C19 Similarity_Web Forensic on Container Services Using GRR Rapid Response Framework

Riadi, Imam and Umar, Rusydi and Sugandi, Andi (2020) C19 Similarity_Web Forensic on Container Services Using GRR Rapid Response Framework. Scientific Journal of Informatics, 7 (1). ISSN p-ISSN 2407-7658, e-ISSN 2460-0040

[thumbnail of HASIL CEK_19 Web.pdf] Text
HASIL CEK_19 Web.pdf

Download (1MB)

Abstract

Abstract
Cybercrime on the Internet that keeps increasing does not only takes place in the environment
that is running web applications traditionally under operating system, but also applications that
are deployed in a more advanced environment like container service. Docker is a currently
popular container service in Linux operating system needs to be secured and implements
incident response mechanism that will investigate web server that was attacked by DDoS in
fast, valid, and comprehensive way. This paper discusses the investigation using GRR Rapid
Response framework on a web server that is running inside container service on Linux
operating system. This web server then is attacked by DDoS, and the attacker running on
Windows operating system. This research has successfully investigated digital evidence in the
form of a log file of web servers running on container service and digital evidence through
netstat on Windows computer.
Keywords: Forensics, Network, Docker Container, GRR Rapid Response, Web

Item Type: Artikel Umum
Subjects: A General Works > AC Collections. Series. Collected works
Divisi / Prodi: Faculty of Applied Science and Technology (Fakultas Sains Dan Teknologi Terapan) > S1-Information System (S1-Sistem Informasi)
Depositing User: Adinda Putri Pravitasari
Date Deposited: 15 Jun 2022 02:24
Last Modified: 15 Jun 2022 02:24
URI: http://eprints.uad.ac.id/id/eprint/35325

Actions (login required)

View Item View Item