IoT Threat Mitigation: Machine Learning-Assisted Heavy Hitter Detection in P4-Enabled Networks
Mehrdad Hooshangi-Naghani, Negar Rezaei, Mahdi Dolati, Ahmad Khonsari, Seyed Hamed Rastegar · 2024
The Internet of Things (IoT) is crucial in various sectors, making IoT networks prime targets for denial of service attacks. Detecting heavy hitters—primary sources of such attacks—is essential for network security. We address this in IoT gateway networks, where direct traffic measurement faces privacy and scalability issues. Existing methods like sampling and sketch-based approaches suffer from information loss and inflexibility. We propose a two-step scheme: a Convolutional Neural Network (CNN) selects relevant gateways, followed by a tomography-based approach to identify heavy hitters. Our data collection framework uses SNMP and P4 technologies for enhanced flexibility and accuracy. Extensive numerical evaluations demonstrate the proposed algorithm’s effectiveness in accurately identifying heavy hitters, despite potential estimation errors in the tomography method.