{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,3]],"date-time":"2026-06-03T01:11:52Z","timestamp":1780449112945,"version":"3.54.1"},"reference-count":75,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2022,10,22]],"date-time":"2022-10-22T00:00:00Z","timestamp":1666396800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2022,10,22]],"date-time":"2022-10-22T00:00:00Z","timestamp":1666396800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Ambient Intell Human Comput"],"published-print":{"date-parts":[[2023,4]]},"DOI":"10.1007\/s12652-022-04461-0","type":"journal-article","created":{"date-parts":[[2022,10,22]],"date-time":"2022-10-22T09:11:53Z","timestamp":1666429913000},"page":"3913-3927","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":14,"title":["A two-tier hybrid ensemble learning pipeline for intrusion detection systems in IoT networks"],"prefix":"10.1007","volume":"14","author":[{"given":"Devansh","family":"Srivastav","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Prakash","family":"Srivastava","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2022,10,22]]},"reference":[{"key":"4461_CR1","doi-asserted-by":"crossref","unstructured":"Ahmad R, Alsmadi I (2021) Machine learning approaches to IoT security: a systematic literature review. Internet Things 100365","DOI":"10.1016\/j.iot.2021.100365"},{"key":"4461_CR2","doi-asserted-by":"crossref","first-page":"10","DOI":"10.1016\/j.jnca.2017.04.002","volume":"88","author":"FA Alaba","year":"2017","unstructured":"Alaba FA, Othman M, Hashem IAT, Alotaibi F (2017) Internet of things security: a survey. J Netw Comput Appl 88:10\u201328","journal-title":"J Netw Comput Appl"},{"issue":"17","key":"4461_CR3","doi-asserted-by":"crossref","first-page":"9597","DOI":"10.3390\/su13179597","volume":"13","author":"OA Alimi","year":"2021","unstructured":"Alimi OA, Ouahada K, Abu-Mahfouz AM, Rimer S, Alimi KOA (2021) A review of research works on supervised learning algorithms for SCADA intrusion detection and classification. Sustainability 13(17):9597","journal-title":"Sustainability"},{"issue":"18","key":"4461_CR4","doi-asserted-by":"crossref","first-page":"8383","DOI":"10.3390\/app11188383","volume":"11","author":"MA Alsoufi","year":"2021","unstructured":"Alsoufi MA, Razak S, Siraj MM, Nafea I, Ghaleb FA, Saeed F, Nasser M (2021) Anomaly-based intrusion detection systems in IoT using deep learning: a systematic literature review. Appl Sci 11(18):8383","journal-title":"Appl Sci"},{"key":"4461_CR5","unstructured":"Al-Taleb N, Saqib NA, Dash S et al (2020) Cyber threat intelligence for secure smart city. arXiv preprint arXiv:2007.13233"},{"key":"4461_CR6","unstructured":"Arko AR, Khan SH, Preety A, Biswas MH (2019) Anomaly detection in IoT using machine learning algorithms. PhD thesis, Brac University"},{"issue":"1","key":"4461_CR7","doi-asserted-by":"crossref","first-page":"223","DOI":"10.1109\/TNN.2006.883010","volume":"18","author":"T Auld","year":"2007","unstructured":"Auld T, Moore AW, Gull SF (2007) Bayesian neural networks for internet traffic classification. IEEE Trans Neural Netw 18(1):223\u2013239","journal-title":"IEEE Trans Neural Netw"},{"key":"4461_CR8","doi-asserted-by":"crossref","first-page":"100389","DOI":"10.1016\/j.cosrev.2021.100389","volume":"40","author":"L Aversano","year":"2021","unstructured":"Aversano L, Bernardi ML, Cimitile M, Pecori R (2021) A systematic review on deep learning approaches for IoT security. Comput Sci Rev 40:100389","journal-title":"Comput Sci Rev"},{"key":"4461_CR9","doi-asserted-by":"crossref","first-page":"213","DOI":"10.1016\/j.comcom.2021.07.010","volume":"177","author":"A Belhadi","year":"2021","unstructured":"Belhadi A, Djenouri Y, Srivastava G, Lin JCW (2021) Reinforcement learning multi-agent system for faults diagnosis of mircoservices in industrial settings. Comput Commun 177:213\u2013219","journal-title":"Comput Commun"},{"key":"4461_CR10","unstructured":"Buitinck L, Louppe G, Blondel M, Pedregosa F, Mueller A, Grisel O, Niculae V, Prettenhofer P, Gramfort A, Grobler J et\u00a0al (2013) API design for machine learning software: experiences from the scikit-learn project. arXiv preprint arXiv:1309.0238"},{"issue":"9","key":"4461_CR11","doi-asserted-by":"crossref","first-page":"2796","DOI":"10.3390\/s18092796","volume":"18","author":"M Burhan","year":"2018","unstructured":"Burhan M, Rehman RA, Khan B, Kim BS (2018) IoT elements, layered architectures and security issues: a comprehensive survey. Sensors 18(9):2796","journal-title":"Sensors"},{"issue":"4","key":"4461_CR12","first-page":"320","volume":"14","author":"M Calabretta","year":"2018","unstructured":"Calabretta M, Pecori R, Vecchio M, Veltri L (2018a) MQTT-auth: a token-based solution to endow MQTT with authentication and authorization capabilities. J Commun Softw Syst 14(4):320\u2013331","journal-title":"J Commun Softw Syst"},{"key":"4461_CR13","doi-asserted-by":"crossref","unstructured":"Calabretta M, Pecori R, Veltri L (2018b) A token-based protocol for securing MQTT communications. In: 2018 26th International conference on software, telecommunications and computer networks (SoftCOM), IEEE, p 1\u20136","DOI":"10.23919\/SOFTCOM.2018.8555834"},{"key":"4461_CR14","doi-asserted-by":"crossref","first-page":"322","DOI":"10.1016\/j.future.2020.08.010","volume":"114","author":"F Cauteruccio","year":"2021","unstructured":"Cauteruccio F, Cinelli L, Corradini E, Terracina G, Ursino D, Virgili L, Savaglio C, Liotta A, Fortino G (2021) A framework for anomaly detection and classification in multiple IoT scenarios. Future Gen Comput Syst 114:322\u2013335","journal-title":"Future Gen Comput Syst"},{"key":"4461_CR15","doi-asserted-by":"crossref","unstructured":"Cervantes C, Poplade D, Nogueira M, Santos A (2015) Detection of sinkhole attacks for supporting secure routing on 6lowpan for internet of things. In: 2015 IFIP\/IEEE international symposium on integrated network management (IM), IEEE, p 606\u2013611","DOI":"10.1109\/INM.2015.7140344"},{"issue":"3","key":"4461_CR16","doi-asserted-by":"crossref","first-page":"2671","DOI":"10.1109\/COMST.2019.2896380","volume":"21","author":"N Chaabouni","year":"2019","unstructured":"Chaabouni N, Mosbah M, Zemmari A, Sauvignac C, Faruki P (2019) Network intrusion detection for IoT security based on learning techniques. IEEE Commun Surv Tutor 21(3):2671\u20132701","journal-title":"IEEE Commun Surv Tutor"},{"issue":"1","key":"4461_CR17","doi-asserted-by":"crossref","first-page":"144","DOI":"10.1109\/JIOT.2020.3000771","volume":"8","author":"Y Cheng","year":"2020","unstructured":"Cheng Y, Xu Y, Zhong H, Liu Y (2020) Leveraging semisupervised hierarchical stacking temporal convolutional network for anomaly detection in iot communication. IEEE Internet of Things J 8(1):144\u2013155","journal-title":"IEEE Internet of Things J"},{"key":"4461_CR18","doi-asserted-by":"crossref","unstructured":"Cho EJ, Kim JH, Hong CS (2009) Attack model and detection scheme for botnet on 6lowpan. In: Asia-Pacific network operations and management symposium, Springer, p 515\u2013518","DOI":"10.1007\/978-3-642-04492-2_66"},{"key":"4461_CR19","doi-asserted-by":"crossref","first-page":"147","DOI":"10.1016\/j.comnet.2019.01.023","volume":"151","author":"KA da Costa","year":"2019","unstructured":"da Costa KA, Papa JP, Lisboa CO, Munoz R, de Albuquerque VHC (2019) Internet of things: a survey on machine learning-based intrusion detection approaches. Comput Netw 151:147\u2013157","journal-title":"Comput Netw"},{"key":"4461_CR20","doi-asserted-by":"crossref","unstructured":"Derhab A, Aldweesh A, Emam AZ, Khan FA (2020) Intrusion detection system for internet of things based on temporal convolution neural network and efficient feature engineering. Wirel Commun Mob Comput 2020","DOI":"10.1155\/2020\/6689134"},{"issue":"2","key":"4461_CR21","doi-asserted-by":"crossref","first-page":"139","DOI":"10.1023\/A:1007607513941","volume":"40","author":"TG Dietterich","year":"2000","unstructured":"Dietterich TG (2000) An experimental comparison of three methods for constructing ensembles of decision trees: bagging, boosting, and randomization. Mach Learn 40(2):139\u2013157","journal-title":"Mach Learn"},{"key":"4461_CR22","doi-asserted-by":"crossref","first-page":"761","DOI":"10.1016\/j.future.2017.08.043","volume":"82","author":"AA Diro","year":"2018","unstructured":"Diro AA, Chilamkurti N (2018) Distributed attack detection scheme using deep learning approach for internet of things. Future Gen Comput Syst 82:761\u2013768","journal-title":"Future Gen Comput Syst"},{"key":"4461_CR23","unstructured":"Djenouri Y, Djenouri D, Belhadi A, Srivastava G, Lin JCW (2021) Emergent deep learning for anomaly detection in internet of everything. IEEE Internet Things J"},{"issue":"2","key":"4461_CR24","doi-asserted-by":"crossref","first-page":"241","DOI":"10.1007\/s11704-019-8208-z","volume":"14","author":"X Dong","year":"2020","unstructured":"Dong X, Yu Z, Cao W, Shi Y, Ma Q (2020) A survey on ensemble learning. Front Comput Sci 14(2):241\u2013258","journal-title":"Front Comput Sci"},{"key":"4461_CR25","doi-asserted-by":"crossref","unstructured":"Engen V (2010) Machine learning for network based intrusion detection: an investigation into discrepancies in findings with the KDD CUP\u201999 data set and multi-objective evolution of neural network classifier ensembles from imbalanced data. PhD thesis, Bournemouth University","DOI":"10.1109\/ICMLC.2009.5212485"},{"key":"4461_CR26","unstructured":"Fakirah J, Zishan LM, Mooruth R, Johnstone MN, Yang W (2021) A low-cost machine learning based network intrusion detection system with data privacy preservation. arXiv preprint arXiv:2107.02362"},{"issue":"3","key":"4461_CR27","doi-asserted-by":"crossref","first-page":"924","DOI":"10.1109\/TNSM.2019.2927886","volume":"16","author":"S Garg","year":"2019","unstructured":"Garg S, Kaur K, Kumar N, Kaddoum G, Zomaya AY, Ranjan R (2019) A hybrid deep learning-based model for anomaly detection in cloud datacenter networks. IEEE Trans Netw Serv Manag 16(3):924\u2013935","journal-title":"IEEE Trans Netw Serv Manag"},{"key":"4461_CR28","doi-asserted-by":"crossref","unstructured":"Golomb T, Mirsky Y, Elovici Y (2018) Ciota: Collaborative IoT anomaly detection via blockchain. arXiv preprint arXiv:1803.03807","DOI":"10.14722\/diss.2018.23003"},{"key":"4461_CR29","doi-asserted-by":"crossref","first-page":"100059","DOI":"10.1016\/j.iot.2019.100059","volume":"7","author":"M Hasan","year":"2019","unstructured":"Hasan M, Islam MM, Zarif MII, Hashem M (2019) Attack and anomaly detection in IoT sensors in IoT sites using machine learning approaches. Internet of Things 7:100059","journal-title":"Internet Things"},{"issue":"5","key":"4461_CR30","doi-asserted-by":"crossref","first-page":"1013","DOI":"10.1016\/j.sigpro.2012.11.009","volume":"93","author":"P Honeine","year":"2013","unstructured":"Honeine P, Noumir Z, Richard C (2013) Multiclass classification machines with the complexity of a single binary classifier. Signal Process 93(5):1013\u20131026","journal-title":"Signal Process"},{"key":"4461_CR31","doi-asserted-by":"crossref","first-page":"100103","DOI":"10.1016\/j.smhl.2019.100103","volume":"15","author":"W Jung","year":"2020","unstructured":"Jung W, Zhao H, Sun M, Zhou G (2020) IoT botnet detection via power consumption modeling. Smart Health 15:100103","journal-title":"Smart Health"},{"key":"4461_CR32","first-page":"102601","volume":"55","author":"G Kaur","year":"2020","unstructured":"Kaur G (2020) A comparison of two hybrid ensemble techniques for network anomaly detection in spark distributed environment. J Inf Secur Appl 55:102601","journal-title":"J Inf Secur Appl"},{"issue":"3","key":"4461_CR33","doi-asserted-by":"crossref","first-page":"552","DOI":"10.1109\/TSMCA.2010.2084081","volume":"41","author":"TM Khoshgoftaar","year":"2010","unstructured":"Khoshgoftaar TM, Van Hulse J, Napolitano A (2010) Comparing boosting and bagging techniques with noisy and imbalanced data. IEEE Trans Syst Man Cybern Part A Syst Hum 41(3):552\u2013568","journal-title":"IEEE Trans Syst Man Cybern Part A Syst Hum"},{"issue":"11","key":"4461_CR34","doi-asserted-by":"crossref","first-page":"1210","DOI":"10.3390\/electronics8111210","volume":"8","author":"A Khraisat","year":"2019","unstructured":"Khraisat A, Gondal I, Vamplew P, Kamruzzaman J, Alazab A (2019) A novel ensemble of hybrid intrusion detection system for detecting internet of things attacks. Electronics 8(11):1210","journal-title":"Electronics"},{"issue":"6","key":"4461_CR35","doi-asserted-by":"crossref","first-page":"916","DOI":"10.3390\/electronics9060916","volume":"9","author":"J Kim","year":"2020","unstructured":"Kim J, Kim J, Kim H, Shim M, Choi E (2020) Cnn-based network intrusion detection against denial-of-service attacks. Electronics 9(6):916","journal-title":"Electronics"},{"key":"4461_CR37","doi-asserted-by":"crossref","unstructured":"Koroniotis N, Moustafa N, Sitnikova E, Slay J (2017) Towards developing network forensic mechanism for botnet activities in the IoT based on machine learning techniques. In: International conference on mobile networks and management, Springer, p 30\u201344","DOI":"10.1007\/978-3-319-90775-8_3"},{"key":"4461_CR36","doi-asserted-by":"crossref","first-page":"779","DOI":"10.1016\/j.future.2019.05.041","volume":"100","author":"N Koroniotis","year":"2019","unstructured":"Koroniotis N, Moustafa N, Sitnikova E, Turnbull B (2019) Towards the development of realistic botnet dataset in the internet of things for network forensic analytics: Bot-IoT dataset. Future Gen Comput Syst 100:779\u2013796","journal-title":"Future Gen Comput Syst"},{"issue":"4","key":"4461_CR38","first-page":"324","volume":"1","author":"S Kotsiantis","year":"2004","unstructured":"Kotsiantis S, Pintelas P (2004) Combining bagging and boosting. Int J Comput Intell 1(4):324\u2013333","journal-title":"Int J Comput Intell"},{"key":"4461_CR39","doi-asserted-by":"crossref","first-page":"132","DOI":"10.1016\/j.inffus.2017.02.004","volume":"37","author":"B Krawczyk","year":"2017","unstructured":"Krawczyk B, Minku LL, Gama J, Stefanowski J, Wo\u017aniak M (2017) Ensemble learning for data stream analysis: a survey. Inf Fusion 37:132\u2013156","journal-title":"Inf Fusion"},{"key":"4461_CR40","doi-asserted-by":"crossref","unstructured":"Kumar V, Das AK, Sinha D (2020) Statistical analysis of the UNSW-NB15 dataset for intrusion detection. In: Computational intelligence in pattern recognition, Springer, pp 279\u2013294","DOI":"10.1007\/978-981-13-9042-5_24"},{"key":"4461_CR41","doi-asserted-by":"crossref","unstructured":"Latif S, Idrees Z, Zou Z, Ahmad J (2020) Drann: A deep random neural network model for intrusion detection in industrial IoT. In: 2020 International conference on UK-China emerging technologies (UCET), IEEE, p 1\u20134","DOI":"10.1109\/UCET51115.2020.9205361"},{"issue":"8","key":"4461_CR42","doi-asserted-by":"crossref","first-page":"8820","DOI":"10.1109\/TVT.2020.2995133","volume":"69","author":"X Li","year":"2020","unstructured":"Li X, Xu M, Vijayakumar P, Kumar N, Liu X (2020a) Detection of low-frequency and multi-stage attacks in industrial internet of things. IEEE Trans Veh Technol 69(8):8820\u20138831","journal-title":"IEEE Trans Veh Technol"},{"issue":"7","key":"4461_CR43","first-page":"5340","volume":"8","author":"JCW Lin","year":"2020","unstructured":"Lin JCW, Srivastava G, Zhang Y, Djenouri Y, Aloqaily M (2020) Privacy-preserving multiobjective sanitization model in 6G IoT environments. IEEE Internet Things J 8(7):5340\u20135349","journal-title":"IEEE Internet Things J"},{"key":"4461_CR44","doi-asserted-by":"crossref","unstructured":"Li Y, Xu Y, Liu Z, Hou H, Zheng Y, Xin Y, Zhao Y, Cui L (2020b) Robust detection for network intrusion of industrial IoT based on multi-CNN fusion. Measurement 154","DOI":"10.1016\/j.measurement.2019.107450"},{"issue":"9","key":"4461_CR45","doi-asserted-by":"crossref","first-page":"1967","DOI":"10.3390\/s17091967","volume":"17","author":"M Lopez-Martin","year":"2017","unstructured":"Lopez-Martin M, Carro B, Sanchez-Esguevillas A, Lloret J (2017) Conditional variational autoencoder for prediction and feature recovery applied to intrusion detection in IoT. Sensors 17(9):1967","journal-title":"Sensors"},{"key":"4461_CR46","doi-asserted-by":"crossref","first-page":"18042","DOI":"10.1109\/ACCESS.2017.2747560","volume":"5","author":"M Lopez-Martin","year":"2017","unstructured":"Lopez-Martin M, Carro B, Sanchez-Esguevillas A, Lloret J (2017) Network traffic classifier with convolutional and recurrent neural networks for internet of things. IEEE Access 5:18042\u201318050","journal-title":"IEEE Access"},{"key":"4461_CR47","doi-asserted-by":"crossref","first-page":"77396","DOI":"10.1109\/ACCESS.2020.2986013","volume":"8","author":"S Manimurugan","year":"2020","unstructured":"Manimurugan S, Al-Mutairi S, Aborokbah MM, Chilamkurti N, Ganesan S, Patan R (2020) Effective attack detection in internet of medical things smart environment using a deep belief neural network. IEEE Access 8:77396\u201377404","journal-title":"IEEE Access"},{"issue":"1\u20133","key":"4461_CR48","doi-asserted-by":"crossref","first-page":"18","DOI":"10.1080\/19393555.2015.1125974","volume":"25","author":"N Moustafa","year":"2016","unstructured":"Moustafa N, Slay J (2016) The evaluation of network anomaly detection systems: Statistical analysis of the UNSW-NB15 data set and the comparison with the KDD99 data set. Inf Secur J Glob Perspect 25(1\u20133):18\u201331","journal-title":"Inf Secur J Glob Perspect"},{"key":"4461_CR52","doi-asserted-by":"crossref","unstructured":"Moustafa N, Slay J (2015) UNSW-NB15: a comprehensive data set for network intrusion detection systems (UNSW-NB15 network data set). In: 2015 Military communications and information systems conference (MilCIS), IEEE, p 1\u20136","DOI":"10.1109\/MilCIS.2015.7348942"},{"key":"4461_CR51","doi-asserted-by":"crossref","unstructured":"Moustafa N, Creech G, Slay J (2018a) Anomaly detection system using beta mixture models and outlier detection. In: Progress in computing, analytics and networking, Springer, p 125\u2013135","DOI":"10.1007\/978-981-10-7871-2_13"},{"issue":"3","key":"4461_CR49","doi-asserted-by":"crossref","first-page":"4815","DOI":"10.1109\/JIOT.2018.2871719","volume":"6","author":"N Moustafa","year":"2018","unstructured":"Moustafa N, Turnbull B, Choo KKR (2018b) An ensemble intrusion detection technique based on proposed statistical flow features for protecting network traffic of internet of things. IEEE Internet Things J 6(3):4815\u20134830","journal-title":"IEEE Internet Things J"},{"key":"4461_CR50","doi-asserted-by":"crossref","first-page":"33","DOI":"10.1016\/j.jnca.2018.12.006","volume":"128","author":"N Moustafa","year":"2019","unstructured":"Moustafa N, Hu J, Slay J (2019) A holistic review of network anomaly detection systems: a comprehensive survey. J Netw Comput Appl 128:33\u201355","journal-title":"J Netw Comput Appl"},{"key":"4461_CR53","first-page":"1","volume":"41","author":"AH Muna","year":"2018","unstructured":"Muna AH, Moustafa N, Sitnikova E (2018) Identification of malicious activities in industrial internet of things based on deep learning models. J Inf Secur Appl 41:1\u201311","journal-title":"J Inf Secur Appl"},{"key":"4461_CR54","doi-asserted-by":"crossref","first-page":"1991","DOI":"10.1109\/ACCESS.2018.2886457","volume":"7","author":"M Munir","year":"2018","unstructured":"Munir M, Siddiqui SA, Dengel A, Ahmed S (2018) Deepant: a deep learning approach for unsupervised anomaly detection in time series. IEEE Access 7:1991\u20132005","journal-title":"IEEE Access"},{"issue":"1","key":"4461_CR55","doi-asserted-by":"crossref","first-page":"46","DOI":"10.11591\/eei.v8i1.1387","volume":"8","author":"M Nawir","year":"2019","unstructured":"Nawir M, Amir A, Yaakob N, Lynn OB (2019) Effective and efficient network anomaly detection system using machine learning algorithm. Bull Electr Eng Inform 8(1):46\u201351","journal-title":"Bull Electr Eng Inform"},{"key":"4461_CR56","doi-asserted-by":"crossref","first-page":"102662","DOI":"10.1016\/j.jnca.2020.102662","volume":"163","author":"GDLT Parra","year":"2020","unstructured":"Parra GDLT, Rad P, Choo KKR, Beebe N (2020) Detecting internet of things attacks using distributed deep learning. J Netw Comput Appl 163:102662","journal-title":"J Netw Comput Appl"},{"key":"4461_CR57","doi-asserted-by":"crossref","unstructured":"Parveen AN, Inbarani HH, Kumar ES (2012) Performance analysis of unsupervised feature selection methods. In: 2012 International conference on computing. communication and applications, IEEE, p 1\u20137","DOI":"10.1109\/ICCCA.2012.6179181"},{"key":"4461_CR58","doi-asserted-by":"crossref","unstructured":"Pavlov DY, Gorodilov A, Brunk CA (2010) BAGBOO: a scalable hybrid bagging-the-boosting model. In: Proceedings of the 19th ACM international conference on Information and knowledge management, p 1897\u20131900","DOI":"10.1145\/1871437.1871758"},{"key":"4461_CR59","doi-asserted-by":"crossref","unstructured":"Pecori R, Tayebi A, Vannucci A, Veltri L (2020) IoT attack detection with deep learning analysis. In: 2020 International joint conference on neural networks (IJCNN), IEEE, p 1\u20138","DOI":"10.1109\/IJCNN48605.2020.9207171"},{"key":"4461_CR60","unstructured":"Pedregosa F, Varoquaux G, Gramfort A, Michel V, Thirion B, Grisel O, Blondel M, Prettenhofer P, Weiss R, Dubourg V et al (2011) Scikit-learn: machine learning in python. J Mach Learn Res"},{"key":"4461_CR61","doi-asserted-by":"crossref","unstructured":"Primartha R, Tama BA (2017) Anomaly detection using random forest: a performance revisited. In: 2017 International conference on data and software engineering (ICoDSE), IEEE, p 1\u20136","DOI":"10.1109\/ICODSE.2017.8285847"},{"issue":"1","key":"4461_CR62","doi-asserted-by":"crossref","first-page":"19","DOI":"10.1007\/s12530-020-09347-0","volume":"12","author":"A Protogerou","year":"2021","unstructured":"Protogerou A, Papadopoulos S, Drosou A, Tzovaras D, Refanidis I (2021) A graph neural network method for distributed anomaly detection in IoT. Evol Syst 12(1):19\u201336","journal-title":"Evol Syst"},{"key":"4461_CR63","doi-asserted-by":"crossref","unstructured":"Sarhan M, Layeghy S, Moustafa N, Portmann M (2021) A cyber threat intelligence sharing scheme based on federated learning for network intrusion detection. arXiv preprint arXiv:2111.02791","DOI":"10.21203\/rs.3.rs-1631421\/v1"},{"key":"4461_CR64","doi-asserted-by":"crossref","unstructured":"Sethi P, Sarangi SR (2017) Internet of things: architectures, protocols, and applications. J Electr Comput Eng 2017","DOI":"10.1155\/2017\/9324035"},{"key":"4461_CR65","doi-asserted-by":"crossref","first-page":"16605","DOI":"10.1007\/s00500-020-04963-z","volume":"24","author":"WC Shi","year":"2020","unstructured":"Shi WC, Sun HM (2020) Deepbot: a time-based botnet detection with deep learning. Soft Comput 24:16605\u201316616","journal-title":"Soft Comput"},{"key":"4461_CR66","doi-asserted-by":"crossref","first-page":"102630","DOI":"10.1016\/j.jnca.2020.102630","volume":"161","author":"SM Tahsien","year":"2020","unstructured":"Tahsien SM, Karimipour H, Spachos P (2020) Machine learning based solutions for security of internet of things (IoT): a survey. J Netw Comput Appl 161:102630","journal-title":"J Netw Comput Appl"},{"key":"4461_CR67","doi-asserted-by":"crossref","first-page":"1","DOI":"10.56801\/rebicte.v3i.28","volume":"3","author":"BA Tama","year":"2017","unstructured":"Tama BA, Rhee KH (2017) Attack classification analysis of IoT network via deep learning approach. Res Briefs Inf Commun Technol Evol(ReBICTE) 3:1\u20139","journal-title":"Res Briefs Inf Commun Technol Evol(ReBICTE)"},{"key":"4461_CR68","unstructured":"Tim\u010denko V, Gajin S (2018) Machine learning based network anomaly detection for IoT environments. In: ICIST-2018 conference"},{"key":"4461_CR69","doi-asserted-by":"crossref","unstructured":"Ullah I, Mahmoud QH (2019) A two-level hybrid model for anomalous activity detection in IoT networks. In: 2019 16th IEEE annual consumer communications & networking conference (CCNC), IEEE, p 1\u20136","DOI":"10.1109\/CCNC.2019.8651782"},{"key":"4461_CR70","doi-asserted-by":"crossref","first-page":"228","DOI":"10.1016\/j.future.2020.05.035","volume":"112","author":"R Xu","year":"2020","unstructured":"Xu R, Cheng Y, Liu Z, Xie Y, Yang Y (2020a) Improved long short-term memory based anomaly detection with concept drift adaptive method for supporting iot services. Future Gen Comput Syst 112:228\u2013242","journal-title":"Future Gen Comput Syst"},{"issue":"4","key":"4461_CR71","doi-asserted-by":"crossref","first-page":"14","DOI":"10.1109\/MNET.011.1900407","volume":"34","author":"S Xu","year":"2020","unstructured":"Xu S, Qian Y, Hu RQ (2020b) Edge intelligence assisted gateway defense in cyber security. IEEE Netw 34(4):14\u201319","journal-title":"IEEE Netw"},{"key":"4461_CR72","doi-asserted-by":"crossref","unstructured":"Yap BW, Abd\u00a0Rani K, Abd\u00a0Rahman HA, Fong S, Khairudin Z, Abdullah NN (2014) An application of oversampling, undersampling, bagging and boosting in handling imbalanced datasets. In: Proceedings of the first international conference on advanced data and information engineering (DaEng-2013), Springer, p 13\u201322","DOI":"10.1007\/978-981-4585-18-7_2"},{"key":"4461_CR73","unstructured":"Yin C, Zhang S, Wang J, Xiong NN (2020) Anomaly detection based on convolutional recurrent autoencoder for IoT time series. IEEE Trans Syst Man Cybern Syst"},{"key":"4461_CR74","doi-asserted-by":"crossref","first-page":"107049","DOI":"10.1016\/j.comnet.2019.107049","volume":"169","author":"Y Zhong","year":"2020","unstructured":"Zhong Y, Chen W, Wang Z, Chen Y, Wang K, Li Y, Yin X, Shi X, Yang J, Li K (2020) Helad: a novel network anomaly detection model based on heterogeneous ensemble learning. Comput Netw 169:107049","journal-title":"Comput Netw"},{"key":"4461_CR75","doi-asserted-by":"crossref","first-page":"270","DOI":"10.1007\/978-0-387-73003-5_293","volume":"1","author":"ZH Zhou","year":"2009","unstructured":"Zhou ZH (2009) Ensemble learning. Encycl Biometr 1:270\u2013273","journal-title":"Encycl Biometr"}],"container-title":["Journal of Ambient Intelligence and Humanized Computing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s12652-022-04461-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s12652-022-04461-0\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s12652-022-04461-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,11,29]],"date-time":"2023-11-29T11:16:54Z","timestamp":1701256614000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s12652-022-04461-0"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,10,22]]},"references-count":75,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2023,4]]}},"alternative-id":["4461"],"URL":"https:\/\/doi.org\/10.1007\/s12652-022-04461-0","relation":{},"ISSN":["1868-5137","1868-5145"],"issn-type":[{"value":"1868-5137","type":"print"},{"value":"1868-5145","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,10,22]]},"assertion":[{"value":"30 March 2021","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"12 October 2022","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"22 October 2022","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare that they have no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}]}}