Ananke: A Streaming Framework for Live Forward Provenance
Dimitris Palyvos-Giannas, Bastian Havers, Marina Papatriantafilou, Vincenzo Gulisano
Abstract
Data streaming enables online monitoring of large and continuous event streams in Cyber-Physical Systems (CPSs). In such scenarios, fine-grained backward provenance tools can connect streaming query results to the source data producing them, allowing analysts to study the dependency/causality of CPS events. While CPS monitoring commonly produces many events, backward provenance does not help prioritize event inspection since it does not specify if an event's provenance could still contribute to future results.
To cover this gap, we introduce Ananke , a framework to extend any fine-grained backward provenance tool and deliver a live bipartite graph of fine-grained forward provenance. With Ananke , analysts can prioritize the analysis of provenance data based on whether such data is still potentially being processed by the monitoring queries. We prove our solution is correct, discuss multiple implementations, including one leveraging streaming APIs for parallel analysis, and show Ananke results in small overheads, close to those of existing tools for fine-grained backward provenance.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 2726d3d9-779f-464a-bdac-99b3536b1c0bCited by top-tier papers3
- Erebus: Explaining the Outputs of Data Streaming QueriesDimitris Palyvos-Giannas, Katerina Tzompanaki, Marina Papatriantafilou, Vincenzo GulisanoVLDB 2023 · 21 citations
- Evaluating Continuous Queries with Inconsistency AnnotationsSamuele Langhi, Angela Bonifati, Riccardo TommasiniVLDB 2025 · 1 citation
- Toward Temporal Attribution Analytics in Dataflows [Vision Paper]Chrysanthi Kosyfaki, Ruiyuan Zhang, Nikos Mamoulis, Xiaofang ZhouVLDB 2026
Related papers
- LPStream: Fine-grained Lazy Provenance for Stream ProcessingMasaya Yamada, Hiroyuki Kitagawa, Salman Ahmed Shaikh, Toshiyuki Amagasa et al.SIGMOD 2026 · 3 citations
- ProGQL: A Provenance Graph Query System for Cyber Attack InvestigationFei Shao, Jia Zou, Zhichao Cao, Xusheng XiaoICDE 2026
- SAQL: A Stream-based Query System for Real-Time Abnormal System Behavior DetectionPeng Gao, Xusheng Xiao, Ding Li, Zhichun Li et al.USENIX Security 2018 · 122 citations
- Towards a Timely Causality Analysis for Enterprise SecurityYushan Liu, Mu Zhang, Ding Li, Kangkook Jee et al.NDSS 2018 · 177 citations
- Everything Everyway All at Once - Time Traveling Debugging for Stream Processing ApplicationsTimo Räth, Marius Schlegel, Kai-Uwe SattlerICDE 2024 · 1 citation
