Digitala Vetenskapliga Arkivet

Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Intrusion Detection Framework for Internet of Things with Rule Induction for Model Explanation
Malmö University, Faculty of Technology and Society (TS), Department of Computer Science and Media Technology (DVMT). Malmö University, Sustainable Digitalisation Research Centre (SDRC).ORCID iD: 0000-0002-0155-7949
Malmö University, Faculty of Technology and Society (TS), Department of Computer Science and Media Technology (DVMT). Malmö University, Sustainable Digitalisation Research Centre (SDRC).ORCID iD: 0000-0002-8512-2976
Malmö University, Faculty of Technology and Society (TS), Department of Computer Science and Media Technology (DVMT). Malmö University, Sustainable Digitalisation Research Centre (SDRC).ORCID iD: 0000-0003-0998-6585
2025 (English)In: Sensors, E-ISSN 1424-8220, Vol. 25, no 6, p. 1845-1845Article in journal (Refereed) Published
Abstract [en]

As the proliferation of Internet of Things (IoT) devices grows, challenges in security, privacy, and interoperability become increasingly significant. IoT devices often have resource constraints, such as limited computational power, energy efficiency, bandwidth, and storage, making it difficult to implement advanced security measures. Additionally, the diversity of IoT devices creates vulnerabilities and threats that attackers can exploit, including spoofing, routing, man-in-the-middle, and denial-of-service. To address these evolving threats, Intrusion Detection Systems (IDSs) have become a vital solution. IDS actively monitors network traffic, analyzing incoming and outgoing data to detect potential security breaches, ensuring IoT systems remain safeguarded against malicious activity. This study introduces an IDS framework that integrates ensemble learning with rule induction for enhanced model explainability. We study the performance of five ensemble algorithms (Random Forest, AdaBoost, XGBoost, LightGBM, and CatBoost) for developing effective IDS for IoT. The results show that XGBoost outperformed the other ensemble algorithms on two publicly available datasets for intrusion detection. XGBoost achieved 99.91% accuracy and 99.88% AUC-ROC on the CIC-IDS2017 dataset, as well as 98.54% accuracy and 93.06% AUC-ROC on the CICIoT2023 dataset, respectively. We integrate model explainability to provide transparent IDS system using a rule induction method. The experimental results confirm the efficacy of the proposed approach for providing a lightweight, transparent, and trustworthy IDS system that supports security analysts, end-users, and different stakeholders when making decisions regarding intrusion and non-intrusion events.

Place, publisher, year, edition, pages
MDPI AG , 2025. Vol. 25, no 6, p. 1845-1845
National Category
Computer Sciences
Identifiers
URN: urn:nbn:se:mau:diva-75262DOI: 10.3390/s25061845ISI: 001453862400001PubMedID: 40292992Scopus ID: 2-s2.0-105000873094OAI: oai:DiVA.org:mau-75262DiVA, id: diva2:1950517
Available from: 2025-04-08 Created: 2025-04-08 Last updated: 2025-04-29Bibliographically approved

Open Access in DiVA

fulltext(518 kB)56 downloads
File information
File name FULLTEXT01.pdfFile size 518 kBChecksum SHA-512
dfa8cde5b602e874c6142fc3ba3fd6ac01acb2d17163c90f00971f91ac1d545a4ca352619c94488f4a1d1f5c51fb2cb0352fbb4aa7bcfc596159cb97f03310d5
Type fulltextMimetype application/pdf

Other links

Publisher's full textPubMedScopus

Search in DiVA

By author/editor
Adewole, Kayode SakariyahJacobsson, AndreasDavidsson, Paul
By organisation
Department of Computer Science and Media Technology (DVMT)Sustainable Digitalisation Research Centre (SDRC)
In the same journal
Sensors
Computer Sciences

Search outside of DiVA

GoogleGoogle Scholar
Total: 56 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

doi
pubmed
urn-nbn

Altmetric score

doi
pubmed
urn-nbn
Total: 157 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf