JUKI : Jurnal Komputer dan Informatika
Vol. 8 No. 1 (2026): JUKI : Jurnal Komputer dan Informatika, Edisi Mei 2026

Analisis Log Server dengan Data Mining untuk Deteksi Aktifitas Malicious

Hilmi, Muhammad Anis Al (Unknown)
Cahyanto, Kurnia Adi (Unknown)
Afghani, Azhar Al (Unknown)
Hadibrata, Badrudin (Unknown)



Article Info

Publish Date
13 May 2026

Abstract

Web server security is a primary concern amid the rising wave of cyber threats. Every user interaction with a web application is recorded in server logs, which contain valuable information including IP addresses, request methods, response status codes, and data sizes. This study leverages server log data from January to July 2019 collected from an educational institution to detect malicious activities using a data mining approach. After preprocessing and rule-based labeling into three classes Safe, Suspicious, and Dangerous  dimensionality reduction was applied via Linear Discriminant Analysis (LDA) before classification using five algorithms: SVM-RBF, SVM-Linear, SVM-Polynomial, K-NN via GridSearch, and Decision Tree. Results show that SVM-RBF delivers the most stable performance, achieving a training accuracy of 88% and testing accuracy of 86%. However, class imbalance affects recall scores for certain categories. This study confirms the effectiveness of combining LDA and SVM-RBF as a basis for log-based intrusion detection systems, while also highlighting the need for further development through data balancing techniques and additional feature engineering.

Copyrights © 2026






Journal Info

Abbrev

JUKI

Publisher

Subject

Computer Science & IT

Description

JUKI: Jurnal Komputer dan Informatika (e-ISSN: 2722-4368) berfokus pada keilmuan yang ada tentang Komputer dan Informatika, yaitu Sistem Informasi, Rekayasa Perangkat Lunak, Jaringan & Multimedia, Teknologi Web & Mobile, serta kecerdasan Buatan & game. Akan tetapi JUKI juga tidak membatasi terhadap ...