Network Flow Based IoT Anomaly Detection Using Graph Neural Network

被引:2
|
作者
Wei, Chongbo [1 ,2 ]
Xie, Gaogang [3 ]
Diao, Zulong [1 ,4 ]
机构
[1] Chinese Acad Sci, Inst Comp Technol, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Beijing, Peoples R China
[3] Chinese Acad Sci, Comp Network Informat Ctr, Beijing, Peoples R China
[4] Purple Mt Labs, Nanjing, Peoples R China
基金
中国国家自然科学基金;
关键词
Deep learning; Anomaly detection; Internet-of-things; Network flow; Graph neural network;
D O I
10.1007/978-3-031-40286-9_35
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Deep learning-based traffic anomaly detection methods are usually fed with high-dimensional statistical features. The greatest challenges are how to detect complex inter-feature relationships and localize and explain anomalies that deviate from these relationships. However, existing methods do not explicitly learn the structure of existing relationships between traffic features or use them to predict the expected behavior of traffic. In this work, we propose a network flow-based IoT anomaly detection approach. It extracts traffic features in different channels as time series. Then a graph neural network combined with a structure learning approach is used to learn relationships between features, which allows users to deduce the root cause of a detected anomaly. We build a real IoT environment and deploy our method on a gateway (simulated with Raspberry PI). The experiment results show that our method has excellent accuracy for detecting anomaly activities and localizes and explains these deviations.
引用
收藏
页码:432 / 445
页数:14
相关论文
共 50 条
  • [21] Anomaly detection based on a deep graph convolutional neural network for reliability improvement
    Xu, Gang
    Hu, Jie
    Qie, Xin
    Rong, Jingguo
    FRONTIERS IN ENERGY RESEARCH, 2024, 12
  • [22] Device Performance Anomaly Detection Method Based on Graph Convolutional Neural Network
    Liu, Aolun
    Yang, Yang
    Guo, Yanpeng
    Gao, Zhipeng
    Rui, Lanlan
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND NETWORKS, VOL II, CENET 2023, 2024, 1126 : 230 - 239
  • [23] EvAnGCN: Evolving Graph Deep Neural Network Based Anomaly Detection in Blockchain
    Patel, Vatsal
    Rajasegarar, Sutharshan
    Pan, Lei
    Liu, Jiajun
    Zhu, Liming
    ADVANCED DATA MINING AND APPLICATIONS (ADMA 2022), PT I, 2022, 13725 : 444 - 456
  • [24] Unsupervised Microservice Log Anomaly Detection Method Based on Graph Neural Network
    Liang, Xue
    Li, Lixiang
    Peng, Haipeng
    ADVANCES IN SWARM INTELLIGENCE, PT II, ICSI 2024, 2024, 14789 : 197 - 208
  • [25] Graph Neural Network-Based Anomaly Detection in Multivariate Time Series
    Deng, Ailin
    Hooi, Bryan
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 4027 - 4035
  • [26] A Graph Neural Network Based Model for IoT Binary Components Similarity Detection
    Wang, Zhiyu
    Hu, Xulun
    Zuo, Fang
    Li, Hong
    Zhang, Yiran
    Wang, Weifeng
    WIRELESS SENSOR NETWORKS, CWSN 2022, 2022, 1715 : 120 - 131
  • [27] Fuzzy neural network using QPSO in network anomaly detection
    School of Information Technology, Jiangnan University, Wuxi 214122, China
    不详
    J. Inf. Comput. Sci., 2007, 4 (1147-1153):
  • [28] Graph Neural Networks with scattering transform for network anomaly detection
    Zoubir, Abdeljalil
    Missaoui, Badr
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2025, 150
  • [29] In-Vehicle Network Anomaly Detection Based on a Graph Attention Network
    Luo, Feng
    Luo, Cheng
    Wang, Jiajia
    Li, Zhihao
    SAE INTERNATIONAL JOURNAL OF CONNECTED AND AUTOMATED VEHICLES, 2025, 8 (04):
  • [30] MQPSO Based on Wavelet Neural Network for Network Anomaly Detection
    Liu, Li-li
    Liu, Yuan
    2009 5TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING, VOLS 1-8, 2009, : 4643 - +