LogEDL: Log Anomaly Detection via Evidential Deep Learning

被引:0
|
作者
Duan, Yunfeng [1 ]
Xue, Kaiwen [2 ]
Sun, Hao [1 ]
Bao, Haotong [2 ]
Wei, Yadong [2 ]
You, Zhangzheng [2 ]
Zhang, Yuantian [2 ]
Jiang, Xiwei [2 ]
Yang, Sangning [2 ]
Chen, Jiaxing [1 ]
Duan, Boya [1 ]
Ou, Zhonghong [2 ]
机构
[1] China Mobile Commun Grp Co Ltd, Beijing 102206, Peoples R China
[2] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Beijing 100876, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 16期
基金
中国国家自然科学基金;
关键词
log anomaly detection; evidential deep learning; uncertainty;
D O I
10.3390/app14167055
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
With advancements in digital technologies such as 5G communications, big data, and cloud computing, the components of network operation systems have become increasingly complex, significantly complicating system monitoring and maintenance. Correspondingly, automated log anomaly detection has become a crucial means to ensure stable network operation and protect networks from malicious attacks or failures. Conventional machine learning and deep learning methods assume consistent distributions between the training and testing data, adhering to a closed-set recognition paradigm. Nevertheless, in realistic scenarios, systems may encounter new anomalies that were not present in the training data, especially in log anomaly detection. Inspired by evidential learning, we propose a novel anomaly detector called LogEDL, which supervises the training of the model through an evidential loss function. Unlike traditional loss functions, the evidential loss function not only focuses on correct classification but also quantifies the uncertainty of predictions. This enhances the robustness and accuracy of the model in handling anomaly detection tasks while achieving functionality similar to open-set recognition. To evaluate the proposed LogEDL method, we conduct extensive experiments on three datasets, i.e., HDFS, BGL, and Thunderbird, to detect anomalous log sequences. The experimental results demonstrate that our proposed LogEDL achieves state-of-the-art performance in anomaly detection.
引用
收藏
页数:18
相关论文
共 50 条
  • [11] LogBERT: Log Anomaly Detection via BERT
    Guo, Haixuan
    Yuan, Shuhan
    Wu, Xintao
    2021 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2021,
  • [12] A new distributed anomaly detection approach for log IDS management based on deep learning
    Koca, Murat
    Aydin, Muhammed Ali
    Sertbas, Ahmet
    Zaim, Abdul Halim
    TURKISH JOURNAL OF ELECTRICAL ENGINEERING AND COMPUTER SCIENCES, 2021, 29 (05) : 2486 - 2501
  • [13] SwissLog: Robust and Unified Deep Learning Based Log Anomaly Detection for Diverse Faults
    Li, Xiaoyun
    Chen, Pengfei
    Jing, Linxiao
    He, Zilong
    Yu, Guangba
    2020 IEEE 31ST INTERNATIONAL SYMPOSIUM ON SOFTWARE RELIABILITY ENGINEERING (ISSRE 2020), 2020, : 92 - 103
  • [14] Distributed system anomaly detection using deep learning-based log analysis
    Han, Pengfei
    Li, Huakang
    Xue, Gang
    Zhang, Chao
    COMPUTATIONAL INTELLIGENCE, 2023, 39 (03) : 433 - 455
  • [15] Deep Learning for Anomaly Detection
    Pang, Guansong
    Aggarwal, Charu
    Shen, Chunhua
    Sebe, Nicu
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2022, 33 (06) : 2282 - 2286
  • [16] Deep Learning for Anomaly Detection
    Wang, Ruoying
    Nie, Kexin
    Wang, Tie
    Yang, Yang
    Long, Bo
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON WEB SEARCH AND DATA MINING (WSDM '20), 2020, : 894 - 896
  • [17] Deep Learning for Anomaly Detection
    Wang, Ruoying
    Nie, Kexin
    Chang, Yen-Jung
    Gong, Xinwei
    Wang, Tie
    Yang, Yang
    Long, Bo
    KDD '20: PROCEEDINGS OF THE 26TH ACM SIGKDD INTERNATIONAL CONFERENCE ON KNOWLEDGE DISCOVERY & DATA MINING, 2020, : 3569 - 3570
  • [18] On the Influence of Data Resampling for Deep Learning-Based Log Anomaly Detection: Insights and Recommendations
    Ma, Xiaoxue
    Zou, Huiqi
    He, Pinjia
    Keung, Jacky
    Li, Yishu
    Yu, Xiao
    Sarro, Federica
    IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 2025, 51 (01) : 243 - 261
  • [19] Anomaly detection in log-event sequences: A federated deep learning approach and open challenges
    Himler, Patrick
    Landauer, Max
    Skopik, Florian
    Wurzenberger, Markus
    MACHINE LEARNING WITH APPLICATIONS, 2024, 16
  • [20] Bayesian Evidential Deep Learning for Online Action Detection
    Guo, Hongji
    Wang, Hanjing
    Ji, Qiang
    COMPUTER VISION - ECCV 2024, PT XVI, 2025, 15074 : 283 - 301