Jejak digital: Jurnal Ilmiah Multidisiplin
Vol. 1 No. 4 (2025): JULI (Edisi Spesial)

Serangan dan Deteksi Port Scanning Menggunakan Wireshark dan Snort

Rakhmadi Rahman (Unknown)
Abdul Khalik Hartono (Unknown)
Eka Tanduklangi (Unknown)



Article Info

Publish Date
09 Jul 2025

Abstract

In the digital era, network security threats such as port scanning pose significant risks as they serve as reconnaissance for potential cyber attacks. This study evaluates the effectiveness of Wireshark (paket analysis tool) and Snort (Intrusion Detection System) in detecting and analyzing port scanning activities. Using Nmap (Zenmap) as an attack simulator, experiment were conducted on a local Wi-Fi network to capture TCP SYN scans and HTTP sniffing attemps. Wireshark successfully identified suspicious traffic patterns, icluding unacknowledged SYN packets and exposed HTTP login credentials, while Snort, configured with custom rules, generated real-time alert for scanning activities. The findings confirm the complementary roles validation. This study recommends regular Snort rule update, enabling promiscuous mode, and implementing HTTPS/VPN to mitigate sniffing risks. This integrates approach enhances early threat detection and strengthens network protection mechanisms.

Copyrights © 2025






Journal Info

Abbrev

jejakdigital

Publisher

Subject

Economics, Econometrics & Finance Education Languange, Linguistic, Communication & Media Social Sciences Other

Description

Jurnal Ilmiah Multidisiplin adalah jurnal elektronik dan cetak Open Access Journal yang diterbitkan oleh Indo Publishing setiap 6 kali dalam setahun menyediakan forum untuk mempublikasikan artikel penelitian asli, artikel review dari kontributor, dan berita teknologi baru mencangkup multidisiplin ...