Laporkan Masalah

IDENTIFIKASI SERVICE DALAM KOMPUTER UNTUK MENGETAHUI CELAH KEAMANAN DENGAN MENGGUNAKAN METODE BANNER GRABBING MELALUI JARINGAN; SERVICE IDENTIFICATION IN THE COMPUTER FOR KNOWING VULNERABILITY USE BANNER GRABBING METHOD THROUGH NETWORK

YUDISTIRA YONGKI KURNIAWAN BUDIMAN, Ahmad Ashari

2015 | Disertasi | FMIPA

Computer Network Infrastructure, for example LAN and the internet, enabling it to provide information quickly, as well as opening the potential for security holes or vulnerabilities. In addition, the data is an Important asset for to place of business. In order to secure those assets, must be maintained and protected properly. To preserve and protect these assets, so the computer system should be tested for safety. The Research aims to create a program identify the existence of security holes on computers in the network. The method used is banner grabbing by comparing the name of the banner that appears when scanning with data that contains information security gaps and solutions. The program was created in order to help the penetration tester to find security holes in a service and repair vulnerabilities. Programs are created using Python by using a socket module, function repetition, conditioning as well as data that has been tested successfully to detect the presence of security holes in FreeSSHD 1.0.9, PCMan's 2.0, ProFTPD and ProFTPD 1.3.3a 1.3.5rc3. The results obtained after updating or replacing the application server according to the recommendations, shows that, not exploit successfully exploited back and fuzzer program can not create a crash. The results obtained after replacing the default banner on the application server, indicating that the identification program can not detect security loopholes service name and version of the application.

Kata Kunci : Banner Grabbing; Vulnerability; Exploit


    Tidak tersedia file untuk ditampilkan ke publik.