Bayesian Anomaly Detection Using Extreme Value Theory

05/29/2019
by   Sreelekha Guggilam, et al.
0

Data-driven anomaly detection methods typically build a model for the normal behavior of the target system, and score each data instance with respect to this model. A threshold is invariably needed to identify data instances with high (or low) scores as anomalies. This presents a practical limitation on the applicability of such methods, since most methods are sensitive to the choice of the threshold, and it is challenging to set optimal thresholds. We present a probabilistic framework to explicitly model the normal and anomalous behaviors and probabilistically reason about the data. An extreme value theory based formulation is proposed to model the anomalous behavior as the extremes of the normal behavior. As a specific instantiation, a joint non-parametric clustering and anomaly detection algorithm (INCAD) is proposed that models the normal behavior as a Dirichlet Process Mixture Model. A pseudo-Gibbs sampling based strategy is used for inference. Results on a variety of data sets show that the proposed method provides effective clustering and anomaly detection without requiring strong initialization and thresholding parameters.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/01/2019

Integrated Clustering and Anomaly Detection (INCAD) for Streaming Data (Revised)

Most current clustering based anomaly detection methods use scoring sche...
research
10/18/2018

Unsupervised Anomalous Data Space Specification

Computer algorithms are written with the intent that when run they perfo...
research
01/06/2020

Semi-supervised Anomaly Detection using AutoEncoders

Anomaly detection refers to the task of finding unusual instances that s...
research
12/27/2020

Time-Window Group-Correlation Support vs. Individual Features: A Detection of Abnormal Users

Autoencoder-based anomaly detection methods have been used in identifyin...
research
06/02/2020

An Alternative Metric for Detecting Anomalous Ship Behavior Using a Variation of the DBSCAN Clustering Algorithm

There is a growing need to quickly and accurately identify anomalous beh...
research
06/14/2020

Categorical anomaly detection in heterogeneous data using minimum description length clustering

Fast and effective unsupervised anomaly detection algorithms have been p...
research
05/28/2022

Ensemble2: Anomaly Detection via EVT-Ensemble Framework for Seasonal KPIs in Communication Network

KPI anomaly detection is one important function of network management sy...

Please sign up or login with your details

Forgot password? Click here to reset