A SEL for attack detection in IoT/IIoT networks

被引:11
作者
Abdulkareem, Sulyman Age [1 ]
Foh, Chuan Heng [1 ]
Carrez, Francois [1 ]
Moessner, Klaus [2 ]
机构
[1] Univ Surrey, Inst Commun Syst, 5GIC & 6GIC, Guildford GU2 7XH, England
[2] Tech Univ Chemnitz, Fac Elect & Informat Technol, Chemnitz, Germany
关键词
Network intrusion detection (NID); Machine learning (ML); Ensemble learning (EL); Internet-of-Things (IoT); Industrial-Internet-of-Things (IIoT); Feature importance (FI); Stack ensemble learner (SEL); FEATURE-SELECTION APPROACH; INTRUSION DETECTION; LEARNING APPROACH; INTERNET;
D O I
10.1016/j.jnca.2024.103980
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Intrusion detection systems (IDSs) that continuously monitor data flow and take swift action when attacks are identified safeguard networks. Conventional IDS exhibit limitations, such as reduced detection rates and increased computational complexity, attributed to the redundancy and substantial correlation of network data. Ensemble learning (EL) is effective for detecting network attacks. Nonetheless, network traffic data and memory space requirements are typically significant. Therefore, deploying the EL approach on Internet-of-Things (IoT) devices with limited memory is challenging. In this paper, we use feature importance (FI), a filter-based feature selection technique for feature dimensionality reduction, to reduce the feature dimensions of an IoT/IIoT network traffic dataset. We also employ lightweight stacking ensemble learning (SEL) to appropriately identify network traffic records and analyse the reduced features after applying FI to the dataset. Extensive experiments use the Edge-IIoTset dataset containing IoT and IIoT network records. We show that FI reduces the storage space needed to store comprehensive network traffic data by 86.9%, leading to a significant decrease in training and testing time. Regarding accuracy, precision, recall, training and test time, our classifier that utilised the eight best dataset features recorded 87.37%, 90.65%, 77.73%, 80.88%, 16.18 s and 0.10 s for its overall performance. Despite the reduced features, our proposed SEL classifier shows insignificant accuracy compromise. Finally, we pioneered the explanation of SEL by using a decision tree to analyse its performance gain against single learners.
引用
收藏
页数:14
相关论文
共 77 条
[1]   A New Ensemble-Based Intrusion Detection System for Internet of Things [J].
Abbas, Adeel ;
Khan, Muazzam A. ;
Latif, Shahid ;
Ajaz, Maria ;
Shah, Awais Aziz ;
Ahmad, Jawad .
ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2022, 47 (02) :1805-1819
[2]   Features Dimensionality Reduction Approaches for Machine Learning Based Network Intrusion Detection [J].
Abdulhammed, Razan ;
Musafer, Hassan ;
Alessa, Ali ;
Faezipour, Miad ;
Abuzneid, Abdelshakour .
ELECTRONICS, 2019, 8 (03)
[3]  
Abdulkareem SA, 2022, 2022 INT S NETW COMP, P1
[4]   SMOTE-Stack for Network Intrusion Detection in an IoT Environment [J].
Abdulkareem, Sulyman Age ;
Foh, Chuan Heng ;
Carrez, Francois ;
Moessner, Klaus .
2022 27TH IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (IEEE ISCC 2022), 2022,
[5]   Network intrusion detection using oversampling technique and machine learning algorithms [J].
Ahmed, Hafiza Anisa ;
Hameed, Anum ;
Bawany, Narmeen Zakaria .
PEERJ COMPUTER SCIENCE, 2022, 8 :1-19
[6]   Explainable artificial intelligence to evaluate industrial internal security using EEG signals in IoT framework [J].
Al Hammadi, Ahmed Y. ;
Yeun, Chan Yeob ;
Damiani, Ernesto ;
Yoo, Paul D. ;
Hu, Jiankun ;
Yeun, Hyun Ku ;
Yim, Man-Sung .
AD HOC NETWORKS, 2021, 123
[7]   X-IIoTID: A Connectivity-Agnostic and Device-Agnostic Intrusion Data Set for Industrial Internet of Things [J].
Al-Hawawreh, Muna ;
Sitnikova, Elena ;
Aboutorab, Neda .
IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (05) :3962-3977
[8]   Explainable Artificial Intelligence of Multi-Level Stacking Ensemble for Detection of Alzheimer’s Disease Based on Particle Swarm Optimization and the Sub-Scores of Cognitive Biomarkers [J].
Almohimeed, Abdulaziz ;
Saad, Redhwan M. A. ;
Mostafa, Sherif ;
El-Rashidy, Nora Mahmoud ;
Farrag, Sarah ;
Gaballah, Abdelkareem ;
Abd Elaziz, Mohamed ;
El-Sappagh, Shaker ;
Saleh, Hager .
IEEE ACCESS, 2023, 11 :123173-123193
[9]   Cervical Cancer Diagnosis Using Stacked Ensemble Model and Optimized Feature Selection: An Explainable Artificial Intelligence Approach [J].
Almohimeed, Abdulaziz ;
Saleh, Hager ;
Mostafa, Sherif ;
Saad, Redhwan M. A. ;
Talaat, Amira Samy .
COMPUTERS, 2023, 12 (10)
[10]   ROULETTE: A neural attention multi-output model for explainable Network Intrusion Detection [J].
Andresini, Giuseppina ;
Appice, Annalisa ;
Caforio, Francesco Paolo ;
Malerba, Donato ;
Vessio, Gennaro .
EXPERT SYSTEMS WITH APPLICATIONS, 2022, 201