JURNAL SISTEM INFORMASI BISNIS
Vol 10, No 2 (2020): Volume 10 Nomor 2 Tahun 2020

Desain dan Implementasi Deteksi WebShell Malicious Web Shell (Backdoor Trap)

Raditya Faisal Waliulu (Politeknik Saint Paul Sorong)
Santrinita Trhessya Jumame (Politeknik Saint Paul Sorong)



Article Info

Publish Date
22 Dec 2020

Abstract

We present a report on hacker attacks against production servers on increased PHP vulnerabilities through SQL Injection attacks, XSS (Cross Site-Scripting), Cookie hijack, miss configuration, social engineering, CSRF (cross site request forgery), OTP bypass (take over account) and others. Hacker attacks leave a backdoor or webshell that will be accessed remotely (remote), this is common in blackhat hackers. Provides a shelltrap framework to use for and perform and clean the backdoor on the server. Because the back door has characteristics, namely: (1) taking over the physical server or localrooting; (2) adaptation to the run time environment; (3) using global variables to access the server. Have evaluated shelltrap on realworld server tame PHP Script and PHP backdoor. The experimental results get high level detection results of 98 %.

Copyrights © 2020






Journal Info

Abbrev

jsinbis

Publisher

Subject

Computer Science & IT Economics, Econometrics & Finance

Description

JSINBIS merupakan jurnal ilmiah dalam bidang Sistem Informasi bisnis fokus pada Business Intelligence. Sistem informasi bisnis didefinisikan sebagai suatu sistem yang mengintegrasikan teknologi informasi, orang dan bisnis. SINBIS membawa fungsi bisnis bersama informasi untuk membangun saluran ...