STARLORD: Linked security data exploration in a 3D graph

  • Laetitia Leichtnam
  • , Eric Totel
  • , Nicolas Prigent
  • , Ludovic Me

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

In this paper, we present a novel model and visualization approach for heterogeneous sources of data. We represent our data by using a model inspired by STIX. Then, we use clustering algorithms to select interesting information to explore in a visualization panel. The visualization is based on a 3D graph representation that highlights the link between malicious event and allows to focus on relevant security artifacts. We illustrate our approach with two case studies using datasets containing network capture of the wannacry attack.

Original languageEnglish
Title of host publication2017 IEEE Symposium on Visualization for Cyber Security, VizSec 2017
EditorsCeleste Lyn Paul, Simon Walton, Robert Gove, Sophie Engle, Diane Staheli, Lane Harrison, Nicolas Prigent
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages1-4
Number of pages4
ISBN (Electronic)9781538626931
DOIs
Publication statusPublished - 6 Oct 2017
Externally publishedYes
Event14th IEEE Symposium on Visualization for Cyber Security, VizSec 2017 - Phoenix, United States
Duration: 2 Oct 2017 → …

Publication series

Name2017 IEEE Symposium on Visualization for Cyber Security, VizSec 2017
Volume2017-October

Conference

Conference14th IEEE Symposium on Visualization for Cyber Security, VizSec 2017
Country/TerritoryUnited States
CityPhoenix
Period2/10/17 → …

Keywords

  • Forensics
  • Intrusion Detection
  • Logs Management

Fingerprint

Dive into the research topics of 'STARLORD: Linked security data exploration in a 3D graph'. Together they form a unique fingerprint.

Cite this