Search for collections on Repository Library PCR

Implementasi Dan Integrasi Malware Information Sharing Platform Sebagai Sistem Threat Intelligence Pada Security Operation Center

Ardani, Kevin (2026) Implementasi Dan Integrasi Malware Information Sharing Platform Sebagai Sistem Threat Intelligence Pada Security Operation Center. Diploma thesis, Politeknik Caltex Riau.

[thumbnail of Bab 1 - KevinArdani.pdf] Text
Bab 1 - KevinArdani.pdf

Download (2MB)
[thumbnail of Bab 2 - KevinArdani.pdf] Text
Bab 2 - KevinArdani.pdf

Download (8MB)
[thumbnail of Bab 3 - KevinArdani.pdf] Text
Bab 3 - KevinArdani.pdf
Restricted to Repository staff only

Download (2MB)
[thumbnail of Bab 4 - KevinArdani.pdf] Text
Bab 4 - KevinArdani.pdf
Restricted to Repository staff only

Download (13MB)
[thumbnail of Daftar Pustaka - KevinArdani.pdf] Text
Daftar Pustaka - KevinArdani.pdf

Download (1MB)
[thumbnail of Daftar Lampiran - KevinArdani.pdf] Text
Daftar Lampiran - KevinArdani.pdf
Restricted to Repository staff only

Download (6MB)
[thumbnail of Bab 5 - KevinArdani.pdf] Text
Bab 5 - KevinArdani.pdf
Restricted to Repository staff only

Download (151kB)
[thumbnail of Lembar_Pengesahan - KevinArdani.pdf] Text
Lembar_Pengesahan - KevinArdani.pdf
Restricted to Repository staff only

Download (241kB)
[thumbnail of Laporan PA - KevinArdani.pdf] Text
Laporan PA - KevinArdani.pdf
Restricted to Repository staff only

Download (4MB)

Abstract

Perkembangan ancaman siber yang semakin beragam memerlukan mekaninsme untuk mengumpulkan, mengelola, dan menganalisis informasi ancaman secara terpusat guna mendukung aktivitas Security Operatcion Center (SOC). Penelitian ini beretujuan mengimplementasikan dan mengintegrasikan Malware Information Sharing Platform (MISP) sebagai sistem Threat Intelligence dengan TheHive dan Cortex. MISP digunakan untuk mengelola Indicator of Compromise (IoC) yang berasal dari Threat Intelligence Feed maupun hasil simulasi, sedangkan TheHive befungsi menerima Alert dan menyajikan informasi ancaman dalam bentuk dashboard. Cortext digunakan untuk menganalisis Observable menggunakan layanan VirusTotal. Pengujian dilakukan melalui tiga skenario, yaitu Sinkroniasi Threat Intelligence Feed, Simulasi serangan Browser-in-the-Browser (BitB), dan simulasi Windows Backdoor. Hasil pengujian menunjukkan IoC berhasil dikelola pada MISP, dikirim ke TheHive sebagai Alert berdasarkan sumber sehingga memudahkan proses monitoring informasi ancaman pada lingkungan SOC. Implementasi yang dilakukan menunjukkan bahwa integrasi antara MISP, TheHive dan Cortex mampu mendukung pengelolaan, distribusi, serta analisis informasi ancaman sebagai bagian dari penerapan Threat Intelligence.

Item Type: Thesis (Diploma)
Subjects: KBK > KBK Jurusan Teknologi Informasi > KBK Operating System and Computer Network
Divisions: Sarjana Terapan > Jurusan Teknologi Informasi > Teknologi Rekayasa Komputer
Depositing User: Mr Kevin Ardani
Date Deposited: 18 Aug 2026 07:31
Last Modified: 18 Aug 2026 07:31
URI: https://repository.lib.pcr.ac.id/id/eprint/5065

Actions (login required)

View Item
View Item