Journal of Information Technology
Vol 11 No 1 (2023): J-Intech : Journal of Information and Technology

Perancangan Security Information and Event Management (SIEM) untuk Mendeteksi Insiden pada Situs Web

Daniel Rudiaman Sijabat (Unknown)
Stevanus Evo (Sekolah Tinggi Informatika & Komputer Indonesia, Prodi Teknik Informatika, Malang, Indonesia)



Article Info

Publish Date
30 Jun 2023

Abstract

In an increasingly complex digital era, websites are the main target for attacks by irresponsible parties. Therefore, a system is needed that can monitor, analyze, and provide early warning against suspicious activity or attacks that occur on websites. For this reason, this research analyzes and designs a Security Information and Event Management (SIEM) system that can be used to detect incidents of attacks on websites. The SIEM built in this study uses an Elastic Stack which will be used to analyze, monitor, detect, and store event information or security logs for each connected agent. To simulate testing types of attacks on websites such as the OWASP TOP 10 2017, several vulnerable web applications are used, namely DVWA, XVWA, and MUTILLIDAE. Tests on the SIEM system that was created showed that the system was able to detect the types of attacks on websites as mentioned in the OWASP TOP 10 2017.

Copyrights © 2023






Journal Info

Abbrev

J-INTECH

Publisher

Subject

Computer Science & IT

Description

Journal of Information and Technology is a journal published by Bhinneka Nusantara University, Malang. The scope of this journal includes IT Governance, IS Strategic Planning, IS Theory and Practices, Management Information System, IT Project Management, Distance Learning, E-Government, Information ...