IDEAS home Printed from https://ideas.repec.org/a/gam/jftint/v18y2026i6p287-d1952645.html

A Scientific Integrity Framework for Open-Set IoT Intrusion Detection with Device-Disjoint Splits

Author

Listed:
  • Chekwas Ifeanyi Chikezie

    (Department of Telecommunications Engineering, Federal University of Technology, Minna 920101, Niger State, Nigeria)

  • Abraham Usman Usman

    (Department of Telecommunications Engineering, Federal University of Technology, Minna 920101, Niger State, Nigeria)

  • Michael David

    (Department of Telecommunications Engineering, Federal University of Technology, Minna 920101, Niger State, Nigeria)

  • Sulieman Zubair

    (Department of Telecommunications Engineering, Federal University of Technology, Minna 920101, Niger State, Nigeria)

  • Henry Ohiani Ohize

    (Department of Computer Engineering, Confluence University of Science and Technology, Osara 264103, Kogi State, Nigeria)

  • Joseph Ojeniyi

    (Department of Cyber Security Science, Federal University of Technology, Minna 920101, Niger State, Nigeria)

Abstract

Machine-learning-based intrusion detection for Internet of Things systems has often been evaluated through model-centered pipelines that use weakly governed partitioning, limited leakage auditing, and closed-set assumptions. Consequently, reported performance could reflect data-handling artifacts rather than reliable security intelligence. This paper introduces a scientific integrity framework that treats preprocessing as a primary research object for open-set Internet of Things intrusion detection. The framework integrated device-disjoint split governance, feasibility-aware zero-day isolation, quantified leakage control, train-only preprocessing, shared-safe feature selection, diagnostic-harness verification, baseline split comparison, and auditable artifact generation. Applied to the CICIoT-DIAD 2024 corpus with Institute of Electrical and Electronics Engineers Organizationally Unique Identifier-based vendor enrichment, the protocol locked 28 canonical classes, eight semantic attack families, and five policy labels before constructing a device-disjoint, vendor-aware grouped split. When strict device-level zero-day holdout was infeasible, the framework activated an audited row-level fallback that preserved contamination-free holdout isolation without claiming strict device-novel zero-day evaluation. On 35,672,407 flows from 180 files, the accepted run achieved zero device overlap, zero flow-signature Jaccard leakage risk, 100 percent zero-day purity, a Feature Distribution Stability Score of 0.00518, a Device-Feature Dependency Index of 0.00000, an Attack Invariance Score of 0.92964, and an Attack Semantic Consistency Score of 0.90714. The diagnostic harness produced zero hard failures and zero warnings, while baseline comparison showed stronger preprocessing integrity than random stratified and simple device-disjoint splitting. This study did not claim downstream classifier superiority; rather, it established an auditable preprocessing substrate for later classifier-level experiments.

Suggested Citation

  • Chekwas Ifeanyi Chikezie & Abraham Usman Usman & Michael David & Sulieman Zubair & Henry Ohiani Ohize & Joseph Ojeniyi, 2026. "A Scientific Integrity Framework for Open-Set IoT Intrusion Detection with Device-Disjoint Splits," Future Internet, MDPI, vol. 18(6), pages 1-30, May.
  • Handle: RePEc:gam:jftint:v:18:y:2026:i:6:p:287-:d:1952645
    as

    Download full text from publisher

    File URL: https://www.mdpi.com/1999-5903/18/6/287/pdf
    Download Restriction: no

    File URL: https://www.mdpi.com/1999-5903/18/6/287/
    Download Restriction: no
    ---><---

    More about this item

    Keywords

    ;
    ;
    ;
    ;
    ;
    ;

    Statistics

    Access and download statistics

    Corrections

    All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:gam:jftint:v:18:y:2026:i:6:p:287-:d:1952645. See general information about how to correct material in RePEc.

    If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

    We have no bibliographic references for this item. You can help adding them by using this form .

    If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

    For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: MDPI Indexing Manager The email address of this maintainer does not seem to be valid anymore. Please ask MDPI Indexing Manager to update the entry or send us the correct address (email available below). General contact details of provider: https://www.mdpi.com .

    Please note that corrections may take a couple of weeks to filter through the various RePEc services.

    IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.