Thesis Details

Analýza síťových bezpečnostních hlášení

Bachelor's Thesis Student: Dobeš Erik Academic Year: 2018/2019 Supervisor: Wrona Jan, Ing.
English title
Analysis of Network Security Alerts
Language
Czech
Abstract

The goal of this work is to find groups of IP addresses in network security reports, which were detected in the same, or very similar, time interval. The work introduces an algorithm, which transforms data from security reports into time series. Between all the time series, similar pairs are searched. Subsequently, in the found pairs, we are looking for similar threesomes, in which we try to find similar foursomes, etc. The created solution successfully found 208 similar groups in the set of analyzed data, the largest of which contains 11 similar IP addresses. Based on the data found it is possible to detect machines that are part of the so-called botnet in network security reports.

Keywords

analysis, network, security report, correlation, vector distance, Hamming distance, time series, Warden

Department
Degree Programme
Information Technology
Files
Status
defended, grade D
Date
11 June 2019
Reviewer
Committee
Hanáček Petr, doc. Dr. Ing. (DITS FIT BUT), předseda
Chudý Peter, doc. Ing., Ph.D. MBA (DCGM FIT BUT), člen
Kekely Lukáš, Ing., Ph.D. (DCSY FIT BUT), člen
Strnadel Josef, Ing., Ph.D. (DCSY FIT BUT), člen
Trchalík Roman, Mgr., Ph.D. (DIFS FIT BUT), člen
Citation
DOBEŠ, Erik. Analýza síťových bezpečnostních hlášení. Brno, 2019. Bachelor's Thesis. Brno University of Technology, Faculty of Information Technology. 2019-06-11. Supervised by Wrona Jan. Available from: https://www.fit.vut.cz/study/thesis/21766/
BibTeX
@bachelorsthesis{FITBT21766,
    author = "Erik Dobe\v{s}",
    type = "Bachelor's thesis",
    title = "Anal\'{y}za s\'{i}\v{t}ov\'{y}ch bezpe\v{c}nostn\'{i}ch hl\'{a}\v{s}en\'{i}",
    school = "Brno University of Technology, Faculty of Information Technology",
    year = 2019,
    location = "Brno, CZ",
    language = "czech",
    url = "https://www.fit.vut.cz/study/thesis/21766/"
}
Back to top