p-Index From 2021 - 2026
8.581
P-Index
Claim Missing Document
Check
Articles

Performance Analysis of the Fuzzing Method in Detecting API Vulnerabilities in Mobile Healthcare Application X Based on OWASP API Security Top 10 Muhammad Ikhwanul Hakim; Radityo Adi Nugroho; Dodon Turianto Nugrahadi; Rudy Herteno; Setyo Wahyu Saputro
Telematika Vol 19, No 1: February (2026)
Publisher : Universitas Amikom Purwokerto

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.35671/telematika.v19i1.3149

Abstract

Traditional perimeter security measures, such as Web Application Firewalls (WAFs) and static analysis, often fail to detect logic-based vulnerabilities in healthcare Application Programming Interfaces (APIs), creating significant risks for patient data confidentiality. Addressing the scarcity of empirical performance evaluations in this domain, this study employs a grey-box controlled experimental design to assess the effectiveness of automated HTTP fuzzing against a production-grade mobile health application ("Application X"). Using the FFUF tool configured with sequential identifier injection, status-code filtering, and hidden-field probing, the experiment tested 33 endpoints against the OWASP API Security Top 10 2023 benchmarks. To ensure data reliability, a rigorous multi-step validation protocol including replay testing and environmental noise elimination was applied to filter false positives. The results identified 88 distinct vulnerabilities distributed across six categories, with a critical dominance of Security Misconfiguration (API8) and Broken Object Property Level Authorization (API3). Analytically, the high prevalence of API3 reveals a systemic failure in backend serialization, where sensitive fields  including password hashes and internal administrative flags were exposed due to the absence of Data Transfer Objects (DTOs), contradicting the assumption of secure client-side filtering. Limitations of this study include the restriction to a single patient-role perspective and the exclusion of third-party integrations. The study concludes that automated fuzzing is superior to static analysis in detecting runtime data leakage and recommends mandatory Server-Side Output Filtering through explicit DTOs as a critical standard for secure health API development and data privacy compliance.
Dampak dari Parameter Variasi Koneksi, Node dan Kecepatan Node Terhadap Delay pada Routing Protocol AODV dan BATMAN Jaringan MANET Dodon Turianto Nugrahadi; M Reza Faisal; Liling Triyasmono; Muhammad Janawi
Jurnal Komputasi Vol. 8 No. 2 (2020)
Publisher : Jurusan Ilmu Komputer Fakultas MIPA Universitas Lampung

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.23960/komputasi.v8i2.2675

Abstract

Mobile ad-hoc Network (MANET) is a multihop wireless network that a many collection of mobile nodes that are dynamic. MANET each node on the network have the same position, so it needs the appropriate routing protocol, to support the exchange of data to be optimal. In this study, the routing protocol to be tested is AODV and BATMAN based scenario increasing the number of connections, nodes and speed. Simulation parameter scenarios is number connection 1 UDP, 2 UDP, 3 UDP, and number of node 25 node, 50 node, 100 node, and then number node speed 20 m/s, 50 m/s. in this AODV routing protocol will establish a rute from the source node to the destination only if there is a request from the source node. BATMAN routing protocols, all decisions and information disseminated throughout the node and will regularly update on each node. The performance parameters to be measured such as delay by using OMNET ++ 4.6. Output of simulation will analysis with two way anova and multivariate to know correlation between variation scenario impact to delay. The results obtained in this study AODV and BATMAN have their respective advantages, analisys with two-way anova show that both AODV and BATMAN get the impact of the scenario from incrising the number of connections, the number of nodes and the number of nodes speed with a p-value of 0.012212 (<0.05) with two-way anova. From all scenarios, the number of UDP connections has the greatest impact, from UDP 1, UDP 2 and UDP 3. Followed by the number of speed 50 and node 100. So it can be concluded that the connection has an effect on increasing delay. The increasing number of speed and nodes can contribute to an increase in delay if number of nodes above 100 and speed above 50. With multivariate analysis, the BATMAN protocol had the most impact on the delay under the scenario then AODV.
Analisis Komparasi Implementasi Steganografi White-Space dan White-Space Modified pada Artikel Terenkripsi AES dalam HTML5 Rudy Herteno; Dodon Turianto Nugrahadi; Muhammad Sholih Afif; M Reza Faisal; Friska Abadi
Jurnal Komputasi Vol. 8 No. 1 (2020)
Publisher : Jurusan Ilmu Komputer Fakultas MIPA Universitas Lampung

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.23960/komputasi.v8i1.2525

Abstract

The level of internet usage continues to increase until now.  information exchange requires security that cannot be predicted by others.  one technique for securing information is steganography.  Steganography techniques are the science and art of hiding information.  This technique can hide the content of information in media that cannot be guessed by ordinary people, so as not to arouse suspicion of the people who see it.  One of the media that can implement the white-space modified steganography method is HTML pages.  in addition, AES (Advanced Encryption Standard) is a lighter encryption security algorithm compared to other algorithms. In this study, plain text that has been encrypted into cipher text is then inserted with white-space and white-space modification steganography techniques. Data changes have occurred but only less than 1 percent.  In experiments that have been implemented on Google Chrome and Mozilla Firefox are the same except in Internet Explorer, which changes the data slightly larger.The implementation of AES encryption and stegano white-space original, has 100% success but the 80% decryption process is successful, but the decryption results contain additional binaries. This happen because the use of tabulation (tabs) instead of spaces in HTML5 articles, and this is often found in HTML articles. while the implementation of AES encryption and stegano whitespace modified, has a success of 100% and the decryption process of 90% succeeded without any changes. 1 article failed because the number of articles is too small compared to the amount of space provided. The conclusion that implementation of AES encryption and white-space modified is more appropriate to be implemented in HTML5 articles, and than the use of tabulation and the number of characters also consequences on the implementation.Keywords: Information, Steganography, White-space modified, Security, AES, Web Browser 
Studi Ekstraksi Fitur Berbasis Vektor Word2Vec pada Pembentukan Fitur Berdimensi Rendah irwan budiman; M Reza Faisal; Dodon Turianto Nugrahadi
Jurnal Komputasi Vol. 8 No. 1 (2020)
Publisher : Jurusan Ilmu Komputer Fakultas MIPA Universitas Lampung

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.23960/komputasi.v8i1.2517

Abstract

Klasifikasi teks adalah salah satu metode untuk mengelola dan mencari informasi penting yang terdapat pada format tekstual yang tidak terstruktur. Ekstraksi fitur merupakan proses penting pada klasifikasi teks untuk mengubah format tekstual yang tidak terstruktur menjadi terstruktur sehingga dapat diproses oleh algoritma machine learning untuk mengklasifikasikan ke class yang telah ditentukan. Salah satu teknik ekstraksi fitur yang umum digunakan adalah vector space representation. Teknik ini mudah digunakan tetapi berpotensi menghasilkan data dengan dimensi banyak yang berakibat kepada peningkatan waktu komputasi bahkan tidak dapat diproses karena limitasi perangkat keras. Pada riset ini kami melakukan studi terhadap teknik ekstraksi fitur yang mampu menghasilkan data berdimensi sedikit. Ekstraksi fitur yang digunakan memanfaatkan vektor word2vec untuk mengontrol jumlah fitur yang dihasilkan. Pada riset ini kami membandingkan beberapa model yang dihasilkan sendiri dengan jumlah fitur yang bervariasi dan model yang telah disedikan oleh Google. Hal ini dilakukan untuk mengetahui jumlah fitur yang dapat menghasilkan kinerja klasifikasi terbaik. Hasilnya didapat nilai kinerja tertinggi akurasi yaitu 0.877 dengan jumlah fitur adalah 300 dari model yang dihasilkan sendiri.
Perbandingan Nilai K pada Klasifikasi Pneumonia Anak Balita Menggunakan K-Nearest Neighbor Dwi Kartini; Andi Farmadi; Muliadi muliadi; Dodon Turianto Nugrahadi; Pirjatullah Pirjatullah
Jurnal Komputasi Vol. 10 No. 1 (2022)
Publisher : Jurusan Ilmu Komputer Fakultas MIPA Universitas Lampung

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.23960/komputasi.v10i1.2965

Abstract

Pneumonia adalah penyakit menular yang menyerang saluran pernapasan bagian bawah dan merupakan salah satu penyebab utama kematian pada anak-anak di bawah lima tahun. Pneumonia mudah menyerang balita yang disebabkan oleh berbagai mikroorganisme yang ada di lingkungan seperti virus, bakteri, jamur dan bakteri mikro. Penelitian ini menggunakan K-Nearest Neighbor (KNN) untuk klasifikasi pneumonia pada pasien berdasarkan gejala yang dialami. Metode klasifikasi KNN dilakukan dengan membandingkan jarak objek antara data tes dan objek keseluruhan pada data pelatihan berdasarkan data riwayat medis pasien. Perbandingan persentase data pelatihan dan data pengujian yang digunakan adalah 90:10, 80:20, dan 70:30 untuk menghitung nilai jarak terdekat dari data pengujian dengan data pelatihan keseluruhan dengan jumlah k yang digunakan. Matriks kebingungan digunakan untuk mengukur hasil tes klasifikasi Pneumonia untuk balita dengan kombinasi jumlah data pelatihan dan data pengujian pada jumlah nilai k = {1, 3, 5, 7, 9, 11}, akurasi tertinggi, presisi, penarikan, dan nilai ukuran-F diperoleh. 0,86, 0,89, 1, dan 0,91 untuk data pelatihan 90%, 10% data pengujian dengan nilai k = 3.
Feature extraction and machine learning methods for biometric recognition based on fusion of ECG and fingerprint Hafiz Ilhami; Dodon Turianto Nugrahadi; Mohammad Reza Faisal; Irwan Budiman; Andi Farmadi; Dwi Kartini; Puput Dani Prasetyo Adi; Jumadi Mabe Parenreng
Bulletin of Electrical Engineering and Informatics Vol 15, No 3: June 2026
Publisher : Institute of Advanced Engineering and Science

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.11591/eei.v15i3.10541

Abstract

This research introduces a multimodal biometric authentication framework by amalgamating electrocardiogram (ECG) and fingerprint modalities through the utilization of diverse feature extraction methodologies and machine learning classifiers. The proposed methodology aspires to augment precision and mitigate spoofing vulnerabilities in contrast to traditional single-modality systems. Among the feature extraction techniques assessed—grayscale, binary, Sobel edge detection, and minutiae—Naïve Bayes (NB) in conjunction with minutiae features exhibited superior performance, attaining an accuracy rate of 96.25%. Supplementary experiments employing random forest (RF) and support vector machine (SVM) also revealed commendable classification efficacy, underscoring the robustness of the fusion methodology. This investigation provides a pragmatic and secure biometric framework by harnessing complementary biometric characteristics to enhance authentication dependability. The proposed system presents promising applications in real-world contexts, particularly concerning mobile security and healthcare access control. Future research endeavors will tackle challenges associated with ECG signal variability, computational efficiency, and extensive deployment.
Evaluating CNN Robustness for Face Mask Classification under Environmental Variations Bagaskara Ridho Vandio; Fatma Indriani; Andi Farmadi; Dodon Turianto Nugrahadi; Friska Abadi
Journal of Embedded Systems, Security and Intelligent Systems Vol 7 No 2 (2026): June 2026
Publisher : Program Studi Teknik Komputer

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.59562/jessi.v7i2.2617

Abstract

Purpose – This study aims to analyze and compare the performance of ResNet50 and MobileNetV3 for multi-class face mask classification under various environmental conditions. Design/methods/approach – ResNet50 and MobileNetV3 are trained using transfer learning for three-class face mask classification and evaluated under normal conditions and environmental variations, including illumination changes, blur, low compression, and rotation. Findings – Experimental results show that ResNet50 achieves an accuracy of 94.32% under normal conditions, slightly outperforming MobileNetV3 at 94.10%. Under environmental variations, the largest performance degradation is observed under darkening and blur conditions, while low compression and rotation have relatively minor effects. ResNet50 demonstrates higher robustness across most perturbation settings, whereas MobileNetV3 provides competitive performance with substantially better computational efficiency. Research implications/limitations – This study is limited to a controlled evaluation using synthetic environmental perturbations on a single dataset and does not consider broader dataset diversity. Therefore, the findings should be interpreted within the evaluated experimental conditions. Originality/value – This study provides a comparative analysis of model robustness under controlled environmental perturbations, highlighting the trade-off between robustness and computational efficiency for face mask classification systems.
Characteristics ransomware stop/djvu remk and erqw variants with static-dinamic analysis Dodon Turianto Nugrahadi; Friska Abadi; Rudy Herteno; Muliadi Muliadi; Muhammad Alkaff; Muhammad Alvin Alfando
Computer Science and Information Technologies Vol 6, No 3: November 2025
Publisher : Institute of Advanced Engineering and Science

Show Abstract | Download Original | Original Source | Check in Google Scholar | DOI: 10.11591/csit.v6i3.p283-293

Abstract

Ransomware has developed into various new variants every year. One type of ransomware is STOP/DJVU, containing more than 240+ variants. This research to determine changes in differences characteristics and impact between ransomware variants STOP/DJVU remk, which is a variant from 2020, and the erqw variant from 2023, through a mixed-method research approach. Observation, simulation using mixing static and dynamic malware analysis methods. Both variants are from the Malware Bazaar site. The total characteristics based on dynamic analysis, the remk variant has 177, and the erqw variant has 190, which increased by 1.8%. The total characteristics based on static analysis, the remk variants have 586, and the erqw variants have 736, which increased by 5.7%. All characteristics from remk to erqw increasing in dynamic analysis, except the number of payloads that decreased about 20%. In static analysis, all characteristics from remk to erqw increase except the number of sections decreased about 1.5%. It can be the affected CPU performance, because the remk variant affects performance by increasing CPU work by 3.74%, while the erqw variant affects performance by reducing CPU work by 1.18%, both compared with normal CPU. which will affect the ransomware's destructive work and require changes in its handling.
Co-Authors Abadi, Friska Abdul Gafur Adi Mu'Ammar, Rifqi Adi, Puput Dani Prasetyo Adi, Puput Dani Prasetyo Ahmad Rusadi Ahmad Rusadi Ahmad Rusadi Arrahimi - Universitas Lambung Mangkurat) Ahmad Rusadi Arrahimi - Universitas Lambung Mangkurat) Aida, Nor Aji Triwerdaya Andi Farmadi Andi Farmadi Andi Farmadi Andi Farmadi Andi Farmadi Ando Hamonangan Saragih Apriana, Susi Ardiansyah Sukma Wijaya Arfan Eko Fahrudin Arifin Hidayat Azwari, Ayu Riana Sari Azwari, Ayu RianaSari Bachtiar, Adam Mukharil Badali, Rahmat Amin Bagaskara Ridho Vandio Bahriddin Abapihi Bedy Purnama Cahyadi, Rinova Firman Dike Bayu Magfira, Dike Bayu Djordi Hadibaya Dwi Kartini Dwi Kartini Dwi Kartini, Dwi Emy Iryanie, Emy Faisal Murtadho Faisal, Mohammad Reza Fajrin Azwary Fatma Indriani Fhadilla Muhammad Fitra Ahya Mubarok Fitria Agustina fitria Fitriani, Karlina Elreine Fitrinadi Friska Abadi Gunawan Gunawan Gunawan Gunawan Hafiz Ilhami Halim, Kevin Yudhaprawira Hariyady, Hariyady Herteno, Rudy Herteno, Rudy Heru Kartika Candra, Heru Kartika Huynh, Phuoc-Hai Ichsan Ridwan Indah Ayu Septriyaningrum Irwan Budiman Irwan Budiman Irwan Budiman Irwan Budiman Irwan Budiman Ismail Didit Samudro Julius Tunggono Jumadi Mabe Parenreng Jumadi Mabe Parenreng Junaidi, Ridha Fahmi Kartika, Najla Putri Keswani, Ryan Rhiveldi Kevin Yudhaprawira Halim Liling Triyasmono M Kevin Warendra M. Apriannur Martalisa, Asri Maulidha, Khusnul Rahmi Mera Kartika Delimayanti Miftahul Muhaemen Muhamad Ihsanul Qamil Muhammad Alkaff Muhammad Alkaff Muhammad Alvin Alfando Muhammad Anshari Muhammad Haekal Muhammad Hasan Muhammad Ikhwanul Hakim Muhammad Irfan Saputra Muhammad Itqan Masdadi Muhammad Itqan Mazdadi Muhammad Janawi Muhammad Khairin Nahwan Muhammad Mirza Hafiz Yudianto Muhammad Nazar Gunawan Muhammad Reza Faisal, Muhammad Reza Muhammad Rofiq Muhammad Sholih Afif Muhammad Solih Afif Muliadi Muliadi Muliadi MULIADI -, MULIADI Muliadi Aziz Muliadi Muliadi Muliadi Muliadi Muliadi Muliadi Muliadi Muliadi Muliadi, M Musyaffa, Muhammad Hafizh Nafis Satul Khasanah Nahdhatuzzahra Nahdhatuzzahra Ngo, Luu Duc Noor Hidayah Nursyifa Azizah Ori Minarto Padhilah, Muhammad Pirjatullah Pirjatullah Pirjatullah Prastya, Septyan Eka Priyatama, Muhammad Abdhi Puput Dani Prasetyo Adi Radityo Adi Nugroho Rahayu, Fenny Winda Rahmad Ubaidillah Rahmat Ramadhani, Rahmat Ramadhan, Muhammad Rizky Aulia Riadi, Putri Agustina Rifki Izdihar Oktvian Abas Pullah Rifki Riza Susanto Banner Rizal, Muhammad Nur Rizki Amelia Rizki, M. Alfi Rozaq, Hasri Akbar Awal Rudy Herteno Rudy Herteno Rudy Herteno Saman Abdurrahman Saragih, Triando Hamonangan Selvia Indah Liany Abdie Setyo Wahyu Saputro sholih Afif Siti Napi'ah Soesanto, Oni Sri Cahyo Wahyono Sri Rahayu Sri Redjeki Sri Redjeki Totok Wianto Totok Wiyanto Tri Mulyani Triando Hamonangan Saragih Umar Ali Ahmad Utomo, Edy Setyo Wahyu Dwi Styadi Wardana, Muhammad Difha Winda Agustina Yanche Kurniawan Mangalik YILDIZ, Oktay Yudha Sulistiyo Wibowo Zamzam, Yra Fatria