Designing size consistent statistics for accurate anomaly detection in dynamic networks

10Citations
Citations of this article
17Readers
Mendeley users who have this article in their library.

Abstract

An important task in network analysis is the detection of anomalous events in a network time series. These events could merely be times of interest in the network timeline or they could be examples of malicious activity or network malfunction. Hypothesis testing using network statistics to summarize the behavior of the network provides a robust framework for the anomaly detection decision process. Unfortunately, choosing network statistics that are dependent on confounding factors like the total number of nodes or edges can lead to incorrect conclusions (e.g., false positives and false negatives). In this article, we describe the challenges that face anomaly detection in dynamic network streams regarding confounding factors. We also provide two solutions to avoiding error due to confounding factors: the first is a randomization testing method that controls for confounding factors, and the second is a set of size-consistent network statistics that avoid confounding due to the most common factors, edge count and node count.

Author supplied keywords

Cite

CITATION STYLE

APA

Fond, T. L. A., Neville, J., & Gallagher, B. (2018). Designing size consistent statistics for accurate anomaly detection in dynamic networks. ACM Transactions on Knowledge Discovery from Data, 12(4). https://doi.org/10.1145/3185059

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free