FloCon 2012 Archive
• Presentation
Publisher
Software Engineering Institute
Abstract
At FloCon 2012, participants focused on the progression of analytics from ideas, to prototypes, to tools. Since each phase has its own set of successes and raises its own set of challenges, organizers encouraged submissions and discussions across the spectrum, and participants addressed topics such as identifying which incident case studies spark the seed of a new idea, discussing how flow data can help refine a static signature, identifying the costs and benefits of implementing a technique at the large-scale network level versus host level, and discussing how well new flow-based analytical tools integrate into an analyst's workflow.
This archive includes:
- Automatic Network Protection Scenarios Using NetFlow, Vojtěch Krmíček and Jan Vykopal
- Bruteforcing in the Shadows Evading Automated Detection, Martin Drašar and Jan Vykopal
- Designing a 100% Flow Generator for High-Speed Networks from OC3 to 100GbE, Stuart Wilson and Spencer Greene
- Entropy in IP Darkspace Data, Tanja Zseby
- Flow Indexing: Making Queries Go Faster, John McHugh
- FlowIntegrator: Integrating Flow Technologies with Mainstream Event Management Systems, Sasha Velednitsky
- From Bandwidth to Beacon Detection, Prism and Touchpoints, George Jones, Paul Krystosek, and Sid Faber
- Implementing Packet Dynamic Awareness in Argus, Carter Bullard and John Gerth
- Indicator Expansion Techniques –Tracking Cyber Threats via DNS and Netflow Analysis, Michael Jacobs
- Achieving Real Real-Time Context-Based Actionable Intelligence in Cyber Investigations, Joel Ebrahimi
- Lessons Learned from 10 Years of Network Analysis R&D for Defense and Intel Customers, Thayne Coffman
- Measurement for Cooperative Network Defense: DEMONS and BlockMon, Brian Trammell
- Monitoring Trends in Network Flow for Situational Awareness, Soumyo D. Moitra
- Network Profiling with SiLK, George Jones and Austin Whisnant
- Network Situational Displays from Network Flow Data, Timothy J. Shimeall
- Real Time Situational Awareness Using Argus, Carter Bullard
- Teaching Flow Analysis with Live Flow Data, John Dwyer and Sid Faber
- The UberData Source: Holy Grail or Final Fantasy?, Josh Goldfarb
- The Use of Search Engines for Massively Scalable Forensic Repositories, John H. Ricketson
- Using Flow for Municipal Planning: Political, Economic, Social and Technical Contexts of the City of Pittsburgh, John Badertscher
- Visualizing Traffic on Network Topology, Kazunori Kamiya and Hiroshi Kurakami
- FloCon 2012: Call for Papers
This content was created for a conference series or symposium and does not necessarily reflect the positions and views of the Software Engineering Institute.