{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T23:22:00Z","timestamp":1780356120089,"version":"3.54.1"},"reference-count":189,"publisher":"Association for Computing Machinery (ACM)","issue":"5","license":[{"start":{"date-parts":[[2022,12,3]],"date-time":"2022-12-03T00:00:00Z","timestamp":1670025600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"Ontario Centre for Innovation under ENCQOR 5G","award":["31993"],"award-info":[{"award-number":["31993"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Comput. Surv."],"published-print":{"date-parts":[[2023,5,31]]},"abstract":"<jats:p>Despite its technological benefits, the Internet of Things (IoT) has cyber weaknesses due to vulnerabilities in the wireless medium. Machine Larning (ML)-based methods are widely used against cyber threats in IoT networks with promising performance. An Advanced Persistent Threat (APT) is prominent for cybercriminals to compromise networks, and it is crucial to long-term and harmful characteristics. However, it is difficult to apply ML-based approaches to identify APT attacks to obtain a promising detection performance due to an extremely small percentage among normal traffic. There are limited surveys that fully investigate APT attacks in IoT networks due to the lack of public datasets with all types of APT attacks. It is worth bridging the state of the art in network attack detection with APT attack detection in a comprehensive review article. This survey article reviews the security challenges in IoT networks and presents well-known attacks, APT attacks, and threat models in IoT systems. Meanwhile, signature-based, anomaly-based, and hybrid intrusion detection systems are summarized for IoT networks. The article highlights statistical insights regarding frequently applied ML-based methods against network intrusion. Finally, open issues and challenges for common network intrusion and APT attacks are presented for future research.<\/jats:p>","DOI":"10.1145\/3530812","type":"journal-article","created":{"date-parts":[[2022,4,19]],"date-time":"2022-04-19T12:44:24Z","timestamp":1650372264000},"page":"1-37","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":118,"title":["Machine Learning-Enabled IoT Security: Open Issues and Challenges Under Advanced Persistent Threats"],"prefix":"10.1145","volume":"55","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-4397-1061","authenticated-orcid":false,"given":"Zhiyan","family":"Chen","sequence":"first","affiliation":[{"name":"University of Ottawa Ottawa, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2482-9548","authenticated-orcid":false,"given":"Jinxin","family":"Liu","sequence":"additional","affiliation":[{"name":"University of Ottawa Ottawa, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4699-0006","authenticated-orcid":false,"given":"Yu","family":"Shen","sequence":"additional","affiliation":[{"name":"University of Ottawa Ottawa, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3156-5760","authenticated-orcid":false,"given":"Murat","family":"Simsek","sequence":"additional","affiliation":[{"name":"University of Ottawa Ottawa, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0220-7956","authenticated-orcid":false,"given":"Burak","family":"Kantarci","sequence":"additional","affiliation":[{"name":"University of Ottawa Ottawa, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7939-7212","authenticated-orcid":false,"given":"Hussein T.","family":"Mouftah","sequence":"additional","affiliation":[{"name":"University of Ottawa Ottawa, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8856-8706","authenticated-orcid":false,"given":"Petar","family":"Djukic","sequence":"additional","affiliation":[{"name":"Ciena Ottawa, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2022,12,3]]},"reference":[{"key":"e_1_3_1_2_2","unstructured":"Rodika Tollefson. 2020. ICS\/SCADA Malware Threats. Retrieved April 23 2022 from https:\/\/resources.infosecinstitute.com\/category\/certifications-training\/ics-scada\/ics-scada-threats-threat-actors\/ics-scada-malware-threats\/."},{"key":"e_1_3_1_3_2","doi-asserted-by":"crossref","unstructured":"Romain Fontugne Pierre Borgnat Patrice Abry and Kensuke Fukuda. 2010. MAWILab: Combining Diverse Anomaly Detectors for Automated Anomaly Labeling and Performance Benchmarking. In ACM (CoNEXT\u201910) . Philadel-phia PA.","DOI":"10.1145\/1921168.1921179"},{"key":"e_1_3_1_4_2","doi-asserted-by":"crossref","unstructured":"IBM. n.d. X-Force Threat Intelligence Index 2020. Retrieved April 23 2022 from XXX.","DOI":"10.12968\/S1361-3723(22)70561-1"},{"key":"e_1_3_1_5_2","unstructured":"Control Engineering. 2009. When Considering Controllers\u2026 Do Operating Systems Matter? Retrieved April 23 2022 fromhttps:\/\/www.controleng.com\/articles\/when-considering-controllers-do-operating-systems-matter\/."},{"key":"e_1_3_1_6_2","unstructured":"Steve Morgan. 2018. Global ransomware damage costs predicted to hit $11.5 billion by 2019. Cybercrime Magazine . Retrieved April 23 2022 from https:\/\/cybersecurityventures.com\/ransomware-damage-report-2017-part-2\/."},{"key":"e_1_3_1_7_2","unstructured":"Positive Technologies. 2019. ICS Vulnerabilities: 2018 in Review. Retrieved April 23 2022 from https:\/\/www.ptsecurity.com\/ww-en\/analytics\/ics-vulnerabilities-2019\/."},{"key":"e_1_3_1_8_2","unstructured":"CISA. 2020. Overview of Cyber Vulnerabilities. Retrieved April 23 2022 from https:\/\/www.us-cert.gov\/ics\/content\/overview-cyber-vulnerabilities."},{"key":"e_1_3_1_9_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.scs.2021.102994"},{"key":"e_1_3_1_10_2","doi-asserted-by":"publisher","DOI":"10.3390\/s151024818"},{"key":"e_1_3_1_11_2","doi-asserted-by":"publisher","DOI":"10.1109\/CIT\/IUCC\/DASC\/PICOM.2015.166"},{"key":"e_1_3_1_12_2","first-page":"559","article-title":"Analysis of the nearest neighbor classifiers: A review","author":"Agarwal Yash","year":"2021","unstructured":"Yash Agarwal and G. Poornalatha. 2021. Analysis of the nearest neighbor classifiers: A review. In Advances in Artificial Intelligence and Data Engineering. Advances in Intelligent Systems and Computing, Vol. 1133. Springer, 559\u2013570.","journal-title":"Advances in Artificial Intelligence and Data Engineering."},{"key":"e_1_3_1_13_2","doi-asserted-by":"publisher","DOI":"10.3390\/sym12101666"},{"key":"e_1_3_1_14_2","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2020.2988293"},{"key":"e_1_3_1_15_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2016.09.041"},{"key":"e_1_3_1_16_2","doi-asserted-by":"publisher","DOI":"10.1155\/2021\/3806459"},{"key":"e_1_3_1_17_2","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2019.2891891"},{"key":"e_1_3_1_18_2","doi-asserted-by":"publisher","DOI":"10.3390\/s20020461"},{"key":"e_1_3_1_19_2","doi-asserted-by":"publisher","DOI":"10.13140\/RG.2.2.15858.66241"},{"key":"e_1_3_1_20_2","article-title":"Detection and threat prioritization of pivoting attacks in large networks","author":"Apruzzese Giovanni","year":"2017","unstructured":"Giovanni Apruzzese, Fabio Pierazzi, Michele Colajanni, and Mirco Marchetti. 2017. Detection and threat prioritization of pivoting attacks in large networks. IEEE Transactions on Emerging Topics in Computing 8, 2 (2017), 404\u2013415.","journal-title":"IEEE Transactions on Emerging Topics in Computing"},{"key":"e_1_3_1_21_2","doi-asserted-by":"publisher","DOI":"10.1177\/0967010610382687"},{"key":"e_1_3_1_22_2","doi-asserted-by":"publisher","DOI":"10.1049\/iet-net.2018.5036"},{"key":"e_1_3_1_23_2","doi-asserted-by":"publisher","DOI":"10.1109\/Anti-Cybercrime.2017.7905261"},{"key":"e_1_3_1_24_2","doi-asserted-by":"publisher","DOI":"10.1002\/spe.2688"},{"key":"e_1_3_1_25_2","doi-asserted-by":"publisher","DOI":"10.1002\/spe.2688"},{"key":"e_1_3_1_26_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.iot.2019.100112"},{"key":"e_1_3_1_27_2","doi-asserted-by":"publisher","DOI":"10.1109\/PCCC.2007.358926"},{"key":"e_1_3_1_28_2","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382284"},{"key":"e_1_3_1_29_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-15-7234-0_69"},{"key":"e_1_3_1_30_2","doi-asserted-by":"publisher","DOI":"10.1177\/0967010617748541"},{"key":"e_1_3_1_31_2","first-page":"45","volume-title":"Proceedings of the Graduate Research Conference","author":"Branch Joel","year":"2002","unstructured":"Joel Branch, Alan Bivens, Chi Yu Chan, Taek Kyeun Lee, and Boleslaw K. Szymanski. 2002. Denial of service intrusion detection using time dependent deterministic finite automata. In Proceedings of the Graduate Research Conference. 45\u201351."},{"key":"e_1_3_1_32_2","doi-asserted-by":"publisher","DOI":"10.1109\/INM.2015.7140344"},{"key":"e_1_3_1_33_2","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2019.2896380"},{"key":"e_1_3_1_34_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-44885-4_5"},{"issue":"4","key":"e_1_3_1_35_2","first-page":"1","article-title":"xgboost: Extreme gradient boosting","volume":"1","author":"Chen Tianqi","year":"2015","unstructured":"Tianqi Chen, Tong He, Michael Benesty, Vadim Khotilovich, Yuan Tang, Hyunsu Cho, et\u00a0al. 2015. xgboost: Extreme gradient boosting. R Package Version 0.4-2 1, 4 (2015), 1\u20134.","journal-title":"R Package Version 0.4-2"},{"key":"e_1_3_1_36_2","doi-asserted-by":"publisher","DOI":"10.1109\/JLT.2019.2902487"},{"key":"e_1_3_1_37_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-01581-6"},{"key":"e_1_3_1_38_2","article-title":"Lifelong learning for sentiment classification","author":"Chen Zhiyuan","year":"2018","unstructured":"Zhiyuan Chen, Nianzu Ma, and Bing Liu. 2018. Lifelong learning for sentiment classification. arXiv preprint arXiv:1801.02808 (2018).","journal-title":"arXiv preprint arXiv:1801.02808"},{"key":"e_1_3_1_39_2","first-page":"545","volume-title":"Computational Science and Technology,","author":"Chuan Bernard Lee Jin","year":"2018","unstructured":"Bernard Lee Jin Chuan, Manmeet Mahinderjit Singh, and Azizul Rahman Mohd Shariff. 2018. APTGuard: Advanced persistent threat (APT) detections and predictions using Android smartphone. In Computational Science and Technology,Rayner Alfred, Yuto Lim, Ag Asri Ag Ibrahim, and Patricia Anthony (Eds.). Springer, Singapore, 545\u2013555."},{"key":"e_1_3_1_40_2","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2015.2513672"},{"key":"e_1_3_1_41_2","doi-asserted-by":"publisher","DOI":"10.1109\/PCICON.2005.1524567"},{"key":"e_1_3_1_42_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2019.01.023"},{"key":"e_1_3_1_43_2","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2011.2167156"},{"key":"e_1_3_1_44_2","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2014.2300753"},{"key":"e_1_3_1_45_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNSM.2020.2972405"},{"key":"e_1_3_1_46_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.promfg.2019.02.292"},{"key":"e_1_3_1_47_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICSSA.2016.19"},{"key":"e_1_3_1_48_2","doi-asserted-by":"publisher","DOI":"10.1145\/846183.846199"},{"key":"e_1_3_1_49_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2019.107042"},{"key":"e_1_3_1_50_2","doi-asserted-by":"publisher","DOI":"10.21227\/mbc1-1h68"},{"key":"e_1_3_1_51_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCT52962.2021.9657991"},{"key":"e_1_3_1_52_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2020.102767"},{"key":"e_1_3_1_53_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2008.08.003"},{"key":"e_1_3_1_54_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2014.05.011"},{"issue":"4","key":"e_1_3_1_55_2","first-page":"5054","article-title":"Advanced persistent threat attack detection: An overview","volume":"4","author":"Ghafir Ibrahim","year":"2014","unstructured":"Ibrahim Ghafir and Vaclav Prenosil2014. Advanced persistent threat attack detection: An overview. International Journal of Advances in Computer Networks and Its Security 4, 4 (2014), 5054.","journal-title":"International Journal of Advances in Computer Networks and Its Security"},{"key":"e_1_3_1_56_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.eij.2019.12.001"},{"key":"e_1_3_1_57_2","doi-asserted-by":"publisher","DOI":"10.3390\/fi13080218"},{"key":"e_1_3_1_58_2","doi-asserted-by":"publisher","DOI":"10.1109\/SAR-SSI.2011.5931395"},{"key":"e_1_3_1_59_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2018.03.007"},{"key":"e_1_3_1_60_2","first-page":"281","article-title":"Learning the k in k-means","volume":"16","author":"Hamerly Greg","year":"2004","unstructured":"Greg Hamerly and Charles Elkan. 2004. Learning the k in k-means. Advances in Neural Information Processing Systems 16 (2004), 281\u2013288.","journal-title":"Advances in Neural Information Processing Systems"},{"issue":"3","key":"e_1_3_1_61_2","first-page":"9","article-title":"Application of machine learning approaches in intrusion detection system: A survey","volume":"4","author":"Haq Nutan Farah","year":"2015","unstructured":"Nutan Farah Haq, Abdur Rahman Onik, Avishek Khan Hridoy, Musharrat Rafni, Faisal Muhammad Shah, and Dewan Farid. 2015. Application of machine learning approaches in intrusion detection system: A survey. International Journal of Advanced Research in Artificial Intelligence 4, 3 (2015), 9\u201318.","journal-title":"International Journal of Advanced Research in Artificial Intelligence"},{"key":"e_1_3_1_62_2","volume-title":"A Hybrid Real-Time Intrusion Detection System for an Internet of Things Environment with Signature and Anomaly Based Intrusion Detection","author":"Hasan Maaz","year":"2019","unstructured":"Maaz Hasan. 2019. A Hybrid Real-Time Intrusion Detection System for an Internet of Things Environment with Signature and Anomaly Based Intrusion Detection. Master\u2019s Thesis. National College of Ireland, Dublin. http:\/\/trap.ncirl.ie\/4163\/."},{"key":"e_1_3_1_63_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.iot.2019.100059"},{"key":"e_1_3_1_64_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.iot.2019.100059"},{"key":"e_1_3_1_65_2","doi-asserted-by":"publisher","DOI":"10.4249\/scholarpedia.5947"},{"key":"e_1_3_1_66_2","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1997.9.8.1735"},{"key":"e_1_3_1_67_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00500-020-05373-x"},{"key":"e_1_3_1_68_2","doi-asserted-by":"publisher","DOI":"10.1109\/ECBS.2006.70"},{"key":"e_1_3_1_69_2","doi-asserted-by":"publisher","DOI":"10.1109\/SPACES.2015.7058223"},{"key":"e_1_3_1_70_2","article-title":"A signature-based intrusion detection system for the Internet of Things","author":"Ioulianou Philokypros","year":"2018","unstructured":"Philokypros Ioulianou, Vasileios Vasilakis, Ioannis Moscholios, and Michael Logothetis. 2018. A signature-based intrusion detection system for the Internet of Things. In Proceedings of the Information and Communication Technology Forum.","journal-title":"Proceedings of the Information and Communication Technology Forum."},{"key":"e_1_3_1_71_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2907965"},{"key":"e_1_3_1_72_2","doi-asserted-by":"publisher","DOI":"10.1145\/2906151"},{"key":"e_1_3_1_73_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3029202"},{"key":"e_1_3_1_74_2","doi-asserted-by":"crossref","unstructured":"Atreyi Kankanhalli Yannis Charalabidis and Sehl Mellouli. 2019. IoT and AI for smart government: A research agenda.","DOI":"10.1016\/j.giq.2019.02.003"},{"key":"e_1_3_1_75_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101752"},{"key":"e_1_3_1_76_2","first-page":"1723","volume-title":"Proceedings of the 3rd Annual Conference on Privacy, Security, and Trust","volume":"94","author":"Kayacik H. G\u00fcnes","year":"2005","unstructured":"H. G\u00fcnes Kayacik, A. Nur Zincir-Heywood, and Malcolm I. Heywood. 2005. Selecting features for intrusion detection: A feature relevance analysis on KDD 99 intrusion detection datasets. In Proceedings of the 3rd Annual Conference on Privacy, Security, and Trust, Vol. 94. 1723\u20131722."},{"key":"e_1_3_1_77_2","doi-asserted-by":"publisher","DOI":"10.1186\/s42400-019-0038-7"},{"key":"e_1_3_1_78_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2019.106460"},{"key":"e_1_3_1_79_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijcip.2019.01.001"},{"key":"e_1_3_1_80_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2006.08.004"},{"key":"e_1_3_1_81_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2019.05.041"},{"key":"e_1_3_1_82_2","doi-asserted-by":"publisher","DOI":"10.1007\/s12652-020-02696-3"},{"key":"e_1_3_1_83_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2022.3144208"},{"key":"e_1_3_1_84_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2020.102631"},{"key":"e_1_3_1_85_2","doi-asserted-by":"publisher","DOI":"10.1109\/DESEC.2017.8073874"},{"key":"e_1_3_1_86_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2017.2683200"},{"key":"e_1_3_1_87_2","article-title":"Network in network","author":"Lin Min","year":"2013","unstructured":"Min Lin, Qiang Chen, and Shuicheng Yan. 2013. Network in network. arXiv preprint arXiv:1312.4400 (2013).","journal-title":"arXiv preprint arXiv:1312.4400"},{"key":"e_1_3_1_88_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2017.2707465"},{"key":"e_1_3_1_89_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2014.08.007"},{"key":"e_1_3_1_90_2","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2021.3079504"},{"key":"e_1_3_1_91_2","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2021.3136132"},{"key":"e_1_3_1_92_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICDCSW.2012.23"},{"key":"e_1_3_1_93_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3071263"},{"key":"e_1_3_1_94_2","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2018.2836150"},{"key":"e_1_3_1_95_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNSE.2018.2881152"},{"key":"e_1_3_1_96_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-31328-9"},{"key":"e_1_3_1_97_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3007130"},{"key":"e_1_3_1_98_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2902843"},{"key":"e_1_3_1_99_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICITST.2015.7412116"},{"key":"e_1_3_1_100_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2943249"},{"key":"e_1_3_1_101_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-15-8711-5_11"},{"key":"e_1_3_1_102_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2016.05.018"},{"key":"e_1_3_1_103_2","doi-asserted-by":"crossref","unstructured":"James McCarthy Lauren Acierto Glen Joy Jason Kuruvilla Titilayo Ogunyale Nikolas Urlaub John Wiltberger and Devin Wynne. 2020. Energy Sector Asset Management: For Electric Utilities Oil & Gas Industry . Special Publication (NIST SP): 1800-23. NIST.","DOI":"10.6028\/NIST.SP.1800-23"},{"key":"e_1_3_1_104_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2019.2903242"},{"key":"e_1_3_1_105_2","doi-asserted-by":"publisher","DOI":"10.1109\/MPRV.2018.03367731"},{"key":"e_1_3_1_106_2","volume-title":"Introduction to Linear Regression Analysis","author":"Montgomery Douglas C.","year":"2012","unstructured":"Douglas C. Montgomery, Elizabeth A. Peck, and G. Geoffrey Vining. 2012. Introduction to Linear Regression Analysis. Vol. 821. John Wiley & Sons."},{"key":"e_1_3_1_107_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2844406"},{"key":"e_1_3_1_108_2","doi-asserted-by":"publisher","DOI":"10.1145\/1278972.1278992"},{"key":"e_1_3_1_109_2","doi-asserted-by":"publisher","DOI":"10.1109\/CDC.2018.8619834"},{"key":"e_1_3_1_110_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2932438"},{"key":"e_1_3_1_111_2","doi-asserted-by":"publisher","DOI":"10.23919\/SOFTCOM.2019.8903788"},{"key":"e_1_3_1_112_2","doi-asserted-by":"publisher","DOI":"10.1080\/19393555.2016.1172283"},{"key":"e_1_3_1_113_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2019.00193"},{"key":"e_1_3_1_114_2","doi-asserted-by":"publisher","DOI":"10.3390\/s141224188"},{"key":"e_1_3_1_115_2","doi-asserted-by":"crossref","first-page":"43","DOI":"10.1007\/978-981-15-5495-7_3","volume-title":"Bio-Inspired Neurocomputing","author":"Oniani Salome","year":"2021","unstructured":"Salome Oniani, Gon\u00e7alo Marques, Sophio Barnovi, Ivan Miguel Pires, and Akash Kumar Bhoi. 2021. Artificial intelligence for Internet of Things and enhanced medical systems. In Bio-Inspired Neurocomputing. Springer, 43\u201359."},{"key":"e_1_3_1_116_2","unstructured":"ISO. n.d. Publicly Available Standards . ISO."},{"key":"e_1_3_1_117_2","unstructured":"F. X. Aubet and M. O. Pahl. 2018. DS2OS Traffic Traces. Retrieved April 23 2022 from https:\/\/www.kaggle.com\/francoisxa\/ds2ostraffictraces."},{"key":"e_1_3_1_118_2","doi-asserted-by":"publisher","DOI":"10.1007\/s12530-020-09335-4"},{"key":"e_1_3_1_119_2","doi-asserted-by":"publisher","DOI":"10.1007\/s12652-018-0998-6"},{"key":"e_1_3_1_120_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.compeleceng.2021.107039"},{"key":"e_1_3_1_121_2","doi-asserted-by":"publisher","DOI":"10.1002\/widm.1301"},{"key":"e_1_3_1_122_2","doi-asserted-by":"publisher","DOI":"10.3390\/app10113874"},{"key":"e_1_3_1_123_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-019-04152-6"},{"key":"e_1_3_1_124_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICoDSA53588.2021.9617545"},{"key":"e_1_3_1_125_2","doi-asserted-by":"publisher","DOI":"10.1049\/cp.2018.0003"},{"key":"e_1_3_1_126_2","doi-asserted-by":"publisher","DOI":"10.5367\/000000007780808039"},{"key":"e_1_3_1_127_2","doi-asserted-by":"publisher","DOI":"10.1016\/B978-0-12-818576-6.00006-X"},{"key":"e_1_3_1_128_2","article-title":"Adversarial defense: DGA-based botnets and DNS homographs detection through integrated deep learning","author":"Vinayakumar Ravi","year":"2021","unstructured":"Ravi Vinayakumar, Mamoun Alazab, Sriram Srinivasan, Ajay Arunachalam, and K. P. Soman. 2021. Adversarial defense: DGA-based botnets and DNS homographs detection through integrated deep learning. IEEE Transactions on Engineering Management. Early access, March 12, 2021.","journal-title":"IEEE Transactions on Engineering Management."},{"key":"e_1_3_1_129_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2013.08.007"},{"key":"e_1_3_1_130_2","doi-asserted-by":"publisher","DOI":"10.1109\/HICSS.2015.186"},{"key":"e_1_3_1_131_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2020.113251"},{"key":"e_1_3_1_132_2","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2011.291"},{"key":"e_1_3_1_133_2","first-page":"133","article-title":"Confidentiality and security for IoT based healthcare","author":"Romdhani Imed","year":"2017","unstructured":"Imed Romdhani. 2017. Confidentiality and security for IoT based healthcare. In Securing the Internet of Things. Elsevier, 133\u2013139.","journal-title":"Securing the Internet of Things."},{"key":"e_1_3_1_134_2","doi-asserted-by":"publisher","DOI":"10.1145\/2744769.2747942"},{"key":"e_1_3_1_135_2","doi-asserted-by":"publisher","DOI":"10.1109\/21.97458"},{"key":"e_1_3_1_136_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2015.04.101"},{"key":"e_1_3_1_137_2","doi-asserted-by":"publisher","DOI":"10.3390\/sym12050754"},{"key":"e_1_3_1_138_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-41136-6_5"},{"key":"e_1_3_1_139_2","doi-asserted-by":"publisher","DOI":"10.1145\/3068335"},{"key":"e_1_3_1_140_2","doi-asserted-by":"publisher","DOI":"10.5281\/zenodo.4743746"},{"key":"e_1_3_1_141_2","doi-asserted-by":"publisher","DOI":"10.1109\/WoWMoM.2013.6583465"},{"key":"e_1_3_1_142_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2019.102481"},{"key":"e_1_3_1_143_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2020.02.017"},{"key":"e_1_3_1_144_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2020.02.017"},{"key":"e_1_3_1_145_2","unstructured":"Nataliya Shevchenko Timothy A. Chick Paige O\u2019Riordan Thomas Patrick Scanlon and Carol Woody. 2018. Threat Modeling: A Summary of Available Methods . White Paper. Software Engineering Institute."},{"key":"e_1_3_1_146_2","doi-asserted-by":"publisher","DOI":"10.1109\/IntelliSys.2017.8324298"},{"key":"e_1_3_1_147_2","volume-title":"Proceedings of the 2013 AAAI Spring Symposium Series","author":"Silver Daniel L.","year":"2013","unstructured":"Daniel L. Silver, Qiang Yang, and Lianghao Li. 2013. Lifelong machine learning systems: Beyond learning algorithms. In Proceedings of the 2013 AAAI Spring Symposium Series."},{"key":"e_1_3_1_148_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCTCT.2018.8551181"},{"key":"e_1_3_1_149_2","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2018.2852491"},{"key":"e_1_3_1_150_2","volume-title":"Authentication: from Passwords to Public Keys","author":"Smith Richard E.","year":"2001","unstructured":"Richard E. Smith. 2001. Authentication: from Passwords to Public Keys. Addison Wesley Longman."},{"key":"e_1_3_1_151_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-15-4825-3"},{"key":"e_1_3_1_152_2","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOMWKSHPS50562.2020.9162668"},{"key":"e_1_3_1_153_2","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOMWKSHPS50562.2020.9162661"},{"key":"e_1_3_1_154_2","doi-asserted-by":"publisher","DOI":"10.1007\/s12083-017-0630-0"},{"key":"e_1_3_1_155_2","doi-asserted-by":"publisher","DOI":"10.1016\/S1353-4858(11)70086-1"},{"key":"e_1_3_1_156_2","doi-asserted-by":"publisher","DOI":"10.1016\/S1353-4858(11)70086-1"},{"key":"e_1_3_1_157_2","doi-asserted-by":"publisher","DOI":"10.1109\/tsmcc.2010.2048428"},{"key":"e_1_3_1_158_2","doi-asserted-by":"publisher","DOI":"10.1109\/IISA.2013.6623710"},{"key":"e_1_3_1_159_2","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2019.2907754"},{"key":"e_1_3_1_160_2","doi-asserted-by":"publisher","DOI":"10.1108\/JEIM-10-2020-0395"},{"key":"e_1_3_1_161_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.csi.2013.12.008"},{"key":"e_1_3_1_162_2","doi-asserted-by":"publisher","DOI":"10.1109\/HPEC.2015.7322461"},{"key":"e_1_3_1_163_2","doi-asserted-by":"publisher","DOI":"10.1145\/2716260"},{"key":"e_1_3_1_164_2","doi-asserted-by":"publisher","DOI":"10.1007\/s11042-019-7495-6"},{"key":"e_1_3_1_165_2","doi-asserted-by":"publisher","DOI":"10.1007\/s11277-019-06485-w"},{"key":"e_1_3_1_166_2","doi-asserted-by":"publisher","DOI":"10.1007\/s11277-019-06986-8"},{"key":"e_1_3_1_167_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2895334"},{"key":"e_1_3_1_168_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIA.2020.2971952"},{"key":"e_1_3_1_169_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-13057-2_6"},{"key":"e_1_3_1_170_2","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.2001.924296"},{"key":"e_1_3_1_171_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2950989"},{"key":"e_1_3_1_172_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2019.2951687"},{"key":"e_1_3_1_173_2","doi-asserted-by":"publisher","DOI":"10.1155\/2020\/8838571"},{"key":"e_1_3_1_174_2","first-page":"e6662","article-title":"Botnet attack detection in Internet of Things devices over cloud environment via machine learning","author":"Waqas Muhammad","year":"2021","unstructured":"Muhammad Waqas, Kamlesh Kumar, Asif Ali Laghari, Umair Saeed, Muhammad Malook Rind, Aftab Ahmed Shaikh, Fahad Hussain, Athaul Rai, and Abdul Qayoom Qazi. 2021. Botnet attack detection in Internet of Things devices over cloud environment via machine learning. Concurrency and Computation: Practice and Experience 2021 (2021), e6662.","journal-title":"Concurrency and Computation: Practice and Experience"},{"key":"e_1_3_1_175_2","doi-asserted-by":"publisher","DOI":"10.1109\/TVLSI.2019.2892408"},{"key":"e_1_3_1_176_2","unstructured":"Peter Wei\u00df Bernhard Koelmel and Rebecca Bulander. 2016. Digital service innovation and smart technologies: Developing digital strategies based on Industry 4.0 and product service systems for the renewal energy sector. In Proceedings of the 26th Annual RESER Conference ."},{"key":"e_1_3_1_177_2","doi-asserted-by":"publisher","DOI":"10.1145\/2517312.2517316"},{"key":"e_1_3_1_178_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2884906"},{"key":"e_1_3_1_179_2","doi-asserted-by":"publisher","DOI":"10.1109\/EI2.2017.8245509"},{"key":"e_1_3_1_180_2","article-title":"An efficient one-class SVM for anomaly detection in the Internet of Things","author":"Yang Kun","year":"2021","unstructured":"Kun Yang, Samory Kpotufe, and Nick Feamster. 2021. An efficient one-class SVM for anomaly detection in the Internet of Things. arXiv preprint arXiv:2104.11146 (2021).","journal-title":"arXiv preprint arXiv:2104.11146"},{"key":"e_1_3_1_181_2","doi-asserted-by":"crossref","unstructured":"Ning Ye Yan Zhu Ru-Chuan Wang Reza Malekian and Qiao-Min Lin. 2014. An efficient authentication and access control scheme for perception layer of Internet of Things. Applied Mathematics and Information Sciences 8 4 (2014) 1617\u20131624.","DOI":"10.12785\/amis\/080416"},{"key":"e_1_3_1_182_2","article-title":"Recurrent neural network regularization","author":"Zaremba Wojciech","year":"2014","unstructured":"Wojciech Zaremba, Ilya Sutskever, and Oriol Vinyals. 2014. Recurrent neural network regularization. arXiv preprint arXiv:1409.2329 (2014).","journal-title":"arXiv preprint arXiv:1409.2329"},{"key":"e_1_3_1_183_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2017.02.009"},{"key":"e_1_3_1_184_2","article-title":"A novel framework design of network intrusion detection based on machine learning techniques","volume":"2021","author":"Zhang Chongzhen","year":"2021","unstructured":"Chongzhen Zhang, Yanli Chen, Yang Meng, Fangming Ruan, Runze Chen, Yidan Li, and Yaru Yang. 2021. A novel framework design of network intrusion detection based on machine learning techniques. Security and Communication Networks 2021 (2021), Article 6610675.","journal-title":"Security and Communication Networks"},{"key":"e_1_3_1_185_2","doi-asserted-by":"publisher","DOI":"10.1109\/JAS.2020.1003099"},{"key":"e_1_3_1_186_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2903723"},{"key":"e_1_3_1_187_2","doi-asserted-by":"publisher","DOI":"10.1109\/CIS.2013.145"},{"key":"e_1_3_1_188_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2020.01.032"},{"key":"e_1_3_1_189_2","doi-asserted-by":"publisher","DOI":"10.1109\/GCCE.2016.7800446"},{"key":"e_1_3_1_190_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-22759-7_7"}],"container-title":["ACM Computing Surveys"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3530812","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3530812","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T18:09:25Z","timestamp":1750183765000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3530812"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,12,3]]},"references-count":189,"journal-issue":{"issue":"5","published-print":{"date-parts":[[2023,5,31]]}},"alternative-id":["10.1145\/3530812"],"URL":"https:\/\/doi.org\/10.1145\/3530812","relation":{},"ISSN":["0360-0300","1557-7341"],"issn-type":[{"value":"0360-0300","type":"print"},{"value":"1557-7341","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,12,3]]},"assertion":[{"value":"2021-04-27","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2022-04-06","order":1,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2022-12-03","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}