Abdul Rehman;Kamran Ahmad Awan;Mahmood Ul Hassan;Asadullah Shaikh;Ali Alqazzaz;Korhan Cengiz
{"title":"CLAF-IoT: Context-Aware LLMs-Enhanced Authentication Framework for Internet of Things","authors":"Abdul Rehman;Kamran Ahmad Awan;Mahmood Ul Hassan;Asadullah Shaikh;Ali Alqazzaz;Korhan Cengiz","doi":"10.1109/JIOT.2025.3567634","DOIUrl":null,"url":null,"abstract":"The significant increase in the number of Internet of Things (IoT) devices in various domains requires robust and adaptive authentication mechanisms. Existing methods often fail to address the dynamic and heterogeneous nature of the IoT ecosystem, resulting in significant security vulnerabilities. This article presents a context-aware LLM-enhanced authentication framework (CLAF-IoT) that dynamically adjusts authentication protocols based on real-time environmental and user-specific contexts. Using the advanced contextual understanding and generation capabilities of large language models (LLMs), the proposed framework enhances both security and usability in highly dynamic IoT environments. Key components include environmental context sensing, user behavior analysis, adaptive authentication protocols, real-time threat detection, and federated learning integration for continuous improvement and privacy preservation. Experimental evaluations demonstrate that CLAF-IoT achieves higher authentication accuracy in different scenarios, 11.11% false acceptance rate and 9.09% false rejection rate.","PeriodicalId":54347,"journal":{"name":"IEEE Internet of Things Journal","volume":"12 14","pages":"28639-28646"},"PeriodicalIF":8.9000,"publicationDate":"2025-03-07","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE Internet of Things Journal","FirstCategoryId":"94","ListUrlMain":"https://ieeexplore.ieee.org/document/10990157/","RegionNum":1,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 0
Abstract
The significant increase in the number of Internet of Things (IoT) devices in various domains requires robust and adaptive authentication mechanisms. Existing methods often fail to address the dynamic and heterogeneous nature of the IoT ecosystem, resulting in significant security vulnerabilities. This article presents a context-aware LLM-enhanced authentication framework (CLAF-IoT) that dynamically adjusts authentication protocols based on real-time environmental and user-specific contexts. Using the advanced contextual understanding and generation capabilities of large language models (LLMs), the proposed framework enhances both security and usability in highly dynamic IoT environments. Key components include environmental context sensing, user behavior analysis, adaptive authentication protocols, real-time threat detection, and federated learning integration for continuous improvement and privacy preservation. Experimental evaluations demonstrate that CLAF-IoT achieves higher authentication accuracy in different scenarios, 11.11% false acceptance rate and 9.09% false rejection rate.
期刊介绍:
The EEE Internet of Things (IoT) Journal publishes articles and review articles covering various aspects of IoT, including IoT system architecture, IoT enabling technologies, IoT communication and networking protocols such as network coding, and IoT services and applications. Topics encompass IoT's impacts on sensor technologies, big data management, and future internet design for applications like smart cities and smart homes. Fields of interest include IoT architecture such as things-centric, data-centric, service-oriented IoT architecture; IoT enabling technologies and systematic integration such as sensor technologies, big sensor data management, and future Internet design for IoT; IoT services, applications, and test-beds such as IoT service middleware, IoT application programming interface (API), IoT application design, and IoT trials/experiments; IoT standardization activities and technology development in different standard development organizations (SDO) such as IEEE, IETF, ITU, 3GPP, ETSI, etc.