首页> 外文会议>Visualization for Computer Security >Visual Analysis of Program Flow Data with DataPropagation
【24h】

Visual Analysis of Program Flow Data with DataPropagation

机译:使用DataPropagation对程序流数据进行可视化分析

获取原文
获取原文并翻译 | 示例

摘要

Host based program monitoring tools are an essential part of maintaining proper system integrity due to growing malicious network activity. As systems become more complicated, the quantity of data collected by these tools often grows beyond the ability of analysts to easily comprehend in a short amount of time. In this paper, we present a method for visual exploration of a system program flow over time to aid in the detection and identification of significant events. This allows automatic accentuation of programs with irregular file access and child process propagation, which results in more efficient forensic analysis and system recovery times.
机译:由于越来越多的恶意网络活动,基于主机的程序监视工具是维护适当的系统完整性的重要组成部分。随着系统变得越来越复杂,这些工具收集的数据量通常会超出分析人员在短时间内轻松理解的能力。在本文中,我们提出了一种随时间推移可视化系统程序流的方法,以帮助检测和识别重要事件。这样可以通过不规则的文件访问和子进程传播来自动强调程序,从而可以更有效地进行法医分析和系统恢复。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号