NetVigil: Robust and Low-Cost Anomaly Detection for East-West Data Center Security
Kevin Hsieh, Mike Wong, Santiago Segarra, Sathiya Kumaran Mani, Trevor Eberl, Anatoliy Panasyuk, Ravi Netravali, Ranveer Chandra, Srikanth Kandula
Abstract
The growing number of breaches in data centers underscores an urgent need for more effective security. Traditional perimeter defense measures and static zero-trust approaches are unable to address the unique challenges that arise from the scale, complexity, and evolving nature of today's data center networks. To tackle these issues, we introduce NetVigil, a robust and cost-efficient anomaly detection system specifically designed for east-west traffic within data center networks. NetVigil adeptly extracts security-focused, graphbased features from network flow logs and employs domainspecific graph neural networks (GNNs) and contrastive learning techniques to strengthen its resilience against normal traffic variations and adversarial evasion strategies. Our evaluation, over various attack scenarios and traces from real-world production clusters, shows that NetVigil delivers significant improvements in accuracy, cost, and detection latency compared to state-of-the-art anomaly detection systems, providing a practical, supplementary security mechanism to protect the east-west traffic within data center networks.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext ebc82a49-d3e0-434c-bcca-47192c79ecb8Cited by top-tier papers6
- Zoom2Net: Constrained Network Telemetry ImputationFengchen Gong, Divya Raghunathan, Aarti Gupta, Maria ApostolakiSIGCOMM 2024 · 11 citations
- Securing Public Cloud Networks with Efficient Role-based Micro-SegmentationSathiya Kumaran Mani, Kevin Hsieh, Santiago Segarra, Ranveer Chandra et al.NSDI 2025 · 10 citations
- Making Logic a First-Class Citizen in Generative ML for NetworkingHongyu Hè, Minhao Jin, Maria ApostolakiNSDI 2026 · 5 citations
- CAT: Can Trust be Predicted with Context-Awareness in Dynamic Heterogeneous Networks?Jie Wang, Zheng Yan, Jiahe Lan, Xuyan Li et al.NDSS 2026 · 2 citations
- MalMoE: Mixture-of-Experts Enhanced Encrypted Malicious Traffic Detection Under Graph DriftYunpeng Tan, Qingyang Li, Mingxin Yang, Yannan Hu et al.INFOCOM 2026 · 1 citation
Builds on14
- Graph Contrastive Learning with AugmentationsYuning You, Tianlong Chen, Yongduo Sui, Ting Chen et al.NeurIPS 2020 · 3,042 citations
- Strategies for Pre-training Graph Neural NetworksWeihua Hu, Bowen Liu, Joseph Gomes, Marinka Zitnik et al.ICLR 2020 · 1,744 citations
- Contrastive Multi-View Representation Learning on GraphsKaveh Hassani, Amir Hosein Khas AhmadiICML 2020 · 1,663 citations
- Graph Contrastive Learning with Adaptive AugmentationYanqiao Zhu, Yichen Xu, Feng Yu, Qiang Liu et al.WWW 2021 · 1,415 citations
- InfoGraph: Unsupervised and Semi-supervised Graph-Level Representation Learning via Mutual Information MaximizationFan-Yun Sun, Jordan Hoffmann, Vikas Verma, Jian TangICLR 2020 · 1,010 citations
Related papers
- ContraMTD: An Unsupervised Malicious Network Traffic Detection Method based on Contrastive LearningXueying Han, Susu Cui, Jian Qin, Song Liu et al.WWW 2024 · 25 citations
- Dynamic Neighborhood Modeling via Node-Subgraph Contrastive Learning for Graph-Based Fraud DetectionZhizhi Yu, Chundong Liang, Xinglong Chang, Dongxiao He et al.AAAI 2025 · 7 citations
- Nadege: When Graph Kernels meet Network Anomaly DetectionHicham Lesfari, Frédéric GiroireINFOCOM 2022 · 5 citations
- Graph Anomaly Detection at Group Level: A Topology Pattern Enhanced Unsupervised ApproachXing Ai, Jialong Zhou, Yulin Zhu, Gaolei Li et al.ICDE 2024 · 9 citations
- Understanding and Bridging the Gap Between Unsupervised Network Representation Learning and Security AnalyticsJiacen Xu, Xiaokui Shu, Zhou LiS&P 2024 · 14 citations
