FLEAM: A Federated Learning Empowered Architecture to Mitigate DDoS in Industrial IoT
Version 2 2024-06-05, 12:27Version 2 2024-06-05, 12:27
Version 1 2021-06-21, 12:41Version 1 2021-06-21, 12:41
journal contribution
posted on 2024-06-05, 12:27authored byJack LiJack Li, L Lyu, X Liu, X Zhang, X Lyu
Due to resource constraints and working surroundings, many IIoT nodes are easily hacked and turn into zombies from which to launch attacks. It is challenging to detect such networked zombies. We combine federated learning (FL) and fog/edge computing to combat malicious codes. Our protocol trains a global optimized model based on distributed datasets of collaborators while removing the data and communication constraints. The FL-based detection protocol maximizes the value of distributed data samples, resulting in an accurate model timely. On top of the protocol, we place mitigation intelligence in a distributed and collaborative manner. Our approach improves accuracy, eliminates mitigation time, and enlarges attackers' expense. Comprehensive evaluations showcase that the attacking cost incurred is 2.5 times higher, the mitigation delay is about 72% lower, and the accuracy is 47% greater on average than classic solutions. Besides, the protocol evaluation shows the detection accuracy is approximately 98% in the FL.