The Community for Technology Leaders
RSS Icon
Issue No.05 - September/October (2004 vol.24)
pp: 27-35
Soon Tee Teoh , University of California, Davis
Kwan-Liu Ma , University of California, Davis
Soon Felix Wu , University of California, Davis
T.J. Jankun-Kelly , Mississippi State University
To ensure the normal operation of a large computer network system, the common practice is to constantly collect system logs and analyze the network activities for detecting anomalies. Most of the analysis methods in use today are highly automated due to the enormous size of the collected data. Conventional automated methods are largely based on statistical modeling, and some employ machine learning. This article presents interactive visualization as an alternative and effective data exploration method for understanding the complex behaviors of computer network systems. It describes three log-file analysis applications, and demonstrates how the use of the authors' visualization-centered tools can lead to the discovery of flaws and intruders in the network systems.
information visualization, intrusion detection, visual data mining, network visualization, Internet routing stability
Soon Tee Teoh, Kwan-Liu Ma, Soon Felix Wu, T.J. Jankun-Kelly, "Detecting Flaws and Intruders with Visual Data Analysis", IEEE Computer Graphics and Applications, vol.24, no. 5, pp. 27-35, September/October 2004, doi:10.1109/MCG.2004.26
1. C. Ahlberg and B. Shneiderman, "Visual Information Seeking: Tight Coupling of Dynamic Query Filters with Starfield Displays," Proc. CHI 1994: Human Factors in Computing Systems, ACM Press, 1994, pp. 313-317.
2. L. Girardin, "An Eye on Network Intruder-Administrator Shootouts," Proc. Workshop on Intrusion Detection and Network Monitoring (ID 99), Usenix Assoc., 1999, pp. 19-28.
3. S.T. Teoh et al., "Case Study: Interactive Visualization for Internet Security," Proc. IEEE Visualization Conf. 2002, IEEE CS Press, 2002, pp. 505-508.
4. T.J. Jankun-Kelly and K.-L. Ma, "MoireGraphs: Radial Focus+Context Visualization and Interaction for Graphs with Visual Nodes," Proc. 2003 IEEE Symp. Information Visualization, IEEE CS Press, 2003, pp. 59-66.
5. S.T. Teoh, K.-L. Ma, and S.F. Wu, "Visual Exploration Process for the Analysis of Internet Routing Data," Proc. IEEE Conf. Visualization 2003, IEEE CS Press, 2003, pp. 523-530.
6. S.T. Teoh and K.-L. Ma, "PaintingClass: Interactive Construction, Visualization, and Exploration of Decision Trees," Proc. 9th ACM SIGKDD Int'l Conf. Knowledge Discovery and Data Mining, ACM Press, 2003, pp. 667-672.
7. E. Kandogan, "Visualizing Multidimensional Clusters, Trends, and Outliers Using Star Coordinates," Proc. 7th ACM SIGKDD Int'l Conf. Knowledge Discovery and Data Mining, ACM Press, 2001, pp. 107-116.
40 ms
(Ver 2.0)

Marketing Automation Platform Marketing Automation Tool