Josh McNutt
CERT
Publications by Josh McNutt
-
Detecting Scans at the ISP Level
April 01, 2006 • Technical Report
Carrie GatesJoseph B. Kadane (Department of Statistics, Carnegie Mellon University)Josh McNutt
In this 2006 report, the authors present an approach to detecting scans against, or passing through, very large networks.
read -
R: A Proposed Analysis and Visualization Environment for Network Security Data (White Paper)
September 20, 2005 • White Paper
Josh McNutt
In this paper, Josh McNutt discusses the R statistical language as an analysis and visualization interface to SiLK flow analysis tools.
read -
Correlations Between Quiescent Ports in Network Flows (White Paper)
September 20, 2005 • White Paper
Josh McNuttMarkus Deshon
In this paper, the authors introduce a method for detecting the onset of anomalous port-specific activity by recognizing deviation from correlated activity.
read -
R: A Proposed Analysis and Visualization Environment for Network Security Data (Presentation)
September 20, 2005 • Presentation
Josh McNutt
In this presentation, Josh McNutt discusses SiLK tools, introduces R and the R-Silk library, demonstrates a prototype, and discusses analyst benefits.
read -
Correlations Between Quiescent Ports in Network Flows (Presentation)
September 20, 2005 • Presentation
Josh McNuttMarkus Deshon
In this presentation, the authors discuss using FloVis to perform network data analysis.
read -
Analysis of the US-CERT DAC
July 22, 2004 • Presentation
Josh McNutt
In this presentation, Josh McNutt provides an overview of the data, graphical displays, trends, and anomaly detection of the US-CERT DAC.
read