Data driven intrusion detection for 6LoWPAN based IoT systems

被引:2
|
作者
Ors, Faik Kerem [1 ,2 ]
Levi, Albert [1 ]
机构
[1] Sabanci Univ, Fac Engn & Nat Sci, Istanbul, Turkiye
[2] Purdue Univ, Dept Comp Sci, W Lafayette, IN USA
关键词
Internet of Things; Intrusion detection; Attack classification; Anomaly detection; Machine learning; ROUTING ATTACKS; INTERNET; NETWORKS;
D O I
10.1016/j.adhoc.2023.103120
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Wide adoption of Internet of Things (IoT) devices and their limitations in terms of hardware cause them to be easy targets for attackers. This, in turn, requires monitoring such systems using intrusion detection systems and take mitigative actions against insider and outsider attackers. Recent studies have explored that machine learning based intrusion detection systems are quite successful in detecting different types of cyber threats targeting IoT systems. However, the proposed systems in these studies incurred limitations in terms of the characteristics of their datasets and detection models. Specifically, a big proportion of the proposed models were developed using simulation-based data generated through specific simulators. Some of these studies also used previously published testbed data that contain the samples of outdated IoT attacks and vulnerabilities. Furthermore, they focused on a lower attack variety and proposed binary classifiers which do not scale in multi-attack scenarios. In this study, we propose a machine learning based multi-class classifier that can classify 6 attack types together with the benign traffic. Our node based feature extraction and detection methodology allows locating the network addresses of the attackers, rather than a rough network level attack existence information, by modeling their traffic characteristics over a sliding time window. For training and testing our models, we also propose an intrusion detection dataset generated using the traffic data collected from real IoT devices running with 6LoWPAN and RPL protocols. Besides having RPL routing attacks in the dataset, we leverage Mirai botnet, employed frequently to target IoT devices. The results show that the proposed intrusion detection system can detect 6 attack types with high recall scores ranging from 79% to 100%. We also illustrate the practicality of the developed model via deployment in a proof of concept implementation over a testbed.
引用
收藏
页数:16
相关论文
共 50 条
  • [21] Optimized mobility management for RPL/6LoWPAN based IoT network architecture using the firefly algorithm
    Manikannan, K.
    Nagarajan, V
    MICROPROCESSORS AND MICROSYSTEMS, 2020, 77
  • [22] Machine Learning Based Intrusion Detection Systems for IoT Applications
    Verma, Abhishek
    Ranga, Virender
    WIRELESS PERSONAL COMMUNICATIONS, 2020, 111 (04) : 2287 - 2310
  • [23] Denial-of-Service detection in 6LoWPAN based Internet of Things
    Kasinathan, Prabhakaran
    Pastrone, Claudio
    Spirito, Maurizio A.
    Vinkovits, Mark
    2013 IEEE 9TH INTERNATIONAL CONFERENCE ON WIRELESS AND MOBILE COMPUTING, NETWORKING AND COMMUNICATIONS (WIMOB), 2013, : 600 - 607
  • [24] HessianAuth: An ECC-based Distributed and Efficient Authentication Mechanism for 6LoWPAN Networked IoT Devices
    Dey, Debasmita
    Chandra, Saket
    Ghosh, Nirnay
    PROCEEDINGS OF THE 24TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING AND NETWORKING, ICDCN 2023, 2023, : 227 - 236
  • [25] A misbehavior node detection algorithm for 6LoWPAN Wireless Sensor Networks
    Vinh Hoa La
    Cavalli, Ana R.
    2016 IEEE 36TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS WORKSHOPS (ICDCSW 2016), 2016, : 49 - 54
  • [26] Machine Learning-Based Intrusion Detection Methods in IoT Systems: A Comprehensive Review
    Kikissagbe, Brunel Rolack
    Adda, Meddi
    ELECTRONICS, 2024, 13 (18)
  • [27] Toward Enhanced Attack Detection and Explanation in Intrusion Detection System-Based IoT Environment Data
    Le, Thi-Thu-Huong
    Wardhani, Rini Wisnu
    Putranto, Dedy Septono Catur
    Jo, Uk
    Kim, Howon
    IEEE ACCESS, 2023, 11 : 131661 - 131676
  • [28] SIMULATING RPL ATTACKS IN 6LOWPAN FOR DETECTION PURPOSES
    Preda, Marius
    Patriciu, Victor-Valeriu
    2020 13TH INTERNATIONAL CONFERENCE ON COMMUNICATIONS (COMM), 2020, : 239 - 245
  • [29] A Review of Performance, Energy and Privacy of Intrusion Detection Systems for IoT
    Arshad, Junaid
    Azad, Muhammad Ajmal
    Amad, Roohi
    Salah, Khaled
    Alazab, Mamoun
    Iqbal, Razi
    ELECTRONICS, 2020, 9 (04)
  • [30] 6LoWPAN Performance Analysis of IoT Software-Defined-Network-Based Using Mininet-IoT
    Setiawan, Dharma Yusuf
    Hertiana, Sofia Naning
    Negara, Ridha Muldina
    2020 IEEE INTERNATIONAL CONFERENCE ON INTERNET OF THINGS AND INTELLIGENCE SYSTEM (IOTAIS), 2021, : 60 - 65