SkipGateNet: A Lightweight CNN-LSTM Hybrid Model With Learnable Skip Connections for Efficient Botnet Attack Detection in IoT

被引:5
|
作者
Alshehri, Mohammed S. [1 ]
Ahmad, Jawad [2 ]
Almakdi, Sultan [1 ]
Qathrady, Mimonah Al [3 ]
Ghadi, Yazeed Yasin [4 ]
Buchanan, William J. [2 ]
机构
[1] Najran Univ, Coll Comp Sci & Informat Syst, Dept Comp Sci, Najran 61441, Saudi Arabia
[2] Edinburgh Napier Univ, Sch Comp Engn & Built Environm, Edinburgh EH10 5DT, Scotland
[3] Najran Univ, Coll Comp Sci & Informat Syst, Dept Informat Syst, Najran 61441, Saudi Arabia
[4] Al Ain Univ, Dept Comp Sci, Abu Dhabi, U Arab Emirates
关键词
Botnets; botnet attacks; bashlite; intrusion detection; Mirai; INTRUSION DETECTION; SECURITY; INTERNET;
D O I
10.1109/ACCESS.2024.3371992
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The rise of Internet of Things (IoT) has led to increased security risks, particularly from botnet attacks that exploit IoT device vulnerabilities. This situation necessitates effective Intrusion Detection Systems (IDS), that are accurate, lightweight, and fast (having less inference time), designed particularly to detect botnet attacks in resource constrained IoT devices. This paper proposes SkipGateNet, a novel deep learning model designed for detecting Mirai and Bashlite botnet attacks in resource constrained IoT and fog computing environments. SkipGateNet is a lightweight, fast model combining 1D-Convolutional Neural Networks (CNN) and Long Short-Term Memory (LSTM) layers. The novelty of this model lies in the integration of 'Learnable Skip Connections'. These connections feature gating mechanisms that enhance detection by focusing on relevant features and ignoring irrelevant ones. They add adaptability to the architecture, performing feature selection and propagating only essential features to deeper layers. Tested on the N-BaIoT dataset, SkipGateNet efficiently detects ten types of botnet attacks, with a remarkable test accuracy of 99.91%. It is also compact (2596.87 KB) and demonstrates a quick inference time of 8.0 milliseconds, suitable for real-time implementation in resource-limited settings. While evaluating its performance, parameters like precision, recall, accuracy, and F1 score were considered, along with statistical reliability measures like Cohen's Kappa Coefficient and Matthews Correlation Coefficient. These highlight its reliability and effectiveness in IoT security challenges. The paper also compares SkipGateNet to existing models and four other deep learning architectures, including two sequential CNN architectures, a simple CNN+LSTM architecture, and a CNN+LSTM with standard skip connections. SkipGateNet surpasses all in accuracy and inference time, demonstrating its superiority in addressing IoT security issues.
引用
收藏
页码:35521 / 35538
页数:18
相关论文
共 36 条
  • [31] Hybrid CNN-LSTM deep learning model and ensemble technique for automatic detection of myocardial infarction using big ECG data
    Rai, Hari Mohan
    Chatterjee, Kalyan
    APPLIED INTELLIGENCE, 2022, 52 (05) : 5366 - 5384
  • [32] Atrial Fibrillation Detection from Holter ECG Using Hybrid CNN-LSTM Model and P/f-wave Identification
    Kamozawa, Hidefumi
    Tanaka, Motoshi
    ADVANCED BIOMEDICAL ENGINEERING, 2025, 14 : 46 - 53
  • [33] Hybrid CNN-LSTM deep learning model and ensemble technique for automatic detection of myocardial infarction using big ECG data
    Hari Mohan Rai
    Kalyan Chatterjee
    Applied Intelligence, 2022, 52 : 5366 - 5384
  • [34] Empirical evaluation of ensemble learning and hybrid CNN-LSTM for IoT threat detection on heterogeneous datasetsEmpirical evaluation of ensemble...A. Nazir et al.
    Ahsan Nazir
    Jingsha He
    Nafei Zhu
    Ahsan Wajahat
    Fahim Ullah
    Sirajuddin Qureshi
    Muhammad Salman Pathan
    The Journal of Supercomputing, 81 (6)
  • [35] Rapid detection of multi-indicator components of classical famous formula Zhuru Decoction concentration process based on fusion CNN-LSTM hybrid model with the near-infrared spectrum
    He, Tianyu
    Shi, Yabo
    Cui, Enzhong
    Wang, Xiaoli
    Mao, Chunqin
    Xie, Hui
    Lu, Tulin
    MICROCHEMICAL JOURNAL, 2023, 195
  • [36] Time-based DDoS attack detection through hybrid LSTM-CNN model architectures: An investigation of many-to-one and many-to-many approaches
    Habib, Beenish
    Khursheed, Farida
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (09):