An Anomaly Detection Technique for Business Processes based on Extended Dynamic Bayesian Networks

被引:17
|
作者
Pauwels, Stephen [1 ]
Calders, Toon [1 ]
机构
[1] Univ Antwerp, Antwerp, Belgium
关键词
Anomaly Detection; Probabilistic models; Event log and Workflow data; OUTLIER DETECTION;
D O I
10.1145/3297280.3297326
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Checking and analyzing various executions of different Business Processes can be a tedious task as the logs from these executions may contain lots of events, each with a (possibly large) number of attributes. We developed a way to automatically model the behavior captured in log files with dozens of attributes. The advantage of our method is that we do not need any prior knowledge about the data and the attributes. The learned model can then be used to detect anomalous executions in the data. To achieve this we extend the existing Dynamic Bayesian Networks with other (existing) techniques to better model the normal behavior found in log files. We introduce a new algorithm that is able to learn a model of a log file starting from the data itself. The model is capable of scoring events and cases, even when new values or new combinations of values appear in the log file, and has the ability to give a decomposition of the given score, indicating the root cause for the anomalies. Furthermore we show that our model can be used in a more general way for detecting Concept Drift.
引用
收藏
页码:494 / 501
页数:8
相关论文
共 50 条
  • [1] Bayesian-based anomaly detection in the industrial processes
    Pan, Yijun
    Zheng, Zeyu
    Fu, Dianzheng
    IFAC PAPERSONLINE, 2020, 53 (02): : 11729 - 11734
  • [2] Anomaly detection of business processes based on attention mechanism
    Sun, Jinyong
    Zhou, Bowen
    Wen, Lijie
    Xu, Qian
    Deng, Wenwei
    Sun, Zhigang
    Jisuanji Jicheng Zhizao Xitong/Computer Integrated Manufacturing Systems, CIMS, 2022, 28 (10): : 3039 - 3051
  • [3] Temporal Anomaly Detection in Business Processes
    Rogge-Solti, Andreas
    Kasneci, Gjergji
    BUSINESS PROCESS MANAGEMENT, BPM 2014, 2014, 8659 : 234 - 249
  • [4] Anomaly-based intrusion detection using Bayesian networks
    Tylman, Wojciech
    DEPCOS - RELCOMEX 2008: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON DEPENDABILITY OF COMPUTER SYSTEMS, 2008, : 211 - +
  • [5] An Efficient Algorithm for Anomaly Detection in a Flight System Using Dynamic Bayesian Networks
    Saada, Mohamad
    Meng, Qinggang
    NEURAL INFORMATION PROCESSING, ICONIP 2012, PT III, 2012, 7665 : 620 - 628
  • [6] Sequential Anomaly Detection Techniques in Business Processes
    Linn, Christian
    Werth, Dirk
    BUSINESS INFORMATION SYSTEMS WORKSHOPS, BIS 2016, 2017, 263 : 196 - 208
  • [7] Application of Bayesian Dynamic Forecast in Anomaly Detection
    阎慧
    曹元大
    Journal of Beijing Institute of Technology(English Edition), 2005, (01) : 41 - 44
  • [8] Anomaly Based Intrusion Detection in Wireless Networks Using Bayesian Classifier
    Klassen, Myungsook
    Yang, Ning
    2012 IEEE FIFTH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTATIONAL INTELLIGENCE (ICACI), 2012, : 257 - 264
  • [9] Survey and Benchmark of Anomaly Detection in Business Processes
    Guan, Wei
    Cao, Jian
    Zhao, Haiyan
    Gu, Yang
    Qian, Shiyou
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2025, 37 (01) : 493 - 512
  • [10] Bayesian Filtering for Dynamic Anomaly Detection and Tracking
    Forti, Nicola
    Millefiori, Leonardo M.
    Braca, Paolo
    Willett, Peter
    IEEE TRANSACTIONS ON AEROSPACE AND ELECTRONIC SYSTEMS, 2022, 58 (03) : 1528 - 1544