Configurable IP-space maps for large-scale, multi-source network data visual analysis and correlation
نویسندگان
چکیده
The need to scale visualization of cyber (IP-space) data sets and analytic results as well as to support a variety of data sources and missions have proved challenging requirements for the development of a cyber common operating picture. Typical methods of visualizing IP-space data require unreliable domain conversions such as IP geolocation, network topology that is difficult to discover, or data sets that can only display one at a time. In this work, we introduce a generalized version of hierarchical network maps called configurable IP-space maps that can simultaneously visualize multiple layers of IP-based data at global scale. IP-space maps allow users to interactively explore the cyber domain from multiple perspectives. A web-based implementation of the concept is described, highlighting a novel repurposing of existing geospatial mapping tools for the cyber domain. Benefits of the configurable IP-space map concept to cyber data set analysis using spatial statistics are discussed. IP-space map structure is found to have a strong effect on data clustering behavior, hinting at the ability to automatically determine concentrations of network events within an organizational hierarchy.
منابع مشابه
Data Cube Indexing of Large-Scale Infosec Repositories
Analysts examining large-scale information security repositories for propagating network events are interested in quickly identifying temporal and spatial (IP address and/or port) regions containing interesting phenomena, or correlating events from different time periods. The size of these datasets strains current query capabilities provided by, for example, relational databases. We introduce a...
متن کاملCorrelation between IP and Rs and grade data in modeling and evaluation of a copper deposit, case study: the Sarbisheh copper deposit, Iran
This paper addresses the application of integrated chargeability and resistivity method and grade data in modeling and evaluation of copper deposits. We argue that the relationship between IP, Rs and grade data may be used for modeling and reserve estimation and tested this argument for Sarbisheh copper deposit that is located in eastern Iran. Geology and mineralization situation of Sarbisheh d...
متن کاملA Multi-Metric Index for Hydrocarbons Source Apportionment
Several studies have been conducted to develop more accurate and precise indices for hydrocarbons source apportionment. The present study, however, develops a new multi-metric index for hydrocarbons source apportionment. It measures Poly Aromatic Hydrocarbons (PAHs) concentration at six stations with well known petrogenic origin, calculating Phe/An, Flu/Py, Chr/BaA, BaA/Chr, An/(An+Ph), Flu/(Fl...
متن کاملA Multi-Metric Index for Hydrocarbons Source Apportionment
Several studies have been conducted to develop more accurate and precise indices for hydrocarbons source apportionment. The present study, however, develops a new multi-metric index for hydrocarbons source apportionment. It measures Poly Aromatic Hydrocarbons (PAHs) concentration at six stations with well known petrogenic origin, calculating Phe/An, Flu/Py, Chr/BaA, BaA/Chr, An/(An+Ph), Flu/(Fl...
متن کاملOptimized co-registration method of Spinal cord MR Neuroimaging data analysis and application for generating multi-parameter maps
Introduction: The purpose of multimodal and co-registration In MR Neuroimaging is to fuse two or more sets images (T1, T2, fMRI, DTI, pMRI, …) for combining the different information into a composite correlated data set in order to visualization, re-alignment and generating transform to functional Matrix. Multimodal registration and motion correction in spinal cord MR Neuroimag...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2014