{"id":"https://openalex.org/W2035096021","doi":"https://doi.org/10.1109/cyberc.2012.41","title":"Visual Analytic Agent-Based Framework for Intrusion Alert Analysis","display_name":"Visual Analytic Agent-Based Framework for Intrusion Alert Analysis","publication_year":2012,"publication_date":"2012-10-01","ids":{"openalex":"https://openalex.org/W2035096021","doi":"https://doi.org/10.1109/cyberc.2012.41","mag":"2035096021"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/cyberc.2012.41","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5012574032","display_name":"Riyanat Shittu","orcid":"https://orcid.org/0000-0002-2073-5421"},"institutions":[{"id":"https://openalex.org/I180825142","display_name":"City, University of London","ror":"https://ror.org/04489at23","country_code":"GB","type":"education","lineage":["https://openalex.org/I124357947","https://openalex.org/I180825142","https://openalex.org/I4401726869"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Riyanat Shittu","raw_affiliation_strings":["Sch. of Electr. & Math. Sci., City Univ. London, London, UK"],"affiliations":[{"raw_affiliation_string":"Sch. of Electr. & Math. Sci., City Univ. London, London, UK","institution_ids":["https://openalex.org/I180825142"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058805614","display_name":"Alex Healing","orcid":null},"institutions":[{"id":"https://openalex.org/I2802629803","display_name":"Innovate UK","ror":"https://ror.org/05ar5fy68","country_code":"GB","type":"government","lineage":["https://openalex.org/I2802629803","https://openalex.org/I4210087105"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Alex Healing","raw_affiliation_strings":["Security Futures Practice, BT Innovate & Design, Ipswich, UK"],"affiliations":[{"raw_affiliation_string":"Security Futures Practice, BT Innovate & Design, Ipswich, UK","institution_ids":["https://openalex.org/I2802629803"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5014135318","display_name":"Robin Bloomfield","orcid":"https://orcid.org/0000-0002-2050-6151"},"institutions":[{"id":"https://openalex.org/I180825142","display_name":"City, University of London","ror":"https://ror.org/04489at23","country_code":"GB","type":"education","lineage":["https://openalex.org/I124357947","https://openalex.org/I180825142","https://openalex.org/I4401726869"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Robin Bloomfield","raw_affiliation_strings":["Sch. of Inf., City Univ. London, London, UK#TAB#"],"affiliations":[{"raw_affiliation_string":"Sch. of Inf., City Univ. London, London, UK#TAB#","institution_ids":["https://openalex.org/I180825142"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5059640195","display_name":"Muttukrishnan Rajarajan","orcid":"https://orcid.org/0000-0001-5814-9922"},"institutions":[{"id":"https://openalex.org/I180825142","display_name":"City, University of London","ror":"https://ror.org/04489at23","country_code":"GB","type":"education","lineage":["https://openalex.org/I124357947","https://openalex.org/I180825142","https://openalex.org/I4401726869"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Rajarajan Muttukrishnan","raw_affiliation_strings":["Sch. of Electr. & Math. Sci., City Univ. London, London, UK"],"affiliations":[{"raw_affiliation_string":"Sch. of Electr. & Math. Sci., City Univ. London, London, UK","institution_ids":["https://openalex.org/I180825142"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.2,"has_fulltext":true,"fulltext_origin":"ngrams","cited_by_count":5,"citation_normalized_percentile":{"value":0.595342,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":80,"max":81},"biblio":{"volume":"1","issue":null,"first_page":"201","last_page":"207"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T10799","display_name":"Information Visualization and Visual Data Mining","score":0.9995,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10799","display_name":"Information Visualization and Visual Data Mining","score":0.9995,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10064","display_name":"Statistical Mechanics of Complex Networks","score":0.979,"subfield":{"id":"https://openalex.org/subfields/3109","display_name":"Statistical and Nonlinear Physics"},"field":{"id":"https://openalex.org/fields/31","display_name":"Physics and Astronomy"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Intrusion Detection and Defense Mechanisms","score":0.9442,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/intrusion-detection","display_name":"Intrusion Detection","score":0.587519},{"id":"https://openalex.org/keywords/visual-analytics","display_name":"Visual Analytics","score":0.582496},{"id":"https://openalex.org/keywords/interactive-visualization","display_name":"Interactive Visualization","score":0.554897},{"id":"https://openalex.org/keywords/information-visualization","display_name":"Information Visualization","score":0.542115},{"id":"https://openalex.org/keywords/botnet-detection","display_name":"Botnet Detection","score":0.53294}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.74227285},{"id":"https://openalex.org/C158251709","wikidata":"https://www.wikidata.org/wiki/Q354025","display_name":"Intrusion","level":2,"score":0.4794268},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.47597212},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.28913507},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.1309751},{"id":"https://openalex.org/C17409809","wikidata":"https://www.wikidata.org/wiki/Q161764","display_name":"Geochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/cyberc.2012.41","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4,"id":"https://metadata.un.org/sdg/17","display_name":"Partnerships for the goals"}],"grants":[],"datasets":[],"versions":[],"referenced_works_count":23,"referenced_works":["https://openalex.org/W1495304983","https://openalex.org/W1536432326","https://openalex.org/W158061484","https://openalex.org/W1596291969","https://openalex.org/W1977124181","https://openalex.org/W1999448603","https://openalex.org/W2018945390","https://openalex.org/W2030169158","https://openalex.org/W2067279558","https://openalex.org/W2093230809","https://openalex.org/W2101765290","https://openalex.org/W2117910558","https://openalex.org/W2129879631","https://openalex.org/W2132068130","https://openalex.org/W2132519371","https://openalex.org/W2142876969","https://openalex.org/W2143949933","https://openalex.org/W2152922709","https://openalex.org/W2153260381","https://openalex.org/W2157580728","https://openalex.org/W2171346292","https://openalex.org/W2518732488","https://openalex.org/W4251199811"],"related_works":["https://openalex.org/W4391913857","https://openalex.org/W2748952813","https://openalex.org/W2478288626","https://openalex.org/W2390279801","https://openalex.org/W2382290278","https://openalex.org/W2376932109","https://openalex.org/W2358668433","https://openalex.org/W2350741829","https://openalex.org/W2133389611","https://openalex.org/W2001405890"],"abstract_inverted_index":{"A":[0],"large":[1],"amount":[2],"of":[3,28,32,44,94,118,160,177],"research":[4],"effort":[5],"is":[6,34,50,193],"focused":[7],"on":[8],"developing":[9],"methods":[10,31],"for":[11,153,196],"correlating":[12],"network":[13,81,138],"intrusion":[14],"alerts,":[15],"so":[16],"as":[17],"to":[18,90,101,114,124,132,136,184],"better":[19,72],"understand":[20],"a":[21,68,76,116,126,157,174,178],"network's":[22],"current":[23],"security":[24,65,82,127],"state.":[25],"The":[26],"accuracy":[27],"traditional":[29],"static":[30],"correlation":[33],"however":[35],"limited":[36],"in":[37,67,79,122,182],"large-scale":[38],"complex":[39,92],"systems,":[40],"where":[41],"the":[42,80,134,137,143,149,186,191],"degree":[43],"human":[45,77],"insight":[46],"and":[47,52,74,96,105,130],"validation":[48],"necessary":[49],"higher,":[51],"dynamic":[53,179],"attack":[54],"behaviours":[55],"are":[56],"likely.":[57],"Many":[58],"recent":[59],"efforts":[60],"have":[61,163],"centred":[62],"around":[63],"visualising":[64],"data":[66,192],"way":[69],"that":[70,139,190],"can":[71],"involve":[73],"support":[75],"analyst":[78],"triage":[83],"process":[84],"but":[85],"this":[86],"potentially":[87],"gives":[88],"rise":[89],"another":[91],"system":[93,145],"analytical":[95],"visual":[97,119],"components":[98,121],"which":[99,162],"need":[100],"be":[102],"configured,":[103],"trained":[104],"understood.":[106],"This":[107],"paper":[108],"describes":[109],"an":[110,146,167],"agent-based":[111],"framework":[112],"designed":[113],"manage":[115],"set":[117,159],"analytic":[120],"order":[123,183],"improve":[125],"analyst's":[128],"understanding":[129],"ability":[131],"classify":[133],"threats":[135],"they":[140],"govern.":[141],"In":[142],"proof-of-concept":[144],"agent":[147],"selects":[148],"most":[150],"effective":[151,198],"method":[152],"event":[154],"aggregation,":[155],"given":[156],"particular":[158],"events":[161],"been":[164],"generated":[165],"by":[166],"Intrusion":[168],"Detection":[169],"System":[170],"(IDS).":[171],"We":[172],"present":[173],"novel":[175],"application":[176],"response":[180],"model":[181],"configure":[185],"aggregation":[187],"component":[188],"such":[189],"best":[194],"simplified":[195],"more":[197],"further":[199],"analysis.":[200]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W2035096021","counts_by_year":[{"year":2021,"cited_by_count":1},{"year":2019,"cited_by_count":2},{"year":2017,"cited_by_count":1},{"year":2014,"cited_by_count":1}],"updated_date":"2024-11-22T14:14:58.038646","created_date":"2016-06-24"}