Ensemble Feature Selection based Lightweight IDS Tailored for DDoS Attacks Detection over IoT Devices
The attack surface has grown due to the widespread use of weak Internet of Things (IoT) devices, and distributed denial of service (DDoS) attacks are becoming more common. The necessity for adaptive intrusion detection systems (IDS) that are effective at detecting threats and need less resources is...
Saved in:
Published in | 2024 International Visualization, Informatics and Technology Conference (IVIT) pp. 20 - 27 |
---|---|
Main Authors | , , |
Format | Conference Proceeding |
Language | English |
Published |
IEEE
07.08.2024
|
Subjects | |
Online Access | Get full text |
DOI | 10.1109/IVIT62102.2024.10692650 |
Cover
Abstract | The attack surface has grown due to the widespread use of weak Internet of Things (IoT) devices, and distributed denial of service (DDoS) attacks are becoming more common. The necessity for adaptive intrusion detection systems (IDS) that are effective at detecting threats and need less resources is highlighted by the increase in attacks, particularly for IoT devices with limited resources. Although feature selection (FS) techniques are widely used for creating lightweight intrusion detection systems (IDS), depending solely on one approach can be dangerous and lead to bias in the dataset. Therefore, a flexible and varied FS approach is required. ELIDS (Ensemble Feature Selection for Lightweight IDS), an Ensemble FS strategy that utilizes the advantages of seven different filter-based techniques, is presented in this work. The primary goal of ELIDS is to choose the most important features found by each FS approach. This leads to build strong classification models, which are then thoroughly assessed for both performance and resource efficiency using both in-domain and cross-domain testing. The evaluation findings demonstrate that the suggested model reaches a peak accuracy of 100% for in-domain testing in addition to being lightweight. Cross-domain testing, however, shows that classifiers constructed using individual FS methods suffer a notable reduction in accuracy, while ELIDS-based classifiers exhibit robustness and significantly exceed current methods. Specifically, ELIDS-based classifiers outperform other models by 24%, particularly when Random Forest (RF) is used as the learning technique. |
---|---|
AbstractList | The attack surface has grown due to the widespread use of weak Internet of Things (IoT) devices, and distributed denial of service (DDoS) attacks are becoming more common. The necessity for adaptive intrusion detection systems (IDS) that are effective at detecting threats and need less resources is highlighted by the increase in attacks, particularly for IoT devices with limited resources. Although feature selection (FS) techniques are widely used for creating lightweight intrusion detection systems (IDS), depending solely on one approach can be dangerous and lead to bias in the dataset. Therefore, a flexible and varied FS approach is required. ELIDS (Ensemble Feature Selection for Lightweight IDS), an Ensemble FS strategy that utilizes the advantages of seven different filter-based techniques, is presented in this work. The primary goal of ELIDS is to choose the most important features found by each FS approach. This leads to build strong classification models, which are then thoroughly assessed for both performance and resource efficiency using both in-domain and cross-domain testing. The evaluation findings demonstrate that the suggested model reaches a peak accuracy of 100% for in-domain testing in addition to being lightweight. Cross-domain testing, however, shows that classifiers constructed using individual FS methods suffer a notable reduction in accuracy, while ELIDS-based classifiers exhibit robustness and significantly exceed current methods. Specifically, ELIDS-based classifiers outperform other models by 24%, particularly when Random Forest (RF) is used as the learning technique. |
Author | Fatima, Mahawish Rahman, Ibrahim M. H Rehman, Osama |
Author_xml | – sequence: 1 givenname: Mahawish surname: Fatima fullname: Fatima, Mahawish email: mahwishfatima.bukc@bahria.edu.pk organization: Bahria University,Department of Software Engineering,Karachi,Pakistan – sequence: 2 givenname: Osama surname: Rehman fullname: Rehman, Osama email: osamahussain.bukc@bahria.edu.pk organization: Bahria University,Department of Software Engineering,Karachi,Pakistan – sequence: 3 givenname: Ibrahim M. H surname: Rahman fullname: Rahman, Ibrahim M. H email: ibrahim.rahman@openpolytechnic.ac.nz organization: The Open Polytechnic of New Zealand,Wellington,New Zealand |
BookMark | eNo1T81Kw0AYXEEPWvsGgvsCqfubzR5L02og4CHBa_my_VYX06wka8W3N2K9zAwzzMDckMshDkjIPWcrzpl9qF6qNheciZVgQq04y63INbsgS2tsITWTWillrgluhwmPXY90h5A-R6QN9uhSiAPtYMIDrcPrW_rCX6RV2dAWQh_HOfBxpGUZG7pOCdz7REtM52Y84Uir2M7WKTicbsmVh37C5ZkXpNlt281TVj8_Vpt1nQXLU1Z4ZzRAJ5zz3mgusVCzNNoKBK-kB1t0XHhRwCE3VtsDSI8mN86C50ouyN3fakDE_ccYjjB-7_-_yx-3Z1Ur |
ContentType | Conference Proceeding |
DBID | 6IE 6IL CBEJK RIE RIL |
DOI | 10.1109/IVIT62102.2024.10692650 |
DatabaseName | IEEE Electronic Library (IEL) Conference Proceedings IEEE Xplore POP ALL IEEE Xplore All Conference Proceedings IEEE Electronic Library (IEL) IEEE Proceedings Order Plans (POP All) 1998-Present |
DatabaseTitleList | |
Database_xml | – sequence: 1 dbid: RIE name: IEEE/IET Electronic Library url: https://proxy.k.utb.cz/login?url=https://ieeexplore.ieee.org/ sourceTypes: Publisher |
DeliveryMethod | fulltext_linktorsrc |
EISBN | 9798350354447 |
EndPage | 27 |
ExternalDocumentID | 10692650 |
Genre | orig-research |
GroupedDBID | 6IE 6IL CBEJK RIE RIL |
ID | FETCH-LOGICAL-i91t-8fc75aab2ccff7513e84ccf7592eaf43fa98b12f28ad67959da3fe767c9af143 |
IEDL.DBID | RIE |
IngestDate | Wed Aug 27 02:20:25 EDT 2025 |
IsPeerReviewed | false |
IsScholarly | false |
Language | English |
LinkModel | DirectLink |
MergedId | FETCHMERGED-LOGICAL-i91t-8fc75aab2ccff7513e84ccf7592eaf43fa98b12f28ad67959da3fe767c9af143 |
PageCount | 8 |
ParticipantIDs | ieee_primary_10692650 |
PublicationCentury | 2000 |
PublicationDate | 2024-Aug.-7 |
PublicationDateYYYYMMDD | 2024-08-07 |
PublicationDate_xml | – month: 08 year: 2024 text: 2024-Aug.-7 day: 07 |
PublicationDecade | 2020 |
PublicationTitle | 2024 International Visualization, Informatics and Technology Conference (IVIT) |
PublicationTitleAbbrev | IVIT |
PublicationYear | 2024 |
Publisher | IEEE |
Publisher_xml | – name: IEEE |
Score | 1.8807698 |
Snippet | The attack surface has grown due to the widespread use of weak Internet of Things (IoT) devices, and distributed denial of service (DDoS) attacks are becoming... |
SourceID | ieee |
SourceType | Publisher |
StartPage | 20 |
SubjectTerms | Feature Selection Internet of Things Intrusion Detection Lightweight Machine Learning |
Title | Ensemble Feature Selection based Lightweight IDS Tailored for DDoS Attacks Detection over IoT Devices |
URI | https://ieeexplore.ieee.org/document/10692650 |
hasFullText | 1 |
inHoldings | 1 |
isFullTextHit | |
isPrint | |
link | http://utb.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwjV1NS8QwEA26J08qrvhNDl5b26ZN06PYXbaii9Aqe1uSZgKidmVtEfz1ZrJdRUHwFkJLyqTJzCTvzSPknEsOOlDMq4NIejGEzMPLHo_JIJMxAy5ctf3bKZ_cx9ezZNaT1R0XBgAc-Ax8bLq7fL2oOzwqsyucZxHHDH3T_mcrslaP2QqD7KJ4KCqOKYxN-6LYXz_9QzfFuY3xNpmuB1yhRZ78rlV-_fGrFuO_v2iHDL8ZevTuy_fskg1o9giMmjd4Uc9AMbDrlkBLp3JjTU_RW2l6g6n4uzsNpUVe0ko-4pCa2tCV5vmipJdti6x7mkPbv4kYT1osKtvldpUhKcej6mri9TIK3mMWtp4wdZpIqaK6NiZNQgYits00ySKQJmZGZkKFkYmE1ByVx7VkBlKe1pk0NpraJ4Nm0cABoShKpqz7x4o1sRIScyWms7ROQgE6FYdkiBaav67qZMzXxjn6o_-YbOFEOThdekIG7bKDU-viW3XmpvYTJNWnbQ |
linkProvider | IEEE |
linkToHtml | http://utb.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwjV3PS8MwFA4yD3pSceJvc_Da2h9p0h7Fbqy6DaFVdhtp-wJDbWW2CP715mWdoiB4CyEl4YX0vS_53vsIueSSQ-nkvlU4nrQYuL6Fjz2WL51IMh94aKrtT6Z89MBuZ8GsS1Y3uTAAYMhnYGPTvOWXddHiVZk-4TzyOCL0Te34WbBK1-pYW64TXSWPScYRxGjg5zF7Pf6HcopxHMMdMl1PueKLPNltk9vFx69qjP9e0y7pf-fo0fsv77NHNqDaJzCo3uAlfwaKoV27BJoanRttfIr-qqRjBOPv5j6UJnFKM7nAKUuqg1cax3VKr5sG8-5pDE33JbI8aVJnusv8V_okHQ6ym5HVCSlYi8htrFAVIpAy94pCKRG4PoRMN0UQeSAV85WMwtz1lBfKkqP2eCl9BYKLIpJKx1MHpFfVFRwSirJkuQ4AsGYNy0OJaMkvI1EEbgilCI9IHy00f11VypivjXP8R_8F2Rplk_F8nEzvTsg2bpoh14lT0muWLZxph9_k52abPwEW2qq6 |
openUrl | ctx_ver=Z39.88-2004&ctx_enc=info%3Aofi%2Fenc%3AUTF-8&rfr_id=info%3Asid%2Fsummon.serialssolutions.com&rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&rft.genre=proceeding&rft.title=2024+International+Visualization%2C+Informatics+and+Technology+Conference+%28IVIT%29&rft.atitle=Ensemble+Feature+Selection+based+Lightweight+IDS+Tailored+for+DDoS+Attacks+Detection+over+IoT+Devices&rft.au=Fatima%2C+Mahawish&rft.au=Rehman%2C+Osama&rft.au=Rahman%2C+Ibrahim+M.+H&rft.date=2024-08-07&rft.pub=IEEE&rft.spage=20&rft.epage=27&rft_id=info:doi/10.1109%2FIVIT62102.2024.10692650&rft.externalDocID=10692650 |