Toward Graph-Based Network Traffic Analysis and Incident Investigation

Investor logo

Warning

This publication doesn't include Faculty of Arts. It includes Institute of Computer Science. Official publication website can be found on muni.cz.
Authors

ČERMÁK Milan

Year of publication 2022
MU Faculty or unit

Institute of Computer Science

Citation
Attached files
Description Even though network traffic is typically encrypted, and it is almost impossible to look into the content of transmitted data, the analysis of metadata and characteristics of individual connections still plays an essential role in an incident or criminal investigation. In recent years, we have seen a significant development of various approaches for storing and analyz-ing large-scale data, including graph databases. Such an approach offers great potential for expert analysts performing digital forensics and network traffic investigation, as it corresponds to their natural perception of the data. In addition, it allows a simple connection of different types and sources of data, which represents the primary focus of our research.
Related projects:

You are running an old browser version. We recommend updating your browser to its latest version.