Detection of anomalies (port scan or denial of service attacks) using SpotLight algorithm. It
focuses on detecting anomalies in dynamic graphs in the stream. It uses K-random induced sub-graphs to calculate anomaly score. Around 20
sub-graphs suffice for thousands of nodes.