International Peer-Reviewed JournalOpen AccessISSN 2456-8880
irejournals@gmail.com+91-7433024337

Home / Current Issue / Paper 1720213

1720213 Vol 10 · Issue 1 Download Paper

Deep Learning – Based Network Intrusion Detection for Internet of Things (IoT) Using Bidirectional Long Short-Term Memory (BLSTM): A Review

Aleng E. A. Sarjiyus O. Yusufu G.

Subject area: Science,Engineering and Technology  ·  Area of research: Cybersecurity

DOI: https://doi.org/10.64388/IREV10I1-1720213

Abstract

Deep Learning works by copying how the human brain operates. To get these features, the deep learning method uses strong neural network algorithms, like clustering algorithms, Bayesian algorithms, and artificial neural network algorithms. Deep learning algorithms are very powerful in terms of processing power, which makes them better suited for handling complicated and mixed data sets from IoT devices than traditional machine learning methods. The use of deep learning in the Internet of Things, especially when it comes to securing IoT networks, is still in the early stages of research and has a lot of promise for identifying security threats within IoT systems. Even though the structures of recurrent neural networks can be pretty complicated, adjusting the hyper parameters can help make them work well for IoT applications. This idea encourages using deep learning techniques to improve the safety of IoT networks. The fast growth of the Internet of Things (IoT) has created a large area where cyber threats can spread, putting important systems and personal information at risk from more advanced attacks. Traditional network intrusion detection systems (NIDS) use fixed signatures and require manual setup of features. Because of this, they can't find new types of attacks, like zero-day exploits and changing malware, which are common now. The different types of data from IoT devices, which use various communication methods like MQTT and CoAP, move quickly and vary a lot. This makes the data patterns complex and not straight forward, making it hard for regular systems to properly organize or understand them. There is a big need for a detection system that can: look at network traffic as a ongoing, two-way flow to get a complete picture. Lower the number of false alerts that cause "alert fatigue" for network administrators. Work well against the changing and urgent attack methods that are specific to IoT systems. The method to be used for collecting data is the secondary approach. Because I will use literature reviews from other authors to fill in the gap that has been identified. Research shows that there is a big need to develop good Deep Learning models that can detect attacks in data sets. The NSL-KDD dataset will be studied and used to train four different deep learning methods.

Keywords

Artificial Neural Network, Attack Vectors, Cyber Threats, Deep Learning (DL), Internet of Things (IoT), Network Intrusion Detecting System (NIDS) and Polymorphic Malware.

References

[1] E. A. Aleng, S. Omega, and A. M. Michael, "Analysis of Vulnerability Factors and Severity Levels of Ransomware Strike on Organizational Data," IRE Journals, vol. 8, no. 9, pp. 1360– 1367, Mar. 2025. . https:// 7744.

[2] O. Alkadi, N. Moustafa, B. Turnbull, and K. K. R. Choo, "A Deep Blockchain Framework-Enabled Collaborative Intrusion Detection for Protecting IoT and Cloud Networks," IEEE Internet of Things Journal, vol. 8, no. 12, pp. 9463–9472, 2020.

[3] B. Roy, A Deep Learning Approach for Intrusion Detection in Internet of Things Using Bi- Directional Long Short-Term Memory Recurrent Neural Network. School of Computing, Engineering and Mathematics, Dec. 2018.

[4] I. Hafeez, M. Antikainen, A. Y. Ding, and S. Tarkoma, "IoT-KEEPER: Detecting Malicious IoT Network Activity Using Online Traffic Analysis at the Edge," IEEE Transactions on Network and Service Management, vol. 17, no. 1, pp. 45–59, Mar. 2020.

[5] N. Islam, F. Farhin, I. Sultana, M. S. Kaiser, M. S. Rahman, M. Mahmud, A. S. Hosen, and G. H. Cho, "Towards Machine Learning Based Intrusion Detection in IoT Networks," Computers, Materials & Continua, vol. 69, no. 2, pp. 1801–1821, 2021.

[6] J. L. Leevy and T. M. Khoshgoftaar, "A Survey and Analysis of Intrusion Detection Models Based on CSE-CIC-IDS2018 Big Data," Journal of Big Data, vol. 7, no. 1, pp. 1–19, 2020.

[7] J. R. Vacca, Network and System Security. Elsevier, 2013.

[8] J. Yin, M. Tang, J. Cao, H. Wang, M. You, and Y. Lin, "Vulnerability Exploitation Time Prediction: An Integrated Framework for Dynamic Imbalanced Learning," World Wide Web, pp. 1–23, 2021.

[9] J. Yin, M. Tang, J. Cao, M. You, H. Wang, and M. Alazab, "Knowledge-Driven Cybersecurity Intelligence: Software Vulnerability Co- Exploitation Behaviour Discovery," IEEE Transactions on Industrial Informatics, pp. 1–9, 2022.

[10] M. A. Ferrag, L. Maglaras, S. Moschoyiannis, and H. Janicke, "Deep Learning for Cyber Security Intrusion Detection: Approaches, Datasets, and Comparative Study," Journal of Information Security and Applications, vol. 50, p. 102419, 2020.

[11] M. A. Hawawreh, N. Moustafa, and E. Sitnikova, "Identification of Malicious Activities in Industrial Internet of Things Based on Deep Learning Models," Journal of Information Security and Applications, vol. 41, pp. 1–11, Aug. 2018.

[12] M. Fichtenkamm, G. F. Burch, and J. Burch, "Cybersecurity in a COVID-19 World: Insights on How Decisions Are Made," ISACA Journal, 2022.

[13] M. J. Page et al., "Updating Guidance for Reporting Systematic Reviews: Development of the PRISMA 2020 Statement," Journal of Clinical Epidemiology, vol. 134, pp. 103–112, Feb. 2021.

[14] M. S. Kumar, J. Ben-Othman, and K. Srinivasagan, "An Investigation on WannaCry Ransomware and Its Detection," in Proc. IEEE Symposium on Computers and Communications (ISCC), 2018, pp. 1–6.

[15] M. Tavallaee, E. Bagheri, W. Lu, and A. A. Ghorbani, "A Detailed Analysis of the KDD CUP 99 Data Set," in Proc. IEEE Symposium on Computational Intelligence for Security and Defense Applications, Ottawa, ON, Canada, 2009, pp. 1–6.

[16] M. Rahman Shahid, Deep Learning for Internet of Things (IoT) Network Security. Institut Polytechnique de Paris, 2021. NNT: 2021IPPAS003. tel-03193266.

[17] N. Dash, S. Chakravarty, A. K. Rath, N. C. Giri, K. M. AboRas, and N. Gowtham, "An Optimized LSTM-Based Deep Learning Model for Anomaly Network Intrusion Detection," Scientific Reports, vol. 15, p. 1554, 2025. https://

[18] Y. Otoum, D. Liu, and A. Nayak, "DL-IDS: A Deep Learning-Based Intrusion Detection Framework for Securing IoT," Transactions on IRE 1720213 ICONIC RESEARCH AND E NGINEERING JOURNALS 3721 Emerging Telecommunications Technologies, vol. 33, no. 3, p. e3803, 2022.

[19] P. Vimalachandran, H. Liu, Y. Lin, K. Ji, H. Wang, and Y. Zhang, "Improving Accessibility of the Australian My Health Records While Preserving Privacy and Security of the System," Health Information Science and Systems, vol. 8, no. 1, pp. 1–9, 2020.

[20] H. Qiu, T. Dong, T. Zhang, J. Lu, G. Memmi, and M. Qiu, "Adversarial Attacks Against Network Intrusion Detection in IoT Systems," IEEE Internet of Things Journal, vol. 8, no. 13, pp. 10327–10335, 2020.

[21] M. A. Rahman, A. T. Asyhari, O. W. Wen, H. Ajra, Y. Ahmed, and F. Anwar, "Effective Combining of Feature Selection Techniques for Machine Learning-Enabled IoT Intrusion Detection," Multimedia Tools and Applications, vol. 80, no. 20, pp. 31381–31399, 2021.

[22] S. M. Kasongo and Y. Sun, "A Deep Learning Method With Filter Based Feature Engineering for Wireless Intrusion Detection System," IEEE Access, vol. 7, pp. 38597–38607, 2019.

[23] S. T. Brugger and J. Chow, "An Assessment of the DARPA IDS Evaluation Dataset Using Snort," UCDAVIS Department of Computer Science, vol. 1, p. 22, 2007.

[24] O. Sarjiyus, M. B. El-yakub, and E. A. Aleng, "Interlayered Security Model for Cloud Computing in Internet of Things (IoT) Domain," Journal of American Science, vol. 21, no. 8, pp. 30–41, 2025. (Print), (Online).

[25] J. Shareena, A. Ramdas, and H. AP, "Intrusion Detection System for IoT Botnet Attacks Using Deep Learning," SN Computer Science, vol. 2, no. 3, pp. 1–8, 2021.

[26] N. Shone, T. N. Ngoc, V. D. Phai, and Q. Shi, "A Deep Learning Approach to Network Intrusion Detection," IEEE Transactions on Emerging Topics in Computational Intelligence, vol. 2, no. 1, pp. 41–50, 2018.

[27] T. Huang, Y. J. Gong, W. N. Chen, H. Wang, J. Zhang, "A Probabilistic Niching Evolutionary Computation Framework Based on Binary Space Partitioning," IEEE Transactions on Cybernetics, vol. 52, no. 1, pp. 51–64, 2022.

[28] G. Thamilarasu and S. Chawla, "Towards Deep- Learning-Driven Intrusion Detection for the Internet of Things," Sensors, vol. 19, no. 9, p. 1977, 2019.

[29] Y. Zhang, Y. Shen, H. Wang, Y. Zhang, and X. Jiang, "On Secure Wireless Communications for Service-Oriented Computing," IEEE Transactions on Services Computing, vol. 11, no. 2, pp. 318–328, 2015.

[30] Y. S. Almutairi, B. Alhazmi, and A. A. Munshi, "Network Intrusion Detection Using Machine Learning Techniques," Advances in Science and Technology Research Journal, vol. 16, no. 3, pp. 193 –206, 2022. https://

[31] M. Zeeshan, Q. Riaz, M. A. Bilal, M. K. Shahzad, H. Jabeen, S. A. Haider, and A. Rahim, "Protocol-Based Deep Intrusion Detection for DoS and DDoS Attacks Using UNSW-NB15 and Bot-IoT Data-Sets," IEEE Access, vol. 10, pp. 2269–2283, 2021.

[32] Y. Zhang, P. Li, and X. Wang, "Intrusion Detection for IoT Based on Improved Genetic Algorithm and Deep Belief Network," IEEE Access, vol. 7, pp. 31711–31722, 2019.

How to cite this paper

Aleng E. A., Sarjiyus O., Yusufu G. "Deep Learning – Based Network Intrusion Detection for Internet of Things (IoT) Using Bidirectional Long Short-Term Memory (BLSTM): A Review" Iconic Research And Engineering Journals Volume 10 Issue 1 2026 Page 3707-3721 https://doi.org/10.64388/IREV10I1-1720213
Aleng E. A., Sarjiyus O., Yusufu G. "Deep Learning – Based Network Intrusion Detection for Internet of Things (IoT) Using Bidirectional Long Short-Term Memory (BLSTM): A Review" Iconic Research And Engineering Journals, vol. 10, no. 1, Jul. 2026, doi: https://doi.org/10.64388/IREV10I1-1720213
Aleng E. A., Sarjiyus O., Yusufu G. (2026). Deep Learning – Based Network Intrusion Detection for Internet of Things (IoT) Using Bidirectional Long Short-Term Memory (BLSTM): A Review. Iconic Research And Engineering Journals, 10(1). doi: https://doi.org/10.64388/IREV10I1-1720213
Aleng E. A., Sarjiyus O., Yusufu G. "Deep Learning – Based Network Intrusion Detection for Internet of Things (IoT) Using Bidirectional Long Short-Term Memory (BLSTM): A Review" Iconic Research And Engineering Journals, vol. 10, no. 1, Jul. 2026. Crossref, https://doi.org/10.64388/IREV10I1-1720213
@article{1720213,
      author = {Aleng E. A., Sarjiyus O., Yusufu G.},
      title = {Deep Learning – Based Network Intrusion Detection for Internet of Things (IoT) Using Bidirectional Long Short-Term Memory (BLSTM): A Review},
      journal = {Iconic Research And Engineering Journals},
      year = {2026},
      volume = {10},
      number = {1},
      pages = {3707-3721},
      issn = {2456-8880},
      url = {https://www.irejournals.com/formatedpaper/1720213.pdf},
      abstract = {Deep Learning works by copying how the human brain operates. To get these features, the deep learning method uses strong neural network algorithms, like clustering algorithms, Bayesian algorithms, and artificial neural network algorithms. Deep learning algorithms are very powerful in terms of processing power, which makes them better suited for handling complicated and mixed data sets from IoT devices than traditional machine learning methods. The use of deep learning in the Internet of Things, especially when it comes to securing IoT networks, is still in the early stages of research and has a lot of promise for identifying security threats within IoT systems. Even though the structures of recurrent neural networks can be pretty complicated, adjusting the hyper parameters can help make them work well for IoT applications. This idea encourages using deep learning techniques to improve the safety of IoT networks. The fast growth of the Internet of Things (IoT) has created a large area where cyber threats can spread, putting important systems and personal information at risk from more advanced attacks. Traditional network intrusion detection systems (NIDS) use fixed signatures and require manual setup of features. Because of this, they can't find new types of attacks, like zero-day exploits and changing malware, which are common now. The different types of data from IoT devices, which use various communication methods like MQTT and CoAP, move quickly and vary a lot. This makes the data patterns complex and not straight forward, making it hard for regular systems to properly organize or understand them. There is a big need for a detection system that can: look at network traffic as a ongoing, two-way flow to get a complete picture. Lower the number of false alerts that cause "alert fatigue" for network administrators. Work well against the changing and urgent attack methods that are specific to IoT systems. The method to be used for collecting data is the secondary approach. Because I will use literature reviews from other authors to fill in the gap that has been identified. Research shows that there is a big need to develop good Deep Learning models that can detect attacks in data sets. The NSL-KDD dataset will be studied and used to train four different deep learning methods.},
      keywords = {Artificial Neural Network, Attack Vectors, Cyber Threats, Deep Learning (DL), Internet of Things (IoT), Network Intrusion Detecting System (NIDS) and Polymorphic Malware.},
      month = {July},
      doi = {https://doi.org/10.64388/IREV10I1-1720213}
  }