返回
SXAD: Shapely eXplainable AI-Based Anomaly Detection Using Log Data
DOI:10.1109/ACCESS.2024.3425472.png)
摘要
En 中文
Artificial Intelligence (AI) has made tremendous progress in anomaly detection. However, AI models work as a black-box, making it challenging to provide reasoning behind their judgments in a Log Anomaly Detection (LAD). To the rescue, Explainable Artificial Intelligence (XAI) improves system log analysis. It follows a white-box model for transparency, understandability, trustworthiness, and dependability of Machine Learning (ML) and Deep Learning (DL) Models. In addition, Shapely Additive Explanation (SHAP), added to system dynamics, makes informed judgments and adoptable proactive methods to optimize system functionality and reliability. Therefore, this paper proposed the Shapely eXplainable Anomaly Detection (SXAD) framework to identify different events (features) that impact the models' interpretability, trustworthiness, and explainability. The framework utilizes the Kernel SHAP approach, which is based on Shapley values principle, providing an innovative approach to event selection and identifying specific events causing abnormal behavior. This study addresses the LAD by transforming it from a black-box model into a white-box one, leveraging XAI to make it transparent, interpretable, explainable, and dependable. It utilizes benchmark data from the Hadoop Distributed File System (HDFS), organized using a Drain parser, and employs several ML models, such as Decision Tree (DT), Random Forest (RF), and Gradient Boosting (GB). These models achieve impressive accuracy rates of 99.99%, 99.85%, and 99.99%, respectively. Our contribution are novel because no earlier work has been done in the area of Log Anomaly Detection (LAD) with integration of XAI-SHAP.
Keyword:
Explainable artificial intelligence
Shapley additive explanation
Hadoop distributed file system
machine learning
Explainable artificial intelligence
Shapley additive explanation
Hadoop distributed file system
machine learning
期刊
IF:
3.6
论文数:
9.8W
被引数:
29.4W
机构
引用论文
Ca2+- and calcineurin-dependent recycling of an integrin to the front of migrating neutrophils
Nature
IF0
AN ASYMPTOTICALLY FREE CHIRAL LINEAR SIGMA MODEL WITH QUARKS COUPLED TO GLUONS一个与胶子耦合的夸克的可约化自由手征线性σ模型
Extracting spatial effects from machine learning model using local interpretation method: An example of SHAP and XGBoost使用局部解释方法从机器学习模型中提取空间效应: 以SHAP和XGBoost为例
Intrusion detection in cloud computing based on time series anomalies utilizing machine learning基于时间序列异常的机器学习的云计算入侵检测

