Hardening machine learning denial of service (DoS) defences against adversarial attacks in IoT smart home networks

被引:48
|
作者
Anthi, Eirini [1 ]
Williams, Lowri [1 ]
Laved, Amir [1 ]
Burnap, Pete [1 ]
机构
[1] Cardiff Univ, Sch Comp Sci Informat, Cardiff, Wales
基金
英国工程与自然科学研究理事会;
关键词
Internet of things (IoT); Smart homes; Networking; Supervised machine learning; Adversarial machine learning; Attack detection; Intrusion detection systems; INTERNET; THINGS;
D O I
10.1016/j.cose.2021.102352
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Machine learning based Intrusion Detection Systems (IDS) allow flexible and efficient automated detection of cyberattacks in Internet of Things (IoT) networks. However, this has also created an additional attack vector; the machine learning models which support the IDS's decisions may also be subject to cyberattacks known as Adversarial Machine Learning (AML). In the context of IoT, AML can be used to manipulate data and network traffic that traverse through such devices. These perturbations increase the confusion in the decision boundaries of the machine learning classifier, where malicious network packets are often miss-classified as being benign. Consequently, such errors are bypassed by machine learning based detectors, which increases the potential of significantly delaying attack detection and further consequences such as personal information leakage, damaged hardware, and financial loss. Given the impact that these attacks may have, this paper proposes a rule-based approach towards generating AML attack samples and explores how they can be used to target a range of supervised machine learning classifiers used for detecting Denial of Service attacks in an IoT smart home network. The analysis explores which DoS packet features to perturb and how such adversarial samples can support increasing the robustness of supervised models using adversarial training. The results demonstrated that the performance of all the top performing classifiers were affected, decreasing a maximum of 47.2 percentage points when adversarial samples were present. Their performances improved following adversarial training, demonstrating their robustness towards such attacks. Crown Copyright (c) 2021 Published by Elsevier Ltd. This is an open access article under the CC BY license ( http://creativecommons.org/licenses/by/4.0/ )
引用
收藏
页数:12
相关论文
共 50 条
  • [21] Localization and Detection of Sinkhole Attacks in Wireless Sensor Networks Based on Denial of Service (DoS) Attacks
    Mona, R.
    Manoranjitham, R.
    JOURNAL OF ELECTRICAL SYSTEMS, 2024, 20 (03) : 195 - 204
  • [22] Detection of Network Congestion and Denial of Service (DoS) Attacks in Cognitive Radio Networks
    Ejike, Chuku
    Kouvatsos, Demetres
    2019 7TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD (FICLOUD 2019), 2019, : 377 - 384
  • [23] A hybrid protection approaches for denial of service (DoS) attacks in wireless sensor networks
    Gunasekaran, Mahalakshmi
    Periakaruppan, Subathra
    INTERNATIONAL JOURNAL OF ELECTRONICS, 2017, 104 (06) : 993 - 1007
  • [24] Anomaly Detection IDS for Detecting DoS Attacks in IoT Networks Based on Machine Learning Algorithms
    Altulaihan, Esra
    Almaiah, Mohammed Amin
    Aljughaiman, Ahmed
    SENSORS, 2024, 24 (02)
  • [25] Detecting Denial of Service attacks using machine learning algorithms
    Kumari, Kimmi
    Mrunalini, M.
    JOURNAL OF BIG DATA, 2022, 9 (01)
  • [26] PREVIR: Fortifying Vehicular Networks Against Denial of Service Attacks
    Verma, Amandeep
    Saha, Rahul
    Kumar, Gulshan
    Conti, Mauro
    Kim, Tai-Hoon
    IEEE ACCESS, 2024, 12 : 48301 - 48320
  • [27] A measure of resilience against denial of service attacks in computer networks
    Sharafat, AR
    Fallah, MS
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2002, 17 (4-5): : 259 - 267
  • [28] Detecting Denial of Service attacks using machine learning algorithms
    Kimmi Kumari
    M. Mrunalini
    Journal of Big Data, 9
  • [29] Denial of service attack detection through machine learning for the IoT
    Syed, Naeem Firdous
    Baig, Zubair
    Ibrahim, Ahmed
    Valli, Craig
    JOURNAL OF INFORMATION AND TELECOMMUNICATION, 2020, 4 (04) : 482 - 503
  • [30] Detection of Denial of Service Attacks against Domain Name System Using Machine Learning Classifiers
    Rastegari, Samaneh
    Saripan, M. Iqbal
    Rasid, Mohd Fadlee A.
    WORLD CONGRESS ON ENGINEERING, WCE 2010, VOL I, 2010, : 444 - 447