Publikation:

VAST 2012 mini-challenge 2 : chart- and matrix-based approach to network operations forensics

Lade...
Vorschaubild

Dateien

Zu diesem Dokument gibt es keine Dateien.

Datum

2012

Herausgeber:innen

Kontakt

ISSN der Zeitschrift

Electronic ISSN

ISBN

Bibliografische Daten

Verlag

Schriftenreihe

Auflagebezeichnung

ArXiv-ID

Internationale Patentnummer

Angaben zur Forschungsförderung

Projekt

Open Access-Veröffentlichung
Core Facility der Universität Konstanz

Gesperrt bis

Titel in einer weiteren Sprache

Publikationstyp
Beitrag zu einem Konferenzband
Publikationsstatus
Published

Erschienen in

2012 IEEE Conference on Visual Analytics Science and Technology (VAST). IEEE, 2012, pp. 287-288. ISBN 978-1-4673-4752-5. Available under: doi: 10.1109/VAST.2012.6400513

Zusammenfassung

We report the approach and results on the VAST 2012 MiniChallenge 2: Bank of Money Regional Office Network Operations Forensics. Using commercial data mining, visualization and database software such as KNIME, Tableau and MySQL as well as a custom-written source vs. destination IP pixel matrix, our team of students identified suspicious IRC traffic, an attack on the firewall, a drop in the firewall connections, an attempt for sensitive information exchange and a possible Distributed Denial-of-Service attack executed partly from a host within the bank network.

Zusammenfassung in einer weiteren Sprache

Fachgebiet (DDC)
004 Informatik

Schlagwörter

Konferenz

2012 IEEE Conference on Visual Analytics Science and Technology (VAST), 14. Okt. 2012 - 19. Okt. 2012, Seattle, WA, USA
Rezension
undefined / . - undefined, undefined

Forschungsvorhaben

Organisationseinheiten

Zeitschriftenheft

Zugehörige Datensätze in KOPS

Zitieren

ISO 690HILDENBRAND, Jan, Daniel-Ionut PAVAL, Prakash THAPA, Christian ROHRDANTZ, Svetlana MANSMANN, Enrico BERTINI, Tobias SCHRECK, 2012. VAST 2012 mini-challenge 2 : chart- and matrix-based approach to network operations forensics. 2012 IEEE Conference on Visual Analytics Science and Technology (VAST). Seattle, WA, USA, 14. Okt. 2012 - 19. Okt. 2012. In: 2012 IEEE Conference on Visual Analytics Science and Technology (VAST). IEEE, 2012, pp. 287-288. ISBN 978-1-4673-4752-5. Available under: doi: 10.1109/VAST.2012.6400513
BibTex
@inproceedings{Hildenbrand2012-10minic-28171,
  year={2012},
  doi={10.1109/VAST.2012.6400513},
  title={VAST 2012 mini-challenge 2 : chart- and matrix-based approach to network operations forensics},
  isbn={978-1-4673-4752-5},
  publisher={IEEE},
  booktitle={2012 IEEE Conference on Visual Analytics Science and Technology (VAST)},
  pages={287--288},
  author={Hildenbrand, Jan and Paval, Daniel-Ionut and Thapa, Prakash and Rohrdantz, Christian and Mansmann, Svetlana and Bertini, Enrico and Schreck, Tobias}
}
RDF
<rdf:RDF
    xmlns:dcterms="http://purl.org/dc/terms/"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:bibo="http://purl.org/ontology/bibo/"
    xmlns:dspace="http://digital-repositories.org/ontologies/dspace/0.1.0#"
    xmlns:foaf="http://xmlns.com/foaf/0.1/"
    xmlns:void="http://rdfs.org/ns/void#"
    xmlns:xsd="http://www.w3.org/2001/XMLSchema#" > 
  <rdf:Description rdf:about="https://kops.uni-konstanz.de/server/rdf/resource/123456789/28171">
    <dc:contributor>Mansmann, Svetlana</dc:contributor>
    <bibo:uri rdf:resource="http://kops.uni-konstanz.de/handle/123456789/28171"/>
    <dcterms:bibliographicCitation>2012 IEEE Conference on Visual Analytics Science and Technology (VAST 2012) : Seattle, Washington, USA, 14 - 19 October 2012 ; [part of VisWeek 2012] / ed. by Giuseppe Santucci ... - Piscataway, NJ : IEEE, 2012. - S. 287-288. - ISBN 978-1-4673-4752-5</dcterms:bibliographicCitation>
    <foaf:homepage rdf:resource="http://localhost:8080/"/>
    <dc:contributor>Paval, Daniel-Ionut</dc:contributor>
    <dcterms:isPartOf rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/36"/>
    <dspace:isPartOfCollection rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/36"/>
    <dc:creator>Schreck, Tobias</dc:creator>
    <dc:contributor>Rohrdantz, Christian</dc:contributor>
    <dc:contributor>Schreck, Tobias</dc:contributor>
    <dcterms:rights rdf:resource="https://rightsstatements.org/page/InC/1.0/"/>
    <dc:contributor>Thapa, Prakash</dc:contributor>
    <dcterms:available rdf:datatype="http://www.w3.org/2001/XMLSchema#dateTime">2014-06-30T13:09:34Z</dcterms:available>
    <dc:date rdf:datatype="http://www.w3.org/2001/XMLSchema#dateTime">2014-06-30T13:09:34Z</dc:date>
    <dcterms:issued>2012-10</dcterms:issued>
    <void:sparqlEndpoint rdf:resource="http://localhost/fuseki/dspace/sparql"/>
    <dc:creator>Hildenbrand, Jan</dc:creator>
    <dc:rights>terms-of-use</dc:rights>
    <dc:creator>Thapa, Prakash</dc:creator>
    <dc:contributor>Bertini, Enrico</dc:contributor>
    <dc:language>eng</dc:language>
    <dcterms:title>VAST 2012 mini-challenge 2 : chart- and matrix-based approach to network operations forensics</dcterms:title>
    <dc:creator>Rohrdantz, Christian</dc:creator>
    <dc:creator>Mansmann, Svetlana</dc:creator>
    <dcterms:abstract xml:lang="eng">We report the approach and results on the VAST 2012 MiniChallenge 2: Bank of Money Regional Office Network Operations Forensics. Using commercial data mining, visualization and database software such as KNIME, Tableau and MySQL as well as a custom-written source vs. destination IP pixel matrix, our team of students identified suspicious IRC traffic, an attack on the firewall, a drop in the firewall connections, an attempt for sensitive information exchange and a possible Distributed Denial-of-Service attack executed partly from a host within the bank network.</dcterms:abstract>
    <dc:creator>Paval, Daniel-Ionut</dc:creator>
    <dc:contributor>Hildenbrand, Jan</dc:contributor>
    <dc:creator>Bertini, Enrico</dc:creator>
  </rdf:Description>
</rdf:RDF>

Interner Vermerk

xmlui.Submission.submit.DescribeStep.inputForms.label.kops_note_fromSubmitter

Kontakt
URL der Originalveröffentl.

Prüfdatum der URL

Prüfungsdatum der Dissertation

Finanzierungsart

Kommentar zur Publikation

Allianzlizenz
Corresponding Authors der Uni Konstanz vorhanden
Internationale Co-Autor:innen
Universitätsbibliographie
Ja
Begutachtet
Diese Publikation teilen