This blog post had two of the three major citations freely available as PDFs, and only one locked behind a paywall - so thanks for that!
Pretty good read, too, aside from the usual corporate vagueness: "We applied this approach to our data and added a number of heuristics to cluster anomalies based on the time of occurrence and similarity of tweets."