IoT Botnet Attack Detection Based on Optimized Extreme Gradient Boosting and Feature Selection

被引:42
作者
Alqahtani, Mnahi [1 ]
Mathkour, Hassan [1 ]
Ben Ismail, Mohamed Maher [1 ]
机构
[1] King Saud Univ, Coll Comp & Informat Sci, Comp Sci Dept, Riyadh 11543, Saudi Arabia
关键词
IoT botnet attacks; Fisher score method; feature selection; genetic-based extreme gradient boosting model; INTRUSION DETECTION; DETECTION SCHEME; INTERNET; THINGS; SECURITY; NETWORKS; MODEL; SYSTEMS; MIRAI;
D O I
10.3390/s20216336
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
Nowadays, Internet of Things (IoT) technology has various network applications and has attracted the interest of many research and industrial communities. Particularly, the number of vulnerable or unprotected IoT devices has drastically increased, along with the amount of suspicious activity, such as IoT botnet and large-scale cyber-attacks. In order to address this security issue, researchers have deployed machine and deep learning methods to detect attacks targeting compromised IoT devices. Despite these efforts, developing an efficient and effective attack detection approach for resource-constrained IoT devices remains a challenging task for the security research community. In this paper, we propose an efficient and effective IoT botnet attack detection approach. The proposed approach relies on a Fisher-score-based feature selection method along with a genetic-based extreme gradient boosting (GXGBoost) model in order to determine the most relevant features and to detect IoT botnet attacks. The Fisher score is a representative filter-based feature selection method used to determine significant features and discard irrelevant features through the minimization of intra-class distance and the maximization of inter-class distance. On the other hand, GXGBoost is an optimal and effective model, used to classify the IoT botnet attacks. Several experiments were conducted on a public botnet dataset of IoT devices. The evaluation results obtained using holdout and 10-fold cross-validation techniques showed that the proposed approach had a high detection rate using only three out of the 115 data traffic features and improved the overall performance of the IoT botnet attack detection process.
引用
收藏
页码:1 / 21
页数:21
相关论文
共 50 条
[21]   An amalgamated correlation and regression based feature selection with ensemble learning approach for IoT network attack detection [J].
Ahmad, Mir Shahnawaz ;
Shah, Shahid Mehraj .
INTERNET TECHNOLOGY LETTERS, 2024, 7 (06)
[22]   IoT Attack Detection and Mitigation with Optimized Deep Learning Techniques [J].
Brindha Devi, V. ;
Ranjan, Nihar M. ;
Sharma, Himanshu .
CYBERNETICS AND SYSTEMS, 2024, 55 (07) :1702-1728
[23]   Systematic Literature Review on IoT-Based Botnet Attack [J].
Ali, Ihsan ;
Ahmed, Abdelmuttlib Ibrahim Abdalla ;
Almogren, Ahmad ;
Raza, Muhammad Ahsan ;
Shah, Syed Attique ;
Khan, Anwar ;
Gani, Abdullah .
IEEE ACCESS, 2020, 8 :212220-212232
[24]   IoT Botnet Attacks Detection and Classification Based on Ensemble Learning [J].
Cao, Yongzhong ;
Wang, Zhihui ;
Ding, Hongwei ;
Zhang, Jiale ;
Li, Bin .
ARTIFICIAL INTELLIGENCE AND ROBOTICS, ISAIR 2023, 2024, 1998 :45-55
[25]   Multi-objective-based feature selection for DDoS attack detection in IoT networks [J].
Roopak, Monika ;
Tian, Gui Yun ;
Chambers, Jonathon .
IET NETWORKS, 2020, 9 (03) :120-127
[26]   Empirical evaluation of feature selection methods for machine learning based intrusion detection in IoT scenarios [J].
Garcia, Jose ;
Entrena, Jorge ;
Alesanco, Alvaro .
INTERNET OF THINGS, 2024, 28
[27]   A Network Intrusion Detection Approach Using Extreme Gradient Boosting with Max-Depth Optimization and Feature Selection [J].
Hassan G.M. ;
Gumaei A. ;
Alanazi A. ;
Alzanin S.M. .
International Journal of Interactive Mobile Technologies, 2023, 17 (15) :120-134
[28]   Intelligent detection framework for IoT-botnet detection: DBN-RNN with improved feature set [J].
Bobade, Sandip Y. ;
Apare, Ravindra S. ;
Borhade, Ravindra H. ;
Mahalle, Parikshit N. .
JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2025, 89
[29]   Botnet attack detection in IoT using hybrid optimisation enabled deep stacked autoencoder network [J].
Kalidindi, Archana ;
Arrama, Mahesh Babu .
INTERNATIONAL JOURNAL OF BIO-INSPIRED COMPUTATION, 2023, 22 (02) :77-88
[30]   SkipGateNet: A Lightweight CNN-LSTM Hybrid Model With Learnable Skip Connections for Efficient Botnet Attack Detection in IoT [J].
Alshehri, Mohammed S. ;
Ahmad, Jawad ;
Almakdi, Sultan ;
Qathrady, Mimonah Al ;
Ghadi, Yazeed Yasin ;
Buchanan, William J. .
IEEE ACCESS, 2024, 12 :35521-35538