PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
January 1, 2023IEEE Communications Surveys & Tutorials252 citationsOpen Access

Explainable Intrusion Detection for Cyber Defences in the Internet of Things: Opportunities and Solutions

View Full Paper
NMNour MoustafaNKNickolaos KoroniotisMKMarwa Keshk

Key Points

Key points are not available for this paper at this time.

Abstract

The field of Explainable Artificial Intelligence (XAI) has garnered considerable research attention in recent years, aiming to provide interpretability and confidence to the inner workings of state-of-the-art deep learning models. However, XAI-enhanced cybersecurity measures in the Internet of Things (IoT) and its sub-domains, require further investigation to provide effective discovery of attack surfaces, their corresponding vectors, and interpretable justification of model outputs. Cyber defence involves operations conducted in the cybersecurity field supporting mission objectives to identify and prevent cyberattacks using various tools and techniques, including intrusion detection systems (IDS), threat intelligence and hunting, and intrusion prevention. In cyber defence, especially anomaly-based IDS, the emerging applications of deep learning models require the interpretation of the models’ architecture and the explanation of models’ prediction to examine how cyberattacks would occur. This paper presents a comprehensive review of XAI techniques for anomaly-based intrusion detection in IoT networks. Firstly, we review IDSs focusing on anomaly-based detection techniques in IoT and how XAI models can augment them to provide trust and confidence in their detections. Secondly, we review AI models, including machine learning (ML) and deep learning (DL), for anomaly detection applications and IoT ecosystems. Moreover, we discuss DL’s ability to effectively learn from large-scale IoT datasets, accomplishing high performances in discovering and interpreting security events. Thirdly, we demonstrate recent research on the intersection of XAI, anomaly-based IDS and IoT. Finally, we discuss the current challenges and solutions of XAI for security applications in the cyber defence perspective of IoT networks, revealing future research directions. By analysing our findings, new cybersecurity applications that require XAI models emerge, assisting decision-makers in understanding and explaining security events in compromised IoT networks.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Moustafa et al. (2023) studied this question.

synapsesocial.com/papers/6a0e9dfc25c30b2cc7f99c65https://doi.org/10.1109/comst.2023.3280465
Ask AI
Helpful
Bookmark
Share
View Full Paper

Also Consider

Synapse has enriched 5 closely related papers on similar clinical questions. Consider them for comparative context:

  1. 1From Cyberspace to Cyberpower:2011 · 58 citations
  2. 2Optimal Denial-of-Service Attack Scheduling With Energy Constraint2015 · 609 citations
  3. 3Intrusion detection of multiple attack classes using a deep neural net ensemble2017 · 72 citations
  4. 4DDoS Attack Detection Based on Simple ANN with SMOTE for IoT Environment2019 · 69 citations
  5. 5Editorial: Second Quarter 2020 IEEE Communications Surveys and Tutorials2020 · 3 citations