NOMS 2018 - 2018 IEEE/IFIP Network Operations and Management Symposium 2018
DOI: 10.1109/noms.2018.8406166
|View full text |Cite
|
Sign up to set email alerts
|

Toward real-time network-wide cyber situational awareness

Abstract: In today's complex computer networks, we are constantly facing a risk of data loss, system compromise, or intellectual property theft. The complexity of the networks hinders their effective defense. A Network-wide Cyber Situational Awareness (NwCSA) has been introduced to assist a network security administrator with network security. The concept, however, faces several challenges that hinder an efficient application of the NwCSA in a real-world environment. The challenges include the overload of raw data, low … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
10
0

Year Published

2018
2018
2023
2023

Publication Types

Select...
4
3

Relationship

2
5

Authors

Journals

citations
Cited by 11 publications
(10 citation statements)
references
References 10 publications
0
10
0
Order By: Relevance
“…Having introduced the architecture for real-time IP flow monitoring, we combine the traditional batch-based approach to IP flow monitoring with the real-time approach to achieve a complex solution that provides real-time network-wide cyber situation awareness in [11]. To combine these two approaches we take advantage of the concept called lambda architecture.…”
Section: B Toward Real-time Network-wide Cyber Situation Awarenessmentioning
confidence: 99%
“…Having introduced the architecture for real-time IP flow monitoring, we combine the traditional batch-based approach to IP flow monitoring with the real-time approach to achieve a complex solution that provides real-time network-wide cyber situation awareness in [11]. To combine these two approaches we take advantage of the concept called lambda architecture.…”
Section: B Toward Real-time Network-wide Cyber Situation Awarenessmentioning
confidence: 99%
“…Probably the best-known tools were proposed by MITRE [92], such as CyGraph [73]. Applied research and experimental deployment are becoming subject of research by other research groups as well [48,54,56,78,80].…”
Section: Publications On Csamentioning
confidence: 99%
“…Finally, a research group on CSA has been established at the Computer Security Incident Response Team of Masaryk University 7 . The network-wide cyber situational awareness with a focus on the perception and comprehension using IP flows is investigated by Jirsík et al [53,54]. Husák et al focused on the predictive aspects of CSA [46,47].…”
Section: Research Groupsmentioning
confidence: 99%
“…An active and reliable security strategy is urgently needed. Network security situation awareness (NSSA) is a process that can comprehensively analyze the network security status [5]. It can obtain the situation elements in a large-scale network and calculate and analyze them to predict the future trend of the network [6].…”
Section: Introductionmentioning
confidence: 99%