GA-optimized deep learning intrusion detection framework with LIME explainability for IoT networks

dc.contributor.authorMaseno, Elijah M.
dc.contributor.authorSun, Yanxia
dc.contributor.authorWang, Zenghui
dc.date.accessioned2026-02-03T05:48:28Z
dc.date.issued2026-02
dc.descriptionDOI: https://doi.org/10.1007/s12065-025-01133-8
dc.description.abstractThe rapid expansion of the Internet of Things (IoT) has generated complex, high-volume network traffic that traditional signature-based Intrusion Detection Systems (IDS) struggle to analyze effectively. Conventional systems often fail to adapt to evolving attack behaviors and high-dimensional data, resulting in reduced accuracy and explainability. This study presents Genetic Algorithm (GA)-optimized deep learning models, namely GA-GRU and GA-LSTM, for efficient and interpretable intrusion detection in IoT ecosystem. GA was employed for dual optimization, simultaneous feature selection and hyperparameter tuning, to achieve a balance between accuracy, computational efficiency, and interpretability, distinguishing this work from prior GA-based IDS approaches. The models were evaluated using two benchmark datasets, IoT-ToN and UNSW-NB15, selected for their diverse traffic patterns, heterogeneous feature spaces, and complementary representation of IoT and enterprise network behavior. This combination supports the cross-domain generalizability of the proposed framework. Experimental findings show that GA significantly reduced the feature space while improving runtime and memory efficiency. The GA-GRU model achieved an accuracy of 95.8%, outperforming state-of-the-art IDS models. Both GA-optimized architectures recorded high precision, recall, and F1-scores, with low False Positive Rates(FPR), confirming their robustness in real-world detection. Although GA identified different optimal feature subsets for GRU and LSTM, the recurring key features indicate selection stability across architectures. Moreover, LIME-based interpretability analysis provided transparency into model decision-making, enhancing trust and explainability. Overall, the proposed framework delivers a novel, generalizable, and resource-efficient IDS solution tailored for next-generation IoT environments.
dc.identifier.citationEvolutionary Intelligence, 19:23
dc.identifier.urihttps://link.springer.com/article/10.1007/s12065-025-01133-8
dc.identifier.urihttps://repository.mnu.ac.ke/handle/123456789/87
dc.language.isoen
dc.publisherSpringer
dc.subjectIntrusion detection system (IDS)
dc.subjectGenetic Algorithm (GA)
dc.subjectFeature selection
dc.subjectIoT security
dc.subjectExplainableAI (LIME)
dc.titleGA-optimized deep learning intrusion detection framework with LIME explainability for IoT networks
dc.typeArticle

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Maseno_GA-optimized deep learning intrusion detection framework with LIME explainability for IoT networks.pdf
Size:
3.77 MB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed to upon submission
Description: