Using relational graphs for exploratory analysis of network traffic data

被引:1
|
作者
Cermak, Milan [1 ]
Fritzova, Tatiana [2 ]
Rusnak, Vit [1 ]
Sramkova, Denisa [1 ]
机构
[1] Masaryk Univ, Inst Comp Sci, Sumavska 416-15, Brno 60200, Czech Republic
[2] Masaryk Univ, Fac Informat, Botanicka 68a, Brno 60200, Czech Republic
关键词
Relational analytics; Network forensics; Visual analytics; Granef; Cybersecurity;
D O I
10.1016/j.fsidi.2023.301563
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The human brain is designed to perceive the surrounding world as associations. These associations between the individual pieces of information allow us to analyze and categorize new inputs and thus understand them. However, the support for association-based analysis in traditional network analysis tools is only limited or not present at all. These tools are mostly based on manual browsing, filtering, and aggregation, with only basic support for statistical analyses and visualizations for communicating the general characteristics. Yet, it is the relationship diagram that could allow the analysts to get a broader context and reveal the associations hidden in the data. In this paper, we explore the possibilities of relational analysis as a novel paradigm for network forensics. We provide a set of user requirements based on the discussion with domain experts and introduce a novel visual analysis tool utilizing multimodal graphs for modeling relationships between entities from captured packet traces. Finally, we demonstrate the relational analysis process on two use cases and discuss feedback from domain experts. (c) 2023 The Author(s). Published by Elsevier Ltd on behalf of DFRWS All rights reserved. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页数:10
相关论文
共 50 条
  • [1] Exploratory Data Analysis of a Network Telescope Traffic and Prediction of Port Probing Rates
    Zakroum, Mehdi
    Houmz, Abdellah
    Ghogho, Mounir
    Mezzour, Ghita
    Lahmadi, Abdelkader
    Francois, Jerome
    El Koutbi, Mohammed
    2018 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS (ISI), 2018, : 175 - 180
  • [2] Exploratory Data Analysis and Searching Cliques in Graphs
    Hubai, Andras
    Szabo, Sandor
    Zavalnij, Bogdan
    ALGORITHMS, 2024, 17 (03)
  • [3] Visual exploratory data analysis of traffic volume
    Han, Weiguo
    Wang, Jinfeng
    Shaw, Shih-Lung
    MICAI 2006: ADVANCES IN ARTIFICIAL INTELLIGENCE, PROCEEDINGS, 2006, 4293 : 695 - +
  • [4] Exploratory Analysis for Big Social Data Using Deep Network
    Wu, Chao
    Wang, Guolong
    Zhu, Jiangcheng
    Lertvittayakumjorn, Piyawat
    Hu, Simon
    Tan, Chilie
    Mi, Hong
    Xu, Yadan
    Xiao, Jun
    IEEE ACCESS, 2019, 7 : 21446 - 21453
  • [5] EFFICIENCY EVALUATIONS OF RAILWAYS USING RELATIONAL NETWORK DATA ENVELOPMENT ANALYSIS
    Ergul, Figen
    Akcan, Serap
    Yuregir, Oya Hacire
    INTERNATIONAL JOURNAL OF INDUSTRIAL ENGINEERING-THEORY APPLICATIONS AND PRACTICE, 2023, 30 (05): : 1211 - 1227
  • [6] Trip extraction for traffic analysis using cellular network data
    Breyer, Nils
    Gundlegard, David
    Rydergren, Clas
    Backman, Johan
    2017 5TH IEEE INTERNATIONAL CONFERENCE ON MODELS AND TECHNOLOGIES FOR INTELLIGENT TRANSPORTATION SYSTEMS (MT-ITS), 2017, : 321 - 326
  • [7] Scalable Network Traffic Visualization Using Compressed Graphs
    Shi, Lei
    Liao, Qi
    Sun, Xiaohua
    Chen, Yarui
    Lin, Chuang
    2013 IEEE INTERNATIONAL CONFERENCE ON BIG DATA, 2013,
  • [8] Network Monitoring using Traffic Dispersion Graphs (TDGs)
    Iliofotou, Marios
    Pappu, Prashanth
    Faloutsos, Michalis
    Mitzenmacher, Michael
    Singh, Sumeet
    Varghese, George
    IMC'07: PROCEEDINGS OF THE 2007 ACM SIGCOMM INTERNET MEASUREMENT CONFERENCE, 2007, : 315 - +
  • [9] Advantages to Modeling Relational Data using Hypergraphs versus Graphs
    Wolf, Michael M.
    Klinvex, Alicia M.
    Dunlavy, Daniel M.
    2016 IEEE HIGH PERFORMANCE EXTREME COMPUTING CONFERENCE (HPEC), 2016,
  • [10] Interactive analysis of attack graphs using relational queries
    Wang, Lingyu
    Yao, Chao
    Singhal, Anoop
    Jajodia, Sushil
    DATA AND APPLICATIONS SECURITY XX, PROCEEDINGS, 2006, 4127 : 119 - 132