Javascript must be enabled to continue!
MidSiot: A Multistage Intrusion Detection System for Internet of Things
View through CrossRef
Internet of Things (IoT) has been thriving in recent years, playing an important role in a multitude of various domains, including industry 4.0, smart transportation, home automation, and healthcare. As a result, a massive number of IoT devices are deployed to collect data from our surrounding environment and transfer these data to other systems over the Internet. This may lead to cybersecurity threats, such as denial of service attacks, brute‐force attacks, and unauthorized accesses. Unfortunately, many IoT devices lack solid security mechanisms and hardware security supports because of their limitations in computational capability. In addition, the heterogeneity of devices in IoT networks causes nontrivial challenges in detecting security threats. In this article, we present a collaborative intrusion detection system (IDS), namely, MidSiot, deployed at both Internet gateways and IoT local gateways. Our proposed IDS consists of three stages: (1) classifying the type of each IoT device in the IoT network; (2) differentiating between benign and malicious network traffic; and (3) identifying the type of attacks targeting IoT devices. The last two stages are handled by the Internet gateways, whereas the first stage is on the local gateway to leverage the computational resources from edge devices. The evaluation results on three popular IDS datasets (IoTID20, CIC‐IDS‐2017, and BOT‐IoT) indicate our proposal could detect seven common cyberattacks targeting IoT devices with an average accuracy of 99.68% and outperforms state‐of‐the‐art IDSs. This demonstrates that MidSiot could be an effective and practical IDS to protect IoT networks.
Title: MidSiot: A Multistage Intrusion Detection System for Internet of Things
Description:
Internet of Things (IoT) has been thriving in recent years, playing an important role in a multitude of various domains, including industry 4.
0, smart transportation, home automation, and healthcare.
As a result, a massive number of IoT devices are deployed to collect data from our surrounding environment and transfer these data to other systems over the Internet.
This may lead to cybersecurity threats, such as denial of service attacks, brute‐force attacks, and unauthorized accesses.
Unfortunately, many IoT devices lack solid security mechanisms and hardware security supports because of their limitations in computational capability.
In addition, the heterogeneity of devices in IoT networks causes nontrivial challenges in detecting security threats.
In this article, we present a collaborative intrusion detection system (IDS), namely, MidSiot, deployed at both Internet gateways and IoT local gateways.
Our proposed IDS consists of three stages: (1) classifying the type of each IoT device in the IoT network; (2) differentiating between benign and malicious network traffic; and (3) identifying the type of attacks targeting IoT devices.
The last two stages are handled by the Internet gateways, whereas the first stage is on the local gateway to leverage the computational resources from edge devices.
The evaluation results on three popular IDS datasets (IoTID20, CIC‐IDS‐2017, and BOT‐IoT) indicate our proposal could detect seven common cyberattacks targeting IoT devices with an average accuracy of 99.
68% and outperforms state‐of‐the‐art IDSs.
This demonstrates that MidSiot could be an effective and practical IDS to protect IoT networks.
Related Results
Macroeconomic and Social Precursors of Suicide Rates in the Philippines: A Quantitative Analysis (Preprint)
Macroeconomic and Social Precursors of Suicide Rates in the Philippines: A Quantitative Analysis (Preprint)
BACKGROUND
Suicide is a complex, serious and multifaceted public health issue that poses significant challenges to societies worldwide. In fact, it represen...
Development and application of biological intelligence technology in computer
Development and application of biological intelligence technology in computer
To study the development and application of biological intelligence technology in computers and realize high-precision network anomaly detection, a distributed intrusion detection ...
Patent Litigation and the Internet
Patent Litigation and the Internet
Patent infringement litigation has not only increased dramatically in frequency over the past few decades, but also has also seen striking growth in both stakes and cost. Although ...
The Geography of Cyberspace
The Geography of Cyberspace
The Virtual and the Physical
The structure of virtual space is a product of the Internet’s geography and technology. Debates around the nature of the virtual — culture, s...
Coastal karst springs in the Mediterranean basin : study of the mechanisms of saline pollution at the Almyros spring (Crete), observations and modelling
Coastal karst springs in the Mediterranean basin : study of the mechanisms of saline pollution at the Almyros spring (Crete), observations and modelling
Abstract
Variations in salinity and flow rate in the aerial, naturally salty spring of Almyros of Heraklion on Crete were monitored during two hydrological cycles. W...
Machine learning enabled system for intelligent classification of host-based intrusion severity
Machine learning enabled system for intelligent classification of host-based intrusion severity
Intrusion severity classification or the analysis of the impact of intrusion is a much needed solution to effectively manage intrusion events in an organization. A lot of intrusion...
Towards an Effective Deep Learning-Based Intrusion Detection System in the Internet of Things
Towards an Effective Deep Learning-Based Intrusion Detection System in the Internet of Things
Distributed Sensor Networks play a vital role in the day-to-day world of computing applications, from the cloud to the Internet of Things (IoT). These computing applications device...
Research on Industrial IoT Security Based on Deep Learning
Research on Industrial IoT Security Based on Deep Learning
<p>With the rapid development of "Internet +" and the construction of a new generation of information infrastructure, the intrusion behaviors against the In...

