DeCorus: Hierarchical Multivariate Anomaly Detection at Cloud-Scale

02/14/2022
by   Bruno Wassermann, et al.
7

Multivariate anomaly detection can be used to identify outages within large volumes of telemetry data for computing systems. However, developing an efficient anomaly detector that can provide users with relevant information is a challenging problem. We introduce our approach to hierarchical multivariate anomaly detection called DeCorus, a statistical multivariate anomaly detector which achieves linear complexity. It extends standard statistical techniques to improve their ability to find relevant anomalies within noisy signals and makes use of types of domain knowledge that system operators commonly possess to compute system-level anomaly scores. We describe the implementation of DeCorus an online log anomaly detection tool for network device syslog messages deployed at a cloud service provider. We use real-world data sets that consist of 1.5 billion network device syslog messages and hundreds of incident tickets to characterize the performance of DeCorus and compare its ability to detect incidents with five alternative anomaly detectors. While DeCorus outperforms the other anomaly detectors, all of them are challenged by our data set. We share how DeCorus provides value in the field and how we plan to improve its incident detection accuracy.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/16/2021

Online Self-Evolving Anomaly Detection in Cloud Computing Environments

Modern cloud computing systems contain hundreds to thousands of computin...
research
09/18/2019

Anomaly Detection As-a-Service

Cloud systems are complex, large, and dynamic systems whose behavior mus...
research
12/07/2020

Efficient Nonlinear RX Anomaly Detectors

Current anomaly detection algorithms are typically challenged by either ...
research
03/19/2021

Enhancing Robustness of On-line Learning Models on Highly Noisy Data

Classification algorithms have been widely adopted to detect anomalies f...
research
11/21/2022

Immersion and Invariance-based Coding for Privacy in Remote Anomaly Detection

We present a framework for the design of coding mechanisms that allow re...
research
08/13/2020

Statistical Evaluation of Anomaly Detectors for Sequences

Although precision and recall are standard performance measures for anom...
research
05/24/2020

Master-Auxiliary: an efficient aggregation strategy for video anomaly detection

The aim of surveillance video anomaly detection is to detect events that...

Please sign up or login with your details

Forgot password? Click here to reset