Preliminary Study on the Effect of Traffic Representation on Accuracy Degradation in Machine Learning-based IoT Device Identification

Nik Aqil, Firdaus Afifi, Faiz Zaki, N. B. Anuar
{"title":"Preliminary Study on the Effect of Traffic Representation on Accuracy Degradation in Machine Learning-based IoT Device Identification","authors":"Nik Aqil, Firdaus Afifi, Faiz Zaki, N. B. Anuar","doi":"10.1109/ICOCO56118.2022.10031725","DOIUrl":null,"url":null,"abstract":"The Internet of Things (IoT) has gained attention for its rapid growth in the past few years. IoT devices such as temperature and humidity sensors and voice controllers are implemented widely, from household appliances to industrial machines. However, with the rapid growth and benefits IoT offers, we are exposed to various security vulnerabilities, such as data breaches and IoT-specific malware. Researchers are using IoT device identification as a solution for IoT security issues. IoT device identification helps network administrators identify network traffic into its originating devices. However, researchers often overlook an important issue in IoT device identification, which is accuracy degradation over time. Thus, this paper explores the severity of accuracy degradation in IoT device identification on different traffic representation approaches, which are flow, sub-flow, and packet. This paper utilizes a private, and the UNSW IoT Traffic Traces public dataset. Based on the experimental findings, the sub-flow-based approach recorded the best overall performance, with only 8% degradation in the private dataset and 1% degradation in the public dataset. Meanwhile, even though the packet-based approach only degraded 5% on the private dataset, it recorded up to an 11% accuracy decrease in the public dataset.","PeriodicalId":319652,"journal":{"name":"2022 IEEE International Conference on Computing (ICOCO)","volume":"925 ","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-11-14","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE International Conference on Computing (ICOCO)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICOCO56118.2022.10031725","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

The Internet of Things (IoT) has gained attention for its rapid growth in the past few years. IoT devices such as temperature and humidity sensors and voice controllers are implemented widely, from household appliances to industrial machines. However, with the rapid growth and benefits IoT offers, we are exposed to various security vulnerabilities, such as data breaches and IoT-specific malware. Researchers are using IoT device identification as a solution for IoT security issues. IoT device identification helps network administrators identify network traffic into its originating devices. However, researchers often overlook an important issue in IoT device identification, which is accuracy degradation over time. Thus, this paper explores the severity of accuracy degradation in IoT device identification on different traffic representation approaches, which are flow, sub-flow, and packet. This paper utilizes a private, and the UNSW IoT Traffic Traces public dataset. Based on the experimental findings, the sub-flow-based approach recorded the best overall performance, with only 8% degradation in the private dataset and 1% degradation in the public dataset. Meanwhile, even though the packet-based approach only degraded 5% on the private dataset, it recorded up to an 11% accuracy decrease in the public dataset.
基于机器学习的物联网设备识别中流量表示对准确率下降影响的初步研究
物联网(IoT)在过去几年中因其快速增长而受到关注。物联网设备,如温度和湿度传感器和语音控制器被广泛应用,从家用电器到工业机器。然而,随着物联网的快速增长和带来的好处,我们面临着各种安全漏洞,例如数据泄露和物联网特定的恶意软件。研究人员正在使用物联网设备识别作为物联网安全问题的解决方案。物联网设备识别帮助网络管理员识别进入其源设备的网络流量。然而,研究人员经常忽视物联网设备识别中的一个重要问题,即随着时间的推移精度会下降。因此,本文探讨了物联网设备识别在不同流量表示方法(流、子流和分组)上精度下降的严重程度。本文利用了一个私有的,和UNSW物联网流量跟踪公共数据集。根据实验结果,基于子流的方法记录了最佳的整体性能,在私有数据集中仅下降8%,在公共数据集中下降1%。同时,尽管基于数据包的方法在私有数据集上只降低了5%,但在公共数据集上却记录了高达11%的准确性下降。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信