PULL: Reactive Log Anomaly Detection Based On Iterative PU Learning

01/25/2023
by   Thorsten Wittkopp, et al.
0

Due to the complexity of modern IT services, failures can be manifold, occur at any stage, and are hard to detect. For this reason, anomaly detection applied to monitoring data such as logs allows gaining relevant insights to improve IT services steadily and eradicate failures. However, existing anomaly detection methods that provide high accuracy often rely on labeled training data, which are time-consuming to obtain in practice. Therefore, we propose PULL, an iterative log analysis method for reactive anomaly detection based on estimated failure time windows provided by monitoring systems instead of labeled data. Our attention-based model uses a novel objective function for weak supervision deep learning that accounts for imbalanced data and applies an iterative learning strategy for positive and unknown samples (PU learning) to identify anomalous logs. Our evaluation shows that PULL consistently outperforms ten benchmark baselines across three different datasets and detects anomalous log messages with an F1-score of more than 0.99 even within imprecise failure time windows.

READ FULL TEXT

page 6

page 7

research
11/02/2021

LogLAB: Attention-Based Labeling of Log Data Anomalies via Weak Supervision

With increasing scale and complexity of cloud operations, automated dete...
research
12/09/2019

Oversampling Log Messages Using a Sequence Generative Adversarial Network for Anomaly Detection and Classification

Dealing with imbalanced data is one the main challenges in machine/deep ...
research
12/21/2022

LogAnMeta: Log Anomaly Detection Using Meta Learning

Modern telecom systems are monitored with performance and system logs fr...
research
04/03/2022

Proactive Anomaly Detection for Robot Navigation with Multi-Sensor Fusion

Despite the rapid advancement of navigation algorithms, mobile robots of...
research
04/25/2020

Real-Time Anomaly Detection in Data Centers for Log-based Predictive Maintenance using an Evolving Fuzzy-Rule-Based Approach

Detection of anomalous behaviors in data centers is crucial to predictiv...
research
04/06/2023

Anomaly Detection via Gumbel Noise Score Matching

We propose Gumbel Noise Score Matching (GNSM), a novel unsupervised meth...
research
03/24/2020

Dividing Deep Learning Model for Continuous Anomaly Detection of Inconsistent ICT Systems

Health monitoring is important for maintaining reliable information and ...

Please sign up or login with your details

Forgot password? Click here to reset