首页> 外文期刊>Information visualization >Sybil attack detection through global topology pattern visualization
【24h】

Sybil attack detection through global topology pattern visualization

机译:通过全局拓扑模式可视化来检测Sybil攻击

获取原文
获取原文并翻译 | 示例
           

摘要

We present a robust intrusion detection approach for wireless networks based on a new multi-matrix visualization method with a set of pattern generation, evaluation, organization and interaction functions. Our approach concentrates on assisting users to analyze statistical network topology patterns that could expose significant attack features. Specifically, we investigate Sybil attacks that have severe impacts on the fundamental operations of wireless networks. We have analyzed the features of network topologies under various Sybil attacks and, consequently, designed several matrix reordering algorithms to generate statistical patterns. These topology patterns are automatically evaluated and classified through the measured structural similarities to the signature attack patterns. We have also designed a new time-series analysis method to identify attack durations with a time histogram generation and an automatic segmentation method. To handle complex Sybil attacks, we have integrated our pattern generation, evaluation and organization methods to construct a prototype detection system, in which specialized interaction functions are provided to assist the analysis and comparison of network data. Simulation results show that this approach can effectively locate Sybil attacks under different combinations of network parameters. Our multi-matrix visualization method provides a flexible framework to handle the intricacies and implications from building a complex visual analytics system, which can be extended to defend against a wide range of attacks.
机译:我们提出了一种基于新型多矩阵可视化方法的无线网络鲁棒入侵检测方法,该方法具有一组模式生成,评估,组织和交互功能。我们的方法致力于帮助用户分析可能暴露出重要攻击功能的统计网络拓扑模式。具体来说,我们调查对无线网络的基本操作有严重影响的Sybil攻击。我们分析了各种Sybil攻击下的网络拓扑特征,因此设计了几种矩阵重排序算法来生成统计模式。这些拓扑模式通过与签名攻击模式的测量结构相似性自动评估和分类。我们还设计了一种新的时间序列分析方法,可以使用时间直方图生成和自动分段方法来识别攻击持续时间。为了处理复杂的Sybil攻击,我们已经集成了我们的模式生成,评估和组织方法,以构建原型检测系统,该系统中提供了专门的交互功能来协助网络数据的分析和比较。仿真结果表明,该方法可以有效地定位网络参数不同组合下的Sybil攻击。我们的多矩阵可视化方法提供了一个灵活的框架,可以处理构建复杂的可视化分析系统所产生的复杂性和影响,可以对其进行扩展以防御各种攻击。

著录项

  • 来源
    《Information visualization》 |2011年第1期|p.32-46|共15页
  • 作者单位

    Department of Computer Science, University of North Carolina at Charlotte, 9201 University Blvd, Charlotte, North Carolina, 28223, USA.;

    Department of Software and Information Systems, University of North Carolina at Charlotte, 9201, University Blvd, Charlotte,North Carolina 28223, USA;

    Department of Computer Science, University of North Carolina at Charlotte, 9201 University Blvd, Charlotte, North Carolina, 28223, USA.;

    Department of Computer Science, University of North Carolina at Charlotte, 9201 University Blvd, Charlotte, North Carolina, 28223, USA;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    matrix visualization; matrix reordering; security visualization; intrusion detection; sybil attack;

    机译:矩阵可视化矩阵重排序;安全可视化;入侵检测;西比尔攻击;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号