Lumen: A Framework for Developing and Evaluating ML-Based IoT Network Anomaly Detection

被引:4
|
作者
Sharma, Rahul Anand [1 ]
Sabane, Ishan [2 ]
Apostolaki, Maria [1 ,3 ]
Rowe, Anthony [1 ]
Sekar, Vyas [1 ]
机构
[1] Carnegie Mellon Univ, Pittsburgh, PA 15213 USA
[2] IIT Madra, Madras, Tamil Nadu, India
[3] Princeton Univ, Princeton, NJ USA
关键词
ATTACKS;
D O I
10.1145/3555050.3569129
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The rise of IoT devices brings a lot of security risks. To mitigate them, researchers have introduced various promising networkbased anomaly detection algorithms, which oftentimes leverage machine learning. Unfortunately, though, their deployment and further improvement by network operators and the research community are hampered. We believe this is due to three key reasons. First, known ML-based anomaly detection algorithms are evaluated -in the best case- on a couple of publicly available datasets, making it hard to compare across algorithms. Second, each ML-based IoT anomaly-detection algorithm makes assumptions about attacker practices/classification granularity, which reduce their applicability. Finally, the implementation of those algorithms is often monolithic, prohibiting code reuse. To ease deployment and promote research in this area, we present Lumen. Lumen is a modular framework paired with a benchmarking suite that allows users to efficiently develop, evaluate, and compare IoT ML-based anomaly detection algorithms. We demonstrate the utility of Lumen by implementing state-of-the-art anomaly detection algorithms and faithfully evaluating them on various datasets. Among other interesting insights that could inform real-world deployments and future research, using Lumen, we were able to identify what algorithms are most suitable to detect particular types of attacks. Lumen can also be used to construct new algorithms with better performance by combining the building blocks of competing efforts and improving the training setup.
引用
收藏
页码:59 / 71
页数:13
相关论文
共 50 条
  • [31] AnDet: ML-Based Anomaly Detection of UEs in a Multi-cell B5G Mobile Network for Improved QoS
    Sinha, Amar
    Agrawal, Anmol
    Roy, Sandip
    Uduthalapally, Venkanna
    Das, Debanjan
    Mahapatra, Rajarshi
    Shetty, Sachin
    2024 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS, ICNC, 2024, : 500 - 505
  • [32] Evaluating teachers' effectiveness in classrooms: an ML-based assessment portfolio
    Sabharwal, Renu
    Miah, Shah J.
    SOCIAL NETWORK ANALYSIS AND MINING, 2024, 14 (01)
  • [33] A Modular and Expandable Testbed for Evaluating ML-based Bug Finders
    Dessauw, Philippe
    Delaitre, Aurelien
    Carvalho, Hialo Muniz
    Okun, Vadim
    2022 IEEE 29TH ANNUAL SOFTWARE TECHNOLOGY CONFERENCE (STC 2022), 2022, : 57 - 58
  • [34] IoT and ML-based automatic irrigation system for smart agriculture system
    Anoop, E. G.
    Bala, G. Josemin
    AGRONOMY JOURNAL, 2024, 116 (03) : 1187 - 1203
  • [35] On the Robustness of ML-Based Network Intrusion Detection Systems: An Adversarial and Distribution Shift Perspective
    Wang, Minxiao
    Yang, Ning
    Gunasinghe, Dulaj H.
    Weng, Ning
    COMPUTERS, 2023, 12 (10)
  • [36] ML-Based Yield Prediction in Smart Agriculture Systems Using IoT
    Prathap, C.
    Sivaranjani, S.
    Sathya, M.
    2024 5TH INTERNATIONAL CONFERENCE ON INNOVATIVE TRENDS IN INFORMATION TECHNOLOGY, ICITIIT 2024, 2024,
  • [37] Cybersecurity Analytics: Toward an Efficient ML-Based Network Intrusion Detection System (NIDS)
    Mouatassim, Tariq
    El Ghazi, Hassan
    Bouzaachane, Khadija
    El Guarmah, El Mandi
    Lahsen-Cherif, Iyad
    MACHINE LEARNING FOR NETWORKING, MLN 2023, 2024, 14525 : 267 - 284
  • [38] ML-Based IDPS Enhancement With Complementary Features for Home IoT Networks
    Illy, Poulmanogo
    Kaddoum, Georges
    Kaur, Kuljeet
    Garg, Sahil
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (02): : 772 - 783
  • [39] Explainable Cross-domain Evaluation of ML-based Network Intrusion Detection Systems
    Layeghy, Siamak
    Portmann, Marius
    COMPUTERS & ELECTRICAL ENGINEERING, 2023, 108
  • [40] MULTI-BLOCK: A novel ML-based intrusion detection framework for SDN-enabled IoT networks using new pyramidal structure
    Toony, Ahmed A.
    Alqahtani, Fayez
    Alginahi, Yasser
    Said, Wael
    INTERNET OF THINGS, 2024, 26