On-device context-aware misuse detection framework for heterogeneous IoT edge

被引:5
作者
Nitish, A. [1 ]
Hanumanthappa, J. [1 ]
Prakash, Shiva S. P. [2 ]
Krinkin, Kirill [3 ]
机构
[1] Univ Mysore, Dept Studies Comp Sci, Mysuru 570006, Karnataka, India
[2] JSS Sci & Technol Univ, Dept Informat Sci & Engn, JSS Tech Inst Campus, Mysuru 570006, Karnataka, India
[3] St Petersburg Electrotech Univ LETI, Dept Software Engn & Comp Applicat, Ulitsa Prof Popova 5, St Petersburg 197022, Russia
关键词
Botnet-based attacks; Context-awareness; Expert knowledge correlation; Heterogeneous IoT edge; On-device misuse intrusion detection; Root cause analysis; Threat intensity compounding; Threat localization; INTRUSION DETECTION; INTERNET; THINGS; ATTACKS; SYSTEM;
D O I
10.1007/s10489-022-04039-5
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Traditional AI techniques for offline misuse network intrusion detection have performed well, assuming that the traffic from the datasets is sufficiently large for generalization, balanced, independently and identically distributed-exhibiting homogeneous behavior with little to no context change. However, the rapidly expanding IoT network is an ensemble of proliferating internet-connected devices catering to the growing need for handling highly distributed, heterogeneous, and time-critical workloads that conform to none of the above assumptions. Moreover, the evolving Botnet-based attack vectors exploit the non-standardized and poorly scrutinized architectural vulnerabilities of such devices-leading to compounding threat intensity, rapidly rendering the network defenseless. Furthermore, the memory, processor, and energy resource constraints of the IoT devices necessitate lightweight device-specific intrusion detection policies for effective and updated rule learning in real-time through the edge infrastructures. However, the existing methods proposed to solve such issues are either centralized, data and resource-intensive, context-unaware, or inefficient for online rule learning with smaller and imbalanced data samples. Thus, this paper addresses such issues through a context-aware expert system-based feature subset framework with minimal processing overhead and a decentralized on-device misuse detection scheme for IoT-called HetIoT-NIDS, capable of efficiently inferring over smaller data samples, tolerant to class imbalance, and deployable on the low-memory and low-power edge of IoT devices. Furthermore, HetIoT-NIDS facilitates threat localization within the deployed device, preventing threat progression and intensity compounding. The experiments and analyses of the propounded algorithms and the resulting training times and model sizes prove that the proposed approach is efficient and adaptable to online and offline misuse intrusion detection, especially on smaller data sample sizes.
引用
收藏
页码:14792 / 14818
页数:27
相关论文
共 50 条
[1]   On-device context-aware misuse detection framework for heterogeneous IoT edge [J].
Nitish A ;
Hanumanthappa J ;
Shiva Prakash S. P ;
Kirill Krinkin .
Applied Intelligence, 2023, 53 :14792-14818
[2]   Adapting Heterogeneous Devices into an IoT Context-Aware Infrastructure [J].
Potter, Henrique Brittes ;
Sztajnberg, Alexandre .
PROCEEDINGS OF 2016 IEEE/ACM 11TH INTERNATIONAL SYMPOSIUM ON SOFTWARE ENGINEERING FOR ADAPTIVE AND SELF-MANAGING SYSTEMS (SEAMS), 2016, :64-74
[3]   Modeling Context-Aware Events and Responses in an IoT Environment [J].
Vila, Marc ;
Sancho, Maria-Ribera ;
Teniente, Ernest .
ADVANCED INFORMATION SYSTEMS ENGINEERING, CAISE 2023, 2023, 13901 :70-86
[4]   An IoT Framework Based on SDN and NFV for Context-Aware Security [J].
Ong, Arlyn Verina ;
Peradilla, Marnel .
12TH INTERNATIONAL CONFERENCE ON UBIQUITOUS AND FUTURE NETWORKS (ICUFN 2021), 2021, :167-172
[5]   SoftAuthZ: A Context-Aware, Behavior-Based Authorization Framework for Home IoT [J].
Ghosh, Nirnay ;
Chandra, Saket ;
Sachidananda, Vinay ;
Elovici, Yuval .
IEEE INTERNET OF THINGS JOURNAL, 2019, 6 (06) :10773-10785
[6]   A context-aware encryption protocol suite for edge computing-based IoT devices [J].
Dar, Zaineb ;
Ahmad, Adnan ;
Khan, Farrukh Aslam ;
Zeshan, Furkh ;
Iqbal, Razi ;
Sherazi, Hafiz Husnain Raza ;
Bashir, Ali Kashif .
JOURNAL OF SUPERCOMPUTING, 2020, 76 (04) :2548-2567
[7]   IoT-centric Edge Computing for Context-aware Smart Environments [J].
Cicirelli, Franco ;
Guerrieri, Antonio ;
Mercuri, Alessandro ;
Spezzano, Giandomenico ;
Vinci, Andrea .
2018 IEEE INTERNATIONAL CONGRESS ON INTERNET OF THINGS (ICIOT), 2018, :168-171
[8]   mCloud: A Context-Aware Offloading Framework for Heterogeneous Mobile Cloud [J].
Zhou, Bowen ;
Dastjerdi, Amir Vahid ;
Calheiros, Rodrigo N. ;
Srirama, Satish Narayana ;
Buyya, Rajkumar .
IEEE TRANSACTIONS ON SERVICES COMPUTING, 2017, 10 (05) :797-810
[9]   Kalis2.0-A SECaaS-Based Context-Aware Self-Adaptive Intrusion Detection System for IoT [J].
Rullo, Antonino ;
Midi, Daniele ;
Mudjerikar, Anand ;
Bertino, Elisa .
IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (07) :12579-12601
[10]   A Proposed Framework for Context-Aware Semantic Service Provisioning [J].
Haider, Wael ;
Abdelkader, Hatem ;
Abdelwahab, Amira .
INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (08) :550-559