A Two-Tier Hybrid Intrusion Detection System for IoT Networks

Authors

  • Wong Zoey, Yu Watanabe, Elena Loh Venyi School of Computer Science, Taylor’s University, Subang Jaya 47500, Selangor Malaysia
  • Wong Yong Jing, Siew Ryan, Pee Tze Hern School of Computer Science, Taylor’s University, Subang Jaya 47500, Selangor Malaysia
  • Teh Yu Xiang, Siva Raja Sindiramutty School of Computer Science, Taylor’s University, Subang Jaya 47500, Selangor Malaysia

DOI:

https://doi.org/10.54938/ijemdcsai.2026.04.2.660

Keywords:

Intrusion Detection System (IDS), Internet of Things (IoT), Hybrid Machine Learning, Random Forest, Neural Network

Abstract

The rapid growth of Internet of Things (IoT) devices has made modern attacks more vulnerable to cyberattacks. Traditional signature-based Intrusion Detection Systems (IDS) are no longer enough to keep up with new and evolving threats. Although machine learning and deep learning have improved detection accuracy, many AI-driven IDS models still face major issues. They often struggle to detect zero-day attacks, produce high false-positive rates and perform poorly with imbalanced datasets. Some models are also too computationally heavy to run efficiently in real time. To address these weaknesses, this research proposes a two-tier hybrid IDS that uses a Random Forest model for quick initial detection and a Neural Network for deeper analysis of suspicious traffic. A confidence threshold of 0.8 is used to decide whether traffic should be accepted or sent for further inspection. Using the NSL-KDD dataset, the system includes preprocessing steps such as binary mapping and structured feature extraction to support both detection stages. Our comparative analysis shows that this hybrid approach can achieve better accuracy, fewer false alarms, and stronger detection of unknown attacks compared to existing Machine Learning / Deep Learning IDS methods. It is more practical for large, diverse IoT environments because it reduces computational load while maintaining strong detection capability. Overall, the proposed architecture provides a balanced and efficient solution that overcomes key limitations of existing IDS models and offers a pathway towards a more robust real-time IoT intrusion detection.

Downloads

Published

2026-07-15

How to Cite

Wong Zoey, Yu Watanabe, Elena Loh Venyi, Wong Yong Jing, Siew Ryan, Pee Tze Hern, & Teh Yu Xiang, Siva Raja Sindiramutty. (2026). A Two-Tier Hybrid Intrusion Detection System for IoT Networks. International Journal of Emerging Multidisciplinaries: Computer Science & Artificial Intelligence, 4(2). https://doi.org/10.54938/ijemdcsai.2026.04.2.660