...
首页> 外文期刊>Indonesian Journal of Computing and Cybernetics Systems >Analisis Forensik Jaringan Studi Kasus Serangan SQL Injection pada Server Universitas Gadjah Mada
【24h】

Analisis Forensik Jaringan Studi Kasus Serangan SQL Injection pada Server Universitas Gadjah Mada

机译:Gadjah Mada University Server上的SQL注入攻击的网络取证分析案例研究

获取原文
           

摘要

Network forensic is a computer security investigation to find the sources of the attacks on the network by examining log evidences, identifying, analyzing and reconstructing the incidents. This research has been conducted at The Center of Information System and Communication Service, Gadjah Mada University. The method that used was The Forensic Process Model, a model of the digital investigation process, consisted of collection, examination, analysis, and reporting. This research has been conducted over five months by retrieving data that was collected from Snort Intrusion Detection System (IDS). Some log files were retrieved and merged into a single log file, and then the data cleaned to fit for research. Based on the research, there are 68 IP address was that did illegal action, SQL injection, on server www.ugm.ac.id . Most of attackers using Havij and SQLmap (automated tools to exploit vulnerabilities on a website). Beside that, there was also Python script that was derived from the continent of Europe in Romania.
机译:网络取证是一项计算机安全调查,旨在通过检查日志证据,识别,分析和重建事件来查找网络上的攻击源。这项研究是在加贾达马达大学信息系统和通信服务中心进行的。使用的方法是取证过程模型,这是数字调查过程的模型,由收集,检查,分析和报告组成。通过检索从Snort入侵检测系统(IDS)收集的数据,这项研究已经进行了五个月。检索了一些日志文件并将其合并到单个日志文件中,然后清除了数据以适合研究。根据研究,在服务器www.ugm.ac.id上有68个IP地址被执行了非法操作,SQL注入。大多数攻击者使用Havij和SQLmap(自动工具来利用网站上的漏洞)。除此之外,还有源自罗马尼亚欧洲大陆的Python脚本。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号