{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,15]],"date-time":"2026-05-15T11:16:59Z","timestamp":1778843819547,"version":"3.51.4"},"reference-count":37,"publisher":"Oxford University Press (OUP)","license":[{"start":{"date-parts":[[2019,11,14]],"date-time":"2019-11-14T00:00:00Z","timestamp":1573689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/academic.oup.com\/journals\/pages\/open_access\/funder_policies\/chorus\/standard_publication_model"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"abstract":"<jats:title>Abstract<\/jats:title>\n               <jats:p>The proliferation of Internet of Things (IoT) devices has led to many applications, including smart homes, smart cities and smart industrial control systems. Attacks like Distributed Denial of Service, event control hijacking, spoofing, event replay and zero day attacks are prevalent in smart environments. Conventional Network Intrusion Detection Systems (NIDSs) are tedious to deploy in the smart environment because of numerous communication architectures, manufacturer policies, technologies, standards and application-specific services. To overcome these challenges, we modeled the operational behavior of IoT network events using timed ACs and proposed a novel hybrid NIDS in this paper. A web server is integrated with IoT devices for remote access, and Constrained Application Protocol is employed in inter- and intra-smart device communication. Experiments are conducted in real time to validate our proposal and achieve 99.17% detection accuracy and 0.01% false positives.<\/jats:p>","DOI":"10.1093\/comjnl\/bxz082","type":"journal-article","created":{"date-parts":[[2019,7,24]],"date-time":"2019-07-24T19:16:18Z","timestamp":1563995778000},"source":"Crossref","is-referenced-by-count":12,"title":["Hybrid Network Intrusion Detection System for Smart Environments Based on Internet of Things"],"prefix":"10.1093","author":[{"given":"Venkatraman","family":"Subbarayalu","sequence":"first","affiliation":[{"name":"Department of Computer Science & Technology, Madanapalle Institute of Technology & Science, Madanapalle 517325, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"B","family":"Surendiran","sequence":"additional","affiliation":[{"name":"Department of Computer Science & Engineering, National Institute of Technology Puducherry, Karaikal 609609, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"P","family":"Arun Raj Kumar","sequence":"additional","affiliation":[{"name":"Department of Computer Science & Engineering, National Institute of Technology Calicut, Kerala\u00a0673601, India"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"286","published-online":{"date-parts":[[2019,11,14]]},"reference":[{"key":"2019111321583693000_ref1","doi-asserted-by":"crossref","first-page":"183","DOI":"10.1016\/0304-3975(94)90010-8","article-title":"Fundamental study. A theory of timed automata","volume":"126","author":"Alur","year":"1994","journal-title":"Theoretical Computer Science."},{"key":"2019111321583693000_ref2","doi-asserted-by":"crossref","first-page":"1796","DOI":"10.1109\/ICC.2014.6883583","article-title":"Policy and network-based intrusion detection system for IPv6-enabled wireless sensor networks","author":"Amaral","year":"2014","journal-title":"2014 IEEE International Conference on Communications (ICC)"},{"key":"2019111321583693000_ref3","doi-asserted-by":"crossref","first-page":"651","DOI":"10.3390\/s18020651","article-title":"A cross-layer, anomaly-based IDS for WSN and MANET","volume":"18","author":"Amouri","year":"2018","journal-title":"Sensors (Basel, Switzerland)"},{"key":"2019111321583693000_ref4","doi-asserted-by":"crossref","first-page":"13:1","DOI":"10.1147\/JRD.2016.2575698","article-title":"Security intelligence for industrial control systems","volume":"60","author":"Amrein","year":"2016","journal-title":"IBM Journal of Research and Development"},{"key":"2019111321583693000_ref5","first-page":"1","volume-title":"Security for the Internet of Radios, Bastille Networks","author":"Bastille","year":"2017"},{"key":"2019111321583693000_ref6","volume-title":"How hackers stole millions of credit card records from Target","author":"Charlie","year":"2014"},{"key":"2019111321583693000_ref7","doi-asserted-by":"crossref","first-page":"263","DOI":"10.1109\/CC.2016.7733050","article-title":"A practical intrusion detection system for internet of vehicles","volume":"13","author":"Fu","year":"2016","journal-title":"China Communications"},{"key":"2019111321583693000_ref8","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1155\/2017\/1750637","article-title":"An automata based intrusion detection method for internet of things","volume":"2017","author":"Fu","year":"2017","journal-title":"Mobile Information Systems"},{"key":"2019111321583693000_ref9","volume-title":"New variants of Mirai botnet detected, targeting more IoT devices, ArsTechnica, San Francisco","author":"Gallagher","year":"2019"},{"key":"2019111321583693000_ref10","volume-title":"Worldwide-2016","author":"Gartner","year":"2017"},{"key":"2019111321583693000_ref11","doi-asserted-by":"crossref","first-page":"968","DOI":"10.1109\/JIOT.2017.2704093","article-title":"Heimdall: Mitigating the internet of insecure things","volume":"4","author":"Habibi","year":"2017","journal-title":"IEEE Internet of Things Journal"},{"key":"2019111321583693000_ref12","volume-title":"Technical Report","author":"Heady","year":"1990"},{"key":"2019111321583693000_ref13","first-page":"1","article-title":"Threat analysis of IoT networks using artificial neural network intrusion detection system","author":"Hodo","year":"2016","journal-title":"International Symposium on Networks, Computers and Communications (ISNCC)"},{"key":"2019111321583693000_ref14","first-page":"226","article-title":"Design of complex event-processing IDS in internet of things","author":"Jun","year":"2014","journal-title":"Sixth International Conference on Measuring Technology and Mechatronics Automation, Zhangjiajie, China"},{"key":"2019111321583693000_ref15","first-page":"1","article-title":"Intrusion detection system using deep neural network for in-vehicle network security","volume":"11","author":"Kang","year":"2016","journal-title":"PLoS ONE"},{"key":"2019111321583693000_ref16","first-page":"600","article-title":"Denial-of-service detection in 6LoWPAN based internet of things","author":"Kasinathan","year":"2013","journal-title":"2013 IEEE 9th International Conference on Wireless and Mobile Computing, Networking and Communications (WiMob), Lyon"},{"key":"2019111321583693000_ref17","doi-asserted-by":"crossref","first-page":"1247","DOI":"10.1109\/TASE.2016.2533321","article-title":"Smart configuration of smart environments","volume":"13","author":"Mayer","year":"2016","journal-title":"IEEE Transactions on Automation Science and Engineering"},{"key":"2019111321583693000_ref18","doi-asserted-by":"crossref","first-page":"113","DOI":"10.1049\/iet-wss.2016.0090","article-title":"Evolving attackers against wireless sensor networks using genetic programming","volume":"7","author":"Mrugala","year":"2017","journal-title":"IET Wireless Sensor Systems"},{"key":"2019111321583693000_ref19","first-page":"253","article-title":"An intrusion detection system for wireless sensor networks, WiMob'2005","volume":"3","author":"Onat","year":"2005","journal-title":"IEEE International Conference on Wireless And Mobile Computing, Networking And Communications"},{"key":"2019111321583693000_ref20","doi-asserted-by":"crossref","first-page":"203","DOI":"10.1023\/A:1007601015854","article-title":"Robust classification for imprecise environments","volume":"42","author":"Provost","year":"2001","journal-title":"Machine Learning"},{"key":"2019111321583693000_ref21","doi-asserted-by":"crossref","first-page":"2661","DOI":"10.1016\/j.adhoc.2013.04.014","article-title":"SVELTE: Real-time intrusion detection in the internet of things","volume":"11","author":"Raza","year":"2013","journal-title":"Ad Hoc Networks"},{"key":"2019111321583693000_ref22","first-page":"229","volume-title":"Proceedings of the 13th USENIX Conference on System Administration","author":"Roesch","year":"1999"},{"key":"2019111321583693000_ref23","first-page":"16","article-title":"The insecurity of things","volume":"21","author":"Savvides","year":"2016","journal-title":"The Symantec Internet Security Threat Report (ISTR)"},{"key":"2019111321583693000_ref24","doi-asserted-by":"crossref","first-page":"570","DOI":"10.1109\/JIOT.2014.2366120","article-title":"An efficient and lightweight intrusion detection mechanism for service-oriented vehicular networks","volume":"1","author":"Sedjelmaci","year":"2014","journal-title":"IEEE Internet of Things Journal"},{"key":"2019111321583693000_ref25","doi-asserted-by":"crossref","first-page":"9381","DOI":"10.1109\/TVT.2017.2701551","article-title":"An accurate security game for low-resource IoT devices","volume":"66","author":"Sedjelmaci","year":"2017","journal-title":"IEEE Transactions on Vehicular Technology"},{"key":"2019111321583693000_ref26","first-page":"440","article-title":"RPiDS: Raspberry pi IDS \u2014 A fruitful intrusion detection system for IoT, 2016 Intl IEEE conferences on Ubiquitous Intelligence & Computing","volume":"2016","author":"Sforzin","year":"2016","journal-title":"Advanced and Trusted Computing, Scalable Computing and Communications, Cloud and Big Data Computing, Internet of People, and Smart World Congress, Toulouse"},{"key":"2019111321583693000_ref27","author":"Shelby","year":"2012"},{"key":"2019111321583693000_ref28","author":"Shelby","year":"2014"},{"key":"2019111321583693000_ref29","doi-asserted-by":"crossref","first-page":"146","DOI":"10.1016\/j.comnet.2014.11.008","article-title":"Security, privacy and trust in internet of things: The road ahead","volume":"76","author":"Sicari","year":"2015","journal-title":"Computer Networks"},{"key":"2019111321583693000_ref30","first-page":"1","article-title":"Ultra-lightweight deep packet anomaly detection for internet of things devices","author":"Summerville","year":"2015","journal-title":"IEEE 34th International Performance Computing and Communications Conference (IPCCC), Nanjing"},{"key":"2019111321583693000_ref31","doi-asserted-by":"crossref","first-page":"61","DOI":"10.1016\/j.pmcj.2015.06.007","article-title":"Modeling and verifying EPC network intrusion system based on timed automata","volume":"24","author":"Sun","year":"2015","journal-title":"Pervasive & Mobile Computing"},{"key":"2019111321583693000_ref32","doi-asserted-by":"crossref","first-page":"34","DOI":"10.1109\/MITP.2017.3680952","article-title":"Security and privacy for a green internet of things","volume":"19","author":"Szymanski","year":"2017","journal-title":"IT Professional"},{"key":"2019111321583693000_ref33","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/2716260","article-title":"55 taxonomy and survey of collaborative intrusion detection","volume":"47","author":"Vasilomanolakis","year":"2015","journal-title":"ACM Computing Surveys"},{"key":"2019111321583693000_ref34","doi-asserted-by":"crossref","DOI":"10.1007\/s11042-019-7495-6","volume-title":"Adaptive hybrid intrusion detection system for crowd sourced multimedia Internet of Things systems","author":"Venkatraman","year":"2019"},{"key":"2019111321583693000_ref35","volume-title":"Representational state transfer- Wikipedia","author":"Wikipedia","year":"2017"},{"key":"2019111321583693000_ref36","doi-asserted-by":"crossref","DOI":"10.1007\/978-0-387-33112-6","volume-title":"Wireless network security","author":"Xiao","year":"2007"},{"key":"2019111321583693000_ref37","doi-asserted-by":"crossref","first-page":"1106","DOI":"10.1016\/j.jnca.2009.02.010","article-title":"Decentralized multi-dimensional alert correlation for collaborative intrusion detection","volume":"32","author":"Zhou","year":"2009","journal-title":"Journal of Network and Computer Applications"}],"container-title":["The Computer Journal"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/academic.oup.com\/comjnl\/advance-article-pdf\/doi\/10.1093\/comjnl\/bxz082\/30730359\/bxz082.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"http:\/\/academic.oup.com\/comjnl\/advance-article-pdf\/doi\/10.1093\/comjnl\/bxz082\/30730359\/bxz082.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,11,14]],"date-time":"2019-11-14T02:59:03Z","timestamp":1573700343000},"score":1,"resource":{"primary":{"URL":"https:\/\/academic.oup.com\/comjnl\/advance-article\/doi\/10.1093\/comjnl\/bxz082\/5618851"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,11,14]]},"references-count":37,"URL":"https:\/\/doi.org\/10.1093\/comjnl\/bxz082","relation":{},"ISSN":["0010-4620","1460-2067"],"issn-type":[{"value":"0010-4620","type":"print"},{"value":"1460-2067","type":"electronic"}],"subject":[],"published":{"date-parts":[[2019,11,14]]},"article-number":"bxz082"}}