Realtime Feature Engineering for Anomaly Detection in IoT Based MQTT Networks

被引:0
|
作者
Imran [2 ]
Zuhairi, Megat F. [1 ]
Ali, Syed Mubashir [1 ,3 ]
Shahid, Zeeshan [4 ]
Alam, Muhammad Mansoor [1 ,5 ,6 ,7 ]
Su'ud, Mazliham Mohd [7 ]
机构
[1] Univ Kuala Lumpur, Malaysian Inst Informat Technol, Kuala Lumpur 50250, Malaysia
[2] DHA Suffa Univ DSU, Dept Comp Sci, Karachi 75500, Sindh, Pakistan
[3] Muhammad Ali Jinnah Univ, Fac Comp, Dept Software Engn, Karachi 75400, Pakistan
[4] Nazeer Hussain Univ, Fac Engn Pract & Sci, Elect Engn Dept, Karachi 75950, Pakistan
[5] Riphah Int Univ, Fac Comp, Islamabad 46000, Pakistan
[6] Univ Technol Sydney, Fac Engn & Informat Technol, Sch Comp Sci, Ultimo, NSW 2007, Australia
[7] Multimedia Univ, Fac Comp & Informat, Cyberjaya 63100, Malaysia
关键词
IoT; DoS; anomaly detection; MQTT; INTERNET;
D O I
10.1109/ACCESS.2024.3363889
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The MQTTset dataset has been extensively investigated for enhancing anomaly detection in IoT-based systems, with a focus on identifying Denial of Service (DoS) attacks. The research addresses a critical gap in MQTT traffic anomaly detection by proposing the incorporation of the 'source' attribute from PCAP files and utilizing hand-crafted feature engineering techniques. Various filtering methods, including data conversion, attribute filtering, handling missing values, and scaling, are employed. Anomalies are categorized and prioritized based on frequency of occurrence, with a specific emphasis on DoS attacks. The study compares the performance of the decision tree and its eight variant models (ID3, C4.5, Random Forest, CatBoost, LightGBM, XGBoost, CART, and Gradient Boosting) for anomaly detection in IoT-based systems. Evaluation metrics such as prediction accuracy, F1 score, and computational times (training and testing) are utilized. Hyperparameter fine-tuning techniques like grid search and random search are applied to enhance model performance, accuracy, and reduce computational costs. Results indicate that the benchmark Decision Tree model achieved 92.57% accuracy and a 92.38% F1 score with training and testing times of 2.95 seconds and 0.86 seconds, respectively. The Feature Engineering (Modified) dataset demonstrated a substantial improvement, reaching 98.56% accuracy and a 98.50% F1 score, with comparable training and testing times of 0.70 seconds and 0.02 seconds. Furthermore, the Modified Decision Tree Algorithm significantly improved accuracy to 99.27%, F1 score to 99.26%, and reduced training time to 0.73 seconds and testing time to 0.14 seconds. The research contributes valuable insights into feature engineering and guides the selection of effective approaches for anomaly detection in IoT-based systems, providing early threat warnings and enhancing overall system security and reliability.
引用
收藏
页码:25700 / 25718
页数:19
相关论文
共 50 条
  • [1] Effective Feature Engineering Framework for Securing MQTT Protocol in IoT Environments
    Al Hanif, Abdulelah
    Ilyas, Mohammad
    SENSORS, 2024, 24 (06)
  • [2] Unsupervised Anomaly Based Botnet Detection in IoT Networks
    Nomm, Sven
    Bahsi, Hayretdin
    2018 17TH IEEE INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS (ICMLA), 2018, : 1048 - 1053
  • [3] A hybrid approach for efficient feature selection in anomaly intrusion detection for IoT networks
    Ayad, Aya G.
    Sakr, Nehal A.
    Hikal, Noha A.
    JOURNAL OF SUPERCOMPUTING, 2024, : 26942 - 26984
  • [4] Deep Autoencoder-Based Integrated Model for Anomaly Detection and Efficient Feature Extraction in IoT Networks
    Alaghbari, Khaled A.
    Lim, Heng-Siong
    Saad, Mohamad Hanif Md
    Yong, Yik Seng
    IOT, 2023, 4 (03): : 345 - 365
  • [5] Realtime Anomaly Detection in Healthcare IoT: A Machine LearningDriven Security Framework
    Raje, Vaishali V.
    Goel, Shalini
    Patil, Sujata V.
    Kokate, Mahadeo D.
    Mane, Dhiraj A.
    Lavate, Santosh
    JOURNAL OF ELECTRICAL SYSTEMS, 2023, 19 (03) : 192 - 202
  • [6] Implementation of IoT Networks Based on MQTT for Wildlife Monitoring System
    Terada, Keitaro
    Yoshida, Eisei
    Ishibashi, Koichi
    Mukai, Hiroaki
    Yokotani, Tetsuya
    2019 IEEE INTERNATIONAL CONFERENCE ON INTERNET OF THINGS AND INTELLIGENCE SYSTEM (IOTAIS), 2019, : 161 - 166
  • [7] Design of Intrusion Detection System Using GA and CNN for MQTT-Based IoT Networks
    Dandapat, Asimkiran
    Mondal, Bhaskar
    WIRELESS PERSONAL COMMUNICATIONS, 2024, 134 (04) : 2059 - 2082
  • [8] Anomaly Detection for IoT Networks: Empirical Study
    Elsayed, Marwa A.
    Russell, Patrick
    Nandy, Biswajit
    Seddigh, Nabil
    Zincir-Heywood, Nur
    2023 IEEE CANADIAN CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING, CCECE, 2023,
  • [9] A Survey of AI-Based Anomaly Detection in IoT and Sensor Networks
    DeMedeiros, Kyle
    Hendawi, Abdeltawab
    Alvarez, Marco
    SENSORS, 2023, 23 (03)
  • [10] Feature Engineering for Anti-Fraud Models Based on Anomaly Detection
    Przekop, Damian
    CENTRAL EUROPEAN JOURNAL OF ECONOMIC MODELLING AND ECONOMETRICS, 2020, 12 (03): : 301 - 316