{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:W5TYGURML3OJHG5FF3475PCGBQ","short_pith_number":"pith:W5TYGURM","schema_version":"1.0","canonical_sha256":"b76783522c5edc939ba52ef9febc460c39c8e1d4c1ef55d6ed8dd8ed1999b430","source":{"kind":"arxiv","id":"2411.08561","version":5},"attestation_state":"computed","paper":{"title":"LogLLM: Log-based Anomaly Detection Using Large Language Models","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.SE","authors_text":"Chun Ouyang, Jian Cao, Jianqi Gao, Shiyou Qian, Wei Guan","submitted_at":"2024-11-13T12:18:00Z","abstract_excerpt":"Software systems often record important runtime information in logs to help with troubleshooting. Log-based anomaly detection has become a key research area that aims to identify system issues through log data, ultimately enhancing the reliability of software systems. Traditional deep learning methods often struggle to capture the semantic information embedded in log data, which is typically organized in natural language. In this paper, we propose LogLLM, a log-based anomaly detection framework that leverages large language models (LLMs). LogLLM employs BERT for extracting semantic vectors fro"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2411.08561","kind":"arxiv","version":5},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.SE","submitted_at":"2024-11-13T12:18:00Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"142d080b1babc82d9e42a3ea62501b9b0961f6d48dc6ff0fef5fddcd0eb8ce78","abstract_canon_sha256":"4757c1707ef1d19f52f764e5f5a1d89a6a512c26f642b70c49e306bc797ca760"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T10:48:21.464836Z","signature_b64":"3NdgHz/DhEp8vlyXJctCGeqvQOLVMxuJMmwd9qxHNIixtc+QzwuZBAg9r8OohVdX31WJnVmzOXiwUjPG9p6lBA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"b76783522c5edc939ba52ef9febc460c39c8e1d4c1ef55d6ed8dd8ed1999b430","last_reissued_at":"2026-07-05T10:48:21.464353Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T10:48:21.464353Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"LogLLM: Log-based Anomaly Detection Using Large Language Models","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.SE","authors_text":"Chun Ouyang, Jian Cao, Jianqi Gao, Shiyou Qian, Wei Guan","submitted_at":"2024-11-13T12:18:00Z","abstract_excerpt":"Software systems often record important runtime information in logs to help with troubleshooting. Log-based anomaly detection has become a key research area that aims to identify system issues through log data, ultimately enhancing the reliability of software systems. Traditional deep learning methods often struggle to capture the semantic information embedded in log data, which is typically organized in natural language. In this paper, we propose LogLLM, a log-based anomaly detection framework that leverages large language models (LLMs). LogLLM employs BERT for extracting semantic vectors fro"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2411.08561","kind":"arxiv","version":5},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2411.08561/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2411.08561","created_at":"2026-07-05T10:48:21.464411+00:00"},{"alias_kind":"arxiv_version","alias_value":"2411.08561v5","created_at":"2026-07-05T10:48:21.464411+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2411.08561","created_at":"2026-07-05T10:48:21.464411+00:00"},{"alias_kind":"pith_short_12","alias_value":"W5TYGURML3OJ","created_at":"2026-07-05T10:48:21.464411+00:00"},{"alias_kind":"pith_short_16","alias_value":"W5TYGURML3OJHG5F","created_at":"2026-07-05T10:48:21.464411+00:00"},{"alias_kind":"pith_short_8","alias_value":"W5TYGURM","created_at":"2026-07-05T10:48:21.464411+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":11,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2607.05785","citing_title":"Can Large Language Models Generate Observability-Aware Code?","ref_index":43,"is_internal_anchor":true},{"citing_arxiv_id":"2606.21963","citing_title":"Holmes: Multimodal Agentic Diagnosis for Mixed-Language Mobile Crashes at Industrial Scale","ref_index":9,"is_internal_anchor":false},{"citing_arxiv_id":"2606.10281","citing_title":"Benchmarking and Exploring the Capabilities of LLMs for Attack Investigations","ref_index":23,"is_internal_anchor":false},{"citing_arxiv_id":"2606.08649","citing_title":"Sample-Efficient LLM-Based Detection of Malicious Web Server Logs with Forensically Explainable Reasoning","ref_index":21,"is_internal_anchor":false},{"citing_arxiv_id":"2606.05567","citing_title":"ZERO-APT: A Closed-Loop Adversarial Framework for LLM-Driven Automated Penetration Testing under Intelligent Defense","ref_index":45,"is_internal_anchor":false},{"citing_arxiv_id":"2606.04957","citing_title":"NLLog: Lightweight, Explainable SOC Anomaly Detection via Log-to-Language Rewriting","ref_index":38,"is_internal_anchor":false},{"citing_arxiv_id":"2604.16359","citing_title":"LLM4Log: A Systematic Review of Large Language Model-based Log Analysis","ref_index":43,"is_internal_anchor":false},{"citing_arxiv_id":"2603.18196","citing_title":"Retrieval-Augmented LLMs for Security Incident Analysis","ref_index":17,"is_internal_anchor":false},{"citing_arxiv_id":"2604.16359","citing_title":"LLM4Log: A Systematic Review of Large Language Model-based Log Analysis","ref_index":43,"is_internal_anchor":false},{"citing_arxiv_id":"2605.08316","citing_title":"AI-Driven Security Alert Screening and Alert Fatigue Mitigation in Security Operations Centers: A Comprehensive Survey","ref_index":49,"is_internal_anchor":false},{"citing_arxiv_id":"2604.19118","citing_title":"DP-FlogTinyLLM: Differentially private federated log anomaly detection using Tiny LLMs","ref_index":96,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ","json":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ.json","graph_json":"https://pith.science/api/pith-number/W5TYGURML3OJHG5FF3475PCGBQ/graph.json","events_json":"https://pith.science/api/pith-number/W5TYGURML3OJHG5FF3475PCGBQ/events.json","paper":"https://pith.science/paper/W5TYGURM"},"agent_actions":{"view_html":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ","download_json":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ.json","view_paper":"https://pith.science/paper/W5TYGURM","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2411.08561&json=true","fetch_graph":"https://pith.science/api/pith-number/W5TYGURML3OJHG5FF3475PCGBQ/graph.json","fetch_events":"https://pith.science/api/pith-number/W5TYGURML3OJHG5FF3475PCGBQ/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ/action/timestamp_anchor","attest_storage":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ/action/storage_attestation","attest_author":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ/action/author_attestation","sign_citation":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ/action/citation_signature","submit_replication":"https://pith.science/pith/W5TYGURML3OJHG5FF3475PCGBQ/action/replication_record"}},"created_at":"2026-07-05T10:48:21.464411+00:00","updated_at":"2026-07-05T10:48:21.464411+00:00"}