{"id":"https://openalex.org/W4408622805","doi":"https://doi.org/10.1145/3725216","title":"Multi-Stage Enhanced Zero Trust Intrusion Detection System for Unknown Attack Detection in Internet of Things and Traditional Networks","display_name":"Multi-Stage Enhanced Zero Trust Intrusion Detection System for Unknown Attack Detection in Internet of Things and Traditional Networks","publication_year":2025,"publication_date":"2025-03-19","ids":{"openalex":"https://openalex.org/W4408622805","doi":"https://doi.org/10.1145/3725216"},"language":"en","primary_location":{"id":"doi:10.1145/3725216","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3725216","pdf_url":null,"source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1145/3725216","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5037681499","display_name":"Malek Al\u2010Zewairi","orcid":"https://orcid.org/0000-0002-6694-9193"},"institutions":[{"id":"https://openalex.org/I158749337","display_name":"Princess Sumaya University for Technology","ror":"https://ror.org/01jy46q10","country_code":"JO","type":"education","lineage":["https://openalex.org/I158749337"]}],"countries":["JO"],"is_corresponding":true,"raw_author_name":"Malek Al-Zewairi","raw_affiliation_strings":["Department of Computer Science, Princess Sumaya University for Technology","Department of Computer Science, Princess Sumaya University for Technology, Amman, Jordan"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Princess Sumaya University for Technology","institution_ids":["https://openalex.org/I158749337"]},{"raw_affiliation_string":"Department of Computer Science, Princess Sumaya University for Technology, Amman, Jordan","institution_ids":["https://openalex.org/I158749337"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5088989835","display_name":"Sufyan Almajali","orcid":"https://orcid.org/0000-0001-9076-3519"},"institutions":[{"id":"https://openalex.org/I158749337","display_name":"Princess Sumaya University for Technology","ror":"https://ror.org/01jy46q10","country_code":"JO","type":"education","lineage":["https://openalex.org/I158749337"]}],"countries":["JO"],"is_corresponding":false,"raw_author_name":"Sufyan Almajali","raw_affiliation_strings":["Department of Computer Science, Princess Sumaya University for Technology","Department of Computer Science, Princess Sumaya University for Technology, Amman Jordan"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Princess Sumaya University for Technology","institution_ids":["https://openalex.org/I158749337"]},{"raw_affiliation_string":"Department of Computer Science, Princess Sumaya University for Technology, Amman Jordan","institution_ids":["https://openalex.org/I158749337"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5050702557","display_name":"Moussa Ayyash","orcid":"https://orcid.org/0000-0003-0868-143X"},"institutions":[{"id":"https://openalex.org/I74234424","display_name":"Chicago State University","ror":"https://ror.org/05ekwbr88","country_code":"US","type":"education","lineage":["https://openalex.org/I74234424"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Moussa Ayyash","raw_affiliation_strings":["Department of Computing, Information, and Mathematical Sciences and Technology, Chicago State University","Department of Computing, Information, and Mathematical Sciences and Technology, Chicago State University, Chicago, United States"],"affiliations":[{"raw_affiliation_string":"Department of Computing, Information, and Mathematical Sciences and Technology, Chicago State University","institution_ids":["https://openalex.org/I74234424"]},{"raw_affiliation_string":"Department of Computing, Information, and Mathematical Sciences and Technology, Chicago State University, Chicago, United States","institution_ids":["https://openalex.org/I74234424"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017529726","display_name":"Mohamed Rahouti","orcid":"https://orcid.org/0000-0001-9701-5505"},"institutions":[{"id":"https://openalex.org/I164389053","display_name":"Fordham University","ror":"https://ror.org/03qnxaf80","country_code":"US","type":"education","lineage":["https://openalex.org/I164389053"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mohamed Rahouti","raw_affiliation_strings":["Department of Computer and Information Science, Fordham University","Computer and Information Science, Fordham University, New York, United States"],"affiliations":[{"raw_affiliation_string":"Department of Computer and Information Science, Fordham University","institution_ids":["https://openalex.org/I164389053"]},{"raw_affiliation_string":"Computer and Information Science, Fordham University, New York, United States","institution_ids":["https://openalex.org/I164389053"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058601659","display_name":"Fernando Martinez Lopez","orcid":"https://orcid.org/0009-0007-2208-2691"},"institutions":[{"id":"https://openalex.org/I164389053","display_name":"Fordham University","ror":"https://ror.org/03qnxaf80","country_code":"US","type":"education","lineage":["https://openalex.org/I164389053"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Fernando Martinez","raw_affiliation_strings":["Department of Computer and Information Science, Fordham University","Computer and Information Science, Fordham University, New York, United States"],"affiliations":[{"raw_affiliation_string":"Department of Computer and Information Science, Fordham University","institution_ids":["https://openalex.org/I164389053"]},{"raw_affiliation_string":"Computer and Information Science, Fordham University, New York, United States","institution_ids":["https://openalex.org/I164389053"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5032153224","display_name":"Nordine Quadar","orcid":"https://orcid.org/0009-0002-0782-5825"},"institutions":[{"id":"https://openalex.org/I51768193","display_name":"Royal Military College of Canada","ror":"https://ror.org/04yr71909","country_code":"CA","type":"education","lineage":["https://openalex.org/I51768193"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Nordine Quadar","raw_affiliation_strings":["Royal Military College of Canada","Royal Military College of Canada,  Kingston, Canada"],"affiliations":[{"raw_affiliation_string":"Royal Military College of Canada","institution_ids":["https://openalex.org/I51768193"]},{"raw_affiliation_string":"Royal Military College of Canada,  Kingston, Canada","institution_ids":["https://openalex.org/I51768193"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5037681499"],"corresponding_institution_ids":["https://openalex.org/I158749337"],"apc_list":null,"apc_paid":null,"fwci":14.8876,"has_fulltext":false,"cited_by_count":10,"citation_normalized_percentile":{"value":0.98828938,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":99,"max":100},"biblio":{"volume":"28","issue":"3","first_page":"1","last_page":"28"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9973999857902527,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.7529967427253723},{"id":"https://openalex.org/keywords/internet-of-things","display_name":"Internet of Things","score":0.6702304482460022},{"id":"https://openalex.org/keywords/zero","display_name":"Zero (linguistics)","score":0.5956526398658752},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5938390493392944},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5390379428863525},{"id":"https://openalex.org/keywords/stage","display_name":"Stage (stratigraphy)","score":0.5291828513145447},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.4793063700199127},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.38915085792541504},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.3820013999938965},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.14819109439849854},{"id":"https://openalex.org/keywords/philosophy","display_name":"Philosophy","score":0.0653957724571228}],"concepts":[{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.7529967427253723},{"id":"https://openalex.org/C81860439","wikidata":"https://www.wikidata.org/wiki/Q251212","display_name":"Internet of Things","level":2,"score":0.6702304482460022},{"id":"https://openalex.org/C2780813799","wikidata":"https://www.wikidata.org/wiki/Q3274237","display_name":"Zero (linguistics)","level":2,"score":0.5956526398658752},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5938390493392944},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5390379428863525},{"id":"https://openalex.org/C146357865","wikidata":"https://www.wikidata.org/wiki/Q1123245","display_name":"Stage (stratigraphy)","level":2,"score":0.5291828513145447},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.4793063700199127},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.38915085792541504},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.3820013999938965},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.14819109439849854},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0653957724571228},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3725216","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3725216","pdf_url":null,"source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1145/3725216","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3725216","pdf_url":null,"source":{"id":"https://openalex.org/S4210174050","display_name":"ACM Transactions on Privacy and Security","issn_l":"2471-2566","issn":["2471-2566","2471-2574"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Privacy and Security","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":39,"referenced_works":["https://openalex.org/W66443818","https://openalex.org/W2245674058","https://openalex.org/W2256272517","https://openalex.org/W2592949994","https://openalex.org/W2604105233","https://openalex.org/W2617611223","https://openalex.org/W2783796368","https://openalex.org/W2789828921","https://openalex.org/W2807319534","https://openalex.org/W2891440823","https://openalex.org/W2896320036","https://openalex.org/W2904539465","https://openalex.org/W2949695962","https://openalex.org/W2953448948","https://openalex.org/W2963748489","https://openalex.org/W2968503817","https://openalex.org/W2969699559","https://openalex.org/W2993981006","https://openalex.org/W2999585430","https://openalex.org/W3017794714","https://openalex.org/W3025093231","https://openalex.org/W3032021129","https://openalex.org/W3043103359","https://openalex.org/W3087470167","https://openalex.org/W3107839347","https://openalex.org/W3160220648","https://openalex.org/W4210452507","https://openalex.org/W4306827119","https://openalex.org/W4309173386","https://openalex.org/W4319863504","https://openalex.org/W4321016094","https://openalex.org/W4381568796","https://openalex.org/W4381744952","https://openalex.org/W4385385057","https://openalex.org/W4385586725","https://openalex.org/W4388766911","https://openalex.org/W4390561469","https://openalex.org/W4392746143","https://openalex.org/W4392924228"],"related_works":["https://openalex.org/W4245926026","https://openalex.org/W4311097251","https://openalex.org/W2586548817","https://openalex.org/W2625093826","https://openalex.org/W4200598720","https://openalex.org/W2921026492","https://openalex.org/W4247463117","https://openalex.org/W4361251261","https://openalex.org/W3031181660","https://openalex.org/W2329386257"],"abstract_inverted_index":{"Detecting":[0],"unknown":[1,26,48,52,149],"cyberattacks":[2],"remains":[3],"an":[4,72,152],"open":[5],"research":[6,14],"problem":[7],"and":[8,16,35,51,94,118,144,155,160],"a":[9,64,87,100,165],"significant":[10,139],"challenge":[11],"for":[12,71,148,169],"the":[13,17,23,30,112,135],"community":[15],"security":[18],"industry.":[19],"This":[20,162],"article":[21],"tackles":[22],"detection":[24,74,106],"of":[25,32,47],"cybersecurity":[27,171],"attacks":[28,49,53],"in":[29,99,141,172],"Internet":[31],"Things":[33],"(IoT)":[34],"traditional":[36],"networks":[37],"by":[38],"categorizing":[39],"them":[40],"into":[41],"two":[42,92],"types:":[43],"entirely":[44],"new":[45],"classes":[46,57],"(type-A)":[50],"within":[54],"already":[55],"known":[56],"(type-B).":[58],"To":[59],"address":[60],"this,":[61],"we":[62],"propose":[63],"novel":[65],"multi-stage,":[66],"multi-layer":[67],"zero":[68],"trust":[69],"architecture":[70,85],"intrusion":[73],"system":[75,137],"(IDS),":[76],"uniquely":[77],"designed":[78],"to":[79,122],"handle":[80],"these":[81],"attack":[82,120],"types.":[83],"The":[84],"employs":[86],"hybrid":[88],"methodology":[89],"that":[90],"combines":[91],"supervised":[93],"one":[95],"unsupervised":[96],"learning":[97],"stages":[98],"funnel-like":[101],"design,":[102],"significantly":[103],"advancing":[104],"current":[105],"capabilities.":[107],"A":[108],"key":[109],"innovation":[110],"is":[111],"layered":[113],"filtering":[114],"mechanism,":[115],"leveraging":[116],"type-A":[117],"type-B":[119],"concepts":[121],"systematically":[123],"classify":[124],"traffic":[125],"as":[126],"malicious":[127],"unless":[128],"proven":[129],"otherwise.":[130],"Using":[131],"four":[132],"benchmark":[133],"datasets,":[134],"proposed":[136],"demonstrates":[138],"improvements":[140],"accuracy,":[142],"recall,":[143],"error":[145],"classification":[146],"rates":[147],"attacks,":[150],"achieving":[151],"average":[153],"accuracy":[154],"recall":[156],"ranging":[157],"between":[158],"88%":[159],"95%.":[161],"work":[163],"offers":[164],"robust,":[166],"scalable":[167],"framework":[168],"enhancing":[170],"diverse":[173],"network":[174],"environments.":[175]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":7}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
