Jurnal / Konferensi2023

An Improved LSTM-PCA Ensemble Classifier for SQL Injection and XSS Attack Detection

Penulis

Deris Stiawan, Ali Bardadi, Nurul Afifah, Lisa Melinda, Ahmad Heryanto, Tri Wanda Septian, Mohd. Yazid Idris, Imam Much Ibnu Subroto, Lukman, Rahmat Budiarto

Dipublikasikan di

Computer Systems Science and Engineering

Abstrak

The Repository Mahasiswa (RAMA) is a national repository of research reports in the form of final assignments, student projects, theses, dissertations, and research reports of lecturers or researchers that have not yet been published in journals, conferences, or integrated books from the scientific repository of universities and research institutes in Indonesia. The increasing popularity of the RAMA Repository leads to security issues, including the two most widespread, vulnerable attacks i.e., Structured Query Language (SQL) injection and cross-site scripting (XSS) attacks. An attacker gaining access to data and performing unauthorized data modifications is extremely dangerous. This paper aims to provide an attack detection system for securing the repository portal from the abovementioned attacks. The proposed system combines a Long Short-Term Memory and Principal Component Analysis (LSTM-PCA) model as a classifier. This model can effectively solve the vanishing gradient problem caused by excessive positive samples. The experiment results show that the proposed system achieves an accuracy of 96.85% using an 80%:20% ratio of training data and testing data. The rationale for this best achievement is that the LSTM's Forget Gate works very well as the PCA supplies only selected features that are significantly relevant to the attacks' patterns. The Forget Gate in LSTM is responsible for deciding which information should be kept for computing the cell state and which one is not relevant and can be discarded. In addition, the LSTM's Input Gate assists in finding out crucial information and stores specific relevant data in the memory.

Tim Penulis

1

Deris Stiawan

Universitas Sriwijaya

2

Ali Bardadi

Universitas Sriwijaya

3

Nurul Afifah

Universitas Sriwijaya

4

Lisa Melinda

5

Ahmad Heryanto

Universitas Sriwijaya

6

Tri Wanda Septian

7

Mohd. Yazid Idris

Universitas Sriwijaya

8

Imam Much Ibnu Subroto

Universitas Sriwijaya

9

Lukman

10

Rahmat Budiarto

Universitas Sriwijaya

Kutip

Deris Stiawan, Ali Bardadi, Nurul Afifah, Lisa Melinda, Ahmad Heryanto, Tri Wanda Septian, Mohd. Yazid Idris, Imam Much Ibnu Subroto, Lukman, Rahmat Budiarto (2023). An Improved LSTM-PCA Ensemble Classifier for SQL Injection and XSS Attack Detection. Computer Systems Science and Engineering.
Logo Unsri

Grup Riset Jaringan Komputer, Keamanan, dan Sistem Terdistribusi. Fakultas Ilmu Komputer, Universitas Sriwijaya.

Kontak

Alamat

Gedung Diploma Komputer, Fakultas Ilmu Komputer, Universitas Sriwijaya, Jl. Srijaya Negara, Bukit Besar, Ilir Barat I, Palembang, Sumatera Selatan, 30128

Afiliasi

Diktisaintek Berdampak
Kemdikbud
Unsri
IEEE
ACM

Pengunjung

Flag Counter

© 2026 COMNETS Research Group. Hak Cipta Dilindungi Undang-Undang.