October 24, 2016
Conference Paper

CyberPetri at CDX 2016: Real-time Network Situation Awareness

Abstract

CyberPetri is a novel visualization technique that provides a flexible map of the network based on available characteristics, such as IP address, operating system, or service. Previous work introduced CyberPetri as a visualization feature in Ocelot, a network defense tool that helped security analysts understand and respond to an active defense scenario. In this paper we present a case study in which we use the CyberPetri visualization technique to support real-time situation awareness during the 2016 Cyber Defense Exercise.

Revised: March 1, 2017 | Published: October 24, 2016

Citation

Arendt D.L., D.M. Best, E.R. Burtner, and C. Paul. 2016. "CyberPetri at CDX 2016: Real-time Network Situation Awareness." In IEEE Symposium on Visualization for Cyber Security (VizSec 2016), October 24, 2016, Baltimore, Maryland. Piscataway, New Jersey:IEEE. PNNL-SA-119384. doi:10.1109/VIZSEC.2016.7739584