AlertWheel is a new software application easing network analysis on large-scale networks. It is based on a novel radial visualization capable of simultaneously displaying several thousand alerts, emphasizing the most important alerts or patterns in the dataset. Among other things, AlertWheel offers a new technique for representing bipartite graphs (where links exist between two distinct node groups). Using this approach, links are positioned in a way to reduce occlusion in the visualization. AlertWheel simultaneously combines three link bundling techniques in a novel way to reduce cluttering on the interface. Our solution also incorporates filtering options, annotation, logging and details-on-demand, to support analysis processes as described by specialists in this field.
This project was developed as a prototype for a research paper. Not designed for production use. No support will be offered for production installations.
See documentation for prerequisites.
AlertWheel
AlertWheel is a visualization-based analysis tool for Snort IDS logs
Status: Beta
Brought to you by:
maxim1500
Downloads:
1 This Week
Windows