On-Line Anomaly Detection With High Accuracy

被引:74
|
作者
Xie, Kun [1 ,2 ,3 ]
Li, Xiaocan [1 ]
Wang, Xin [3 ]
Cao, Jiannong [4 ]
Xie, Gaogang [5 ]
Wen, Jigang [5 ]
Zhang, Dafang [1 ]
Qin, Zheng [1 ]
机构
[1] Hunan Univ, Coll Comp Sci & Elect Engn, Changsha 410006, Hunan, Peoples R China
[2] Chinese Acad Sci, Inst Comp Technol, CAS Key Lab Network Data Sci & Technol, Beijing, Peoples R China
[3] SUNY Stony Brook, Dept Elect & Comp Engn, Stony Brook, NY 11794 USA
[4] Hong Kong Polytech Univ, Dept Comp, Hong Kong, Hong Kong, Peoples R China
[5] Chinese Acad Sci, Inst Comp Technol, Network Res Ctr, Beijing 100190, Peoples R China
基金
中国国家自然科学基金; 美国国家科学基金会;
关键词
Anomaly detection; on-line algorithm; bilateral PCA; FACE REPRESENTATION; 2-DIMENSIONAL PCA; PRINCIPAL;
D O I
10.1109/TNET.2018.2819507
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Traffic anomaly detection is critical for advanced Internet management. Existing detection algorithms generally convert the high-dimensional data to a long vector, which compromises the detection accuracy due to the loss of spatial information of data. Moreover, they are generally designed based on the separation of normal and anomalous data in a time period, which not only introduces high storage and computation cost but also prevents timely detection of anomalies. Online and accurate traffic anomaly detection is critical but difficult to support. To address the challenge, this paper directly models the monitoring data in each time slot as a 2-D matrix, and detects anomalies in the new time slot based on bilateral principal component analysis (B-PCA). We propose several novel techniques in OnlineBPCA to support quick and accurate anomaly detection in real time, including a novel BPCA-based anomaly detection principle that jointly considers the variation of both row and column principal directions for more accurate anomaly detection, an approximate algorithm to avoid using iteration procedure to calculate the principal directions in a close-form, and a sequential anomaly algorithm to quickly update principal directions with low computation and storage cost when receiving a new data matrix at a time slot. To the best of our knowledge, this is the first work that exploits 2-D PCA for anomaly detection. We have conducted extensive simulations to compare our OnlineBPCA with the state-of-art anomaly detection algorithms using real traffic traces Abilene and GEANT. Our simulation results demonstrate that, compared with other algorithms, our OnlineBPCA can achieve significantly better detection performance with low false positive rate, high true positive rate, and low computation cost.
引用
下载
收藏
页码:1222 / 1235
页数:14
相关论文
共 50 条
  • [21] MIR_MAD: An Efficient and On-line Approach for Anomaly Detection in Dynamic Data Stream
    Tan, Chang How
    Lee, Vincent C. S.
    Salehi, Mahsa
    20TH IEEE INTERNATIONAL CONFERENCE ON DATA MINING WORKSHOPS (ICDMW 2020), 2020, : 424 - 431
  • [22] An On-line Anomaly Detection Method Based on A New Stationary Metric-Entropy-Ratio
    Wang, Ziyu
    Yang, Jiahai
    Li, Fuliang
    2014 IEEE 13TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM), 2014, : 90 - 97
  • [23] Datamining from on-line process information for high accuracy control system
    Wang, W
    Yang, M
    Koyama, J
    PROCEEDINGS OF THE 1ST INTERNATIONAL CONFERENCE ON NEW FORMING TECHNOLOGY, 2004, : 435 - 440
  • [24] On-line repetition detection
    Hong, Jin-Ju
    Chen, Gen-Huey
    STRING PROCESSING AND INFORMATION RETRIEVAL, PROCEEDINGS, 2006, 4209 : 74 - 85
  • [25] Accuracy of an icing on-line monitoring system
    Huang Xinbo
    Sun Qindong
    PROCEEDINGS OF NINTH ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING AND PARALLEL/DISTRIBUTED COMPUTING, 2008, : 600 - +
  • [26] On-Line Evaluation of Voltage Transformer Accuracy
    Yang Xiaohui
    Yan Dong
    Xie Kai
    Wang Yong
    MATERIALS SCIENCE AND INFORMATION TECHNOLOGY, PTS 1-8, 2012, 433-440 : 6071 - +
  • [27] On-line empathic accuracy in marital interaction
    Thomas, G
    Fletcher, GJO
    Lange, C
    JOURNAL OF PERSONALITY AND SOCIAL PSYCHOLOGY, 1997, 72 (04) : 839 - 850
  • [28] Batch accuracy of on-line fat determination
    Hansen, PW
    Tholl, I
    Christensen, C
    Jehg, HC
    Borg, J
    Nielsen, O
    Ostergaard, B
    Nygaard, J
    Andersen, O
    MEAT SCIENCE, 2003, 64 (02) : 141 - 147
  • [29] An evaluation of the accuracy of on-line THM monitoring
    Saini, Harmesh
    West, Michael
    Wang, Qin
    Garvey, Jim
    Mui, Rudy
    JOURNAL AMERICAN WATER WORKS ASSOCIATION, 2013, 105 (11): : 28 - 33
  • [30] Improved accuracy of on-line tire profile measurement using a novel on-line calibration
    Khalili, K.
    Nazemsadat, S. M.
    PROCEEDINGS OF THE SEVENTH IASTED INTERNATIONAL CONFERENCE ON VISUALIZATION, IMAGING, AND IMAGE PROCESSING, 2007, : 59 - +