首页> 外文会议>Information Visualisation, 2005. Proceedings. Ninth International Conference on >IPMatrix: an effective visualization framework for cyber threat monitoring
【24h】

IPMatrix: an effective visualization framework for cyber threat monitoring

机译:IPMatrix:用于网络威胁监控的有效可视化框架

获取原文

摘要

An effective Internet cyber threat monitoring system detects cyber threats using network sensors deployed at particular points on the Internet, statistically analyses the time of attack, source of attack, and type of attack, and then visualizes the result of this analysis. Existing systems, however, simply visualize country-by-country statistics of attacks or hourly changes of attacks. Using these systems, it is difficult to understand the source of attack, the diffusion of the attack, or the relation between the target and the source of the attack. This paper described a method for visualizing cyber threats by using 2-dimensional matrix representation of IP addresses. The advantages of this method are that: (I) the logical distance of IP addresses is represented intuitively, (2) Internet address space is visualized economically, (3) macroscopic information (site level) and microscopic information (local level) are visualized simultaneously. By using this visualization framework, propagation of the Welchia worm and the Sasser.D worm are visualized.
机译:一个有效的Internet网络威胁监视系统使用部署在Internet特定位置的网络传感器检测网络威胁,对攻击时间,攻击源和攻击类型进行统计分析,然后可视化分析结果。但是,现有系统仅可以直观地显示出国家/地区的攻击统计信息或攻击的每小时变化。使用这些系统,很难理解攻击的来源,攻击的扩散或目标与攻击源之间的关系。本文介绍了一种使用IP地址的二维矩阵表示来可视化网络威胁的方法。这种方法的优点是:(I)直观地表示IP地址的逻辑距离;(2)经济地可视化Internet地址空间;(3)同时可视化宏观信息(站点级别)和微观信息(本地级别) 。通过使用此可视化框架,可以看到Welchia蠕虫和Sasser.D蠕虫的传播。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号