Visual latency-based interactive visualization for digital forensics

被引:4
作者
Cai, Yang [1 ]
Franco, Rafael de M.
Garcia-Herranz, Manuel [2 ,3 ]
机构
[1] Carnegie Mellon Univ, Pittsburgh, PA 15213 USA
[2] Univ Autonoma Madrid, Sch Engn, E-28049 Madrid, Spain
[3] Univ Autonoma Madrid, UAM Indra Ambient Intelligence Lab AmILab, E-28049 Madrid, Spain
关键词
Interaction; Visualization; Network anomaly; Anomalous event; Clustering;
D O I
10.1016/j.jocs.2010.04.005
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
In this paper, we present an interactive visualization and clustering algorithm for real-time multi-attribute digital forensic data such as network anomalous events. In the model, glyphs are defined with multiple network attributes and clustered with the recursive optimization algorithm for dimensional reduction. The user's visual latency time is incorporated into the recursive process so that it updates the display and the optimization model according to the human factor and maximizes the capacity of real-time computation. The interactive search interface is developed to enable the display of similar data points according to their similarity of attributes. Finally, typical network anomalous events are analyzed and visualized such as password guessing, etc. This technology is expected to have an impact on real-time visual data mining for network security, sensor networks and many other multivariable real-time monitoring systems. Our usability study shows a decent accuracy of context-independent glyph identification (89.37%) with a high precision for anomaly detection (94.36%). The results indicate that, without any context, users tend to classify unknown patterns as possibly harmful. On the other hand, in the dynamic clustering (context-dependent) experiment, clusters of very extremely unusual glyphs normally contain fewer packets. In this case, the packet identification accuracy is remarkably high (99.42%). (C) 2010 Elsevier B.V. All rights reserved.
引用
收藏
页码:115 / 120
页数:6
相关论文
共 50 条
[41]   An Interactive Clustering-Based Visualization Tool for Air Quality Data Analysis [J].
Ashouri, Mahsa ;
Phoa, Frederick Kin Hing ;
Chen, Chun-Houh ;
Shmueli, Galit .
AEROSOL AND AIR QUALITY RESEARCH, 2023, 23 (12)
[42]   Gosling: A Grammar-based Toolkit for Scalable and Interactive Genomics Data Visualization [J].
L'Yi, Sehi ;
Wang, Qianwen ;
Lekschas, Fritz ;
Gehlenborg, Nils .
IEEE TRANSACTIONS ON VISUALIZATION AND COMPUTER GRAPHICS, 2022, 28 (01) :140-150
[43]   A web-based, interactive visualization tool for social environmental survey data [J].
Jones, Amber Spackman ;
Horsburgh, Jeffery S. ;
Jackson-Smith, Douglas ;
Ramirez, Maurier ;
Flint, Courtney G. ;
Caraballo, Juan .
ENVIRONMENTAL MODELLING & SOFTWARE, 2016, 84 :412-426
[44]   Research of interactive measurement based on 3D widgets in medical visualization [J].
Zhang Chao ;
Wang Lirong ;
Zou Ji ;
Wei Wei .
ISTM/2007: 7TH INTERNATIONAL SYMPOSIUM ON TEST AND MEASUREMENT, VOLS 1-7, CONFERENCE PROCEEDINGS, 2007, :1262-1265
[45]   Contextualization of Design Qualities in Interactive Story-Based Visualization Applied to Engineering [J].
Plavsic, Jovana ;
Miskovic, Ilija .
INTERACTIVE STORYTELLING, ICIDS 2021, 2021, 13138 :399-409
[46]   AVIoT: Web-based interactive authoring and visualization of indoor internet of things [J].
College of Information and Communication Engineering, Sungkyunkwan University, Suwon, Korea, Republic of .
IEEE Trans Consum Electron, 3 (295-301) :295-301
[47]   A virtual globe-based 3D visualization and interactive framework for public participation in urban planning processes [J].
Wu, Huayi ;
He, Zhengwei ;
Gong, Jianya .
COMPUTERS ENVIRONMENT AND URBAN SYSTEMS, 2010, 34 (04) :291-298
[48]   IBVis: Interactive Visual Analytics for Information Bottleneck Based Trajectory Clustering [J].
Guo, Yuejun ;
Xu, Qing ;
Sbert, Mateu .
ENTROPY, 2018, 20 (03)
[49]   TIARA: Interactive, Topic-Based Visual Text Summarization and Analysis [J].
Liu, Shixia ;
Zhou, Michelle X. ;
Pan, Shimei ;
Song, Yangqiu ;
Qian, Weihong ;
Cai, Weijia ;
Lian, Xiaoxiao .
ACM TRANSACTIONS ON INTELLIGENT SYSTEMS AND TECHNOLOGY, 2012, 3 (02)
[50]   Visual-Netsim: Development of an Interactive Browser based Network Simulator [J].
Shaikh, Omar ;
Shahzad, Farrukh .
PROCEEDINGS OF 2016 FUTURE TECHNOLOGIES CONFERENCE (FTC), 2016, :718-724