Intrusion detection is the process of monitoring network traffic or system activity to identify unauthorized access, policy violations, or malicious behavior. Intrusion detection systems are generally classified as signature-based, which match activity against known attack patterns, or anomaly-based, which flag deviations from an established baseline of normal behavior and can therefore detect previously unseen attacks. Deployment architectures include network-based systems that inspect traffic at chokepoints and host-based systems that monitor activity on individual machines, often combined in layered defense strategies. Recent research combining machine learning with IoT network traffic has reported detection accuracy above 99 percent on benchmark datasets such as IoTID20, alongside a broader shift toward deep learning architectures, including transformers, for more effective pattern recognition. Other active areas include federated learning approaches and detecting intrusions in encrypted traffic and industrial control systems. As an open-access intrusion detection journal, IJACSA publishes research evaluating intrusion detection models against benchmark datasets, alongside applied detection systems for specific network environments.
Published in International Journal of Advanced Computer Science and Applications (IJACSA)
· list last refreshed September 2026
The rapid expansion of 5G enabled Vehicle to Everything (V2X) communication has evolved into an intelligent transportation system by supporting applications such as autonomous driving, real-time traffic optimization, and…
Underwater Wireless Sensor Networks (UWSNs) are commonly employed for exploring and exploiting aquatic areas, and its role is very important and more beneficial precisely in hostile and constrained marine environments. H…
Address Resolution Protocol (ARP) is a standard protocol used to map an IP address to its MAC address so the network can send packets to its destination. Office networks, which typically have limited network resources, a…
The increasing interconnectivity of smart grids exposes critical energy infrastructure to more sophisticated cyber threats, necessitating adaptable and auditable security measures. This study presents a blockchain-enable…
In the last few years, cyberattacks have become more complex, and it is becoming increasingly necessary to establish secure networks. This study examines enhancements to intrusion detection systems (IDSs) with the implem…
Intrusion Detection Systems (IDS) play a critical role in identifying potential threats and intrusions in real-time within information technology infrastructures. The development of IDS using Deep Neural Networks (DNN) w…
Detecting rare and subtle anomalies is critical for ensuring cybersecurity, financial integrity, and operational safety. High-dimensional features, severe class imbalance, and large data volumes often challenge conventio…
This study proposes a Q-learning-based adaptive duty cycle scheduling algorithm for LoRaWAN in a smart city eco-system to enhance the energy efficiency, reduce transmission delay, and handle dynamic traffic conditions. A…
Software-Defined Networking (SDN) promises flexible control of network flows but also exposes controllers to rapidly shifting attack surfaces. Conventional intrusion-detection engines, trained once and deployed staticall…
The widespread deployment of Industrial Internet of Things (IIoT) devices creates an urgent need for effective intrusion detection systems (IDS). However, two critical challenges limit current approaches: severe class im…