The increasing number of cyberattacks against critical infrastructures has pushed researchers to develop many Visual Analytics solutions to provide valid defensive approaches and improve the situational awareness of the security operators. Applying such solutions to complex infrastructures is often challenging, and existing tools can present limitations and exhibit various issues. In this paper, supported by cybersecurity experts of a world leader company in the military domain, we apply an existing Visual Analytics solution, MAD, to a complex network of a critical infrastructure, highlighting its limitations in this scenario and proposing further solutions to improve the cyber situational awareness in both proactive and reactive risk analyses. The results of this research contribute to characterize the activities performed by domain experts in this domain and their implications for the design of Visual Analytics solutions that aim at supporting them

Lessons learned while supporting Cyber Situational Awareness / Blasilli, Graziano; De Paoli, Emiliano; Lenti, Simone; Picca, Sergio. - 2021-June:(2021), pp. 19-23. (Intervento presentato al convegno Visual Analytics tenutosi a Zurich; Switzerland) [10.2312/eurova.20211093].

Lessons learned while supporting Cyber Situational Awareness

Graziano Blasilli
;
Simone Lenti
;
Sergio Picca
2021

Abstract

The increasing number of cyberattacks against critical infrastructures has pushed researchers to develop many Visual Analytics solutions to provide valid defensive approaches and improve the situational awareness of the security operators. Applying such solutions to complex infrastructures is often challenging, and existing tools can present limitations and exhibit various issues. In this paper, supported by cybersecurity experts of a world leader company in the military domain, we apply an existing Visual Analytics solution, MAD, to a complex network of a critical infrastructure, highlighting its limitations in this scenario and proposing further solutions to improve the cyber situational awareness in both proactive and reactive risk analyses. The results of this research contribute to characterize the activities performed by domain experts in this domain and their implications for the design of Visual Analytics solutions that aim at supporting them
2021
Visual Analytics
network security; situational awareness; visual analytics; attack graph
04 Pubblicazione in atti di convegno::04b Atto di convegno in volume
Lessons learned while supporting Cyber Situational Awareness / Blasilli, Graziano; De Paoli, Emiliano; Lenti, Simone; Picca, Sergio. - 2021-June:(2021), pp. 19-23. (Intervento presentato al convegno Visual Analytics tenutosi a Zurich; Switzerland) [10.2312/eurova.20211093].
File allegati a questo prodotto
File Dimensione Formato  
Blasilli_Lessons_2021.pdf

accesso aperto

Note: https://diglib.eg.org/server/api/core/bitstreams/401b637a-5b9a-4e8f-9109-3e2c3c4ed843/content
Tipologia: Versione editoriale (versione pubblicata con il layout dell'editore)
Licenza: Tutti i diritti riservati (All rights reserved)
Dimensione 2.99 MB
Formato Adobe PDF
2.99 MB Adobe PDF

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11573/1726973
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 1
  • ???jsp.display-item.citation.isi??? ND
social impact