MQTT-IoT-IDS2020 โ MQTT Internet of Things IDS Dataset
MQTT IoT IDS dataset from a simulated network with 12 sensors, broker, camera, and attacker. PCAP and CSV features support MQTT intrusion detection research.
View DatasetShowing 12 of 18 datasets
MQTT IoT IDS dataset from a simulated network with 12 sensors, broker, camera, and attacker. PCAP and CSV features support MQTT intrusion detection research.
View DatasetFree CC0 synthetic dataset: 4,000 rows of Modbus, OPC UA and DNP3 flows labelled for SCADA intrusion detection. 21% Attacks. Reproducible from its seed.
View DatasetFree CC0 synthetic dataset: 10,000 rows of Modbus, OPC UA and DNP3 flows labelled for SCADA intrusion detection. 29% Attacks. Reproducible from its seed.
View DatasetReal-time IoT network security dataset from a live IoT infrastructure with 41 bidirectional flow features. Includes ThingSpeak-LED, Wipro-Bulb, and MQTT-Temp devices with SSH brute force, DDoS (Hping/Slowloris), and Nmap attack scenarios. CSV format. Used for adaptive IDS development.
View DatasetRealistic IoT/IIoT cybersecurity dataset supporting centralized and federated learning with 15 attack types across network, application, and protocol layers. CSV and PCAP formats (~12 GB). Available via IEEE Dataport and Kaggle. Designed for edge computing IDS research.
View DatasetFree CC0 synthetic dataset: 500 rows of labelled network flows covering DoS, DDoS, botnet and reconnaissance traffic. 18% Attacks.
View DatasetReproducible large-scale IoT network dataset from 78 emulated devices using MQTT, CoAP, and RTSP protocols. Includes benign and malicious traffic with DoS, brute force, scanning, and C&C attacks in PCAP and CSV formats.
View DatasetDataset documents replay attacks targeting MQTT communications in water distribution system with 4.8 MB CSV file containing original and replayed messages for temporal sequence analysis.
View DatasetA real-world cybersecurity dataset capturing MQTT-based IoT network traffic with live attacks and anomalous behavior. Collected from an active deployment with multiple attack types including DoS, SlowITe, and malformed injections. Provides both raw and preprocessed CSV files with rich metadata for intrusion detection and anomaly classification research.
View DatasetRT-IoT2022 is a network traffic dataset specifically derived from a real-time IoT testbed containing smart home devices. It includes both normal traffic and various common network attacks.
View DatasetMQTT_UAD is a public MQTT traffic dataset published in Data in Brief 2025, containing labeled benign and attack scenarios in IoT networks that use the MQTT protocol, designed for training and evaluating intrusion detection systems.
View DatasetAn MQTT DoS and DDoS IoT attack dataset collected on a Raspberry Pi 3B+ Mosquitto broker over 12 sessions, including three days of normal traffic and several minutes of attack traffic, totaling 424,716 labeled entries for machine learning-based IDS and IPS research.
View Dataset