Toward Real-time Network-wide Cyber Situational Awareness

被引:0
|
作者
Jirsik, Tomas [1 ,2 ]
Celeda, Pavel [1 ]
机构
[1] Masaryk Univ, Inst Comp Sci, Bot 68a, Brno 60200, Czech Republic
[2] Masaryk Univ, Fac Informat, Bot 68a, Brno 60200, Czech Republic
来源
NOMS 2018 - 2018 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM | 2018年
关键词
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In today's complex computer networks, we are constantly facing a risk of data loss, system compromise, or intellectual property theft. The complexity of the networks hinders their effective defense. A Network-wide Cyber Situational Awareness (NwCSA) has been introduced to assist a network security administrator with network security. The concept, however, faces several challenges that hinder an efficient application of the NwCSA in a real-world environment. The challenges include the overload of raw data, low speed of reaction, and a lack of context and unified view on a network. In this paper, we present a novel framework that faces above mentioned challenges. The framework leverages a distributed data stream processing system and methods for real-time big data processing. The framework is evaluated with respect to stated requirements on systems for NwCSA. Moreover, we present a prototype framework implementation and provide lessons learned from its real-world deployment.
引用
收藏
页数:7
相关论文
共 50 条
  • [1] Ontology-based approach to real-time risk management and cyber-situational awareness
    Sanchez-Zas, Carmen
    Villagra, Victor A.
    Vega-Barbas, Mario
    Larriva-Novo, Xavier
    Ignacio Moreno, Jose
    Berrocal, Julio
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2023, 141 : 462 - 472
  • [2] Cyber attacks real time detection: towards a Cyber Situational Awareness for naval systems
    Jacq, Olivier
    Brosset, David
    Kermarrec, Yvon
    Simonin, Jacques
    2019 INTERNATIONAL CONFERENCE ON CYBER SITUATIONAL AWARENESS, DATA ANALYTICS AND ASSESSMENT (CYBER SA), 2019,
  • [3] VeriFlow: Verifying Network-Wide Invariants in Real Time
    Khurshid, Ahmed
    Zhou, Wenxuan
    Caesar, Matthew
    Godfrey, P. Brighten
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2012, 42 (04) : 467 - 472
  • [4] Real-time Situational Awareness for Critical Infrastructure Protection
    Saunders, Nick
    Khanna, Bakul
    Collins, Tim
    2015 IEEE INTERNATIONAL CONFERENCE ON SMART GRID COMMUNICATIONS (SMARTGRIDCOMM), 2015, : 151 - 156
  • [5] Securing Intelligent Substations: Real-Time Situational Awareness
    Major, Stephen
    Fekovic, Ervin
    2014 IEEE INTERNATIONAL ENERGY CONFERENCE (ENERGYCON 2014), 2014, : 711 - 715
  • [6] On Complex Event Processing for Real-Time Situational Awareness
    Stojanovic, Nenad
    Artikis, Alexander
    RULE-BASED REASONING, PROGRAMMING, AND APPLICATIONS, 2011, 6826 : 114 - +
  • [7] Real-Time 360° Imaging System for Situational Awareness
    Rose, Michael K.
    Chamberlain, Jesse
    LaValley, Daniel
    SENSORS, AND COMMAND, CONTROL, COMMUNICATIONS, AND INTELLIGENCE (C3I) TECHNOLOGIES FOR HOMELAND SECURITY AND HOMELAND DEFENSE VIII, 2009, 7305
  • [8] Sonification of a network's self-organized criticality for real-time situational awareness
    Vickers, Paul
    Laing, Chris
    Fairfax, Tom
    DISPLAYS, 2017, 47 : 12 - 24
  • [9] CyPhERS: A cyber-physical event reasoning system providing real-time situational awareness for attack and fault response
    Mueller, Nils
    Bao, Kaibin
    Matthes, Jorg
    Heussen, Kai
    COMPUTERS IN INDUSTRY, 2023, 151
  • [10] Integrating Real-time Analytics and Situational Awareness into Business Process Management
    Zhao, Xiaohui
    2021 IEEE INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING (ICEBE 2021), 2021, : 21 - 26