This study aims to detect and classify Distributed Denial of Service (DDoS) and Man-in-the-Middle (MiTM) attacks in smart home networks using the Light Gradient Boosting Machine (LightGBM) algorithm. With the rapid growth of Internet of Things (IoT) devices, cybersecurity challenges have become crucial due to vulnerabilities in smart home devices. This research utilizes the COMNETS SMARTHOME da…
Visualization is a method used to represent data in the form of an image to display hidden information. The visualization in this study uses malware data to be converted into a grayscale image. This study uses 10 types of malware with a total of 1000 data. The test data is divided into training data as much as 80% of the test data is 20% of the total data. Malware is tested using Local Binary P…
Slow http dos attack is one of the DoS attack methods targeting HTTP servers. This method hampers the service by flooding it causing a pool of connections with slow and heavy requests to the web server. It is known that a slow HTTP DoS attack by a single attacker can be effectively prevented by limiting the number of connections for each IP address. The purpose of this study is to obtain the be…
Malware adalah sebuah perangkat lunak yang dibuat dengan tujuan memasuki dan terkadang merusak sistem komputer, jaringan, ataupun server tanpa diketahui oleh pemiliknya, Ransomware merupakan jenis malware tertentu yang akan menuntut tebusan finansial dari korban dengan cara mengancam akan mempublikasikan, menghapus, atau juga menahan akses ke data pribadi yang penting. Pada penelitian ini akan …
Serangan SQL Injection dan XSS adalah salah satu contoh serangan kerentanan yang ada di aplikasi web. Serangan SQL Injection adalah salah satu dari lima teratas dalam semua risiko keamanan aplikasi web. Serangan SQL Injection dilakukan dengan memasukkan perintah sql ke dalam bentuk web, nama domain, atau permintaan halaman, dan akhirnya menipu server untuk menjalankan perintah SQL yang berbahay…
Distributed Denial of Service (DDoS) merupakan serangan yang dapat mengganggu lalu lintas sebuah jaringan dengan memanfaatkan mesin zombie yang dikendalikan oleh penyerang. Serangan HTTP Flood dilakukan dengan mengeksploitasi permintaan HTTP GET dan HTTP POST ke target yang diserang. Pada penelitian ini menggunakan dataset CSE-CIC-IDS 2018 yang berasal dari University Of New Brunswick (UNB). Di…
RAMA repository merupakan tempat penyimpanan paparan hasil penelitian nasional baik berbentuk tugas akhir proyek mahasiswa (Diploma), skripsi (S1), tesis (S2), disertasi (S3) maupun laporan penelitian lainnya. Hal ini membuat RAMA repository rentan terhadap serangan database online diantaranya injeksi SQL dan XSS. Serangan injeksi SQL merupakan serangan database online diurutan pertama, dimana …
Denial of Service (DoS) adalah teknik serangan yang sering dilakukan oleh attacker yang bertujuan untuk melumpuhkan kemampuan sistem. Serangan dari Denial of Service (DoS) merupakan ancaman yang serius dalam jaringan saat ini, Serangan Smurf merupakan serangan yang dapat memanfaatkan IP dari Host target sebagai sumber ICMP Request, serta mendapat keuntungan terhadap protokol jaringan paket ICMP…
Pada beberapa tahun terakhir penelitian mengenai botnet telah banyak dilakukan, botnet merupakan salah satu jenis malware yang menyerang dengan cara mengambil alih sistem komputer yang terhubung ke jaringan internet dengan mengendalikannya secara remote. Penelitian ini menggunakan dataset MedBIoT yang berasal dari Tallinn University of Technology terdapat tiga jenis botnet yaitu bashlite, mirai…
Attack detection is an activity to analyze data or files whether the data has an attack or not. Snort IDS (intrusion detection system) help in analyzing and detecting attacks on a network in the bitcoin mining process. Malware Ransomware attack is a very dangerous attack because it requires a fee to be able to access the desired file. Ransomware attacks usually attack bitcoin miners who are doi…
Supervisory Control And Data Acquisition system adalah suatu sistem yang biasa digunakan pada dunia industri dimana untuk mengontrol perangkat dari jarak jauh dengan memanfaatkan jaringan komputer. Perangkat ini berkomunikasi berdasarkan aturan atau protokol,dimana salah satu protokol yang digunakan adalah IEC-60870-5-104/IEC-104. Protokol IEC-104 memiliki suatu kerentanan dimana tidak menenkri…
Malware classification is a way to recognize types of data that are classified as malware or normal files. Banking Malware is a type of trojan that aims to deceive bank customers and financial institutions, allowing victims to transfer funds from the victim's account to the attacker's account. The purpose of this study is to obtain the best level of accuracy in the classification of Banking Mal…
Malicious Software or better known as Malware is software that can enter and attack an operating system which can cause damage to the operating system. Malware itself consists of many types, there are several types of Malware that are commonly known by the general public, for example there are Trojan Malware, Ransomware Malware, Spyware Malware, Adware Malware, Worms and there are many other ty…
Internet of things ( IoT ) muncul sebagai teknologi yang digunakan secara luas di beberapa bidang termasuk industri, transportasi, energi, pemantauan lingkungan, kesehatan, pertanian dan lain – lain. Pada penelitian ini penulis fokus terhadap pengenalan pola serangan port scanning dan menyajikan pola serangan tersebut kedalam bentuk visual. Penelitian dilakukan pada jaringan internet of thing…
Intrusion Prevention System (IPS) is a development of Intrusion Detection System where a system (hardware, software, or a combination of hardware and software) that has the ability to monitor the network and take precautions from suspicious activity in the network. Bayesian Network is one of the machine learning that utilizes the probability relationship between a variable and another variable.…
More and more parties are harmed because currently malware can infect almost all operating systems. One type of Android malware is MazarBot. Mazarbot is very dangerous because when it is installed on a device it can access, spy on and control the device secretly remotely. That way the attacker can manipulate and do whatever he wants because he gets full access to the victim's device. The Random…
This research is based on the process of visualizing malware capture data into a grayscale image, from the grayscale image there is a repeating pattern, the pattern will be taken using the Gray Level Coocurrence Matrix with angles 0, 45, 90, 135 with attributes of dissimilarity, correlation, homogeneity, contrast, ASM, energy. The features obtained will be carried out by presenting labels with …
Remote Access Trojans (RATs) are a serious problem that needs to be resolved. RATs run silently in the background making them difficult to detect by users. Intrusion Detection and Prevention System (IDPS) is usually applied to solved this. Many NIDPS devices have been distributed from various vendors, but these devices are difficult to reach Small Office and Home Office (SOHO) because they have…