated satisfactory performance in terms of reliability, usability, and data integrity. The study contributes to the development of secure communication systems by integrating authentication and database security mechanisms within a web-based messaging environment. It is concluded that the proposed system provides a practical and scalable framework for confidential communication among authorized users. Future enhancements may incorporate advanced end-to-end encryption protocols and multi-factor authentication to further strengthen system security.
References
1. Marlinspike, M. & Perrin, T. (2016). "The Double Ratchet Algorithm." Retrieved from Signal Blog.
2. Ali, A., & Sagheer, A. (2017). Design of secure chatting application with end to end encryption for android platform. Iraqi Journal for Computers and Informatics, 43(1), 22-27. DOI: https://doi.org/10.25195/ijci.v43i1.73
3. Sabah, N., Kadhim, J. M., & Dhannoon, B. N. (2017). Developing an end-to-end secure chat application. Int. J. Comput. Sci. Netw. Secur, 17(11), 108-113.
4. Botha, J., Vant, W. C., & Leenen, L. (2019). A comparison of chat applications in terms of security and privacy. In Proc. 18th Eur. Conf. Cyber Warfare Secur (p. 55).
5. Kadhim, M. F., Al-Janabi, A., Alhilali, A. H., & Ali, N. S. (2022). Security approach for instant messaging applications: viber as a case study. Indonesian Journal of Electrical Engineering and Computer Science, 26(2), 1109-1115. DOI: https://doi.org/10.11591/ijeecs.v26.i2.pp1109-1115
6. Davies, G. T., Faller, S., Gellert, K., Handirk, T., Hesse, J., Horváth, M., & Jager, T. (2023, August). Security analysis of the whatsapp end-to-end encrypted backup protocol. In Annual International Cryptology Conference (pp. 330-361). DOI: https://doi.org/10.1007/978-3-031-38551-3_11
7. Tariq,U., Ahmed, I., Bashir, A.K. and Shaukat, K. (2023). A Critical Cybersecurity Analysis and Future Research Directions for the Internet of Things: A Comprehensive Review, Sensors, vol. 23, no. 8, p. 4117. https://doi.org/10.3390/s23084117. DOI: https://doi.org/10.3390/s23084117
8. Saharan, M., Kumar, N., Kumar, V., & Juneja, A. (2024). Secure End-to-End Chat Application: A Comprehensive Guide. Review of Computer Engineering Studies, 11(3). DOI: https://doi.org/10.18280/rces.110302
9. Parkar, V. V., Shinde, P. P., Gadade, S. C., & Shinde, P. M. (2016). Utilization of Laravel framework for development of web based recruitment tool. Iosr Journal of Computer Engineering (Iosr-Jce), 36-41.
10. Dan Arias. (2021). HASHING - Hashing in Action: Understanding bcrypt. Retrieved from: https://auth0.com/blog/hashing-in-action-understanding-bcrypt/
Downloads
Published
License
Copyright (c) 2026 Enenche Ngbede Michael, Aminu Muhammad Adamu, Collins Ifeanyi Osuji (Author)

This work is licensed under a Creative Commons Attribution 4.0 International License.
Copyright remains with the author(s). This work is licensed under a Creative Commons Attribution 4.0 International License (CC BY 4.0), which permits use, sharing, adaptation, distribution, and reproduction in any medium or format, provided appropriate credit is given to the original author(s) and source.