This paper proposes to enhance the security of smart home environments by integrating a behavior-based component in access and usage control systems to perform anomaly detection using machine learning. This component dynamically assesses each access request by assigning it an anomaly score based on its deviation from learned patterns of normal behavior. This enables context-sensitive and risk-aware policy enforcement, improving the system’s responsiveness to unusual or suspicious behavior. To train and evaluate anomaly detection models in the absence of real-world labeled datasets, we introduce an ontology-driven synthetic dataset generation method. This ontology encodes devices, contextual attributes, and subject behavior patterns to support scalable and customizable dataset creation across various domains. Based on this ontology, we generate different datasets of access requests for smart home scenarios and conduct an evaluation of standard performance metrics of both supervised and unsupervised machine learning models. Among the unsupervised models, Deep SVDD achieved the best results, with an accuracy of 88%, demonstrating strong generalization to unseen anomalous behavior. Supervised models, particularly SVM, reached 95% accuracy due to their training on a labeled dataset. While supervised models excel under controlled conditions, unsupervised models, especially Deep SVDD, proved more practical for real-world deployments where labeled anomalies are limited or unavailable. Our findings highlight the value of integrating anomaly detection into access and usage control systems and provide a reusable framework for detecting anomalous behavior patterns in smart environments.

Behavior-Based Anomaly Detection in Access and Usage Control for Smart Home Environments

Loay Alajramy
;
2025-01-01

Abstract

This paper proposes to enhance the security of smart home environments by integrating a behavior-based component in access and usage control systems to perform anomaly detection using machine learning. This component dynamically assesses each access request by assigning it an anomaly score based on its deviation from learned patterns of normal behavior. This enables context-sensitive and risk-aware policy enforcement, improving the system’s responsiveness to unusual or suspicious behavior. To train and evaluate anomaly detection models in the absence of real-world labeled datasets, we introduce an ontology-driven synthetic dataset generation method. This ontology encodes devices, contextual attributes, and subject behavior patterns to support scalable and customizable dataset creation across various domains. Based on this ontology, we generate different datasets of access requests for smart home scenarios and conduct an evaluation of standard performance metrics of both supervised and unsupervised machine learning models. Among the unsupervised models, Deep SVDD achieved the best results, with an accuracy of 88%, demonstrating strong generalization to unseen anomalous behavior. Supervised models, particularly SVM, reached 95% accuracy due to their training on a labeled dataset. While supervised models excel under controlled conditions, unsupervised models, especially Deep SVDD, proved more practical for real-world deployments where labeled anomalies are limited or unavailable. Our findings highlight the value of integrating anomaly detection into access and usage control systems and provide a reusable framework for detecting anomalous behavior patterns in smart environments.
File in questo prodotto:
File Dimensione Formato  
Anomaly_detection_ARES_2025__Copy_.pdf

non disponibili

Tipologia: Documento in Post-print/Accepted manuscript
Licenza: Copyright dell'editore
Dimensione 489.78 kB
Formato Adobe PDF
489.78 kB Adobe PDF   Visualizza/Apri   Richiedi una copia

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11382/581614
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
social impact