{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:UZ4C23YTALPT3SWYR2FJ55T4NL","short_pith_number":"pith:UZ4C23YT","canonical_record":{"source":{"id":"2605.13159","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-13T08:23:17Z","cross_cats_sorted":[],"title_canon_sha256":"6ef8e5ff4511a217c2815cc63e917431d5de1bfe7514f9b6f2b8c9b77586511a","abstract_canon_sha256":"3bfd25e29a45e29c89dc6d9afefd16d32daa58060e61c2ecd5e1df820a55039d"},"schema_version":"1.0"},"canonical_sha256":"a6782d6f1302df3dcad88e8a9ef67c6af219d99cb814d323b567297fde959622","source":{"kind":"arxiv","id":"2605.13159","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.13159","created_at":"2026-05-18T03:08:56Z"},{"alias_kind":"arxiv_version","alias_value":"2605.13159v1","created_at":"2026-05-18T03:08:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.13159","created_at":"2026-05-18T03:08:56Z"},{"alias_kind":"pith_short_12","alias_value":"UZ4C23YTALPT","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"UZ4C23YTALPT3SWY","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"UZ4C23YT","created_at":"2026-05-18T12:33:37Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:UZ4C23YTALPT3SWYR2FJ55T4NL","target":"record","payload":{"canonical_record":{"source":{"id":"2605.13159","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-13T08:23:17Z","cross_cats_sorted":[],"title_canon_sha256":"6ef8e5ff4511a217c2815cc63e917431d5de1bfe7514f9b6f2b8c9b77586511a","abstract_canon_sha256":"3bfd25e29a45e29c89dc6d9afefd16d32daa58060e61c2ecd5e1df820a55039d"},"schema_version":"1.0"},"canonical_sha256":"a6782d6f1302df3dcad88e8a9ef67c6af219d99cb814d323b567297fde959622","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T03:08:56.915556Z","signature_b64":"IZ673chrw//vucCasQToMd/gBPk2q0ZpVPkl+SGCa22h4tUSCXq0F9faVV4749lCYVZsue8JmZk0dJnAJB80BQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"a6782d6f1302df3dcad88e8a9ef67c6af219d99cb814d323b567297fde959622","last_reissued_at":"2026-05-18T03:08:56.914913Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T03:08:56.914913Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.13159","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T03:08:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"PAS8wZlb5yIMnrMnfPbENNe6oruBponQ1qHyygFlM5856N+xR/reuKlS2v6qAuIEMEaZQAlVnwQUicA/MLCKAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T16:07:50.857692Z"},"content_sha256":"9c972ead2071cbfa3bd9a7f7516422ab23a3b6779e50e0d3e6e83833084d25db","schema_version":"1.0","event_id":"sha256:9c972ead2071cbfa3bd9a7f7516422ab23a3b6779e50e0d3e6e83833084d25db"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:UZ4C23YTALPT3SWYR2FJ55T4NL","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Empowering IoT Security: On-Device Intrusion Detection in Resource Constrained Devices","license":"http://creativecommons.org/licenses/by/4.0/","headline":"Lightweight machine learning models detect intrusions on IoT microcontrollers with up to 99 percent accuracy.","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Aftab Khan, Eirini Anthi, Pete Burnap, Pietro Carnelli, Theodoros Spyridopoulos, Vasilis Ieropoulos","submitted_at":"2026-05-13T08:23:17Z","abstract_excerpt":"IoT devices particularly microcontrollers are challenged by their inherent limitations in processing capabilities, memory capacity, and energy conservation. Securing communication within IoT networks is further complicated by the heterogeneity of devices and the myriad of potential security threats. Our study introduces a lightweight model that utilises machine learning algorithms to achieve a notable detection accuracy of 99% using a decision tree method and 96% using a neural network in identifying cyber threats, including Denial of Service and Man-in-the-Middle attacks which make up the maj"},"claims":{"count":4,"items":[{"kind":"strongest_claim","text":"Our study introduces a lightweight model that utilises machine learning algorithms to achieve a notable detection accuracy of 99% using a decision tree method and 96% using a neural network in identifying cyber threats, including Denial of Service and Man-in-the-Middle attacks which make up the majority of the attacks these devices face.","source":"verdict.strongest_claim","status":"machine_extracted","claim_id":"C1","attestation":"unclaimed"},{"kind":"weakest_assumption","text":"The assumption that the proposed models can be effectively deployed and run in real-time on actual resource-constrained microcontrollers without exceeding memory or computational limits, and that the reported accuracies generalize beyond the tested scenarios to real-world threats.","source":"verdict.weakest_assumption","status":"machine_extracted","claim_id":"C2","attestation":"unclaimed"},{"kind":"one_line_summary","text":"Lightweight ML models enable 99% accurate intrusion detection on memory-limited IoT microcontrollers using decision trees and neural networks.","source":"verdict.one_line_summary","status":"machine_extracted","claim_id":"C3","attestation":"unclaimed"},{"kind":"headline","text":"Lightweight machine learning models detect intrusions on IoT microcontrollers with up to 99 percent accuracy.","source":"verdict.pith_extraction.headline","status":"machine_extracted","claim_id":"C4","attestation":"unclaimed"}],"snapshot_sha256":"8123f3b4189af7ab618f75cbda04518b7923561f61b95e0db781b454ff8b9668"},"source":{"id":"2605.13159","kind":"arxiv","version":1},"verdict":{"id":"c74ce65d-fc06-40cd-82f1-9ebd582056eb","model_set":{"reader":"grok-4.3"},"created_at":"2026-05-14T18:45:02.935255Z","strongest_claim":"Our study introduces a lightweight model that utilises machine learning algorithms to achieve a notable detection accuracy of 99% using a decision tree method and 96% using a neural network in identifying cyber threats, including Denial of Service and Man-in-the-Middle attacks which make up the majority of the attacks these devices face.","one_line_summary":"Lightweight ML models enable 99% accurate intrusion detection on memory-limited IoT microcontrollers using decision trees and neural networks.","pipeline_version":"pith-pipeline@v0.9.0","weakest_assumption":"The assumption that the proposed models can be effectively deployed and run in real-time on actual resource-constrained microcontrollers without exceeding memory or computational limits, and that the reported accuracies generalize beyond the tested scenarios to real-world threats.","pith_extraction_headline":"Lightweight machine learning models detect intrusions on IoT microcontrollers with up to 99 percent accuracy."},"references":{"count":61,"sample":[{"doi":"","year":2021,"title":"A critical review of intrusion detection systems in the internet of things: Techniques, deployment strategy, val- idation strategy, attacks, public datasets and challenges,","work_id":"3ad5e875-2a37-4ccc-8f11-42dae62cb42a","ref_index":1,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2020,"title":"The anatomy of security microcontrollers for iot appli- cations,","work_id":"674253a1-583b-482f-887d-fc0650f9cf2c","ref_index":2,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2016,"title":"European Parliament and Council, “Regulation (eu) 2016/679 of the european parliament and of the council of 27 april 2016 on the protection of natural persons with regard to the processing of personal","work_id":"9501720b-6e83-4a24-b849-dfd7db09b24c","ref_index":3,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2023,"title":"Study of network ids in iot devices,","work_id":"96eadc2e-0328-4d57-8f40-b862b40995a0","ref_index":4,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2020,"title":"e. espressif, “Esp32-s3,” Dec 2020. [Online]. Available: https: //www.espressif.com/en/products/socs/esp32-s3","work_id":"071d3ffe-3c9d-4699-951c-52a94bc15afe","ref_index":5,"cited_arxiv_id":"","is_internal_anchor":false}],"resolved_work":61,"snapshot_sha256":"f49a1abe364fff700f3746b58e996aabdf0347130eef010a73d6b46eb5d9323a","internal_anchors":0},"formal_canon":{"evidence_count":1,"snapshot_sha256":"56788f87bdd572e63754bff3dac50ea4edfae5f57d4bbce4f56c4c6fea5ec9d9"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":"c74ce65d-fc06-40cd-82f1-9ebd582056eb"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T03:08:56Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"eqo0KN/L+XwGzy3gVTUr9kNebFkZ+t+FLCsukZcbfbXFTZXLO6tDMXxBWF/28YDf/6xiUfNDNnS6DVQLDWRMBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T16:07:50.858971Z"},"content_sha256":"bd1cce8267ab26401b64ed71a0c09eac929ae0f2eb73066bf0001645cf0bd053","schema_version":"1.0","event_id":"sha256:bd1cce8267ab26401b64ed71a0c09eac929ae0f2eb73066bf0001645cf0bd053"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/UZ4C23YTALPT3SWYR2FJ55T4NL/bundle.json","state_url":"https://pith.science/pith/UZ4C23YTALPT3SWYR2FJ55T4NL/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/UZ4C23YTALPT3SWYR2FJ55T4NL/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T16:07:50Z","links":{"resolver":"https://pith.science/pith/UZ4C23YTALPT3SWYR2FJ55T4NL","bundle":"https://pith.science/pith/UZ4C23YTALPT3SWYR2FJ55T4NL/bundle.json","state":"https://pith.science/pith/UZ4C23YTALPT3SWYR2FJ55T4NL/state.json","well_known_bundle":"https://pith.science/.well-known/pith/UZ4C23YTALPT3SWYR2FJ55T4NL/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:UZ4C23YTALPT3SWYR2FJ55T4NL","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"3bfd25e29a45e29c89dc6d9afefd16d32daa58060e61c2ecd5e1df820a55039d","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-13T08:23:17Z","title_canon_sha256":"6ef8e5ff4511a217c2815cc63e917431d5de1bfe7514f9b6f2b8c9b77586511a"},"schema_version":"1.0","source":{"id":"2605.13159","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.13159","created_at":"2026-05-18T03:08:56Z"},{"alias_kind":"arxiv_version","alias_value":"2605.13159v1","created_at":"2026-05-18T03:08:56Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.13159","created_at":"2026-05-18T03:08:56Z"},{"alias_kind":"pith_short_12","alias_value":"UZ4C23YTALPT","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"UZ4C23YTALPT3SWY","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"UZ4C23YT","created_at":"2026-05-18T12:33:37Z"}],"graph_snapshots":[{"event_id":"sha256:bd1cce8267ab26401b64ed71a0c09eac929ae0f2eb73066bf0001645cf0bd053","target":"graph","created_at":"2026-05-18T03:08:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":4,"items":[{"attestation":"unclaimed","claim_id":"C1","kind":"strongest_claim","source":"verdict.strongest_claim","status":"machine_extracted","text":"Our study introduces a lightweight model that utilises machine learning algorithms to achieve a notable detection accuracy of 99% using a decision tree method and 96% using a neural network in identifying cyber threats, including Denial of Service and Man-in-the-Middle attacks which make up the majority of the attacks these devices face."},{"attestation":"unclaimed","claim_id":"C2","kind":"weakest_assumption","source":"verdict.weakest_assumption","status":"machine_extracted","text":"The assumption that the proposed models can be effectively deployed and run in real-time on actual resource-constrained microcontrollers without exceeding memory or computational limits, and that the reported accuracies generalize beyond the tested scenarios to real-world threats."},{"attestation":"unclaimed","claim_id":"C3","kind":"one_line_summary","source":"verdict.one_line_summary","status":"machine_extracted","text":"Lightweight ML models enable 99% accurate intrusion detection on memory-limited IoT microcontrollers using decision trees and neural networks."},{"attestation":"unclaimed","claim_id":"C4","kind":"headline","source":"verdict.pith_extraction.headline","status":"machine_extracted","text":"Lightweight machine learning models detect intrusions on IoT microcontrollers with up to 99 percent accuracy."}],"snapshot_sha256":"8123f3b4189af7ab618f75cbda04518b7923561f61b95e0db781b454ff8b9668"},"formal_canon":{"evidence_count":1,"snapshot_sha256":"56788f87bdd572e63754bff3dac50ea4edfae5f57d4bbce4f56c4c6fea5ec9d9"},"paper":{"abstract_excerpt":"IoT devices particularly microcontrollers are challenged by their inherent limitations in processing capabilities, memory capacity, and energy conservation. Securing communication within IoT networks is further complicated by the heterogeneity of devices and the myriad of potential security threats. Our study introduces a lightweight model that utilises machine learning algorithms to achieve a notable detection accuracy of 99% using a decision tree method and 96% using a neural network in identifying cyber threats, including Denial of Service and Man-in-the-Middle attacks which make up the maj","authors_text":"Aftab Khan, Eirini Anthi, Pete Burnap, Pietro Carnelli, Theodoros Spyridopoulos, Vasilis Ieropoulos","cross_cats":[],"headline":"Lightweight machine learning models detect intrusions on IoT microcontrollers with up to 99 percent accuracy.","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-13T08:23:17Z","title":"Empowering IoT Security: On-Device Intrusion Detection in Resource Constrained Devices"},"references":{"count":61,"internal_anchors":0,"resolved_work":61,"sample":[{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":1,"title":"A critical review of intrusion detection systems in the internet of things: Techniques, deployment strategy, val- idation strategy, attacks, public datasets and challenges,","work_id":"3ad5e875-2a37-4ccc-8f11-42dae62cb42a","year":2021},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":2,"title":"The anatomy of security microcontrollers for iot appli- cations,","work_id":"674253a1-583b-482f-887d-fc0650f9cf2c","year":2020},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":3,"title":"European Parliament and Council, “Regulation (eu) 2016/679 of the european parliament and of the council of 27 april 2016 on the protection of natural persons with regard to the processing of personal","work_id":"9501720b-6e83-4a24-b849-dfd7db09b24c","year":2016},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":4,"title":"Study of network ids in iot devices,","work_id":"96eadc2e-0328-4d57-8f40-b862b40995a0","year":2023},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":5,"title":"e. espressif, “Esp32-s3,” Dec 2020. [Online]. Available: https: //www.espressif.com/en/products/socs/esp32-s3","work_id":"071d3ffe-3c9d-4699-951c-52a94bc15afe","year":2020}],"snapshot_sha256":"f49a1abe364fff700f3746b58e996aabdf0347130eef010a73d6b46eb5d9323a"},"source":{"id":"2605.13159","kind":"arxiv","version":1},"verdict":{"created_at":"2026-05-14T18:45:02.935255Z","id":"c74ce65d-fc06-40cd-82f1-9ebd582056eb","model_set":{"reader":"grok-4.3"},"one_line_summary":"Lightweight ML models enable 99% accurate intrusion detection on memory-limited IoT microcontrollers using decision trees and neural networks.","pipeline_version":"pith-pipeline@v0.9.0","pith_extraction_headline":"Lightweight machine learning models detect intrusions on IoT microcontrollers with up to 99 percent accuracy.","strongest_claim":"Our study introduces a lightweight model that utilises machine learning algorithms to achieve a notable detection accuracy of 99% using a decision tree method and 96% using a neural network in identifying cyber threats, including Denial of Service and Man-in-the-Middle attacks which make up the majority of the attacks these devices face.","weakest_assumption":"The assumption that the proposed models can be effectively deployed and run in real-time on actual resource-constrained microcontrollers without exceeding memory or computational limits, and that the reported accuracies generalize beyond the tested scenarios to real-world threats."}},"verdict_id":"c74ce65d-fc06-40cd-82f1-9ebd582056eb"}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:9c972ead2071cbfa3bd9a7f7516422ab23a3b6779e50e0d3e6e83833084d25db","target":"record","created_at":"2026-05-18T03:08:56Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"3bfd25e29a45e29c89dc6d9afefd16d32daa58060e61c2ecd5e1df820a55039d","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-13T08:23:17Z","title_canon_sha256":"6ef8e5ff4511a217c2815cc63e917431d5de1bfe7514f9b6f2b8c9b77586511a"},"schema_version":"1.0","source":{"id":"2605.13159","kind":"arxiv","version":1}},"canonical_sha256":"a6782d6f1302df3dcad88e8a9ef67c6af219d99cb814d323b567297fde959622","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"a6782d6f1302df3dcad88e8a9ef67c6af219d99cb814d323b567297fde959622","first_computed_at":"2026-05-18T03:08:56.914913Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T03:08:56.914913Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"IZ673chrw//vucCasQToMd/gBPk2q0ZpVPkl+SGCa22h4tUSCXq0F9faVV4749lCYVZsue8JmZk0dJnAJB80BQ==","signature_status":"signed_v1","signed_at":"2026-05-18T03:08:56.915556Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.13159","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:9c972ead2071cbfa3bd9a7f7516422ab23a3b6779e50e0d3e6e83833084d25db","sha256:bd1cce8267ab26401b64ed71a0c09eac929ae0f2eb73066bf0001645cf0bd053"],"state_sha256":"15fdaaa386f716d5fc54fa87959c80fa2ba0ba8cab849bad6b28f27fb7fc08b1"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"hlyunP/GHO/kAt6L6E+tDL6cDKXfJf1sZESfjHD+qIGwRe+HZyBtVRNUruAWPH98sITg2+YxEGL5aW0BEx9yAA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T16:07:50.864128Z","bundle_sha256":"3ac2e64984d540933e7c658636657a2b095b64a5d85b6f52bd9e93ac61bbc4d2"}}