Snort Intrusion Detection System (IDS) Logfile Visualisation

Duration

June 2006 – Mar 2008

Internal Participants

Craig Valli, Andrew Woodward, Trish Williams, Chris Bolan

External Participants

British Telecom (5000 UK Pounds)

This project involves the near real-time to real-time visualisation for Snort IDS logfile data. This will involve the use of Paraview modelling software running in real-time on the CRITS beowulf compute cluster to process outputs from a live IDS system. The intention of the project is to provide a mechanism to interpret and monitor threat from network intruders by visualising intrusion alerts or outputs from the IDS. One of the main problems with conventional IDS in large network pipes is the ability to process the IDS data into a meaningful, accurate and timely framework to enable timely, informed response to inbound or outbound threats on a network infrastructure.

Events

September 2010
MonTueWedThuFriSatSun
  
 1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30  

Latest News

ANZFSS (Sydney) and World Computer Congress (Brisbane)

September 3rd, 2010

secau Security Research Centre are attending the Australian New Zealand Forensic Science Symposium (ANZFSS) in Sydney and the World Computer Congress (WCC 2010) in Brisbane.  We have secured exhibition stands at each event, if you are in the area come and visit us, details below:
ANZFSS – 5-9 Septmeber, 2010
Sydney Convention and Exhibition Centre, Darling Harbour
secau are at stand [...]

Know Your Online Terrorist: the top ten ways to find radical elements whilst sipping a latte

September 3rd, 2010

This session looks at websites, social media and chat rooms as pathways to finding people and products that lead to radicalisation. From terrorist organizations to sporting fan clubs, (and everything in between) this presentation looks at the ease with which anybody can make a connection to anybody – and how you might not easily know [...]