Mitigation of Multi Target Denial of Service (DOS) Attacks using Wazuh Active Response

    Arya Pandya Paramaputra, - and Galura Muhammad Suranegara, - and Endah Setyowati, - (2025) Mitigation of Multi Target Denial of Service (DOS) Attacks using Wazuh Active Response. S1 thesis, Universitas Pendidikan Indonesia.

    Abstract

    The increasing frequency of cyberattacks, particularly Denial of Service (DoS) attacks, poses significant challenges to the availability of online services. Multi-target DoS attacks exacerbate this issue by simultaneously targeting multiple systems, requiring robust and automated mitigation strategies. This study evaluates the effectiveness of Wazuh Active Response, an open-source Security Information and Event Management (SIEM) solution, in mitigating multi-target DoS attacks using the Slowloris technique. The methodology involved simulating multitarget DoS attacks using `slowhttptest` against multiple target servers and configuring Wazuh Active Response to automatically block malicious IP addresses upon detection. Key metrics measured included Success Rate, Response Time Detection, and Response Time Blocking. The results showed a Success Rate of 100% with Active Response enabled, an average Response Time Detection of 10.36 seconds, and an average Response Time Blocking of 50.36 seconds. This study confirms that Wazuh Active Response effectively mitigates multi-target DoS attacks, ensuring a high success rate in blocking malicious IP addresses and demonstrating the potential of automated threat detection and response mechanisms in enhancing network security against complex attack scenarios.

    [thumbnail of TA_ART_SISTEL_2100925_SK.pdf] Text
    TA_ART_SISTEL_2100925_SK.pdf

    Download (1MB)
    [thumbnail of TA_ART_SISTEl_2100925_ART.pdf] Text
    TA_ART_SISTEl_2100925_ART.pdf
    Restricted to Staf Perpustakaan

    Download (574kB)
    Official URL: https://jurnal.itscience.org/index.php/CNAPC/artic...
    Item Type: Thesis (S1)
    Additional Information: https://scholar.google.com/citations?hl=en&user=97QA1xEAAAAJ&view_op=list_works&gmla=AH8HC4w_1EJAYmExDPmJiqkipAqQkty2iOo_i41IDJACikXokoWeWBAK9cTPYMLRD8aVDYulSimVqxZHXWjAbRyv ID Sinta Dosen Pembimbing Galura Muhammad Suranegara : 6703764 Endah Setyowati : 6681149 "Karya ini adalah tugas akhir setara dengan skripsi sesuai dengan SK Direktur Kampus Universitas Pendidikan Indonesia Di Purwakarta Nomor: 334/UN40.C4/TD.06/2025"
    Uncontrolled Keywords: Active Response;Denial of Service; Multi Target; SIEM; Wazuh
    Subjects: T Technology > T Technology (General)
    Divisions: UPI Kampus Purwakarta > S1 Sistem Telekomunikasi
    Depositing User: Arya Pandya Paramaputra
    Date Deposited: 23 Jul 2025 08:09
    Last Modified: 23 Jul 2025 08:21
    URI: http://repository.upi.edu/id/eprint/134645

    Actions (login required)

    View Item View Item