<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/xsl" href="static/style.xsl"?><OAI-PMH xmlns="http://www.openarchives.org/OAI/2.0/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.openarchives.org/OAI/2.0/ http://www.openarchives.org/OAI/2.0/OAI-PMH.xsd"><responseDate>2026-04-19T19:58:55Z</responseDate><request verb="GetRecord" identifier="oai:riubu.ubu.es:10259/11273" metadataPrefix="etdms">https://riubu.ubu.es/oai/request</request><GetRecord><record><header><identifier>oai:riubu.ubu.es:10259/11273</identifier><datestamp>2026-03-16T09:20:25Z</datestamp><setSpec>com_10259_3847</setSpec><setSpec>com_10259_5086</setSpec><setSpec>com_10259_2604</setSpec><setSpec>col_10259_8557</setSpec><setSpec>col_10259_5684</setSpec></header><metadata><thesis xmlns="http://www.ndltd.org/standards/metadata/etdms/1.0/" xmlns:doc="http://www.lyncode.com/xoai" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.ndltd.org/standards/metadata/etdms/1.0/ http://www.ndltd.org/standards/metadata/etdms/1.0/etdms.xsd">
<title>CyberFlowIoT-GICAP: Labelled Flow-Based Network Traffic Dataset for Cyberattack Detection [Dataset]</title>
<creator>Martínez González, Branly Alberto</creator>
<creator>Cambra Baseca, Carlos</creator>
<creator>Urda Muñoz, Daniel</creator>
<creator>Rincón Arango, Jaime Andrés</creator>
<creator>Herrero Cosío, Álvaro</creator>
<subject>Internet of Things</subject>
<subject>Cybersecurity</subject>
<subject>Flow features</subject>
<subject>Attack traffic</subject>
<subject>Benign traffic</subject>
<subject>Network</subject>
<subject>Ground truth</subject>
<subject>Labelling</subject>
<description>This study presents a labelled flow-based network traffic dataset collected from a controlled Internet of Things (IoT) laboratory environment. The dataset captures network communication generated by hardware-based IoT devices during normal operation, including MQTT messaging, database synchronization, and web-based monitoring, as well as during the execution of predefined cyber-attack scenarios within an isolated experimental network.&#xd;
&#xd;
Network traffic was recorded at the packet level using passive network monitoring and stored in PCAP format. The packet captures were subsequently processed into bidirectional network flows using a flow-based traffic extraction pipeline, producing flow records with statistical and temporal attributes derived from the observed packet exchanges.&#xd;
&#xd;
Cyberattack-related flows were identified based on predefined attack execution time intervals obtained from experimental metadata. Network flows observed outside these intervals were labelled as benign and correspond to regular device communication.&#xd;
&#xd;
The dataset is distributed through a structured repository that includes raw packet captures, processed flow-level datasets in tabular format, and metadata files describing the experimental setup, attack scenarios, and labelling criteria. The data support flow-based analysis of IoT network traffic and the evaluation of cyberattack detection methods.</description>
<date>2026-01-23</date>
<date>2026-01-23</date>
<date>2026-01-23</date>
<type>dataset</type>
<identifier>Martinez Gonzalez, B. A., Cambra, C., Urda Muñoz, D., Rincon Arango, J. A., &amp; Herrero, A. (2026). Labelled IoT Flow-Based Network Traffic Dataset for Cyberattack Detection (Version 1.0) [Data set]. Universidad de Burgos. https://doi.org/10.71486/DYXT-2R24</identifier>
<identifier>https://hdl.handle.net/10259/11273</identifier>
<identifier>10.71486/dyxt-2r24</identifier>
<identifier>https://ss3.scayle.es:443/riubu-1/GICAP/UBUGICAP_AI4SECIOT_v1-2026.zip</identifier>
<language>eng</language>
<rights>http://creativecommons.org/licenses/by/4.0/</rights>
<rights>info:eu-repo/semantics/openAccess</rights>
<rights>Atribución 4.0 Internacional</rights>
<publisher>Universidad de Burgos</publisher>
</thesis></metadata></record></GetRecord></OAI-PMH>