Towards Learning-automation IoT Attack Detection through Reinforcement Learning

06/29/2020
by   Tianbo Gu, et al.
0

As a massive number of the Internet of Things (IoT) devices are deployed, the security and privacy issues in IoT arouse more and more attention. The IoT attacks are causing tremendous loss to the IoT networks and even threatening human safety. Compared to traditional networks, IoT networks have unique characteristics, which make the attack detection more challenging. First, the heterogeneity of platforms, protocols, software, and hardware exposes various vulnerabilities. Second, in addition to the traditional high-rate attacks, the low-rate attacks are also extensively used by IoT attackers to obfuscate the legitimate and malicious traffic. These low-rate attacks are challenging to detect and can persist in the networks. Last, the attackers are evolving to be more intelligent and can dynamically change their attack strategies based on the environment feedback to avoid being detected, making it more challenging for the defender to discover a consistent pattern to identify the attack. In order to adapt to the new characteristics in IoT attacks, we propose a reinforcement learning-based attack detection model that can automatically learn and recognize the transformation of the attack pattern. Therefore, we can continuously detect IoT attacks with less human intervention. In this paper, we explore the crucial features of IoT traffics and utilize the entropy-based metrics to detect both the high-rate and low-rate IoT attacks. Afterward, we leverage the reinforcement learning technique to continuously adjust the attack detection threshold based on the detection feedback, which optimizes the detection and the false alarm rate. We conduct extensive experiments over a real IoT attack dataset and demonstrate the effectiveness of our IoT attack detection framework.

READ FULL TEXT
research
05/10/2023

HoneyIoT: Adaptive High-Interaction Honeypot for IoT Devices Through Reinforcement Learning

As IoT devices are becoming widely deployed, there exist many threats to...
research
07/11/2018

ThingPot: an interactive Internet-of-Things honeypot

The Mirai Distributed Denial-of-Service (DDoS) attack exploited security...
research
12/01/2020

Towards a Universal Features Set for IoT Botnet Attacks Detection

The security pitfalls of IoT devices make it easy for the attackers to e...
research
08/18/2020

Personalized Deep Learning for Ventricular Arrhythmias Detection on Medical IoT Systems

Life-threatening ventricular arrhythmias (VA) are the leading cause of s...
research
08/05/2023

An AI-Enabled Framework to Defend Ingenious MDT-based Attacks on the Emerging Zero Touch Cellular Networks

Deep automation provided by self-organizing network (SON) features and t...
research
02/14/2021

Reinforcement Learning for IoT Security: A Comprehensive Survey

The number of connected smart devices has been increasing exponentially ...
research
04/24/2018

An Adaptive Primary User Emulation Attack Detection Mechanism for Cognitive Radio Networks

The proliferation of advanced information technologies (IT), especially ...

Please sign up or login with your details

Forgot password? Click here to reset