Targeted Adversarial Traffic Generation : Black-box Approach to Evade Intrusion Detection Systems in IoT Networks

📅 2026-03-24
📈 Citations: 0
✨ Influential: 0
📄 PDF
🤖 AI Summary
This work addresses the vulnerability of existing IoT intrusion detection systems (IDS) to black-box adversarial attacks under real-world deployment constraints, a challenge often overlooked in prior research. The authors propose a practical black-box adversarial attack method that generates highly stealthy adversarial traffic without access to internal model information, effectively exposing the fragility of mainstream IoT IDS. To counter this threat, they also design a lightweight defense mechanism that significantly enhances system robustness against such attacks. Experimental results demonstrate that the proposed attack achieves high success rates in realistic settings, while the defense effectively identifies the majority of adversarial samples and outperforms existing approaches in both efficacy and efficiency, thereby bridging the critical gap between theoretical security research and practical deployment requirements.

Technology Category

Computer Vision: Adversarial Attacks & RobustnessMachine Learning: Adversarial Learning & RobustnessMultiagent Systems: Adversarial Agents

Application Category

User Modeling, Personalization and Recommendation: Attacks and countermeasures in recommendation systemsSystems and Infrastructure for Web, Mobile and WoT: Applied ML and AI for Web-based mobile applicationsSecurity and Privacy: Large-scale security measurements
📝 Abstract
The integration of machine learning (ML) algorithms into Internet of Things (IoT) applications has introduced significant advantages alongside vulnerabilities to adversarial attacks, especially within IoT-based intrusion detection systems (IDS). While theoretical adversarial attacks have been extensively studied, practical implementation constraints have often been overlooked. This research addresses this gap by evaluating the feasibility of evasion attacks on IoT network-based IDSs, employing a novel black-box adversarial attack. Our study aims to bridge theoretical vulnerabilities with real-world applicability, enhancing understanding and defense against sophisticated threats in modern IoT ecosystems. Additionally, we propose a defense scheme tailored to mitigate the impact of evasion attacks, thereby reinforcing the resilience of ML-based IDSs. Our findings demonstrate successful evasion attacks against IDSs, underscoring their susceptibility to advanced techniques. In contrast, we proposed a defense mechanism that exhibits robust performance by effectively detecting the majority of adversarial traffic, showcasing promising outcomes compared to current state-of-the-art defenses. By addressing these critical cybersecurity challenges, our research contributes to advancing IoT security and provides insights for developing more resilient IDS.
Problem

Research questions and friction points this paper is trying to address.

adversarial attacks
intrusion detection systems
IoT security
evasion attacks
black-box attacks
Innovation

Methods, ideas, or system contributions that make the work stand out.

black-box adversarial attack
IoT intrusion detection
evasion attack
adversarial traffic generation
ML-based IDS defense
🔎 Similar Papers
No similar papers found.
💼 Related Jobs
No related jobs found.
I
Islam Debicha
Computer Security Laboratory, Ecole Militaire Polytechnique, Algeria.
T
Tayeb Kenaza
Computer Security Laboratory, Ecole Militaire Polytechnique, Algeria.
I
Ishak Charfi
Computer Security Laboratory, Ecole Militaire Polytechnique, Algeria.
S
Salah Mosbah
Computer Security Laboratory, Ecole Militaire Polytechnique, Algeria.
M
Mehdi Sehaki
Computer Security Laboratory, Ecole Militaire Polytechnique, Algeria.
J
Jean-Michel Dricot
Cybersecurity Research Center, Université Libre de Bruxelles, Belgium.