Explainable Deep Learning Intrusion Detection Framework for Securing IoT Environment

Authors

  • Ravi Patni Department of Computer Science, Guru Nanak Dev University, Amritsar, 143005, India.
  • Gurvinder Singh Department of Computer Science, Guru Nanak Dev University, Amritsar, 143005, India.

DOI:

https://doi.org/10.70917/ijcisim-2026-4273

Keywords:

Machine Learning (ML), Deep Learning (DL), Distributed Denial of Service (DDoS), Internet of Things (IoT), Local Interpretable Model-agonistic Explanations (LIME), SHapley Additive exPlanations (SHAP), Explainable Artificial Intelligence (XAI)

Abstract

In the fast-growing world of Internet of Things (IoT), devices have exploded that are not only efficient but also expose serious security vulnerabilities that can be used as vectors for more advanced cyber-attacks. Traditional IDS has the challenge of false positive rate, which could cause critical operations to be disrupted in various domains from smart medical devices (SMDs) to municipal infrastructure. Machine Learning (ML) and Deep Learning (DL) models are state-of-the art solutions to detect complex, high-dimensional and temporal network anomalies in terms of accuracy but their deployment is still hampered severely due to the fact that they lack interpretability. This paper introduces a new explainable hybrid IDS architecture for IoT environments named XABiL-IDS (Explainable Attention-based Bi LSTM-Intrusion Detection System) in response to this challenge. This study uses a robust hybrid architecture to detect attacks effectively. Global analysis using the SHAP method for determining the most relevant traffic attributes affecting the classification process in the dataset on the other hand local analysis done by LIME for providing explanation at the instance level on the prediction made regarding network flows. The key differentiating feature of this approach compared to earlier methods is the incorporation of both global and local explainability in single pipeline. 

Downloads

Download data is not yet available.

Downloads

Published

2026-08-04

How to Cite

Ravi Patni, & Gurvinder Singh. (2026). Explainable Deep Learning Intrusion Detection Framework for Securing IoT Environment. International Journal of Computer Information Systems and Industrial Management Applications, 18(14s), 659–674. https://doi.org/10.70917/ijcisim-2026-4273

Issue

Section

Original Articles