Please wait ...
0% Complete
Home
/
15th International Conference on Computer and Knowledge Engineering
DTranIDS: A Two-Tiered Intrusion Detection System for RPL-based IoT Networks based on Decision Tree and Transformer Models
Authors :
Mohammad Fazeli
1
Mohsen Raji
2
Mohammad Mahdi Fazeli
3
1- School of Electrical and Computer Engineering, University of Shiraz, Iran
2- School of Electrical and Computer Engineering, University of Shiraz, Iran
3- School of Electrical and Computer Engineering, University of Shiraz, Iran
Keywords :
IoT Security،RPL attacks،Anomaly Detection،Anomaly Detection،Decision Tree،Transformer،Two-Tiered Model،Intrusion Detection System
Abstract :
RPL (Routing Protocol for Low-Power and Lossy Networks) has emerged as the de facto standard for IoT routing, offering robust, energy-efficient, and scalable communication. However, its susceptibility to it unique cyber-security attacks demands robust security enhancements to ensure reliable deployment. Although Intrusion Detection Systems (IDS) offer a proactive defense mechanism to mitigate RPL's inherent vulnerabilities, traditional IDS solutions are often too resource-intensive for IoT environments. Therefore, there is a critical need for lightweight-yet-accurate IDS frameworks specifically designed for RPL-based networks. In this paper, we propose a novel two-tier intrusion detection system, DTranIDS, designed to effectively identify and classify RPL-specific attacks in IoT environments. In the first tier, a Decision Tree classifier rapidly filters incoming data to determine whether a given instance is benign or malicious. In the second tier, a Transformer-based model is employed to precisely classify the specific type of detected attack. The proposed model is evaluated using the ROUT-4-2023 dataset, which includes four common RPL routing attacks: Blackhole, Flooding, Version Number, and Decreased Rank. Experimental results demonstrate that DTranIDS achieves an overall accuracy of 97%, with precision, recall, and F1-score values all around 96%, significantly outperforming several state-of-the-art IoT intrusion detection methods (which typically achieve 88–91% accuracy). Moreover, DTranIDS show its efficiency in fast intrusion detection (about 0.4 s), indicating that DTranIDS is well-suited for real-world, resource-constrained IoT environments, offering both real-time intrusion detection and detailed attack classification capabilities to aid cybersecurity analysts.
Papers List
List of archived papers
R2-BAC: A Novel Blockchain and IoT-Based Access Control Model for Supply Chain Management
Sadegh Sohani - Farnaz Kamranfar - Haleh Amintoosi - Mohammad Allahbakhsh
Efficient Prediction of Cardiovascular Disease via Extra Tree Feature Selection
Mina Abroodi - Mohammad Reza Keyvanpour - Ghazaleh Kakavand Teimoory
A New Application of Machine Learning Based Methods for Disk Space Variation Fault Diagnosis in Transformer Windings
Reza Behkam - Amir Lotfi - Gevork B. Gharehpetian
Improving ADHD Detection with Cost-Sensitive LightGBM
Behnam Yousefimehr - Mehdi Ghatee - Ali Heydari
Iris Detection and Segmentation Using Deep Learning
Ali Khaki - Ali Aghagolzadeh - Bagher Rahimpour Cami
Energy-Aware Dynamic Digital Twin Placement in Mobile Edge Computing
Mahdi Hematyar - Zeinab Movahedi
Taguchi Design of Experiments Application in Robust sEMG Based Force Estimation
Mohsen Ghanaei - Hadi Kalani - Alireza Akbarzadeh
Real-time Implementation of Fuzzy Visual Servoing for a Delta Robot via Shape and Color Detection
Nooshin Najafian - Alireza Ashrafi Majd - Abbas Ansaroudi - Sahar Aghazadeh - Manizheh Zakeri - Mohammad-Reza Sayyed Noorani
Enhancing Lighter Neural Network Performance with Layer-wise Knowledge Distillation and Selective Pixel Attention
Siavash Zaravashan - Sajjad Torabi - Hesam Zaravashan
Distinguishing Abstracts of Human-Written and ChatGPT-Generated Papers in the Field of Computer Science
Mohsen Arzani - Hamed Vahdat-Nejad - Matin Hossein-Pour
more
Samin Hamayesh - Version 44.8.0