<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="ru">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">5</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/vxp5-pvhu-m4a2</article-id>
      <title-group>
        <article-title>Methodology for detecting anomalies in the traffic of the Internet of Things</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Методика выявления аномалий в трафике интернета вещей</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0002-6419-0072</contrib-id>
          <name>
            <surname>Tatarnikova</surname>
            <given-names>Tatiana</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>Tm-tatarn@yandex.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0002-2447-2737</contrib-id>
          <name>
            <surname>Sverlikov</surname>
            <given-names>Alexander</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0001-6289-3295</contrib-id>
          <contrib-id contrib-id-type="scopus">57200960264</contrib-id>
          <name>
            <surname>Sikarev</surname>
            <given-names>Igor</given-names>
          </name>
          <xref ref-type="aff" rid="aff2"/>
          <email>sikarev@yandex.ru</email>
        </contrib>
      </contrib-group>
      <aff id="aff1">St. Petersburg State University of Aerospace Instrumentation</aff>
      <aff id="aff2">Russian State Hydrometeorological University</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2022-03-31">
        <day>31</day>
        <month>03</month>
        <year>2022</year>
      </pub-date>
      <issue>1</issue>
      <fpage>51</fpage>
      <lpage>57</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/2022_1_rus.pdf"/>
      <abstract xml:lang="en">
        <p>It is shown that data protection technologies used in wired communication networks are not available for low-power devices of the Internet of things. Therefore, the search for an attack on IoT devices can be implemented by means of analyzing the traffic that carries the attack and, as a result, is classified as anomalous. A technique for searching for an anomaly in the network traffic of the Internet of things is proposed. A sequence of steps is considered to isolate a random compo nent from the traffic generated by the IoT sensor devices, remaining after the exclusion of the main characteristics and which may contain an anomaly. The software implementation of the proposed technique can become part of the intrusion detection system for the Internet of things.</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>Internet of things</kwd>
        <kwd>anomalous traffic</kwd>
        <kwd>data security</kwd>
        <kwd>traffic analysis technique</kwd>
        <kwd>intrusion detection system</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
