{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T18:34:01Z","timestamp":1781634841989,"version":"3.54.5"},"reference-count":27,"publisher":"Springer Science and Business Media LLC","issue":"12","license":[{"start":{"date-parts":[[2023,3,22]],"date-time":"2023-03-22T00:00:00Z","timestamp":1679443200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2023,3,22]],"date-time":"2023-03-22T00:00:00Z","timestamp":1679443200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"DOI":"10.13039\/501100002352","name":"Ain Shams University","doi-asserted-by":"crossref","id":[{"id":"10.13039\/501100002352","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Supercomput"],"published-print":{"date-parts":[[2023,8]]},"abstract":"<jats:title>Abstract<\/jats:title><jats:p>Internet of Things (IoT) is a disruptive technology for the future decades. Due to its pervasive growth, it is susceptible to cyber-attacks, and hence the significance of Intrusion Detection Systems (IDSs) for IoT is pertinent. The viability of machine learning has encouraged analysts to apply learning techniques to intelligently discover and recognize cyber attacks and unusual behavior among the IoTs. This paper proposes an enhanced anomaly-based Intrusion Detection Deep learning Multi-class classification model (EIDM) that can classify 15 traffic behaviors including 14 attack types with the accuracy of 95% contained in the CICIDS2017 dataset. Four state-of-the-art deep learning models are also customized to classify six classes of network traffic behavior. An extensive comparative study in terms of classification accuracy and efficiency metrics is conducted between EIDM and several state-of-the-art deep learning-based IDSs showing that EIDM has achieved accurate detection results.<\/jats:p>","DOI":"10.1007\/s11227-023-05197-0","type":"journal-article","created":{"date-parts":[[2023,3,22]],"date-time":"2023-03-22T16:02:46Z","timestamp":1679500966000},"page":"13241-13261","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":98,"title":["EIDM: deep learning model for IoT intrusion detection systems"],"prefix":"10.1007","volume":"79","author":[{"given":"Omar","family":"Elnakib","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Eman","family":"Shaaban","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mohamed","family":"Mahmoud","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Karim","family":"Emara","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2023,3,22]]},"reference":[{"issue":"4","key":"5197_CR1","doi-asserted-by":"publisher","first-page":"431","DOI":"10.1016\/j.bushor.2015.03.008","volume":"58","author":"I Lee","year":"2015","unstructured":"Lee I, Lee K (2015) The internet of things (IoT): applications, investments, and challenges for enterprises. Bus Hor 58(4):431\u2013440. https:\/\/doi.org\/10.1016\/j.bushor.2015.03.008","journal-title":"Bus Hor"},{"key":"5197_CR2","unstructured":"Vailshery LS (2021) Global IoT and non-IoT connections 2010\u20132025. Statista\u2014The Statistics Portal. https:\/\/www.statista.com\/statistics\/1101442\/iot-number-of-connected-devices-worldwide\/"},{"key":"5197_CR3","doi-asserted-by":"publisher","unstructured":"Zhang Z-K, Cho MCY, Wang C-W, Hsu C-W, Chen C-K, Shieh S (2014) IoT security: ongoing challenges and research opportunities. In: 2014 IEEE 7th International Conference on Service-Oriented Computing and Applications, pp 230\u2013234. https:\/\/doi.org\/10.1109\/SOCA.2014.58","DOI":"10.1109\/SOCA.2014.58"},{"issue":"3","key":"5197_CR4","doi-asserted-by":"publisher","first-page":"1646","DOI":"10.1109\/COMST.2020.2988293","volume":"22","author":"MA Al-Garadi","year":"2020","unstructured":"Al-Garadi MA, Mohamed A, Al-Ali AK, Du X, Ali I, Guizani M (2020) A survey of machine and deep learning methods for internet of things (IoT) security. IEEE Commun Surv Tutor 22(3):1646\u20131685. https:\/\/doi.org\/10.1109\/COMST.2020.2988293","journal-title":"IEEE Commun Surv Tutor"},{"key":"5197_CR5","doi-asserted-by":"publisher","first-page":"2671","DOI":"10.1109\/COMST.2019.2896380","volume":"21","author":"N Chaabouni","year":"2019","unstructured":"Chaabouni N, Mosbah M, Zemmari A, Sauvignac C, Faruki P (2019) Network intrusion detection for IoT security based on learning techniques. IEEE Commun Surv Tutor 21:2671\u20132701","journal-title":"IEEE Commun Surv Tutor"},{"key":"5197_CR6","doi-asserted-by":"publisher","unstructured":"Toupas P, Chamou D, Giannoutakis KM, Drosou A, Tzovaras D (2019) An intrusion detection system for multi-class classification based on deep neural networks. In: 2019 18th IEEE International Conference on Machine Learning and Applications (ICMLA), pp 1253\u20131258. https:\/\/doi.org\/10.1109\/ICMLA.2019.00206","DOI":"10.1109\/ICMLA.2019.00206"},{"key":"5197_CR7","doi-asserted-by":"publisher","first-page":"4396","DOI":"10.3390\/app9204396","volume":"9","author":"H Liu","year":"2019","unstructured":"Liu H, Lang B (2019) Machine learning and deep learning methods for intrusion detection systems: a survey. Appl Sci 9:4396. https:\/\/doi.org\/10.3390\/app9204396","journal-title":"Appl Sci"},{"issue":"1","key":"5197_CR8","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/s42400-019-0038-7","volume":"2","author":"A Khraisat","year":"2019","unstructured":"Khraisat A, Gondal I, Vamplew P, Kamruzzaman J (2019) Survey of intrusion detection systems: techniques, datasets and challenges. Cybersecurity 2(1):1\u201322","journal-title":"Cybersecurity"},{"issue":"5","key":"5197_CR9","doi-asserted-by":"publisher","first-page":"5947","DOI":"10.4249\/scholarpedia.5947","volume":"4","author":"GE Hinton","year":"2009","unstructured":"Hinton GE (2009) Deep belief networks. Scholarpedia 4(5):5947. https:\/\/doi.org\/10.4249\/scholarpedia.5947. (revision#91189)","journal-title":"Scholarpedia"},{"key":"5197_CR10","unstructured":"Aminanto E, Kim K (2016) Deep learning in intrusion detection system: an overview. In: 2016 International Research Conference on Engineering and Technology (2016 IRCET). Higher Education Forum"},{"key":"5197_CR11","doi-asserted-by":"publisher","first-page":"964","DOI":"10.1016\/j.future.2016.11.031","volume":"78","author":"C Stergiou","year":"2018","unstructured":"Stergiou C, Psannis KE, Kim B-G, Gupta B (2018) Secure integration of IoT and cloud computing. Fut Gener Comput Syst 78:964\u2013975. https:\/\/doi.org\/10.1016\/j.future.2016.11.031","journal-title":"Fut Gener Comput Syst"},{"key":"5197_CR12","doi-asserted-by":"crossref","unstructured":"Roopak M, Tian G-Y, Chambers JA (2019) Deep learning models for cyber security in IoT networks. In: 2019 IEEE 9th Annual Computing and Communication Workshop and Conference (CCWC), pp 0452\u20130457","DOI":"10.1109\/CCWC.2019.8666588"},{"key":"5197_CR13","doi-asserted-by":"publisher","unstructured":"Shahriar MH, Haque NI, Rahman MA, Alonso M (2020) G-IDS: generative adversarial networks assisted intrusion detection system. In: 2020 IEEE 44th Annual Computers, Software, and Applications Conference (COMPSAC), pp 376\u2013385. https:\/\/doi.org\/10.1109\/COMPSAC48688.2020.0-218","DOI":"10.1109\/COMPSAC48688.2020.0-218"},{"key":"5197_CR14","doi-asserted-by":"publisher","first-page":"1","DOI":"10.3233\/JIFS-191432","volume":"39","author":"M Alkasassbeh","year":"2020","unstructured":"Alkasassbeh M, Almseidin M, Alrfou K, Szilveszter K (2020) Detection of IoT-botnet attacks using fuzzy rule interpolation. J Intell Fuzzy Syst 39:1\u201311. https:\/\/doi.org\/10.3233\/JIFS-191432","journal-title":"J Intell Fuzzy Syst"},{"key":"5197_CR15","doi-asserted-by":"publisher","unstructured":"Keserwani P, Govil M, Pilli E, Govil P (2021) A smart anomaly-based intrusion detection system for the internet of things (IoT) network using gwo{pso{rf model. J Reliab Intell Environ. https:\/\/doi.org\/10.1007\/s40860-020-00126-x","DOI":"10.1007\/s40860-020-00126-x"},{"key":"5197_CR16","doi-asserted-by":"publisher","first-page":"37004","DOI":"10.1109\/ACCESS.2019.2905041","volume":"7","author":"Y Zhang","year":"2019","unstructured":"Zhang Y, Chen X, Jin L, Wang X, Guo D (2019) Network intrusion detection: Based on deep hierarchical network and original flow data. IEEE Access 7:37004\u201337016. https:\/\/doi.org\/10.1109\/ACCESS.2019.2905041","journal-title":"IEEE Access"},{"key":"5197_CR17","doi-asserted-by":"publisher","DOI":"10.1016\/j.iot.2021.100435","author":"A Alhowaide","year":"2021","unstructured":"Alhowaide A, Alsmadi I, Tang J (2021) Ensemble detection model for IoT IDS. Internet of Things. https:\/\/doi.org\/10.1016\/j.iot.2021.100435","journal-title":"Internet of Things"},{"key":"5197_CR18","doi-asserted-by":"publisher","first-page":"146","DOI":"10.1016\/j.comcom.2021.05.024","volume":"176","author":"AK Sahu","year":"2021","unstructured":"Sahu AK, Sharma S, Tanveer M, Raja R (2021) Internet of things attack detection using hybrid deep learning model. Comput Commun 176:146\u2013154. https:\/\/doi.org\/10.1016\/j.comcom.2021.05.024","journal-title":"Comput Commun"},{"issue":"15","key":"5197_CR19","doi-asserted-by":"publisher","first-page":"12251","DOI":"10.1109\/JIOT.2021.3060878","volume":"8","author":"M Abdel-Basset","year":"2021","unstructured":"Abdel-Basset M, Hawash H, Chakrabortty RK, Ryan MJ (2021) Semisupervised spatiotemporal deep learning for intrusions detection in IoT networks. IEEE Internet Things J 8(15):12251\u201312265. https:\/\/doi.org\/10.1109\/JIOT.2021.3060878","journal-title":"IEEE Internet Things J"},{"key":"5197_CR20","doi-asserted-by":"publisher","unstructured":"Shukla P (2017) ML-IDS: A machine learning approach to detect wormhole attacks in internet of things. In: 2017 Intelligent Systems Conference (IntelliSys), pp 234\u2013240. https:\/\/doi.org\/10.1109\/IntelliSys.2017.8324298","DOI":"10.1109\/IntelliSys.2017.8324298"},{"key":"5197_CR21","doi-asserted-by":"publisher","first-page":"77396","DOI":"10.1109\/ACCESS.2020.2986013","volume":"8","author":"S Manimurugan","year":"2020","unstructured":"Manimurugan S, Al-Mutairi S, Aborokbah MM, Chilamkurti N, Ganesan S, Patan R (2020) Effective attack detection in internet of medical things smart environment using a deep belief neural network. IEEE Access 8:77396\u201377404. https:\/\/doi.org\/10.1109\/ACCESS.2020.2986013","journal-title":"IEEE Access"},{"issue":"8","key":"5197_CR22","doi-asserted-by":"publisher","first-page":"6882","DOI":"10.1109\/JIOT.2020.2970501","volume":"7","author":"M Eskandari","year":"2020","unstructured":"Eskandari M, Janjua ZH, Vecchio M, Antonelli F (2020) Passban IDS: An intelligent anomaly-based intrusion detection system for IoT edge devices. IEEE Internet Things J 7(8):6882\u20136897. https:\/\/doi.org\/10.1109\/JIOT.2020.2970501","journal-title":"IEEE Internet Things J"},{"key":"5197_CR23","doi-asserted-by":"crossref","unstructured":"Sharafaldin I, Lashkari AH, Ghorbani AA (2018) Toward generating a new intrusion detection dataset and intrusion traffic characterization. In: ICISSP","DOI":"10.5220\/0006639801080116"},{"issue":"324","key":"5197_CR24","doi-asserted-by":"publisher","first-page":"479","DOI":"10.14419\/ijet.v7i3.24.22797","volume":"7","author":"R Panigrahi","year":"2018","unstructured":"Panigrahi R, Borah S (2018) A detailed analysis of cicids2017 dataset for designing intrusion detection systems. Int J Eng Technol 7(324):479\u2013482. https:\/\/doi.org\/10.14419\/ijet.v7i3.24.22797","journal-title":"Int J Eng Technol"},{"key":"5197_CR25","unstructured":"For Cybersecurity (CIC) (2019) T.C.I.: CICIDS2017: clean version of CICIDS2017. https:\/\/www.kaggle.com\/cicdataset\/cicids2017"},{"key":"5197_CR26","doi-asserted-by":"publisher","first-page":"107315","DOI":"10.1016\/j.comnet.2020.107315","volume":"177","author":"H Zhang","year":"2020","unstructured":"Zhang H, Huang L, Wu C, Li Z (2020) An effective convolutional neural network based on smote and Gaussian mixture model for intrusion detection in imbalanced dataset. Comput Netw 177:107315. https:\/\/doi.org\/10.1016\/j.comnet.2020.107315","journal-title":"Comput Netw"},{"key":"5197_CR27","unstructured":"Xiaoharper: ML Studio (classic): Normalize data\u2014azure. https:\/\/docs.microsoft.com\/en-us\/azure\/machine-learning\/studio-module-reference\/normalize-data"}],"container-title":["The Journal of Supercomputing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-023-05197-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11227-023-05197-0\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-023-05197-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,6,20]],"date-time":"2023-06-20T14:07:29Z","timestamp":1687270049000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11227-023-05197-0"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,3,22]]},"references-count":27,"journal-issue":{"issue":"12","published-print":{"date-parts":[[2023,8]]}},"alternative-id":["5197"],"URL":"https:\/\/doi.org\/10.1007\/s11227-023-05197-0","relation":{},"ISSN":["0920-8542","1573-0484"],"issn-type":[{"value":"0920-8542","type":"print"},{"value":"1573-0484","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,3,22]]},"assertion":[{"value":"13 March 2023","order":1,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"22 March 2023","order":2,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors have no relevant financial or non-financial interests to disclose.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}},{"value":"Not applicable.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethical approval"}}]}}