Federated learning for malware detection in IoT devices

计算机科学 恶意软件 联合学习 稳健性(进化) 人工智能 机器学习 背景(考古学) 自编码 对手 深度学习 计算机安全 感知器 人工神经网络 古生物学 生物化学 化学 生物 基因
作者
Valerian Rey,Pedro Miguel Sánchez Sánchez,Alberto Huertas Celdrán,Gérôme Bovet
出处
期刊:Computer Networks [Elsevier BV]
卷期号:204: 108693-108693 被引量:211
标识
DOI:10.1016/j.comnet.2021.108693
摘要

This work investigates the possibilities enabled by federated learning concerning IoT malware detection and studies security issues inherent to this new learning paradigm. In this context, a framework that uses federated learning to detect malware affecting IoT devices is presented. N-BaIoT, a dataset modeling network traffic of several real IoT devices while affected by malware, has been used to evaluate the proposed framework. Both supervised and unsupervised federated models (multi-layer perceptron and autoencoder) able to detect malware affecting seen and unseen IoT devices of N-BaIoT have been trained and evaluated. Furthermore, their performance has been compared to two traditional approaches. The first one lets each participant locally train a model using only its own data, while the second consists of making the participants share their data with a central entity in charge of training a global model. This comparison has shown that the use of more diverse and large data, as done in the federated and centralized methods, has a considerable positive impact on the model performance. Besides, the federated models, while preserving the participant's privacy, show similar results as the centralized ones. As an additional contribution and to measure the robustness of the federated approach, an adversarial setup with several malicious participants poisoning the federated model has been considered. The baseline model aggregation averaging step used in most federated learning algorithms appears highly vulnerable to different attacks, even with a single adversary. The performance of other model aggregation functions acting as countermeasures is thus evaluated under the same attack scenarios. These functions provide a significant improvement against malicious participants, but more efforts are still needed to make federated approaches robust.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
1秒前
Sleep_tight完成签到,获得积分10
4秒前
5秒前
7秒前
9秒前
oym发布了新的文献求助10
10秒前
bone完成签到,获得积分10
11秒前
flybird发布了新的文献求助10
12秒前
123发布了新的文献求助10
12秒前
罐头完成签到,获得积分20
12秒前
13秒前
栀子完成签到 ,获得积分10
13秒前
xixijoy完成签到,获得积分10
13秒前
11发布了新的文献求助10
14秒前
15秒前
烟花的应助被wenwen采纳,获得10
15秒前
pcm完成签到 ,获得积分10
16秒前
chenyvxi完成签到 ,获得积分10
16秒前
菜菜泽发布了新的文献求助10
17秒前
罐头关注了科研通微信公众号
18秒前
你好完成签到,获得积分10
18秒前
王ww完成签到,获得积分10
20秒前
张一迪发布了新的文献求助10
21秒前
tuanheqi的应助被xixijoy采纳,获得200
21秒前
23秒前
李健的粉丝团团长的应助被KK采纳,获得10
23秒前
云云完成签到,获得积分10
23秒前
24秒前
ypres完成签到 ,获得积分0
25秒前
25秒前
陈十三发布了新的文献求助10
28秒前
秋风的应助被coozrasimon采纳,获得10
28秒前
秋风的应助被coozrasimon采纳,获得10
29秒前
29秒前
左左发布了新的文献求助10
30秒前
TimeLeSs发布了新的文献求助10
31秒前
科目三的应助被自由的网络采纳,获得10
32秒前
33秒前
33秒前
高分求助中
(应助此贴封号)通过应助OA文献获取积分 10000
Rosenblum, Global Change Biology 800
Computational Chemical Reaction Engineering: Modeling, Simulation, and Design with MATLAB 600
Organizational Behavior 510
Management and the Arts 510
Production Logging: Theoretical and Interpretive Elements 400
CLSI C56QG Examples of Hemolyzed, Icteric, and Lipemic/Turbid Samples Quick Guide 400
热门求助领域 (近24小时)
化学 材料科学 医学 生物 计算机科学 工程类 纳米技术 内科学 物理 有机化学 化学工程 生物化学 复合材料 光电子学 细胞生物学 心理学 量子力学 催化作用 物理化学 电极
热门帖子
关注 科研通微信公众号,转发送积分 7815254
求助须知:如何正确求助?哪些是违规求助? 9344884
关于积分的说明 20526587
捐赠科研通 7407952
什么是DOI,文献DOI怎么找? 3330903
关于科研通互助平台的介绍 2477377
邀请新用户注册赠送积分活动 2350556