西南科技大学学报
西南科技大學學報
서남과기대학학보
JOURNAL OF SOUTHWEST CHINA INSTITUTE OF TECHNOLOGY
2015年
2期
74-80
,共7页
蒋宏宇%吴亚东%周丰凯%杨文超%赵思蕊
蔣宏宇%吳亞東%週豐凱%楊文超%趙思蕊
장굉우%오아동%주봉개%양문초%조사예
可视分析%攻击预测%网络安全%多模态%大规模网络
可視分析%攻擊預測%網絡安全%多模態%大規模網絡
가시분석%공격예측%망락안전%다모태%대규모망락
Visual analysis%Attack prediction%Network security%Multi-modal%Large-scale network
由于网络安全数据量庞大和愈加复杂的网络入侵方式,传统的网络安全产品的攻击预测方法已变得不再适用。通过对网络流量日志的研究,提出了采用多模态可视化展示结构和快速异构树查询算法的实时网络流量日志可视化方法,开发并设计了大规模网络攻击预测可视分析系统Monic。结果表明,利用该系统通过交互分析能有效识别攻击者行为,预测网络攻击。
由于網絡安全數據量龐大和愈加複雜的網絡入侵方式,傳統的網絡安全產品的攻擊預測方法已變得不再適用。通過對網絡流量日誌的研究,提齣瞭採用多模態可視化展示結構和快速異構樹查詢算法的實時網絡流量日誌可視化方法,開髮併設計瞭大規模網絡攻擊預測可視分析繫統Monic。結果錶明,利用該繫統通過交互分析能有效識彆攻擊者行為,預測網絡攻擊。
유우망락안전수거량방대화유가복잡적망락입침방식,전통적망락안전산품적공격예측방법이변득불재괄용。통과대망락류량일지적연구,제출료채용다모태가시화전시결구화쾌속이구수사순산법적실시망락류량일지가시화방법,개발병설계료대규모망락공격예측가시분석계통Monic。결과표명,이용해계통통과교호분석능유효식별공격자행위,예측망락공격。
Traditional methods depends security products to prediction attack are no longer applied due to the large scale of network security data because the network intrusion mode become more and more Huge and complex. Through the studied of netflow data,a new method to real-time visual analysis netflow log with multi-modal display structure and heterogeneous tree netflow data organization structure was pro-posed and a visual analysis system of prediction attack for large-scale network named Monic is designed and researched. The ability of system to recognize attacker behavior and prediction network attack use this system through interaction analysis were indicated by results.