Kennesaw State University
An Unsupervised Anomaly Detection Framework for Detecting Anomalies in Real Time through Network System’s Log Files Analysis
Abstract
dc:description.abstract<p>Nowadays, in almost every computer system, log files are used to keep records of occurring events. Those log files are then used for analyzing and debugging system failures. Due to this important utility, researchers have worked on finding fast and efficient ways to detect anomalies in a computer system by analyzing its log records. Research in log-based anomaly detection can be divided into two main categories: batch log-based anomaly detection and streaming logbased anomaly detection. Batch log-based anomaly detection is computationally heavy and does not allow us to instantaneously detect anomalies. On the other hand, streaming anomaly detection allows for immediate alert. However, current streaming approaches are mainly supervised. In this work, we propose a fully unsupervised framework which can detect anomalies in real time. We test our framework on hdfs log files and successfully detect anomalies with an F- 1 score of 83%.</p>
Degree
thesis:*- Name thesis:degree_name
- Master of Science in Computer Science (MSCS)
- Level thesis:degree_level
- Thesis
- Discipline thesis:degree_discipline
- Computer Science
- Year dc:date.available
- 2020
Author and committee
dc:creator, dc:contributor.*- Author dc:creator
-
- Zeufack, Vannel
- Contributors dc:contributor
-
- Dr. Ahyoung Lee
Subjects
dc:subject × 4Identifiers
dc:identifier.*- Repository record dc:identifier
- https://digitalcommons.kennesaw.edu/cs_etd/38
- OAI identifier oai:identifier
- oai:digitalcommons.kennesaw.edu:cs_etd-1045