Network Traffic Exploration Application: A Tool to Assess, Visualize, and Analyze Network Security Events

  • Authors:
  • Grant Vandenberghe

  • Affiliations:
  • Network Information Operations Section, Defence Research and Development Canada (DRDC),

  • Venue:
  • VizSec '08 Proceedings of the 5th international workshop on Visualization for Computer Security
  • Year:
  • 2008

Quantified Score

Hi-index 0.01

Visualization

Abstract

Defence Research and Development Canada (DRDC) is developing a security event / packet analysis tool that is useful for analyzing a wide range of network attacks. The tool allows the security analyst to visually analyze a security event from a broad range of visual perspectives using a variety of detection algorithms. The tool is easy to extend and can be used to generate automated analysis scripts. The system architecture is presented and its capabilities are demonstrated through the analysis of several covert tunnels.