Effectiveness of Transformer Models on IoT Security Detection in StackOverflow Discussions

07/29/2022
by   Nibir Chandra Mandal, et al.
0

The Internet of Things (IoT) is an emerging concept that directly links to the billions of physical items, or "things", that are connected to the Internet and are all gathering and exchanging information between devices and systems. However, IoT devices were not built with security in mind, which might lead to security vulnerabilities in a multi-device system. Traditionally, we investigated IoT issues by polling IoT developers and specialists. This technique, however, is not scalable since surveying all IoT developers is not feasible. Another way to look into IoT issues is to look at IoT developer discussions on major online development forums like Stack Overflow (SO). However, finding discussions that are relevant to IoT issues is challenging since they are frequently not categorized with IoT-related terms. In this paper, we present the "IoT Security Dataset", a domain-specific dataset of 7147 samples focused solely on IoT security discussions. As there are no automated tools to label these samples, we manually labeled them. We further employed multiple transformer models to automatically detect security discussions. Through rigorous investigations, we found that IoT security discussions are different and more complex than traditional security discussions. We demonstrated a considerable performance loss (up to 44 on cross-domain datasets when we transferred knowledge from a general-purpose dataset "Opiner", supporting our claim. Thus, we built a domain-specific IoT security detector with an F1-Score of 0.69. We have made the dataset public in the hope that developers would learn more about the security discussion and vendors would enhance their concerns about product security.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
04/01/2021

Security and Machine Learning Adoption in IoT: A Preliminary Study of IoT Developer Discussions

Internet of Things (IoT) is defined as the connection between places and...
research
03/03/2019

A survey of security and privacy issues in the Internet of Things from the layered context

Internet of Things (IoT) is a novel paradigm, which not only facilitates...
research
06/07/2022

An Empirical Study of IoT Security Aspects at Sentence-Level in Developer Textual Discussions

IoT is a rapidly emerging paradigm that now encompasses almost every asp...
research
09/06/2023

Navigating the IoT landscape: Unraveling forensics, security issues, applications, research challenges, and future

Given the exponential expansion of the internet, the possibilities of se...
research
09/09/2022

A Close Look at a Systematic Method for Analyzing Sets of Security Advice

We carry out a detailed analysis of the security advice coding method (S...
research
10/11/2021

A Mutation Framework for Evaluating Security Analysis tools in IoT Applications

With the growing and widespread use of Internet of Things (IoT) in our d...
research
05/07/2021

argXtract: Deriving IoT Security Configurations via Automated Static Analysis of Stripped ARM Binaries

Recent high-profile attacks on the Internet of Things (IoT) have brought...

Please sign up or login with your details

Forgot password? Click here to reset