Cargando…

Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways

Cyber security has become increasingly challenging due to the proliferation of the Internet of things (IoT), where a massive number of tiny, smart devices push trillion bytes of data to the Internet. However, these devices possess various security flaws resulting from the lack of defense mechanisms...

Descripción completa

Detalles Bibliográficos
Autores principales: Nguyen, Xuan-Ha, Nguyen, Xuan-Duong, Huynh, Hoang-Hai, Le, Kim-Hung
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2022
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8778231/
https://www.ncbi.nlm.nih.gov/pubmed/35062393
http://dx.doi.org/10.3390/s22020432
_version_ 1784637268763344896
author Nguyen, Xuan-Ha
Nguyen, Xuan-Duong
Huynh, Hoang-Hai
Le, Kim-Hung
author_facet Nguyen, Xuan-Ha
Nguyen, Xuan-Duong
Huynh, Hoang-Hai
Le, Kim-Hung
author_sort Nguyen, Xuan-Ha
collection PubMed
description Cyber security has become increasingly challenging due to the proliferation of the Internet of things (IoT), where a massive number of tiny, smart devices push trillion bytes of data to the Internet. However, these devices possess various security flaws resulting from the lack of defense mechanisms and hardware security support, therefore making them vulnerable to cyber attacks. In addition, IoT gateways provide very limited security features to detect such threats, especially the absence of intrusion detection methods powered by deep learning. Indeed, deep learning models require high computational power that exceeds the capacity of these gateways. In this paper, we introduce Realguard, an DNN-based network intrusion detection system (NIDS) directly operated on local gateways to protect IoT devices within the network. The superiority of our proposal is that it can accurately detect multiple cyber attacks in real time with a small computational footprint. This is achieved by a lightweight feature extraction mechanism and an efficient attack detection model powered by deep neural networks. Our evaluations on practical datasets indicate that Realguard could detect ten types of attacks (e.g., port scan, Botnet, and FTP-Patator) in real time with an average accuracy of 99.57%, whereas the best of our competitors is 98.85%. Furthermore, our proposal effectively operates on resource-constraint gateways (Raspberry PI) at a high packet processing rate reported about 10.600 packets per second.
format Online
Article
Text
id pubmed-8778231
institution National Center for Biotechnology Information
language English
publishDate 2022
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-87782312022-01-22 Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways Nguyen, Xuan-Ha Nguyen, Xuan-Duong Huynh, Hoang-Hai Le, Kim-Hung Sensors (Basel) Article Cyber security has become increasingly challenging due to the proliferation of the Internet of things (IoT), where a massive number of tiny, smart devices push trillion bytes of data to the Internet. However, these devices possess various security flaws resulting from the lack of defense mechanisms and hardware security support, therefore making them vulnerable to cyber attacks. In addition, IoT gateways provide very limited security features to detect such threats, especially the absence of intrusion detection methods powered by deep learning. Indeed, deep learning models require high computational power that exceeds the capacity of these gateways. In this paper, we introduce Realguard, an DNN-based network intrusion detection system (NIDS) directly operated on local gateways to protect IoT devices within the network. The superiority of our proposal is that it can accurately detect multiple cyber attacks in real time with a small computational footprint. This is achieved by a lightweight feature extraction mechanism and an efficient attack detection model powered by deep neural networks. Our evaluations on practical datasets indicate that Realguard could detect ten types of attacks (e.g., port scan, Botnet, and FTP-Patator) in real time with an average accuracy of 99.57%, whereas the best of our competitors is 98.85%. Furthermore, our proposal effectively operates on resource-constraint gateways (Raspberry PI) at a high packet processing rate reported about 10.600 packets per second. MDPI 2022-01-07 /pmc/articles/PMC8778231/ /pubmed/35062393 http://dx.doi.org/10.3390/s22020432 Text en © 2022 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Nguyen, Xuan-Ha
Nguyen, Xuan-Duong
Huynh, Hoang-Hai
Le, Kim-Hung
Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways
title Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways
title_full Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways
title_fullStr Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways
title_full_unstemmed Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways
title_short Realguard: A Lightweight Network Intrusion Detection System for IoT Gateways
title_sort realguard: a lightweight network intrusion detection system for iot gateways
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8778231/
https://www.ncbi.nlm.nih.gov/pubmed/35062393
http://dx.doi.org/10.3390/s22020432
work_keys_str_mv AT nguyenxuanha realguardalightweightnetworkintrusiondetectionsystemforiotgateways
AT nguyenxuanduong realguardalightweightnetworkintrusiondetectionsystemforiotgateways
AT huynhhoanghai realguardalightweightnetworkintrusiondetectionsystemforiotgateways
AT lekimhung realguardalightweightnetworkintrusiondetectionsystemforiotgateways