Google Meets Sherlock Homes

Soon after 9-11, Americans wondered aloud: How did our guardians miss the clues? Suspects on watch lists had moved money in curious ways. “Chatter” had risen in recent months. A visitor to the country had offered cash to learn how to fly -- but not land --- a jetliner. In hindsight, these telltale nuggets provided evidence of the terror to come.

Or did they? Most such nuggets were buried in a landslide of data arriving faster than analysts could make sense of it. A day’s take would fill more than 6 million 160-gigabyte iPods. Moreover, like people, the nuggets sometimes disagreed. And like a story told and retold, their message changed, sometimes imperceptibly.

Finally, most nuggets are cast in unstructured, “fuzzy” data. The same face -- or is it? -- may appear in three surveillance videos. Someone in Florida is snapping up potential makeshift detonators on eBay. Such clues, like most, don’t come conveniently packaged in a tidy spreadsheet or searchable text; they must be inferred from photos, videos, voice.

To thwart the next 9-11, analysts must meld the encyclopedic eye of Google with the inductive genius of Sherlock Holmes.

Late last century, Edward Tufte catalogued ways to display data that were either structured (train schedules) or similar (death rates). Today, researchers at the DHS Science and Technology Directorate are creating ways to see fuzzy data as a 3-dimensional picture where threat clues can jump out.

The field of visual analytics “takes Tufte’s work to the next generation,” said Dr. Joseph Kielman, Basic Research Lead for the Directorate’s Command, Control and Interoperability Division. Kielman advises the National Visualization and Analytics Center, based at Pacific Northwest National Laboratory, and its university partners, called the regional centers.

The centers’ interdisciplinary researchers are automating how analysts recognize and rate potential threats. Mathematicians, logicians, and linguists make the collective universe of data assume a meaningful shape. They assign brightness, color, texture, and size to billions of known and apparent facts, and they create rules to integrate these values so threats stand out. For example, a day’s cache of video, cell phone calls, photos, bank records, chat rooms, and intercepted emails may take shape as a blue-gray cloud. If terror is afoot in L.A. and Boston, those cities are highlighted on a U.S. map.

A month of static views might be animated as a “temporal” movie, where a swelling ridge reveals a growing threat.

“We’re not looking for ‘meaning,’ per se,” Kielman explains, “but for patterns that will let us detect the expected and discover the unexpected.” Neither the researchers nor the analysts, he says, need to understand the terrorists’ language -- no small advantage, given the shortage of cleared linguists.

It will be years before visual analytics can automatically puzzle out clues from fuzzy data like video, cautions Kielman: “The pre-9/11 chatter didn’t say, ‘We’re going to plow airplanes into the Twin Towers.’ To correlate these facts, you must get relational,” connecting screen names with bank records, bank records with faces. How researchers will get there remains an unwritten story. But with each chapter, the plot thickens.

Featured

  • AI Is Now the Leading Cybersecurity Concern for Security, IT Leaders

    Arctic Wolf recently published findings from its State of Cybersecurity: 2025 Trends Report, offering insights from a global survey of more than 1,200 senior IT and cybersecurity decision-makers across 15 countries. Conducted by Sapio Research, the report captures the realities, risks, and readiness strategies shaping the modern security landscape. Read Now

  • Analysis of AI Tools Shows 85 Percent Have Been Breached

    AI tools are becoming essential to modern work, but their fast, unmonitored adoption is creating a new kind of security risk. Recent surveys reveal a clear trend – employees are rapidly adopting consumer-facing AI tools without employer approval, IT oversight, or any clear security policies. According to Cybernews Business Digital Index, nearly 90% of analyzed AI tools have been exposed to data breaches, putting businesses at severe risk. Read Now

  • Software Vulnerabilities Surged 61 Percent in 2024, According to New Report

    Action1, a provider of autonomous endpoint management (AEM) solutions, today released its 2025 Software Vulnerability Ratings Report, revealing a 61% year-over-year surge in discovered software vulnerabilities and a 96% spike in exploited vulnerabilities throughout 2024, amid an increasingly aggressive threat landscape. Read Now

  • Motorola Solutions Named Official Safety Technology Supplier of the Ryder Cup through 2027

    Motorola Solutions has today been named the Official Safety Technology Supplier of the 2025 and 2027 Ryder Cup, professional golf’s renowned biennial team competition between the United States and Europe. Read Now

  • Evolving Cybersecurity Strategies

    Organizations are increasingly turning their attention to human-focused security approaches, as two out of three (68%) cybersecurity incidents involve people. Threat actors are shifting from targeting networks and systems to hacking humans via social engineering methods, living off human errors as their most prevalent attack vector. Whether manipulated or not, human cyber behavior is leveraged to gain backdoor access into systems. This mainly results from a lack of employee training and awareness about evolving attack techniques employed by malign actors. Read Now

New Products

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities

  • Compact IP Video Intercom

    Viking’s X-205 Series of intercoms provide HD IP video and two-way voice communication - all wrapped up in an attractive compact chassis.

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.