Machine Learning based Hybrid Intrusion Detection System for detecting Cross-layer DoS attacks in IoT

Author:

PAUL ADITI1,Sinha Somnath2ORCID,MISHRA SAUMYA1

Affiliation:

1. Banasthali Vidyapith: Banasthali University

2. Amrita University: Amrita Vishwa Vidyapeetham

Abstract

Abstract The Internet of Things (IoT) is critically prone to Denial of Service attacks at multiple layers. Intrusion Detection Systems (IDS), if designed carefully, can be able to detect these attacks effectively. In the proposed study, we develop a Hybrid IDS to detect Cross-Layer DoS attacks in IoT. The proposed system considerably reduces the false positive rate more than a single IDS. The IDS is designed by ensembling multiple machine learning techniques to avoid overfitting or underfitting. The Hybrid IDS works in two stages, with the first stage for detecting an occurrence of attack(Anomaly detection) followed by a second stage to classify the attack types(Signature of the episodes). The output of the first stage is Correctly Detected Samples (CDS) which are again tested by the second stage to get Correctly Classified Samples(CCS). Another unique aspect of the proposed study is generating the dataset for different attacks. Rather than using the existing dataset, we have developed a trace file in NetSim Simulator by designing an attack environment. At the same time, during the feature selection process, a novel and efficient technique is applied to select the best feature set along with the critical feature (CF). Simulation results show an accuracy of detecting CDS of up to 95% and CCS is up to 96% with a weighted average F1 score of up to 96%. The testing time of the proposed model is also considerably lower than individual models, which makes the system efficient and lightweight.

Publisher

Research Square Platform LLC

Reference21 articles.

1. Lombardi, M., Pascale, F., & Santaniello, D. (2021). : Internet of Things: A General Overview between Architectures,Information.21(1)

2. Meneghello, F., Calore, M., Zucchetto, D., Polese, M., & Zanella, A. (2019). : IoT: Internet of Threats? A Survey of Practical Security Vulnerabilities in Real IoT Devices.IEEE Internet of Things Journal.6(1–2)

3. Gupta, B., & Dahiya, A. (2021). : Fundamentals of DDoS Attack: Evolution and Challenges, Distributed Denial of Service (DDoS) Attacks. (1–18) https://doi.org/10.1201/9781003107354

4. Mishra, S., & Paul, A. (2020). : A Critical Analysis of Attack Detection Schemes in IoT and Open Challenges. IEEE International Conference on Computing, Power and Communication Technologies. (57–62) https://doi.org/10.1109/GUCON48875.2020.9231077

5. Neuro-Fuzzy Based Intrusion Detection System for Wireless Sensor Network;Sinha S;Wireless Personal Communications,2020

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3