AlertVision: Visualizing Security Alerts

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 274
  • Download : 0
DC FieldValueLanguage
dc.contributor.authorHong, Jinako
dc.contributor.authorLee, JinKiko
dc.contributor.authorLee, HyunKyuko
dc.contributor.authorChang, YoonHako
dc.contributor.authorChoi, KwangHoko
dc.contributor.authorCha, Sang Kilko
dc.date.accessioned2018-11-22T06:48:38Z-
dc.date.available2018-11-22T06:48:38Z-
dc.date.created2018-11-16-
dc.date.created2018-11-16-
dc.date.created2018-11-16-
dc.date.issued2018-08-24-
dc.identifier.citation19th World International Conference on Information Security and Applications (WISA), pp.173 - 184-
dc.identifier.urihttp://hdl.handle.net/10203/246803-
dc.description.abstractSecurity is not just a technical problem, but it is a business problem. Companies are facing highly-sophisticated and targeted cyber attacks everyday, and losing a huge amount of money as well as private data. Threat intelligence helps in predicting and reacting to such problems, but extracting well-organized threat intelligence from enormous amount of information is significantly challenging. In this paper, we propose a novel technique for visualizing security alerts, and implement it in a system that we call AlertVision, which provides an analyst with a visual summary about the correlation between security alerts. The visualization helps in understanding various threats in wild in an intuitive manner, and eventually benefits the analyst to build TI. We applied our technique on real-world data obtained from the network of 85 organizations, which include 5,801,619 security events in total, and summarized lessons learned.-
dc.languageEnglish-
dc.publisherKorea Institute of Information Security and Cryptology-
dc.titleAlertVision: Visualizing Security Alerts-
dc.typeConference-
dc.identifier.wosid000766408800014-
dc.identifier.scopusid2-s2.0-85065036690-
dc.type.rimsCONF-
dc.citation.beginningpage173-
dc.citation.endingpage184-
dc.citation.publicationname19th World International Conference on Information Security and Applications (WISA)-
dc.identifier.conferencecountryKO-
dc.identifier.conferencelocationLotte City Hotel, Jeju Island-
dc.identifier.doi10.1007/978-3-030-17982-3_14-
dc.contributor.localauthorCha, Sang Kil-
dc.contributor.nonIdAuthorHong, Jina-
dc.contributor.nonIdAuthorLee, JinKi-
dc.contributor.nonIdAuthorLee, HyunKyu-
dc.contributor.nonIdAuthorChang, YoonHa-
dc.contributor.nonIdAuthorChoi, KwangHo-
Appears in Collection
CS-Conference Papers(학술회의논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0