The Analysis of Online Event Streams: Predicting the Next Activity for Anomaly Detection

03/17/2022
by   Suhwan Lee, et al.
0

Anomaly detection in process mining focuses on identifying anomalous cases or events in process executions. The resulting diagnostics are used to provide measures to prevent fraudulent behavior, as well as to derive recommendations for improving process compliance and security. Most existing techniques focus on detecting anomalous cases in an offline setting. However, to identify potential anomalies in a timely manner and take immediate countermeasures, it is necessary to detect event-level anomalies online, in real-time. In this paper, we propose to tackle the online event anomaly detection problem using next-activity prediction methods. More specifically, we investigate the use of both ML models (such as RF and XGBoost) and deep models (such as LSTM) to predict the probabilities of next-activities and consider the events predicted unlikely as anomalies. We compare these predictive anomaly detection methods to four classical unsupervised anomaly detection approaches (such as Isolation forest and LOF) in the online setting. Our evaluation shows that the proposed method using ML models tends to outperform the one using a deep model, while both methods outperform the classical unsupervised approaches in detecting anomalous events.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/11/2021

Online-compatible Unsupervised Non-resonant Anomaly Detection

There is a growing need for anomaly detection methods that can broaden t...
research
03/31/2022

SIERRA: Ranking Anomalous Activities in Enterprise Networks

An enterprise today deploys multiple security middleboxes such as firewa...
research
10/02/2017

Deep Learning for Unsupervised Insider Threat Detection in Structured Cybersecurity Data Streams

Analysis of an organization's computer network activity is a key compone...
research
12/28/2020

Detecting Anomalous line-items by Modeling the Legal Case Lifecycle

Anomaly detection continues to be the subject of research and developmen...
research
03/01/2021

Online anomaly detection using statistical leverage for streaming business process events

While several techniques for detecting trace-level anomalies in event lo...
research
08/11/2017

Time Series Anomaly Detection; Detection of anomalous drops with limited features and sparse examples in noisy highly periodic data

Google uses continuous streams of data from industry partners in order t...
research
03/31/2023

DynamoPMU: A Physics Informed Anomaly Detection and Prediction Methodology using non-linear dynamics from μPMU Measurement Data

The expansion in technology and attainability of a large number of senso...

Please sign up or login with your details

Forgot password? Click here to reset