Hu Liang, Zhao Jianming, Xie Nannan, Nurbol. Multi-step attacks detected by rules tree and visualization[J]. Journal of Image and Graphics, 2013, 18(3): 299-304. DOI: 10.11834/jig.20130308.
the multi-step attacks visualization has shortage in interacting with logs. This cannot be effective to make the network security administrator find multi-step attacks using logs. In this paper
we present a multi-step attack visualization tool
which is based on rules tree. It describes multi-stage attacks model by rules tree
defines a template library by XML and designs visualization models. It represents the multi-step attacks scene by comparing vector visualization and three-dimensional visualization
and finds the advantages. Our experiments prove the tool’s validity and the design’s rationality.