Proceedings of the Seventh International Symposium on Visualization for Cyber Security 2010
DOI: 10.1145/1850795.1850805
|View full text |Cite
|
Sign up to set email alerts
|

Real-time visualization of network behaviors for situational awareness

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
25
0

Year Published

2011
2011
2021
2021

Publication Types

Select...
5
4

Relationship

1
8

Authors

Journals

citations
Cited by 48 publications
(26 citation statements)
references
References 14 publications
0
25
0
Order By: Relevance
“…SnortView [18] focuses on the intrusion detection, while Event Visualizer [19] provides real-time visualizations for event data streams for real-time monitoring as well as various exploration mechanisms. On the other hand, authors in [20] propose a real-time visualization system to enhance situational awareness from network traffic data using LiveRAC [21]. Once analyzed and aggregated, time-series are displayed in a zoomable tabular interface to enable interactive exploration.…”
Section: Background and State-of-the-artmentioning
confidence: 99%
“…SnortView [18] focuses on the intrusion detection, while Event Visualizer [19] provides real-time visualizations for event data streams for real-time monitoring as well as various exploration mechanisms. On the other hand, authors in [20] propose a real-time visualization system to enhance situational awareness from network traffic data using LiveRAC [21]. Once analyzed and aggregated, time-series are displayed in a zoomable tabular interface to enable interactive exploration.…”
Section: Background and State-of-the-artmentioning
confidence: 99%
“…The focus of Event Visualizer [8], is to provide real-time visualizations for event data streams (e.g., system log data) to provide real-time monitoring and possibilities to smoothly switch to exploration mode covering DC2 and DC4. In contrast to this event-based approach, Best et al [3] proposes another real-time system to enhance situational awareness using the analysis of network traffic based on LiveRAC [13]. The analyzed and aggregated time-series are displayed in a zoomable tabular interface to provide the analyst an interactive exploration interface for time-series data, while our approach is more general to include also other data types (e.g., frequent words or users, hierarchical overviews) addressing DC4.…”
Section: Related Workmentioning
confidence: 99%
“…the network infrastructure), what (type of alert) and when network security alerts occurred. While real-time aspects were not explicitly considered in this work, the system of Best et al [3] puts its focus there. Using a high-throughput processing platform, the authors base their network monitoring work on the above mentioned SAX technique to model behavior of actors in the network in real-time and visualize these through a glyph representation.…”
Section: Time Series Visualizationmentioning
confidence: 99%