Anomaly Detection in Dynamic Systems Using Weak Estimators

被引:29
作者
Zhan, Justin
Oommen, B. John [1 ]
Crisostomo, Johanna [2 ]
机构
[1] Carleton Univ, Sch Comp Sci, Ottawa, ON K1S 5B6, Canada
[2] Carnegie Mellon Univ, Pittsburgh, PA 15213 USA
基金
美国国家科学基金会;
关键词
Design; Algorithms; Performance; Anomaly detection; dynamic systems; weak estimator;
D O I
10.1145/1993083.1993086
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Anomaly detection involves identifying observations that deviate from the normal behavior of a system. One of the ways to achieve this is by identifying the phenomena that characterize "normal" observations. Subsequently, based on the characteristics of data learned from the "normal" observations, new observations are classified as being either "normal" or not. Most state-of-the-art approaches, especially those which belong to the family of parameterized statistical schemes, work under the assumption that the underlying distributions of the observations are stationary. That is, they assume that the distributions that are learned during the training (or learning) phase, though unknown, are not time-varying. They further assume that the same distributions are relevant even as new observations are encountered. Although such a "stationarity" assumption is relevant for many applications, there are some anomaly detection problems where stationarity cannot be assumed. For example, in network monitoring, the patterns which are learned to represent normal behavior may change over time due to several factors such as network infrastructure expansion, new services, growth of user population, and so on. Similarly, in meteorology, identifying anomalous temperature patterns involves taking into account seasonal changes of normal observations. Detecting anomalies or outliers under these circumstances introduces several challenges. Indeed, the ability to adapt to changes in nonstationary environments is necessary so that anomalous observations can be identified even with changes in what would otherwise be classified as "normal" behavior. In this article we propose to apply a family of weak estimators for anomaly detection in dynamic environments. In particular, we apply this theory to spam email detection. Our experimental results demonstrate that our proposal is both feasible and effective for the detection of such anomalous emails.
引用
收藏
页数:16
相关论文
共 50 条
  • [41] Contextual Anomaly Detection in Time Series Using Dynamic Bayesian Network
    Tripathi, Achyut Mani
    Baruah, Rashmi Dutta
    INTELLIGENT INFORMATION AND DATABASE SYSTEMS (ACIIDS 2020), PT II, 2020, 12034 : 333 - 342
  • [42] Dynamic Graph-Based Anomaly Detection in the Electrical Grid
    Li, Shimiao
    Pandey, Amritanshu
    Hooi, Bryan
    Faloutsos, Christos
    Pileggi, Larry
    IEEE TRANSACTIONS ON POWER SYSTEMS, 2022, 37 (05) : 3408 - 3422
  • [43] Robust Multivariate Autoregression for Anomaly Detection in Dynamic Product Ratings
    Gunnemann, Nikou
    Gunnemann, Stephan
    Faloutsos, Christos
    WWW'14: PROCEEDINGS OF THE 23RD INTERNATIONAL CONFERENCE ON WORLD WIDE WEB, 2014, : 361 - 371
  • [44] Anomaly detection in dynamic attributed networks
    Ruizhi Zhou
    Qin Zhang
    Peng Zhang
    Lingfeng Niu
    Xiaodong Lin
    Neural Computing and Applications, 2021, 33 : 2125 - 2136
  • [45] Graph Anomaly Detection Using Dictionary Learning
    Baltoiu, Andra
    Patrascu, Andrei
    Irofti, Paul
    IFAC PAPERSONLINE, 2020, 53 (02): : 3551 - 3558
  • [46] Anomaly Detection and Concept Drift Adaptation for Dynamic Systems: A General Method with Practical Implementation Using an Industrial Collaborative Robot
    Kermenov, Renat
    Nabissi, Giacomo
    Longhi, Sauro
    Bonci, Andrea
    SENSORS, 2023, 23 (06)
  • [47] Anomaly detection in TCP/IP networks using immune systems paradigm
    Seredynski, Franciszek
    Bouvry, Pascal
    COMPUTER COMMUNICATIONS, 2007, 30 (04) : 740 - 749
  • [48] Anomaly detection with diagnosis in diversified systems using information flow graphs
    Majorczyk, Frederic
    Totel, Eric
    Me, Ludovic
    Saidane, Ayda
    PROCEEDINGS OF THE IFIP TC 11/ 23RD INTERNATIONAL INFORMATION SECURITY CONFERENCE, 2008, : 301 - +
  • [49] Anomaly Detection for Power Quality Analysis Using Smart Metering Systems
    Patrizi, Gabriele
    Alfonso, Cristian Garzon
    Calandroni, Leandro
    Bartolini, Alessandro
    Garcia, Carlos Iturrino
    Paolucci, Libero
    Grasso, Francesco
    Ciani, Lorenzo
    SENSORS, 2024, 24 (17)
  • [50] Anomaly Detection in Embedded Systems using Simultaneous Power and Temperature Monitoring
    Abbasi, Zeinab
    Kargahi, Mehdi
    Mohaqeqi, Morteza
    2014 11TH INTERNATIONAL ISC CONFERENCE ON INFORMATION SECURITY AND CRYPTOLOGY (ISCISC), 2014, : 115 - 119