InetVis, a visual tool for network telescope traffic analysis

  • Authors:
  • Jean-Pierre van Riel;Barry Irwin

  • Affiliations:
  • Rhodes University, Grahamstown, South Africa;Rhodes University, Grahamstown, South Africa

  • Venue:
  • AFRIGRAPH '06 Proceedings of the 4th international conference on Computer graphics, virtual reality, visualisation and interaction in Africa
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

This article illustrates the merits of visual analysis as it presents preliminary findings using InetVis - an animated 3-D scatter plot visualization of network events. The concepts and features of InetVis are evaluated with reference to related work in the field. Tested against a network scanning tool, anticipated visual signs of port scanning and network mapping serve as a proof of concept. This research also unveils substantial amounts of suspicious activity present in Internet traffic during August 2005, as captured by a class C network telescope. InetVis is found to have promising scalability whilst offering salient depictions of intrusive network activity.