Research Article

Forensic Analysis of Distributed Denial of Service Attacks using National Institute of Standards and Technology Method

by  Augustav Fahrul Alzaiya, Imam Riadi
journal cover
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 187 - Issue 122
Published: July 2026
Authors: Augustav Fahrul Alzaiya, Imam Riadi
10.5120/ijca13e6fe9d33b5
PDF

Augustav Fahrul Alzaiya, Imam Riadi . Forensic Analysis of Distributed Denial of Service Attacks using National Institute of Standards and Technology Method. International Journal of Computer Applications. 187, 122 (July 2026), 71-78. DOI=10.5120/ijca13e6fe9d33b5

                        @article{ 10.5120/ijca13e6fe9d33b5,
                        author  = { Augustav Fahrul Alzaiya,Imam Riadi },
                        title   = { Forensic Analysis of Distributed Denial of Service Attacks using National Institute of Standards and Technology Method },
                        journal = { International Journal of Computer Applications },
                        year    = { 2026 },
                        volume  = { 187 },
                        number  = { 122 },
                        pages   = { 71-78 },
                        doi     = { 10.5120/ijca13e6fe9d33b5 },
                        publisher = { Foundation of Computer Science (FCS), NY, USA }
                        }
                        %0 Journal Article
                        %D 2026
                        %A Augustav Fahrul Alzaiya
                        %A Imam Riadi
                        %T Forensic Analysis of Distributed Denial of Service Attacks using National Institute of Standards and Technology Method%T 
                        %J International Journal of Computer Applications
                        %V 187
                        %N 122
                        %P 71-78
                        %R 10.5120/ijca13e6fe9d33b5
                        %I Foundation of Computer Science (FCS), NY, USA
Abstract

Distributed Denial of Service (DDoS) attacks are a threat to computer networks that can disrupt services by flooding the target with large amounts of traffic. This study aims to apply a digital forensics method based on the National Institute of Standards and Technology (NIST) to analyze DDoS attacks on MikroTik RouterOS-based routers. The research method employs the stages of collection, examination, analysis, and reporting, utilizing Wireshark to capture network traffic and router logs as digital evidence. The examination process involves filtering ICMP and TCP SYN packets to identify attack patterns, attacker IP addresses, and attack targets. Test results indicate a surge in traffic that caused the router’s CPU load to rise above 90% and degraded network service quality. Analysis of the captured files and router logs confirms that the NIST method is effective for systematically identifying the type of attack, its source, and its impact on the network.

References
  • T. Aula Madina and M. Fadhli, “Analisis Serangan DDOS pada Website Prodi Pendidikan Teknologi Informasi,” Jurnal Nasional Komputasi dan Teknologi Informasi (JNKTI), vol. 7, no. 6, 2024.
  • R. Albar, M. Bayu Wibawa, and I. Tawakalna, “Point to Point Network Performance Analysis in Video Live Streaming Activities Based on QOS (Quality of Service) Method on Ubontv Television,” Journal of Informatics and Computer Science, vol. 9, no. 1, 2023.
  • M. R. Hidayat, R. Saragih, S. Basuki, A. Charisma, and A. D. Setiawan, “Implementasi Threat Mitigation dan Traffic Policy Menggunakan UTM pada Jaringan Tcp/Ip,” Jurnal Teknologi Informasi dan Ilmu Komputer, vol. 11, no. 2, pp. 437–446, Aug. 2024, doi: 10.25126/jtiik.20241127528.
  • B. D. Ramanda, D. Irawan, and A. Hidayat, “Rancang Bangun Manajemen Bandwidth Menggunakan Metode Simple Queue Mikrotik Router pada SMK N 1 Trimurjo,” vol. 5, no. 1, pp. 86–95, 2024.
  • A. M. Alhimni, “Analisis Kualitas Jaringan Internet Menggunakan Parameter Quality Of Service di Kecamatan Bangkalan,” Jurnal Nasional Komputasi dan Teknologi Informasi (JNKTI), vol. 7, no. 6, 2024.
  • J. Natada, T. Hidayat, and Z. Zainal, “Optimasi Jaringan Wireless pada Jaringan Akses Fakultas Teknik Universitas Serambi Mekkah Menggunakan Virtual Access Point,” Jurnal Nasional Komputasi dan Teknologi Informasi (JNKTI), vol. 7, no. 3, 2024.
  • S. Nawawi et al., “Implementasi Access Control List (ACL) pada Perangkat MikroTik untuk Mengamankan Koneksi Jaringan Internet di SMK Nurusshaleh Kato Timur,” Jurnal Nasional Komputasi dan Teknologi Informasi (JNKTI), vol. 7, no. 4, 2024.
  • H. P. Fitrian, S. Sopian Nudiansyah, M. R. Raihan, R. Faturohman, and A. Antareza, “Efektivitas SNORT Sebagai Sistem Deteksi Intrusi pada Berbagai Macam Pola Serangan Siber,” Jurnal Nasional Komputasi dan Teknologi Informasi (JNKTI), vol. 7, no. 6, 2024.
  • N. Saputri, M. Nasir, and I. Safar, “JAISE : Journal of Artificial Intelligence and Software Engineering Analisis Kualitas pada Video Streaming Pembelajaran Menggunakan Metode Differentiated Service.”
  • N. Umah, F. A. Yudanto, and E. Rilvani, “Evaluasi Segmentasi VLAN dalam Optimalisasi Kinerja dan Keamanan pada Jaringan LAN di Universitas Pelita Bangsa.”
  • S. Sahren, R. A. Dalimunthe, H. Saputra, and D. Y. Kurnia Sirni, “IDPS Performance Analysis for Mitigating SQL Injections and Syn Flood Attacks,” JURTEKSI (Jurnal Teknologi dan Sistem Informasi), vol. 10, no. 1, pp. 171–178, Dec. 2023, doi: 10.33330/jurteksi.v10i1.2880.
  • R. D. Hapsari and K. G. Pambayun, “Ancaman Cybercrime di Indonesia: Sebuah Tinjauan Pustaka Sistematis,” Jurnal Konstituen, vol. 5, no. 1, pp. 1–17, Oct. 2023, doi: 10.33701/jk.v5i1.3208.
  • M. Luthfi Arsalan and H. Teja Sukmana, “Keamanan Jaringan Wi-Fi Terhadap Serangan Packet Sniffing Menggunakan Firewall Rule (Studi Kasus : Pt. Akurat.Co),” 2023.
  • A. Kadam, “SDN-Driven Security Framework for DDOS Attack Detection and Mitigation,” Int. J. Res. Appl. Sci. Eng. Technol., vol. 12, no. 11, pp. 620–625, Nov. 2024, doi: 10.22214/ijraset.2024.65142.
  • D. F. Tanjung, O. Dwi Nurhayati, and A. Wibowo, “Design Information Security in Electronic-Based Government Systems Using NIST CSF 2.0, ISO/IEC 27001: 2022 and CIS Control,” International Journal of Innovative Science and Research Technology (IJISRT), pp. 523–530, Jun. 2024, doi: 10.38124/ijisrt/ijisrt24jun1212.
  • S. Suharti, A. Yudhana, and I. Riadi, “Forensik Jaringan DDoS menggunakan Metode ADDIE dan HIDS pada Sistem Operasi Proprietary,” MATRIK : Jurnal Manajemen, Teknik Informatika dan Rekayasa Komputer, vol. 21, no. 3, pp. 567–582, Jul. 2022, doi: 10.30812/matrik.v21i3.1732.
  • Sukma Aji, Davito Rasendriya Rizqullah Putra, I. Riadi, A. Fadlil, and M. N. Faiz, “A Classification Data Packets Using the Threshold Method for Detection of DDoS,” Journal of Innovation Information Technology and Application (JINITA), vol. 6, no. 1, pp. 28–36, Jun. 2024, doi: 10.35970/jinita.v6i1.2224.
  • H. Wintolo, I. Riadi, and A. Yudhana, “Analisis Deteksi Penyusup pada Layanan Open Journal System Menggunakan Metode Network Forensic Development Life Cycle,” SKANIKA: Sistem Komputer dan Teknik Informatika, vol. 8, no. 1, pp. 133–144, 2025.
  • R. Indraguna, U. A. Dahlan, and I. Riadi, “Web Server Security Analysis from DDoS Attack using Information Systems Security Assessment Framework Method,” 2021.
  • Gregorius Hendita Artha Kusuma, “Sistem Firewall untuk Pencegahan DDoS Attack di Masa Pandemi Covid-19,” Journal of Informatics and Advanced Computing (JIAC), vol. 3, May 2022, doi: https://doi.org/10.35814/jiac.v3i1.3853.
  • D. Tymoshchuk, O. Yasniy, M. Mytnyk, N. Zagorodna, and V. Tymoshchuk, “Detection and classification of DDoS flooding attacks by machine learning method,” 2024.
  • Junirma Buttu, “Analisis Kinerja Jaringan Wlan pada Sekolah Menengah Pertama Negeri 6 Palopo,” Jurnal Informatika dan Teknologi Komputer, vol. 01, no. 01, 2023, doi: https://doi.org/10.53769/bandwidth.v1i1.380.
  • Herman, K. O. Haris, Handrawan, A. S. Abdullah, A. Rizyky, and R. S. Indah, “Penggunaan Digital Forensik dalam Pembuktian Tindak Pidana Pencemaran Nama Baik di Media Sosial Berdasarkan UU ITE,” Halu Oleo Legal Research, vol. 6, no. 2, 2024, doi: https://doi.org/10.33772/holresch.v6i2.788.
  • E. Setiawan and Hartiwiningsih, “Pemanfaatan Digital Forensik dan Teknologi Informasi Dalam Proses Pembuktian Tindak Pidana Pemalsuan Dokumen Elektronik,” Prosiding Seminar Nasional Ilmu Hukum, vol. 1, no. 2, pp. 179–193, 2024, doi: 10.62383/prosemnashuk.v1i2.39.
  • N. Abidin, “Optimalisasi Firewall pada Jaringan Komputer Berskala Luas,” JSI (Jurnal Sistem Informasi) Universitas Suryadarma, vol. 1, no. 1, 2021, doi: https://doi.org/10.35968/jsi.v1i1.36.
  • W. Agustiono, D. Wulan Suci, and N. Prastiti, “Analisis Forensik Digital Menggunakan Metode NIST untuk Memulihkan Barang Bukti yang Dihapus Digital Forensic Analysis Using the NIST Method for Recovering Deleted Evidence,” Jurnal Teknologi dan Informasi (JATI), vol. 14, 2024, doi: 10.34010/jati.v14i2.
  • H. Wintolo, I. Riadi, and A. Yudhana, “Enhancing Private Cloud Security Using Knowledge Understanding Assessment Defense Method for Distributed Denial of Service Attack Mitigation,” International Journal of Safety and Security Engineering, vol. 15, no. 11, pp. 2323–2331, Dec. 2025, doi: 10.18280/ijsse.151112.
Index Terms
Computer Science
Information Sciences
No index terms available.
Keywords

DDoS Digital Forensics NIST RouterOS Wireshark

Powered by PhDFocusTM