首页> 外文会议>Visualization for Computer Security >Backhoe, a Packet Trace and Log Browser
【24h】

Backhoe, a Packet Trace and Log Browser

机译:Backhoe,数据包跟踪和日志浏览器

获取原文
获取原文并翻译 | 示例

摘要

We present Backhoe, a tool for browsing packet trace or other event logs that makes it easy to spot "statistical novelties" in the traffic, i.e. changes in the character of frequency distributions of feature values and in mutual relationships between pairs of features. Our visualization uses feature entropy and mutual information displays as either the top-level summary of the dataset or alongside the data. Our tool makes it easy to switch between absolute and conditional metrics, and observe their variations at a glance. We successfully used Backhoe for analysis of proprietary protocols.
机译:我们介绍了Backhoe,这是一种用于浏览数据包跟踪或其他事件日志的工具,可轻松发现流量中的“统计新颖性”,即特征值频率分布特征的变化以及特征对之间的相互关系。我们的可视化使用特征熵和互信息显示作为数据集的顶级摘要或与数据一起显示。我们的工具使您可以轻松地在绝对指标和条件指标之间进行切换,并一目了然地观察它们的变化。我们成功地将Backhoe用于专有协议的分析。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号