IDSRadar:a real-time visualization framework for IDS alerts

被引:0
|
作者
ZHAO Ying [1 ]
ZHOU FangFang [1 ]
FAN XiaoPing [1 ,2 ]
LIANG Xing [1 ]
LIU YongGang [1 ]
机构
[1] Information Science and Engineering School,Central South University
[2] Laboratory of Networked Systems,Hunan University of Finance & Economics
基金
中国国家自然科学基金;
关键词
visual analytics; information visualization; cyber security; IDS log; entropy;
D O I
暂无
中图分类号
TP393.08 [];
学科分类号
0839 ; 1402 ;
摘要
Intrusion Detection Systems(IDS) is an automated cyber security monitoring system to sense malicious activities.Unfortunately,IDS often generates both a considerable number of alerts and false positives in IDS logs.Information visualization allows users to discover and analyze large amounts of information through visual exploration and interaction efficiently.Even with the aid of visualization,identifying the attack patterns and recognizing the false positives from a great number of alerts are still challenges.In this paper,a novel visualization framework,IDSRadar,is proposed for IDS alerts,which can monitor the network and perceive the overall view of the security situation by using radial graph in real-time.IDSRadar utilizes five categories of entropy functions to quantitatively analyze the irregular behavioral patterns,and synthesizes interactions,filtering and drill-down to detect the potential intrusions.In conclusion,IDSRadar is used to analyze the mini-challenges of the VAST challenge 2011 and 2012.
引用
收藏
页码:216 / 227
页数:12
相关论文
共 50 条
  • [21] A Real-Time Multi-Dimensional Visualization Framework For Critical And Complex Environments
    Kamaleswaran, Rishikesan
    McGregor, Carolyn
    2014 IEEE 27TH INTERNATIONAL SYMPOSIUM ON COMPUTER-BASED MEDICAL SYSTEMS (CBMS), 2014, : 325 - 328
  • [22] Cooperative visualization framework based on video streaming and real-time vectorial information
    Bobadilla, J
    Mengual, L
    COOPERATIVE DESIGN, VISUALIZATION, AND ENGINEERING, PROCEEDINGS, 2004, 3190 : 61 - 68
  • [23] Building a scientific workflow framework to enable real-time machine learning and visualization
    Li, Feng
    Song, Fengguang
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2019, 31 (16):
  • [24] Open-source framework for data storage and visualization of real-time experiments
    Prabakar, Kumaraguru
    Wunder, Nick
    Brunhart-Lupo, Nicholas
    Pailing, Courtney
    Potter, Kristi
    Eash, Matthew
    Munch, Kristin
    2020 IEEE KANSAS POWER AND ENERGY CONFERENCE (KPEC), 2020,
  • [25] Real-Time Visualization of Moving Objects
    Ortal, Patricia
    Kato, Shinpei
    Edahiro, Masato
    2015 IEEE 3RD INTERNATIONAL CONFERENCE ON CYBER-PHYSICAL SYSTEMS, NETWORKS, AND APPLICATIONS CPSNA 2015, 2015, : 60 - 65
  • [26] Real-time image visualization for sensors
    Anding, DC
    Szabo, A
    TECHNOLOGIES FOR SYNTHETIC ENVIRONMENTS: HARDWARE-IN-THE-LOOP TESTING, 1996, 2741 : 232 - 241
  • [27] Real-time visualization of dynamic terrain
    Cai, XQ
    Li, FX
    Zhan, SY
    SYSTEM SIMULATION AND SCIENTIFIC COMPUTING, VOLS 1 AND 2, PROCEEDINGS, 2005, : 450 - 455
  • [28] RNA localization: Visualization in real-time
    Singer, RH
    CURRENT BIOLOGY, 2003, 13 (17) : R673 - R675
  • [29] REAL-TIME VISUALIZATION OF CONCURRENT PROCESSES
    SHARMA, S
    LECTURE NOTES IN COMPUTER SCIENCE, 1990, 457 : 852 - 862
  • [30] Real-Time Visualization in Anisotropic Geometries
    Kopczynski, Eryk
    Celinska-Kopczynska, Dorota
    EXPERIMENTAL MATHEMATICS, 2022, 31 (04) : 1177 - 1196