Skip to main content
Mendeley Data

MQTTEEB-D: Real-World IoT Cybersecurity Dataset for AI-Powered Threat Detection in MQTT Networks

IoT Security & Intrusion Detection Cybersecurity
165 views
1 min read
License
Catalog metadata: This page is a discovery record, not publisher documentation. Verify the description, schema, provenance, version, licence, and citation at the linked source before use.

Catalog Summary

"A real-world cybersecurity dataset capturing MQTT-based IoT network traffic with live attacks and anomalous behavior. Collected from an active deployment with multiple attack types including DoS, SlowITe, and malformed injections. Provides both raw and preprocessed CSV files with rich metadata for intrusion detection and anomaly classification research."

Catalog Notes

Overview

This dataset captures live MQTT IoT communication under both benign and malicious conditions, designed to improve threat detection models. Attacks include Denial of Service, SlowITe, and malformed payloads.

Dataset Contents

  • Data modality: Time-series CSV sensor and network data
  • Scale: Multiple attack scenarios, real deployment
  • File formats: CSV, multiple processed versions
  • Metadata: Timestamps, node IDs, attack labels

Collection Methodology

  • Environment: Real IoT deployment
  • Duration: Continuous with attacks
  • Devices/Sensors: Health sensors with MQTT
  • Sampling rate: Configurable during capture

Labels and Targets

  • Labeling: Attack categories vs normal
  • Ground truth: Controlled test scenarios

Recommended Use Cases

  • ML-based threat detection
  • Anomaly classification
  • Security research in MQTT environments

Limitations and Considerations

  • Deployment complexity
  • Requires preprocessing for some models

Access and Licensing

This dataset is available at official repository page. Licensed under CC BY 4.0.

View Data Structure

To explore column names, data types, and sample rows, visit the official dataset page on Mendeley Data.

Preview on Mendeley Data

Cite This Dataset

Aqachtoul, A., Karam, K., Elamrani, A., Najib, M., Rafalia, N., & Bakhouya, M. (2025). MQTTEEB-D: Real-World IoT Cybersecurity Dataset for AI-Powered Threat Detection in MQTT Networks. [Dataset]. Mendeley Data. https://doi.org/10.17632/jfttfjn6tr.1

Source metadata: Mendeley Data (2025) · DOI: 10.17632/jfttfjn6tr.1

Indexed by IoTDataset.com on Feb 07, 2026

Review the Source Record

Confirm the licence, version, access conditions, file format, and provenance at the source before use.

Open Source Page

Related Topics & Keywords

Browse all IoT Security & Intrusion Detection datasets

Share This Research

More in IoT Security & Intrusion Detection

View All
Network Security University

MQTT-IoT-IDS2020 — MQTT Internet of Things IDS Dataset

MQTT IoT IDS dataset from a simulated network with 12 sensors, broker, camera, and attacker. PCAP and CSV features support MQTT intrusion detection research.

Jun 02, 2026
Network Security Zenodo

IoT Emulated ICMP/Ping Dataset — Normal and Malicious Traffic [3.2 GB PCAP]

IoT IDS dataset for distinguishing normal and malicious ICMP/Ping traffic generated from an ESP-01s embedded device. PCAP, Zeek logs, and labelled CSV files.

Jun 02, 2026
Educational IoT / Network Security Kaggle

IoEd-Net: Internet of Educational Things Dataset for Academic Network Analysis

Comprehensive dataset from University of New Brunswick containing over 202,085 network traffic records from IoT devices in academic environment, with classification of benign and malicious activities.

Jan 16, 2026
Cybersecurity University

MedBIoT — Medium-Sized IoT Botnet IDS Dataset [83 devices]

IoT botnet IDS dataset using 83 real and emulated devices with Mirai, BashLite, and Torii traffic. Raw PCAP files support botnet and anomaly detection research.

Jun 02, 2026
Cybersecurity Kaggle

Edge-IIoTset: Comprehensive IoT & IIoT Cyber Security Dataset [~12 GB, 15 Attack Types]

Realistic IoT/IIoT cybersecurity dataset supporting centralized and federated learning with 15 attack types across network, application, and protocol layers. CSV and PCAP formats (~12 GB). Available via IEEE Dataport and Kaggle. Designed for edge computing IDS research.

Apr 13, 2026
Cybersecurity IoTSyn Generated

Synthetic IoT Intrusion Detection Dataset — 18% Attacks

Free CC0 synthetic dataset: 500 rows of labelled network flows covering DoS, DDoS, botnet and reconnaissance traffic. 18% Attacks.

Apr 04, 2026

Explore other topics

All topics →