paper-with-me

Papers

Adaptive Intrusion Detection for Evolving RPL IoT Attacks Using Incremental Learning

2025-11-14 · Sumeyye Bas, Kiymet Kaya, Elif Ak, Sule Gunduz Oguducu arxiv

The routing protocol for low-power and lossy networks (RPL) has become the de facto routing standard for resource-constrained IoT systems, but its lightweight design exposes critical vulnerabilities to a wide range of routing-layer attacks such as hello flood, decreased rank, and version number manipulation. Traditional countermeasures, including protocol-level modifications and machine learning classifiers, can achieve high accuracy against known threats, yet they fail when confronted with novel or zero-day attacks unless fully retrained, an approach that is impractical for dynamic IoT environments. In this paper, we investigate incremental learning as a practical and adaptive strategy for intrusion detection in RPL-based networks. We systematically evaluate five model families, including ensemble models and deep learning models. Our analysis highlights that incremental learning not only restores detection performance on new attack classes but also mitigates catastrophic forgetting of previously learned threats, all while reducing training time compared to full retraining. By combining five diverse models with attack-specific analysis, forgetting behavior, and time efficiency, this study provides systematic evidence that incremental learning offers a scalable pathway to maintain resilient intrusion detection in evolving RPL-based IoT networks.

📄 PDF Abstract BibTeX arXiv:2511.11464

Code (0)

등록된 구현이 없습니다.

Tasks

Incremental LearningIntrusion Detection

Similar Papers 제목 키워드 기반

MI$^2$DAS: A Multi-Layer Intrusion Detection Framework with Incremental Learning for Securing Industrial IoT Networks

2026-02-27 · Wei Lian, Alejandro Guerra-Manzanares arxiv

The rapid expansion of Industrial IoT (IIoT) systems has amplified security challenges, as heterogeneous devices and dynamic traffic patterns increase exposure to sophisticated and previously unseen cyberattacks. Traditi…

Incremental LearningIntrusion Detection

A Novel Online Incremental Learning Intrusion Prevention System

2021-09-20 · Christos Constantinides, Stavros Shiaeles, Bogdan Ghita, Nicholas Kolokotronis

Attack vectors are continuously evolving in order to evade Intrusion Detection systems. Internet of Things (IoT) environments, while beneficial for the IT ecosystem, suffer from inherent hardware limitations, which restr…

Incremental LearningIntrusion Detection

Adaptive Intrusion Detection System Leveraging Dynamic Neural Models with Adversarial Learning for 5G/6G Networks

2025-12-11 · Neha, Tarunpreet Bhatia arxiv

Intrusion Detection Systems (IDS) are critical components in safeguarding 5G/6G networks from both internal and external cyber threats. While traditional IDS approaches rely heavily on signature-based methods, they strug…

Incremental LearningIntrusion Detection

An incremental hybrid adaptive network-based IDS in Software Defined Networks to detect stealth attacks

2024-04-01 · Abdullah H Alqahtani

Network attacks have became increasingly more sophisticated and stealthy due to the advances in technologies and the growing sophistication of attackers. Advanced Persistent Threats (APTs) are a type of attack that imple…

Drift DetectionIntrusion DetectionNetwork Intrusion Detection

Behavior-Aware and Generalizable Defense Against Black-Box Adversarial Attacks for ML-Based IDS

2025-12-15 · Sabrine Ennaji, Elhadj Benkhelifa, Luigi Vincenzo Mancini arxiv

Machine learning based intrusion detection systems are increasingly targeted by black box adversarial attacks, where attackers craft evasive inputs using indirect feedback such as binary outputs or behavioral signals lik…

Change Point DetectionIntrusion DetectionAdversarial Attack