An Efficient Two-Stage Network Intrusion Detection System in the Internet of Things

被引:9
|
作者
Zhang, Hongpo [1 ,2 ]
Zhang, Bo [1 ]
Huang, Lulu [2 ]
Zhang, Zhaozhe [1 ]
Huang, Haizhaoyang [1 ]
机构
[1] Zhengzhou Univ, Sch Cyber Sci & Engn, Zhengzhou 450001, Peoples R China
[2] Zhengzhou Univ, Cooperat Innovat Ctr Internet Healthcare, Zhengzhou 450001, Peoples R China
关键词
internet of things; network intrusion detection; convolutional neural network; class imbalance; LightGBM; NEURAL-NETWORK; IOT;
D O I
10.3390/info14020077
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Internet of Things (IoT) devices and services provide convenience but face serious security threats. The network intrusion detection system is vital in ensuring the security of the IoT environment. In the IoT environment, we propose a novel two-stage intrusion detection model that combines machine learning and deep learning to deal with the class imbalance of network traffic data and achieve fine-grained intrusion detection on large-scale flow data. The superiority of the model is verified on the newer and larger CSE-CIC-IDS2018 dataset. In Stage-1, the LightGBM algorithm recognizes normal and abnormal network traffic data and compares six classic machine learning techniques. In Stage-2, the Convolutional Neural Network (CNN) performs fine-grained attack class detection on the samples predicted to be abnormal in Stage-1. The Stage-2 multiclass classification achieves a detection rate of 99.896%, F1score of 99.862%, and an MCC of 95.922%. The total training time of the two-stage model is 74.876 s. The detection time of a sample is 0.0172 milliseconds. Moreover, we set up an optional Synthetic Minority Over-sampling Technique based on the imbalance ratio (IR-SMOTE) of the dataset in Stage-2. Experimental results show that, compared with SMOTE technology, the two-stage intrusion detection model can adapt to imbalanced datasets well and reveal higher efficiency and better performance when processing large-scale flow data, outperforming state-of-the-art intrusion detection systems.
引用
收藏
页数:17
相关论文
共 50 条
  • [41] Design and Analysis of Multilayered Neural Network-Based Intrusion Detection System in the Internet of Things Network
    Sangeetha, S. K. B.
    Mani, Prasanna
    Maheshwari, V.
    Jayagopal, Prabhu
    Sandeep Kumar, M.
    Allayear, Shaikh Muhammad
    COMPUTATIONAL INTELLIGENCE AND NEUROSCIENCE, 2022, 2022
  • [42] BIDS: An efficient Intrusion Detection System for in-vehicle networks using a two-stage Binarised Neural Network on low-cost FPGA
    Rangsikunpum, Auangkun
    Amiri, Sam
    Ost, Luciano
    JOURNAL OF SYSTEMS ARCHITECTURE, 2024, 156
  • [43] An Intrusion Detection System for Denial of Service Attack Detection in Internet of Things
    Lira Melo Sousa, Breno Fabricio
    Abdelouahab, Zair
    Pavao Lopes, Denivaldo Cicero
    Soeiro, Natalia Costa
    Ribeiro, Willian Franca
    PROCEEDINGS OF THE SECOND INTERNATIONAL CONFERENCE ON INTERNET OF THINGS, DATA AND CLOUD COMPUTING (ICC 2017), 2017,
  • [44] Design of Intrusion Detection System for Wormhole Attack Detection in Internet of Things
    Deshmukh-Bhosale, Snehal
    Sonavane, S. S.
    ADVANCED COMPUTING AND INTELLIGENT ENGINEERING, 2020, 1082 : 513 - 523
  • [45] High Performance Network Intrusion Detection System Using Two-Stage LSTM and Incremental Created Hybrid Features
    Han, Jonghoo
    Pak, Wooguil
    ELECTRONICS, 2023, 12 (04)
  • [46] Two Stage Anomaly Detection for Network Intrusion Detection
    Neuschmied, Helmut
    Winter, Martin
    Hofer-Schmitz, Katharina
    Stojanovic, Branka
    Kleb, Ulrike
    ICISSP: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2021, : 450 - 457
  • [47] Efficient physical intrusion detection in Internet of Things: A Node deployment approach
    Halder, Subir
    Ghosal, Amrita
    Conti, Mauro
    COMPUTER NETWORKS, 2019, 154 : 28 - 46
  • [48] A novel intrusion detection system for internet of things devices and data
    Ajay Kaushik
    Hamed Al-Raweshidy
    Wireless Networks, 2024, 30 : 285 - 294
  • [49] ARTEMIS: An Intrusion Detection System for MQTT Attacks in Internet of Things
    Ciklabakkal, Ege
    Donmez, Ataberk
    Erdemir, Mert
    Suren, Emre
    Yilmaz, Mert Kaan
    Angin, Pelin
    2019 IEEE 38TH INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS 2019), 2019, : 369 - 371
  • [50] Intelligent Intrusion Detection System for Industrial Internet of Things Environment
    Gopi, R.
    Sheeba, R.
    Anguraj, K.
    Chelladurai, T.
    Alshahrani, Haya Mesfer
    Nemri, Nadhem
    Lamoudan, Tarek
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2023, 44 (02): : 1567 - 1582