Analysis of contemporary methods for detecting anomalies in computer networks




anomaly, anomaly detection methods, computer network


The definition of the concept of anomaly is analyzed, the reasons for their occurrence and possible impact on computer networks are briefly described. Еhree types of anomalies are considered: individual (point), contextual and group anomalies. It is also described on the basis of which characteristics abnormal behavior is detected. Classifications of anomaly detection methods described in the scientific literature are given. Standard statistical methods, methods based on clustering and methods based on classification are considered.


