Man In The Middle jenis serangan di mana penyerang secara diam-diam menyusup dan memantau, memodifikasi komunikasi antara dua pihak tanpa sepengetahuan mereka. dan dapat mengubah alamat mac dari perangkat yang diserang. Pada penelitian ini menggunakan dataset dari COMNETS Smarthome yang terdiri dua jenis kelas, yaitu benign dan mitm untuk mendeteksi serangan man in the middle attack arp poisoni…
Keamanan siber merupakan kombinasi dari proses, perilaku manusia, dan sistem yang melindungi sumber daya elektronik dari ancaman serangan siber yang memengaruhi kerahasiaan, integritas, dan ketersediaan informasi. Beberapa jenis serangan siber yang sering terjadi adalah Denial of Service, Malware, dan Botnet. Untuk melindungi sistem dari ancaman ini, administrator jaringan menggunakan berbagai …
Blockchain is a distributed database in which information sent by users is periodically verified and grouped into blocks, thus forming a chain. CITA (Cryptape Inter-enterprise Trust Automation) is a high-performance blockchain system for enterprises with 6 microservices (RPC, Auth, Consensus, Chain, Executor, Network) that exchange information via Message Bus. The process of data retrieval, dat…
Penelitian ini bertujuan untuk mengembangkan model klasifikasi yang akurat untuk mengidentifikasi dan mengkategorikan lalu lintas anonim pada jaringan Tor. Dataset yang digunakan adalah CIC-Darknet2020. Teknik Synthetic Minority Over-sampling Technique (SMOTE) diterapkan untuk menangani ketidakseimbangan kelas, sementara Mutual Information Classifier (MIC) digunakan untuk seleksi fitur. Model K…
This research focuses on the implementation of a tarpit firewall on Router as protection against port scanning attacks. Port scanning attacks, used by attackers to identify active services on a network, are becoming increasingly sophisticated and difficult to detect. Conventional approaches, such as stateful firewalls and intrusion detection systems, have limitations in quickly and effectively …
This research aims to address complex cybersecurity challenges, namely Advanced Persistent Threat (APT), by developing a Threat Intelligence Knowledge Graph. The study proposes a Natural Language Processing based approach to extract entities and relationships from APT reports, using a pre trained Deepseek model. This model was fine-tuned specifically for Named Entity Recognition (NER) and Relat…
Building a secure socket tunneling protocol method to access port services on the MikroTikrouterboard. Limiting ports that are easy to access remotely on the MikroTikrouterboard. Knowing the steps of the secure socket tunneling protocol Virtual Private Network (VPN) method is one way to protect the exchange of important information data over the internet network, especially by using the Secure …
DDoS attack is one of the security threats frequently experienced on the internet, which utilizes multiple sources to send excessive traffic to a server, causing system failure, making DDoS a significant threat. To detect attacks, this research seeks to find parameters that play a significant role in the DDoS dataset. Therefore, feature selection is applied, namely the Random Forest Classifier …
With the increasing use of vehicles and the large human population in urban areas, the level of traffic jams is high. Every motorist certainly does not want to be stuck in a traffic jam for too long. The focus of this research is to find the best alternative route using the Dijkstra algorithm based on the processing results of the YOLOv3 method for detecting vehicle objects and Fuzzy Mamdani fo…
Sistem keamanan pada kunci pintu rumah yang ada saat ini kebanyakan merupakan sistem keamanan manual berupa kunci atau gembok konvensional. Penelitian bertujuan menciptakan sistem keamanan pada kunci rumah dengan memanfaatkan teknologi dan biaya yang rendah. Penelitian ini menggunakan Arduino sebagai mikrokontroler penggerak solenoid, dan Esp32-cam untuk menscan QR Code. untuk Pemrograman ardui…
Di dalam perkembangan bisnis, web service sungguh sangat dibutuhkan dalam integrasi sistem karena tidak melihat platform, arsitektur maupun bahasa pemrograman yang digunakan oleh sumber berbeda. Keamanan web service ada didalam sepuluh kerentanan teratas dalam keamanan pplication Programming Interface (API) Web Service yang kurang terlindungi menurut The Open Web Application Security Project (O…
In modern times, growing on the Internet in terms of technology and its use can bring many positive things to human life. Surely it cannot be denied that Internet technology has had a negative impact on people as well. Web service security tapped into the top ten vulnerability in the Application Programming Interface (API) web service less protected by OWASP (The Open Web Application Security P…
DDoS TCP Flood attack is a condition where the attacker exploits the three-way handshaking mechanism of the TCP connection establishment process, where the server will be flooded with requests for SYN packets without being responded by the server. In preventing TCP Flood DDoS attacks, we need a system that will detect the attack pattern and then independently reject packets that indicated as at…
Wannacry ransomware is a specific type of malware that threatens access to victims unless their data has been redeemed or paid for. Usually, ransomware encrypts the content on the victim's hard drive making it inaccessible to the victim. After making the payment or ransom, a decryption key will be given to the victim. In this research, a snort detection system is used and the prevention system …
Sistem Supervisory Control And Acquisition (SCADA) adalah sistem kontrol industri otomatis yang digunakan untuk mengontrol serta memantau berbagai tahapan industri yang menyebar luas, dimana akuisisi data sangatlah penting didalam pengoperasian sistem. Salah satu protokol komunikasi yang digunakan dalam komunikasi SCADA adalah IEC 60870-5-104. Protokol IEC 60870-5-104 memiliki kerentanan pada k…
Visualization is a technique to present the number of Ransomware packet attacks that occur on datasets that have been provided by Unavarra. Attacks Visualization aiming to recognize attacks and make it easier to understood. Deep Packet Inspection (DPI) is a method to detect anomalies that formed attack of Ransomware Packets that happened on the enterprise networks. Packets including Ransomware …