Real-time IoT Device Activity Detection in Edge Networks

Ibbad Hafeez, Yi Ding, Markku Antikainen, Sasu Tarkoma

Tutkimustuotos: Artikkeli kirjassa/raportissa/konferenssijulkaisussaKonferenssiartikkeliTieteellinenvertaisarvioitu

Abstrakti

The growing popularity of Internet-of-Things (IoT) has created the need for network-based traffic anomaly detection systems that could identify misbehaving devices. In this work, we propose a lightweight technique, IoTguard, for identifying malicious traffic flows. IoTguard uses semi-supervised learning to distinguish between malicious and benign device behaviours using the network traffic generated by devices. In order to achieve this, we extracted 39 features from network logs and discard any features containing redundant information. After feature selection, fuzzy C-Mean (FCM) algorithm was trained to obtain clusters discriminating benign traffic from malicious traffic. We studied the feature scores in these clusters and use this information to predict the type of new traffic flows. IoTguard was evaluated using a real-world testbed with more than 30 devices. The results show that IoTguard achieves high accuracy (≥ 98%), in differentiating various types of malicious and benign traffic, with low false positive rates. Furthermore, it has low resource footprint and can operate on OpenWRT enabled access points and COTS computing boards.
Alkuperäiskielienglanti
OtsikkoNetwork and System Security : 12th International Conference, NSS 2018, Hong Kong, China, August 27-29, 2018, Proceedings
ToimittajatMan Ho Au, Siu Ming Yiu, Jin Li, Xiapu Luo, Cong Wang, Aniello Castiglione, Kamil Kluczniak
Sivumäärä16
JulkaisupaikkaCham
KustantajaSpringer Nature
Julkaisupäivä28 elokuuta 2018
Sivut221-236
ISBN (painettu)978-3-030-02743-8
ISBN (elektroninen)978-3-030-02744-5
DOI - pysyväislinkit
TilaJulkaistu - 28 elokuuta 2018
OKM-julkaisutyyppiA4 Artikkeli konferenssijulkaisuussa
Tapahtuma12th International Conference on Network and System Security - Hong Kong Polytechnic University, Hong Kong, Kiina
Kesto: 27 elokuuta 201829 elokuuta 2018
Konferenssinumero: 12
http://www4.comp.polyu.edu.hk/~nss2018/program.html

Julkaisusarja

NimiLecture Notes in Computer Science
Vuosikerta11058
ISSN (painettu)0302-9743
ISSN (elektroninen)1611-3349

Tieteenalat

  • 113 Tietojenkäsittely- ja informaatiotieteet

Siteeraa tätä