ANOMALY DETECTION BASED ON EVENTS COMPOSED THROUGH UNSUPERVISED CLUSTERING OF LOG MESSAGES
Patent №
US 10,721,256
Granted
2020-07-21
Filed 2018
Owner
ORACLE INTERNATIONAL CORPORATION
Lab
—
AI components
3
ml · nlp · hardware
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
15985253
The disclosed embodiments provide a system that detects an anomaly in a computer system based on log messages. During operation, the system receives log messages generated by the computer system during operation of the computer system. Next, the system maps each received log message to a cluster in a set of clusters of log messages, wherein each cluster is associated with a specific event. The system then forms events for consecutive log messages into sequences of events. Finally, the system performs anomaly detection based on the sequences of events, wherein if an anomaly is detected, the system triggers an alert.
AI classification
Ownership
ORACLE INTERNATIONAL CORPORATION
assignment · 460870819
Assignors
URMANOV, ALEKSEY M., WOOD, ALAN PAUL
On an employer assignment, the assignors are typically the inventors.