Carnegie Mellon Tool Displays Visualization of Malware Attack Patterns

A security research project at Carnegie Mellon University could simplify the process of identifying how malware is being distributed through visualization. Researchers at the institution's CyLab Security and Privacy Institute have created a tool that lets a network or security administrator display network traffic in a way that helps identify the changes and patterns The results could eventually help organizations stop the kind of distributed denial of service (DDoS) attack that brought down major websites in late October.

Carnegie Mellon Tool Displays Visualization of Malware Attack Patterns 

Traditionally, network traffic identification is handled through static reports that show little more than IP addresses and timestamps, making the identification of traffic patterns challenging. The tool, in contrast, generates a dynamically changing graph of a malware distribution network to show top-level-domain data collected from Google Safe Browsing reports across a given period. It was created by Yang Cai, senior systems scientist for CyLab, and Sebastian Peryt, first author on a paper about the project and a research assistant in CyLab.

As Cai explained in a video, "Visualization helps us connect to the dots so we can see the overall changes. We can see the malware propagation patterns over time and that's very important."

Based on those visualization graphs, "analysts can focus on critical areas to help shut down a malware distribution network, or in the case of a DDoS attack, target a critical node to thwart the attack," added Peryt, a research assistant in CyLab.

In the future the team hopes to make the tool more usable, taking into account human interface factors, and to integrate it into a virtual reality platform.

About the Author

Dian Schaffhauser is a former senior contributing editor for 1105 Media's education publications THE Journal, Campus Technology and Spaces4Learning.

Featured

  • robot hand holding stacks of coins

    Designing AI Systems for Financial Aid

    Financial aid offices have been slow to adopt AI, risking technological stagnation at a critical early student touchpoint. Systematic AI integration can improve student experiences and strengthen institutional positioning.

  • glowing circuit patterns

    Call for Speakers Now Open for Tech Tactics in Education Fall 2026

    The virtual conference from the producers of Campus Technology and THE Journal will return on Sept. 23, 2026, with a focus on emerging trends in with a focus on emerging trends in AI, cybersecurity, and more.

  • digital brain integrating legal regulation and security interface

    Agentic AI Moves from Pilot Phase to Production, Bringing Governance to the Forefront

    New research from Caylent, an AI-focused Amazon Web Services Premier Tier Services Partner, found that enterprises are already moving agentic AI beyond pilots and into production environments. At the same time, organizations are putting strict conditions around autonomy, making governance and control the next major challenge for enterprise AI adoption.

  • circuit patterns

    Anthropic Launches Lower-Cost Claude Sonnet 5

    Anthropic has released Claude Sonnet 5, positioning the model as its most autonomous mid-tier offering to date and a lower-cost alternative to its flagship Opus 4.8 system. The company said the model can plan multi-step tasks, operate tools such as browsers and terminals, and complete agentic work at a level that previously required larger and more expensive models.