Score-VAE: Root Cause Analysis for Federated-Learning-Based IoT Anomaly Detection

被引:6
|
作者
Fan, Jiamin [1 ]
Tang, Guoming [2 ]
Wu, Kui [1 ]
Zhao, Zhengan [1 ]
Zhou, Yang [3 ]
Huang, Shengqiang [3 ]
机构
[1] Univ Victoria, Dept Comp Sci, Victoria, BC V8P 4P1, Canada
[2] Peng Cheng Lab, Network Commun Res Ctr, Shenzhen 518055, Peoples R China
[3] Huawei Technol Canada Co Ltd, Vancouver Res Ctr, Vancouver, BC V5C 6S7, Canada
来源
IEEE INTERNET OF THINGS JOURNAL | 2024年 / 11卷 / 01期
关键词
Internet of Things (IoT) traffic anomaly detection; machine learning (ML); root cause analysis; INTERNET;
D O I
10.1109/JIOT.2023.3289814
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Root cause analysis is the process of identifying the underlying factors responsible for triggering anomaly detection alarms. In the context of anomaly detection for Internet of Things (IoT) traffic, these alarms can be triggered by various factors, not all of which are malicious attacks. It is crucial to determine whether a malicious attack or benign operations cause an alarm. To address this challenge, we propose an innovative root cause analysis system called score-variational autoencoder (VAE), designed to complement existing IoT anomaly detection systems based on the federated learning (FL) framework. Score-VAE harnesses the full potential of the VAE network by integrating its training and testing schemes strategically. This integration enables Score-VAE to effectively utilize the generation and reconstruction capabilities of the VAE network. As a result, it exhibits excellent generalization, lifelong learning, collaboration, and privacy protection capabilities, all of which are essential for performing root cause analysis on IoT systems. We evaluate Score-VAE using real-world IoT trace data collected from various scenarios. The evaluation results demonstrate that Score-VAE accurately identifies the root causes behind alarms triggered by IoT anomaly detection systems. Furthermore, Score-VAE outperforms the baseline methods, providing superior performance in discovering root causes and delivering more accurate results.
引用
收藏
页码:1041 / 1053
页数:13
相关论文
共 50 条
  • [41] Privacy-Aware Anomaly Detection in IoT Environments using FedGroup: A Group-Based Federated Learning Approach
    Zhang, Yixuan
    Suleiman, Basem
    Alibasa, Muhammad Johan
    Farid, Farnaz
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2024, 32 (01)
  • [42] Review on Approaches of Federated Modeling in Anomaly-Based Intrusion Detection for IoT Devices
    Isma'ila, Umar Audi
    Danyaro, Kamaluddeen Usman
    Muazu, Aminu Aminu
    Maiwada, Umar Danjuma
    IEEE ACCESS, 2024, 12 : 30941 - 30961
  • [43] Proposal of VAE-Based Deep Learning Anomaly Detection Model for Industrial Products
    Nakata, Shunta
    Kasahara, Takehiro
    Nambo, Hidetaka
    PROCEEDINGS OF THE SIXTEENTH INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE AND ENGINEERING MANAGEMENT - VOL 1, 2022, 144 : 336 - 349
  • [44] Image anomaly detection for IoT equipment based on deep learning
    Hou Rui
    Pan MingMing
    Zhao YunHao
    Yang Yang
    JOURNAL OF VISUAL COMMUNICATION AND IMAGE REPRESENTATION, 2019, 64
  • [45] Distributed IIoT Anomaly Detection Scheme Based on Blockchain and Federated Learning
    Jin, Xiaojun
    Ma, Chao
    Luo, Song
    Zeng, Pengyi
    Wei, Yifei
    JOURNAL OF COMMUNICATIONS AND NETWORKS, 2024, 26 (02) : 252 - 262
  • [46] An optimal federated learning-based intrusion detection for IoT environment
    Karunamurthy, A.
    Vijayan, K.
    Kshirsagar, Pravin R.
    Tan, Kuan Tak
    SCIENTIFIC REPORTS, 2025, 15 (01):
  • [47] Research on Power IoT Intrusion Detection Method Based on Federated Learning
    Guo, Xiaoyan
    ADVANCES IN WIRELESS COMMUNICATIONS AND APPLICATIONS, ICWCA 2021, 2023, 299 : 183 - 190
  • [48] A Novel Federated Learning Based Intrusion Detection System for IoT Networks
    Benameur, Rabaie
    Dahane, Amine
    Souihi, Sami
    Mellouk, Abdelhamid
    ICC 2024 - IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, 2024, : 2402 - 2407
  • [49] Association Rules for Anomaly Detection and Root Cause Analysis in Process Executions
    Boehmer, Kristof
    Rinderle-Ma, Stefanie
    ADVANCED INFORMATION SYSTEMS ENGINEERING, CAISE 2018, 2018, 10816 : 3 - 18
  • [50] Automated Anomaly Detection and Root Cause Analysis in Virtualized Cloud Infrastructures
    Lin, Jieyu
    Zhang, Qi
    Bannazadeh, Hadi
    Leon-Garcia, Alberto
    NOMS 2016 - 2016 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2016, : 550 - 556