Skip to main content
IoTSyn Generated Physics-Based Synthetic · IoTSyn Interactive Charts

Synthetic IoT Intrusion Detection Dataset — 18% Attacks

IoT Security & Intrusion Detection Cybersecurity
326 views
1 min read
14 columns
IoTSyn v3.1.0
License

Generated Dataset Summary

"Free CC0 synthetic dataset: 500 rows of labelled network flows covering DoS, DDoS, botnet and reconnaissance traffic. 18% Attacks."

Generation Notes

Overview

Synthetic IoT network traffic with labeled attack patterns for intrusion detection research. Features burst-mode attacks with four-phase progression and five distinct attack types.

500 data points, 14 columns. Config: Attack rate: 18%.

Column Schema

ColumnDescription
TimestampISO 8601
Source_IPSource IPv4
Dest_IPDestination IPv4
Source_PortSource port
Dest_PortDest port
ProtocolNetwork protocol
Packet_SizeBytes
Connection_DurationSeconds
Packets_SentCount
Bytes_TransferredTotal bytes
Flow_RateBytes/sec
Attack_TypeAttack type
Attack_PhaseStage
LabelNormal/Attack

Mathematical Models

  • Normal Traffic: LogNormal packets (μ=6.0, σ=0.7), Exponential durations
  • Attack Bursts: Markov 4-phase: recon → escalation → peak → cooldown
  • DDoS: Botnet IP pool simulation

Use Cases

  • Intrusion detection training
  • DDoS classification
  • Network anomaly detection
  • Traffic analysis

Reproducibility

Seed: 3056993946. Reproduction requires the same engine version, parameters, seed, dependencies, and execution environment. IoTSyn v3.1.0.

Sample Data (60 rows · 14 columns)

# Timestamp Source_IP Dest_IP Source_Port Dest_Port Protocol Packet_Size Connection_Duration Packets_Sent Bytes_Transferred Flow_Rate Attack_Type Attack_Phase Label
1 2026-03-28 00:38:06 172.119.107.194 192.168.1.15 38215 15 TCP 92 0.01 1 92 15,352.27 Scan recon Malicious
2 2026-03-28 00:53:06 172.119.107.194 192.168.1.13 33919 18 TCP 95 0.04 2 190 4,613.09 Scan recon Malicious
3 2026-03-28 01:08:06 172.119.107.194 192.168.1.10 54049 21 TCP 70 0.04 2 140 3,524.98 Scan recon Malicious
4 2026-03-28 01:23:06 172.119.107.194 192.168.1.14 31749 22 TCP 85 0.09 2 170 1,931.93 Scan escalation Malicious
5 2026-03-28 01:38:06 172.119.107.194 192.168.1.10 39099 26 TCP 99 0.08 3 297 3,653.58 Scan escalation Malicious
6 2026-03-28 01:53:06 172.119.107.194 192.168.1.14 4072 27 TCP 84 0.04 1 84 1,891.49 Scan escalation Malicious
7 2026-03-28 02:08:06 172.119.107.194 192.168.1.13 34187 32 TCP 125 0.06 3 375 6,605.05 Scan escalation Malicious
8 2026-03-28 02:23:06 172.119.107.194 192.168.1.20 59345 34 TCP 113 0.01 2 226 16,698.19 Scan escalation Malicious
9 2026-03-28 02:38:06 172.119.107.194 192.168.1.13 47744 38 TCP 79 0.01 2 158 13,142.62 Scan peak Malicious
10 2026-03-28 02:53:06 172.119.107.194 192.168.1.20 5341 39 TCP 71 0.06 2 142 2,599.36 Scan peak Malicious

Showing first 10 of 60 sample rows

Data Visualization Interactive

Numeric Trends

Category Distribution

Cite This Dataset

IoTSyn (2026). IoT Security Traffic — 18% Attacks [500 rows] #7ca0. [Dataset]. IoTSyn Dataset Generator. https://iotsyn.com/view.php?uid=iotsyn_69d05d6e49dd82.90452713

Source metadata: IoTSyn Dataset Generator (2026)

Indexed by IoTDataset.com on Apr 04, 2026

Review the Source Record

Confirm the licence, version, access conditions, file format, and provenance at the source before use.

Primary source record — IoTSyn

Related Topics & Keywords

Browse all IoT Security & Intrusion Detection datasets

Share This Research

More in IoT Security & Intrusion Detection

View All
Cybersecurity Research Paper

MU-IoT - Comprehensive IoT Network Intrusion Dataset 2024

New realistic IoT network intrusion dataset (MU-IoT) with comprehensive attack scenarios for cybersecurity research. Published in IEEE 2024 with 4+ citations. Covers multiple IoT protocols and device types.

Jan 22, 2026
Network Security IoTSyn Generated

Synthetic IIoT Network Traffic Dataset — 21% Attacks

Free CC0 synthetic dataset: 4,000 rows of Modbus, OPC UA and DNP3 flows labelled for SCADA intrusion detection. 21% Attacks. Reproducible from its seed.

May 04, 2026
Network Security IoTSyn Generated

Synthetic IIoT Network Traffic Dataset — 29% Attacks

Free CC0 synthetic dataset: 10,000 rows of Modbus, OPC UA and DNP3 flows labelled for SCADA intrusion detection. 29% Attacks. Reproducible from its seed.

Apr 30, 2026
Cybersecurity / IoT Network Security University (Canadian Institute for Cybersecurity)

CICIDS2017 - Comprehensive Network Intrusion Detection Dataset

The most cited cybersecurity dataset worldwide with 2.8+ million network flows capturing 14 types of realistic attack scenarios including DDoS, brute force, botnet, and web attacks alongside benign traffic for advanced intrusion detection systems.

Jan 20, 2026
Cybersecurity Zenodo

Gotham Dataset 2025 - Large-Scale IoT Network Intrusion Detection

Reproducible large-scale IoT network dataset from 78 emulated devices using MQTT, CoAP, and RTSP protocols. Includes benign and malicious traffic with DoS, brute force, scanning, and C&C attacks in PCAP and CSV formats.

Mar 20, 2026
Cybersecurity University

IoT Network Intrusion (CIC-IDS2017)

Realistic network traffic data containing benign activities and common IoT-targeted attacks like Brute Force, DoS, and Infiltration.

Jan 19, 2026

Explore other topics

All topics →