Pemodelan Risiko dan Upaya Mitigasi Serangan Route Hijacking Terhadap Sistem Informasi Akademik Kampus Dengan RPKI

Risk Modeling and Mitigation Efforts for Route Hijacking Attacks on a Campus Academic Information System Using RPKI

Authors

DOI:

https://doi.org/10.22303/csrid-.18.3.2026.439-456

Keywords:

Border Gateway Protocol, Route Origin Change, Resource Public Key Infrastructure, Route Origin Authorization, Route Origin Validation, Network Security, Information System

Abstract

Route hijacking attacks on the Border Gateway Protocol (BGP) pose a serious threat to the reliability of campus Academic Information System services. One common form is route origin change, where an unauthorized Autonomous System (AS) announces IP prefixes belonging to another party. This study aims to model the risk and analyze its impact on service availability. The methodology uses a routing topology model involving internal, transit, external, and attacker routers in a controlled environment. The results show that prefixes announced by unauthorized ASes can be accepted and replace valid routes due to the lack of origin validation, causing traffic to be misdirected. This condition creates risks such as traffic redirection, credential theft, and reduced service reliability. As a mitigation effort, Resource Public Key Infrastructure (RPKI) is implemented through Route Origin Authorization (ROA) and Route Origin Validation (ROV), which effectively reject invalid routes and ensure traffic remains on legitimate paths.

References

Rekhter, Y., Li, T., & Hares, S. (2021). A Border Gateway Protocol 4 (BGP-4). RFC 4271. Internet Engineering Task Force (IETF).

Huston, G. (2022). BGP Routing Security. Asia Pacific Network Information Centre (APNIC).

Bush, R., & Austein, R. (2021). The Resource Public Key Infrastructure (RPKI) to Router Protocol. RFC 6810. Internet Engineering Task Force (IETF).

CAIDA. (2022). BGPStream Project. The Cooperative Association for Internet Data Analysis.

RIPE NCC. (2022). Routing Information and RPKI Validation. RIPE Network Coordination Centre.

Mutually Agreed Norms for Routing Security (MANRS). (2022). Best Current Operational Practices for Routing Security. Internet Society.

Zhang, Z., et al. (2022). A Survey of BGP Security Issues and Solutions. IEEE Communications Surveys & Tutorials, 24(3), 1240–1268.

BSSN. (2022). Laporan Tahunan Keamanan Siber Indonesia. Badan Siber dan Sandi Negara, Jakarta.

ID-SIRTII. (2022). Laporan Statistik Keamanan Internet Indonesia. Direktorat Jenderal Aplikasi Informatika, Kementerian Komunikasi dan Informatika.

Vervier, P.-A., Thonnard, O., & Dacier, M. (2021). Mind Your Blocks: On the Stealthiness of Malicious BGP Hijacks. Proceedings of NDSS Symposium 2021.

Sermpezis, P., Kotronis, V., & Dimitropoulos, X. (2020). Hijacks in the Wild: An Analysis of BGP Prefix Hijacking Incidents. Computer Communications, 149, 136–147.

Zhang, L., Yan, J., & Wu, J. (2020). Detection of BGP Hijacking Attacks Based on Real-Time Monitoring. IEEE Access, 8, 184563–184574.

Giotsas, V., & Dietzel, C. (2021). Towards a More Secure Interdomain Routing: Evaluating the Impact of RPKI Deployment. ACM SIGCOMM Computer Communication Review, 51(3), 20–27.

Mikians, J., Konte, M., & Bush, R. (2021). Practical Challenges in Deploying RPKI at Scale. Proceedings of ACM SIGCOMM 2021, 25–37.

Nikkhah, M., & Ganjali, Y. (2021). Mitigating Route Hijacking Attacks Using SDN-Based Detection and Response. IEEE Transactions on Network and Service Management, 18(2), 1234–1247.

Sun, Y., Zhao, J., & Chen, X. (2022). RPKI Deployment in Practice: Measurement and Security Implications. IEEE Transactions on Dependable and Secure Computing, 19(4), 2501–2515.

Kim, H., & Lee, S. (2022). BGP Hijacking as a Cybercrime Vector: Case Study on Cryptocurrency Theft. Journal of Cybersecurity, 8(2), taac012.

Van Beijnum, I., & Bush, R. (2023). Operational Lessons from Global RPKI Adoption. RIPE NCC Technical Report, 2023-02, 1–15.

Tran, Q., & Shafiee, H. (2023). Machine Learning Approaches for Real-Time BGP Hijack Detection. Future Internet, 15(6), 187.

Kührer, M., Wählisch, M., & Richter, P. (2024). Route Leaks and Their Impact on the Global Internet: Analysis and Mitigation. Proceedings of ACM Internet Measurement Conference (IMC 2024), 50–63.

Canonical Ltd. (2022). Ubuntu Documentation. Canonical.

Negus, C. (2020). Linux Bible (10th ed.). Wiley.

Sobell, M. G. (2021). A Practical Guide to Ubuntu Linux (5th ed.). Addison-Wesley.

Lyon, G. F. (2022). Nmap Network Scanning: The Official Nmap Project Guide to Network Discovery and Security Scanning. Nmap Project.

Kaur, R., & Singh, M. (2021). A Study on Port Scanning Techniques Using Nmap for Network Security. International Journal of Computer Applications, 183(28), 15–20.

Zhang, Y., & Lin, J. (2023). Evaluation of Open-Source Network Scanners for Cybersecurity Testing. Journal of Network and Computer Applications, 213, 103582.

Tanenbaum, A. S., & Bos, H. (2021). Modern Operating Systems (5th ed.). Pearson.

Canonical Ltd. (2023). Ubuntu Documentation. Canonical.

Laudon, K. C., & Laudon, J. P. (2022). Management Information Systems: Managing the Digital Firm (17th ed.). Pearson.

Stair, R., & Reynolds, G. (2021). Principles of Information Systems (14th ed.). Cengage Learning.

Bush, R., & Austein, R. (2021). The Resource Public Key Infrastructure (RPKI) to Router Protocol. RFC 6810. Internet Engineering Task Force (IETF).

Published

2026-09-14

How to Cite

Pemodelan Risiko dan Upaya Mitigasi Serangan Route Hijacking Terhadap Sistem Informasi Akademik Kampus Dengan RPKI: Risk Modeling and Mitigation Efforts for Route Hijacking Attacks on a Campus Academic Information System Using RPKI. (2026). CSRID (Computer Science Research and Its Development Journal), 18(3), 439-456. https://doi.org/10.22303/csrid-.18.3.2026.439-456

Similar Articles

1-10 of 102

You may also start an advanced similarity search for this article.

Most read articles by the same author(s)