{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,10]],"date-time":"2026-03-10T15:37:22Z","timestamp":1773157042902,"version":"3.50.1"},"reference-count":70,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"DOI":"10.13039\/501100006041","name":"Innovate UK","doi-asserted-by":"publisher","award":["10118855"],"award-info":[{"award-number":["10118855"]}],"id":[{"id":"10.13039\/501100006041","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/access.2025.3557959","type":"journal-article","created":{"date-parts":[[2025,4,4]],"date-time":"2025-04-04T20:35:43Z","timestamp":1743798943000},"page":"60532-60555","source":"Crossref","is-referenced-by-count":23,"title":["Multi-Stage Deep Learning for Intrusion Detection in Industrial Internet of Things"],"prefix":"10.1109","volume":"13","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3941-5903","authenticated-orcid":false,"given":"Segun I.","family":"Popoola","sequence":"first","affiliation":[{"name":"School of Computing and Information Science, Anglia Ruskin University, Cambridge, U.K."}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4442-2200","authenticated-orcid":false,"given":"Yakubu","family":"Tsado","sequence":"additional","affiliation":[{"name":"Department of Computing and Mathematics, Manchester Metropolitan University, Manchester, U.K."}]},{"ORCID":"https:\/\/orcid.org\/0009-0004-0259-7178","authenticated-orcid":false,"given":"Abimbola A.","family":"Ogunjinmi","sequence":"additional","affiliation":[{"name":"School of Emerging Communication Technology, Ohio University, Athens, OH, USA"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1167-5316","authenticated-orcid":false,"given":"Erika","family":"Sanchez-Velazquez","sequence":"additional","affiliation":[{"name":"School of Computing and Information Science, Anglia Ruskin University, Cambridge, U.K."}]},{"given":"Yonghong","family":"Peng","sequence":"additional","affiliation":[{"name":"School of Computing and Information Science, Anglia Ruskin University, Cambridge, U.K."}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3638-3464","authenticated-orcid":false,"given":"Danda B.","family":"Rawat","sequence":"additional","affiliation":[{"name":"Department of Electrical Engineering and Computer Science, Howard University, Washington, DC, USA"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2020.3023507"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2019.2912022"},{"key":"ref3","volume-title":"State of Xiot Security: 1h 2022","year":"2022"},{"key":"ref4","volume-title":"National Vulnerability Database","year":"2024"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CCGridW59191.2023.00017"},{"key":"ref6","volume-title":"Cisa cybersecurity advisory: Aa22-110a-ransomware activity targeting the healthcare and public health sector","year":"2022"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1016\/j.jii.2023.100549"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2019.2896380"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3034156"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-75078-7_44"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.3390\/s21092985"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2023.3341755"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1186\/s40537-019-0192-5"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/s11227-023-05073-x"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2024.3384374"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/s11227-024-06153-2"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1007\/s10586-024-04527-y"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1016\/j.engappai.2024.108579"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.3390\/su14148707"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2024.103888"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/IOTM.001.2300171"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1016\/j.engappai.2023.107515"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TCE.2023.3347170"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-024-09857-x"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1016\/j.jpdc.2024.104934"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1007\/s10115-024-02126-2"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-024-09439-x"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.3390\/electronics10091104"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/idsta58916.2023.10317861"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.2478\/jaiscr-2023-0017"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/s10489-022-03361-2"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3360879"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2023.3344457"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1007\/s11277-021-08655-1"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.102957"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.3390\/computers11120170"},{"key":"ref37","article-title":"Hierarchical classification for intrusion detection system: Effective design and empirical analysis","author":"Ashraf Uddin","year":"2024","journal-title":"arXiv:2403.13013"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2021.3102056"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1613\/jair.953"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN.2008.4633969"},{"issue":"3","key":"ref41","first-page":"875","article-title":"State of the art on data level methods to address class imbalance problem in binary classification","volume":"8","author":"Upadhyay","year":"2021","journal-title":"GIS Sci. J."},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2022.3185049"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/comst.2024.3430368"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3365930"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3458830"},{"key":"ref46","volume-title":"Industrial Internet Reference Architecture","author":"Lin","year":"2022"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2022.3202914"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2024.3419988"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/TSMC.2020.3040789"},{"key":"ref50","volume-title":"Industroyer: A Cyber-weapon That Brought Down a Power Grid","year":"2025"},{"key":"ref51","volume-title":"The Attack on Colonial Pipeline: What We\u2019ve Learned & What We\u2019ve Done Over the Past Two Years","year":"2025"},{"key":"ref52","volume-title":"A Cyberattack in Florida Shows Vulnerability of U.S. Water Supply","year":"2025"},{"key":"ref53","volume-title":"Energias De Portugal Hit By Ragnar Locker Ransomware","year":"2025"},{"key":"ref54","volume-title":"Cyberattack on U.S. Gas Pipeline Prompts Emergency Shutdown","year":"2025"},{"key":"ref55","volume-title":"Hackers Stole 220gb of Data in Toll Group Ransomware Attack","year":"2025"},{"key":"ref56","volume-title":"Danish Train Standstill on Saturday Caused By Cyber Attack","year":"2025"},{"key":"ref57","volume-title":"The Untold Story of Notpetya, the Most Devastating Cyberattack in History","author":"Greenberg","year":"2025"},{"key":"ref58","volume-title":"Royal Mail: Cyber Incident Hits Overseas Post Deliveries","year":"2025"},{"key":"ref59","volume-title":"San Francisco\u2019s Muni Hack: A Case Study in Prepping for Ransomware Attacks","year":"2021"},{"key":"ref60","volume-title":"Ot Cybersecurity Breach Disrupts Operations At the Port of Nagoya, Japan","author":"Benjamin","year":"2025"},{"key":"ref61","volume-title":"Triton is the World\u2019s Most Murderous Malware, and It\u2019s Spreading","author":"Marks","year":"2019"},{"key":"ref62","volume-title":"Hackers Hit Norsk Hydro With Ransomware. The Company Responded With Transparency","year":"2019"},{"key":"ref63","volume-title":"Cyber Attack Overview: Jbs Foods Ransomware Incident","year":"2025"},{"key":"ref64","volume-title":"Toyota To Restart Japan Production After Cyberattack on Supplier","year":"2025"},{"key":"ref65","volume-title":"Throwback Attack: Snake Ransomware Hits Honda Plants","year":"2025"},{"key":"ref66","volume-title":"The Clorox Company\u2019s 2023 Cyberattack: Major Fallout, System Recovery, and Lessons Learned","year":"2025"},{"key":"ref67","volume-title":"Cyber Threat Bulletin: Cyber Threat To Operational Technology","year":"2022"},{"key":"ref68","volume-title":"Cyber Kill Chain","year":"2011"},{"key":"ref69","volume-title":"Mitre Att&ck","year":"2019"},{"key":"ref70","volume-title":"The Diamond Model of Intrusion Analysis: Summary","year":"2020"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/6287639\/10820123\/10949493.pdf?arnumber=10949493","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,4,11]],"date-time":"2025-04-11T04:30:43Z","timestamp":1744345843000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10949493\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":70,"URL":"https:\/\/doi.org\/10.1109\/access.2025.3557959","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]}}}