Publikation: A Visual Analytics Field Experiment to Evaluate Alternative Visualizations for Cyber Security Applications
Dateien
Datum
Autor:innen
Herausgeber:innen
ISSN der Zeitschrift
Electronic ISSN
ISBN
Bibliografische Daten
Verlag
Schriftenreihe
Auflagebezeichnung
DOI (zitierfähiger Link)
Internationale Patentnummer
Angaben zur Forschungsförderung
Projekt
Open Access-Veröffentlichung
Core Facility der Universität Konstanz
Titel in einer weiteren Sprache
Publikationstyp
Publikationsstatus
Erschienen in
Zusammenfassung
The analysis and exploration of emerging threats in the Internet is important to better understand the behaviour of attackers and develop new methods to enhance cyber security. Fully automated algorithms alone are often not capable of providing actionable insights about the threat landscape. We therefore combine a multi-criteria clustering algorithm, tailor-made for the identification of such attack campaigns with three interactive visualizations, namely treemap representations, interactive node-link diagrams, and chord diagrams, to allow the analysts to visually explore and make sense of the resulting multi-dimensional clusters. To demonstrate the potential of the system, we share our lessons learned in conducting a field experiment with experts in a security response team and show how it helped them to gain new insights into various threat landscapes.
Zusammenfassung in einer weiteren Sprache
Fachgebiet (DDC)
Schlagwörter
Konferenz
Rezension
Zitieren
ISO 690
FISCHER, Fabian, James DAVEY, Johannes FUCHS, Olivier THONNARD, Jörn KOHLHAMMER, Daniel A. KEIM, 2014. A Visual Analytics Field Experiment to Evaluate Alternative Visualizations for Cyber Security Applications. EuroVis 2014 : the Eurographics Conference on Visualization. Swansea, UK, 9. Juni 2014 - 13. Juni 2014. In: MARGIT POHL ..., , ed.. EuroVis 2014 : the Eurographics Conference on Visualization ; 9-13 June 2014, Swansea, Wales, UK ; EuroVA 2014, the EuroVis Workshop on Visual Analytics. Eurographics Association, 2014, pp. 43-47. ISBN 978-3-905674-68-2. Available under: doi: 10.2312/eurova.20141144BibTex
@inproceedings{Fischer2014Visua-30008, year={2014}, doi={10.2312/eurova.20141144}, title={A Visual Analytics Field Experiment to Evaluate Alternative Visualizations for Cyber Security Applications}, isbn={978-3-905674-68-2}, publisher={Eurographics Association}, booktitle={EuroVis 2014 : the Eurographics Conference on Visualization ; 9-13 June 2014, Swansea, Wales, UK ; EuroVA 2014, the EuroVis Workshop on Visual Analytics}, pages={43--47}, editor={Margit Pohl ...}, author={Fischer, Fabian and Davey, James and Fuchs, Johannes and Thonnard, Olivier and Kohlhammer, Jörn and Keim, Daniel A.} }
RDF
<rdf:RDF xmlns:dcterms="http://purl.org/dc/terms/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:bibo="http://purl.org/ontology/bibo/" xmlns:dspace="http://digital-repositories.org/ontologies/dspace/0.1.0#" xmlns:foaf="http://xmlns.com/foaf/0.1/" xmlns:void="http://rdfs.org/ns/void#" xmlns:xsd="http://www.w3.org/2001/XMLSchema#" > <rdf:Description rdf:about="https://kops.uni-konstanz.de/server/rdf/resource/123456789/30008"> <void:sparqlEndpoint rdf:resource="http://localhost/fuseki/dspace/sparql"/> <dc:date rdf:datatype="http://www.w3.org/2001/XMLSchema#dateTime">2015-02-24T14:52:20Z</dc:date> <dcterms:isPartOf rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/36"/> <dc:contributor>Fischer, Fabian</dc:contributor> <dc:creator>Fuchs, Johannes</dc:creator> <dcterms:issued>2014</dcterms:issued> <dcterms:abstract xml:lang="eng">The analysis and exploration of emerging threats in the Internet is important to better understand the behaviour of attackers and develop new methods to enhance cyber security. Fully automated algorithms alone are often not capable of providing actionable insights about the threat landscape. We therefore combine a multi-criteria clustering algorithm, tailor-made for the identification of such attack campaigns with three interactive visualizations, namely treemap representations, interactive node-link diagrams, and chord diagrams, to allow the analysts to visually explore and make sense of the resulting multi-dimensional clusters. To demonstrate the potential of the system, we share our lessons learned in conducting a field experiment with experts in a security response team and show how it helped them to gain new insights into various threat landscapes.</dcterms:abstract> <dc:creator>Fischer, Fabian</dc:creator> <dc:creator>Keim, Daniel A.</dc:creator> <foaf:homepage rdf:resource="http://localhost:8080/"/> <dc:creator>Davey, James</dc:creator> <bibo:uri rdf:resource="http://kops.uni-konstanz.de/handle/123456789/30008"/> <dc:contributor>Thonnard, Olivier</dc:contributor> <dc:contributor>Kohlhammer, Jörn</dc:contributor> <dc:language>eng</dc:language> <dcterms:title>A Visual Analytics Field Experiment to Evaluate Alternative Visualizations for Cyber Security Applications</dcterms:title> <dc:creator>Kohlhammer, Jörn</dc:creator> <dc:contributor>Davey, James</dc:contributor> <dcterms:available rdf:datatype="http://www.w3.org/2001/XMLSchema#dateTime">2015-02-24T14:52:20Z</dcterms:available> <dspace:isPartOfCollection rdf:resource="https://kops.uni-konstanz.de/server/rdf/resource/123456789/36"/> <dc:contributor>Keim, Daniel A.</dc:contributor> <dc:contributor>Fuchs, Johannes</dc:contributor> <dc:creator>Thonnard, Olivier</dc:creator> </rdf:Description> </rdf:RDF>