DocumentCode
2173895
Title
Tudumi: information visualization system for monitoring and auditing computer logs
Author
Takada, Tetsuji ; Koike, Hideki
Author_Institution
Satellite Venture Bus. Lab., Univ. of Electro-Commun., Japan
fYear
2002
fDate
2002
Firstpage
570
Lastpage
576
Abstract
Computer security breaches are already a major problem in using computers. The most basic defense against it is to monitor and audit the computer logs. Computer logs, however have a huge amount of textual data. It is, therefore, almost impossible to inspect them manually using current systems. We propose a log visualization system called "Tudumi". Tudumi consists of several functions which assist system administrators to perform such tasks manually. These functions are information visualization, log summarization and reflecting known rules into the visualization method. Tudumi makes it easier to detect anomalous user activities, such as intrusion, from a huge amount of computer logs.
Keywords
data visualisation; security of data; Tudumi; computer logs auditing; computer logs monitoring; computer security breaches; information visualization system; log summarization; log visualization system; textual data; Computer security; Computerized monitoring; Data visualization; Humans; Information security; Information systems; Satellites;
fLanguage
English
Publisher
ieee
Conference_Titel
Information Visualisation, 2002. Proceedings. Sixth International Conference on
ISSN
1093-9547
Print_ISBN
0-7695-1656-4
Type
conf
DOI
10.1109/IV.2002.1028831
Filename
1028831
Link To Document