A survey of network anomaly visualization

作者:Zhang, Tianye; Wang, Xumeng; Li, Zongzhuang; Guo, Fangzhou; Ma, Yuxin; Chen, Wei*
来源:SCIENCE CHINA-INFORMATION SCIENCES, SCIENCE PRESS, 16 DONGHUANGCHENGGEN NORTH ST, BEIJING 100717, PEOPLES R CHINA, 121101, 2017-12.
DOI:10.1007/s11432-016-0428-2

摘要

Network anomaly analysis is an emerging subtopic of network security. Network anomaly refers to the unusual behavior of network devices or suspicious network status. A number of intelligent visual tools are developed to enhance the ability of network security analysts in understanding the original data, ultimately solving network security problems. This paper surveys current progress and trends in network anomaly visualization. By providing an overview of network anomaly data, visualization tasks, and applications, we further elaborate on existing methods to depict various data features of network alerts, anomalous traffic, and attack patterns data. Directions for future studies are outlined at the end of this paper.