Abstract

Existing approaches to Industrial Internet of Things (IoT) anomaly detection treat sensor drift calibration and cyberattack detection as separate problems, overlooking their strong interdependence and the compound failure modes that arise when drift dynamics are exploited by stealthy adversaries. Industrial Internet of IoT sensor networks therefore require a unified framework that jointly models both phenomena. This paper proposes the first unified multi-scale sensor-aware variational autoencoder (MS-VAE) framework that jointly models sensor drift and malicious activity within shared latent representations, enabling integrated calibration and security monitoring. The framework introduces three key components: (i) a multi-scale latent architecture that captures short-term anomalies and long-term drift simultaneously, (ii) sensor-aware feature modulation to accommodate heterogeneous sensor characteristics, and (iii) a context-aware adaptive thresholding (CAAT) mechanism that dynamically adjusts decision boundaries under environmental variation and sensor aging. Experimental evaluation on false data injection attacks (FDIAs) demonstrates that the proposed method achieves 94.1% detection accuracy with a 3.1% false alarm rate, significantly outperforming correlation-based, standard VAE, and transformer-based baselines. Robustness evaluation across three non-Gaussian drift conditions (piecewise-linear, exponential, and abrupt step) confirms that the framework retains DR,≥ ,91% and FAR,≤,7% without retraining, validating its applicability under drift distributions not seen during training.

Keywords

adaptive thresholding, anomaly detection, false data injection attacks, IoT security, latent representation learning, sensor drift

Document Type

Journal Article

Date of Publication

1-1-2026

E-ISSN

21693536

Volume

14

Publication Title

IEEE Access

Publisher

IEEE

School

School of Engineering

Creative Commons License

Creative Commons Attribution 4.0 License
This work is licensed under a Creative Commons Attribution 4.0 License.

First Page

125744

Last Page

125762

Recommended Citation

Hossain, M. K., Ahmad, I., & Habibi, D. (2026). Multi-scale sensor-aware variational autoencoders for adaptive IoT security: Integrating drift calibration and cyberattack detection. IEEE Access, 14, 125744–125762. https://doi.org/10.1109/ACCESS.2026.3723588

Share

 
COinS
 

Link to publisher version (DOI)

10.1109/ACCESS.2026.3723588