|
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
|
| Volume 187 - Issue 122 |
| Published: July 2026 |
| Authors: Augustav Fahrul Alzaiya, Imam Riadi |
10.5120/ijca13e6fe9d33b5
|
Augustav Fahrul Alzaiya, Imam Riadi . Forensic Analysis of Distributed Denial of Service Attacks using National Institute of Standards and Technology Method. International Journal of Computer Applications. 187, 122 (July 2026), 71-78. DOI=10.5120/ijca13e6fe9d33b5
@article{ 10.5120/ijca13e6fe9d33b5,
author = { Augustav Fahrul Alzaiya,Imam Riadi },
title = { Forensic Analysis of Distributed Denial of Service Attacks using National Institute of Standards and Technology Method },
journal = { International Journal of Computer Applications },
year = { 2026 },
volume = { 187 },
number = { 122 },
pages = { 71-78 },
doi = { 10.5120/ijca13e6fe9d33b5 },
publisher = { Foundation of Computer Science (FCS), NY, USA }
}
%0 Journal Article
%D 2026
%A Augustav Fahrul Alzaiya
%A Imam Riadi
%T Forensic Analysis of Distributed Denial of Service Attacks using National Institute of Standards and Technology Method%T
%J International Journal of Computer Applications
%V 187
%N 122
%P 71-78
%R 10.5120/ijca13e6fe9d33b5
%I Foundation of Computer Science (FCS), NY, USA
Distributed Denial of Service (DDoS) attacks are a threat to computer networks that can disrupt services by flooding the target with large amounts of traffic. This study aims to apply a digital forensics method based on the National Institute of Standards and Technology (NIST) to analyze DDoS attacks on MikroTik RouterOS-based routers. The research method employs the stages of collection, examination, analysis, and reporting, utilizing Wireshark to capture network traffic and router logs as digital evidence. The examination process involves filtering ICMP and TCP SYN packets to identify attack patterns, attacker IP addresses, and attack targets. Test results indicate a surge in traffic that caused the router’s CPU load to rise above 90% and degraded network service quality. Analysis of the captured files and router logs confirms that the NIST method is effective for systematically identifying the type of attack, its source, and its impact on the network.