Nadege: When Graph Kernels meet Network Anomaly Detection
Hicham Lesfari, Frédéric Giroire
Abstract
With the continuous growing level of dynamicity, heterogeneity, and complexity of traffic data, anomaly detection remains one of the most critical tasks to ensure an efficient and flexible management of a network. Recently, driven by their empirical success in many domains, especially bioinformatics and computer vision, graph kernels have attracted increasing attention. Our work aims at investigating their discrimination power for detecting vulnerabilities and distilling traffic in the field of networking.
In this paper, we propose Nadege, a new graph-based learning framework which aims at preventing anomalies from disrupting the network while providing assistance for traffic monitoring. Specifically, we design a graph kernel tailored for network profiling by leveraging propagation schemes which regularly adapt to contextual patterns. Moreover, we provide provably efficient algorithms and consider both offline and online detection policies. Finally, we demonstrate the potential of kernel-based models by conducting extensive experiments on a wide variety of network environments. Under different usage scenarios, Nadege significantly outperforms all baseline approaches.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Builds on1
Related papers
- Learnable Kernel Density Estimation for Graphs and Its Application to Graph-Level Anomaly DetectionXudong Wang, Ziheng Sun, Chris Ding, Jicong FanICML 2026
- The Case for Learned Provenance-based System Behavior BaselineYao Zhu, Zhenyuan Li, Yangyang Wei, Shouling JiICML 2025
- NetVigil: Robust and Low-Cost Anomaly Detection for East-West Data Center SecurityKevin Hsieh, Mike Wong, Santiago Segarra, Sathiya Kumaran Mani et al.NSDI 2024 · 17 citations
- Modeling Spectral Energy Shifts in Spatio-Temporal Graph Anomaly DetectionYilin Liu, Hongchao Zhang, Ahmad Taha, Taylor T Johnson et al.ICML 2026
- MalMoE: Mixture-of-Experts Enhanced Encrypted Malicious Traffic Detection Under Graph DriftYunpeng Tan, Qingyang Li, Mingxin Yang, Yannan Hu et al.INFOCOM 2026 · 1 citation
