{"id":32276,"date":"2024-09-10T10:39:45","date_gmt":"2024-09-10T10:39:45","guid":{"rendered":"https:\/\/www.writemyessays.app\/blog\/questions\/discrete-event-log-analysis-and-anomaly-detection-a-comparative-study-using-real-life-logs-2\/"},"modified":"2024-09-10T10:39:45","modified_gmt":"2024-09-10T10:39:45","slug":"discrete-event-log-analysis-and-anomaly-detection-a-comparative-study-using-real-life-logs-2","status":"publish","type":"questions","link":"https:\/\/www.writemyessays.app\/blog\/questions\/discrete-event-log-analysis-and-anomaly-detection-a-comparative-study-using-real-life-logs-2\/","title":{"rendered":"Discrete event log analysis and anomaly detection a comparative study using real-life logs"},"content":{"rendered":"<div><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">The purpose of the thesis is to<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"> make an analysis of various methods and techniques that have been implemented in the literature (ideally to also mention and explain the characteristics of the datasets used in the literature)<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">A relative comparison of the results presented in the literature<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">To run the implementations of the methods (where these are available obviously) and to also try to run them with input datasets different from those used by each paper, to make our own observations and draw conclusions and what can be done further.<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">For this purpose, I also attached an excel with the papers that should at least be analyzed, including the repositories with the implementation of the method, where it is available.<\/span><\/span><\/span><\/div>\n<div><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><br \/><\/span><\/span><\/span><\/div>\n<div><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">So I need the following corrections:<br \/><\/span><\/span><\/span><\/div>\n<div>\n<span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">1. In section 4 the characteristics of the machine that ran the experiments should also be listed, but they are nowhere to be found.<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">2. In section 4 there should be links (e.g. github) with the codes used<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">3. In section 4.1 it states `.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">Our evaluation metrics include precision, recall, F1-score, and true negative rate (TNR).` The only metric we see in the rest of the chapter is f1.<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">4. It is not at all clear what techniques they have run for.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">Section 4.4 mentions 7 techniques.<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">5. Of these, 1-6 are off-topic and can only serve as a baseline approach, but again, the implemented code for them is nowhere to be found.<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">6. Also techniques are mentioned once in section 4.4 and not mentioned again.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">The 7th technique mentioned is also the purpose of the thesis, where it states that we implement two advanced methods.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">Normally as many of the methods should be run on as many datasets as possible and clearly reported in this chapter.<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">8 It should also be clearly stated which datasets were used for which methods.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">The sentence `The datasets chosen include HDFS, BGL, Thunderbird, OpenStack, and ADFA , each presenting unique characteristics and challenges for anomaly detection&#8217; is not enough<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">9 In chapter 5 there is a table, the purpose of which is difficult to understand.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">I think it shows which technique is more efficient on each dataset, but the metrics it gives don&#8217;t make sense.<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">eg first column<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">10 Fifth line gives a number and in parentheses below (LogDeep) what does this information mean?<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">Further down in chapter 5 there is the following sentence &#8220;Our experiments show that combining new event types and deviating sequence lengths achieves an impressive F1 score of 90.4% on the LogDeep version, with ECVC further enhancing performance&#8221; which again does not explain at all what it says<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">this.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">How it is set up and how it relates to &#8220;Effective Simple Methods&#8221;<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">11 Sixth line Effective Advanced Methods has two techniques, just below the line Advanced methods performance says &gt;94%.<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">What does that mean?<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">that one technique gave a result of 94 and the other above?<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">how much more?<\/span><\/span> <span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">maybe 100?<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">12 Based on the professor&#8217;s feedback, this table should be broken for each experiment that was run separately, or at least all the techniques that have been run should be entered in the lines and the f1 score for each dataset should be entered in the cells<br \/>\n<\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">13 As for the rest of chapter 5 and 6, almost all observations are generally written and need enrichment<\/span><\/span><\/span><\/div>\n<div><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><br \/><\/span><\/span><\/span><\/div>\n<div><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">Finally, i need the code file with <\/span><\/span><\/span><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\">benchmarks tests, in order to know the characteristics of the machine as well as the time it took each algorithm to run.<\/span><\/span><\/span><\/p>\n<\/div>\n<div><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><span style=\"cursor: auto; color: inherit;\"><br \/><\/span><\/span><\/span><\/div>\n","protected":false},"excerpt":{"rendered":"<p>The purpose of the thesis is to make an analysis of various methods and techniques that have been implemented in the literature (ideally to also mention and explain the characteristics of the datasets used in the literature) A relative comparison of the results presented in the literature To run the implementations of the methods (where [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","template":"","meta":[],"disciplines":[63],"paper_types":[],"tagged":[],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/questions\/32276"}],"collection":[{"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/questions"}],"about":[{"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/types\/questions"}],"author":[{"embeddable":true,"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/comments?post=32276"}],"version-history":[{"count":0,"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/questions\/32276\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/media?parent=32276"}],"wp:term":[{"taxonomy":"disciplines","embeddable":true,"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/disciplines?post=32276"},{"taxonomy":"paper_types","embeddable":true,"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/paper_types?post=32276"},{"taxonomy":"tagged","embeddable":true,"href":"https:\/\/www.writemyessays.app\/blog\/wp-json\/wp\/v2\/tagged?post=32276"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}