A novel graph-based approach for IoT botnet detection

被引:0
|
作者
Huy-Trung Nguyen
Quoc-Dung Ngo
Van-Hoang Le
机构
[1] Vietnam Academy of Science and Technology,Institute of Information Technology
[2] Vietnam Academy of Science and Technology,Graduate University of Science and Technology
[3] People’s Security Academy,undefined
[4] Posts and Telecommunications Institute of Technology,undefined
来源
International Journal of Information Security | 2020年 / 19卷
关键词
Information security; IoT botnet; PSI-Graph; Static analysis; Deep learning;
D O I
暂无
中图分类号
学科分类号
摘要
The Internet of things (IoT) is the extension of Internet connectivity into physical devices and everyday objects. These IoT devices can communicate with others over the Internet and fully integrate into people’s daily life. In recent years, IoT devices still suffer from basic security vulnerabilities making them vulnerable to a variety of threats and malware, especially IoT botnets. Unlike common malware on desktop personal computer and Android, heterogeneous processor architecture issue on IoT devices brings various challenges for researchers. Many studies take advantages of well-known dynamic or static analysis for detecting and classifying botnet on IoT devices. However, almost studies yet cannot address the multi-architecture issue and consume vast computing resources for analyzing. In this paper, we propose a lightweight method for detecting IoT botnet, which based on extracting high-level features from function–call graphs, called PSI-Graph, for each executable file. This feature shows the effectiveness when dealing with the multi-architecture problem while avoiding the complexity of control flow graph analysis that is used by most of the existing methods. The experimental results show that the proposed method achieves an accuracy of 98.7%, with the dataset of 11,200 ELF files consisting of 7199 IoT botnet samples and 4001 benign samples. Additionally, a comparative study with other existing methods demonstrates that our approach delivers better outcome. Lastly, we make the source code of this work available to Github.
引用
收藏
页码:567 / 577
页数:10
相关论文
共 50 条
  • [1] A novel graph-based approach for IoT botnet detection
    Huy-Trung Nguyen
    Quoc-Dung Ngo
    Van-Hoang Le
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2020, 19 (05) : 567 - 577
  • [2] Towards an Efficient Approach Using Graph-Based Evolutionary Algorithm for IoT Botnet Detection
    Ngo Q.-D.
    Nguyen H.-T.
    Informatica (Slovenia), 2023, 47 (06): : 97 - 104
  • [3] Botnet Detection Approach Using Graph-Based Machine Learning
    Alharbi, Afnan
    Alsubhi, Khalid
    IEEE ACCESS, 2021, 9 (09): : 99166 - 99180
  • [4] Towards effectively feature graph-based IoT botnet detection via reinforcement learning
    Quoc-Dung Ngo
    Huy-Trung Nguyen
    Le-Cuong Nguyen
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2021, 41 (06) : 6801 - 6814
  • [5] Botnet detection using graph-based feature clustering
    Chowdhury S.
    Khanzadeh M.
    Akula R.
    Zhang F.
    Zhang S.
    Medal H.
    Marufuzzaman M.
    Bian L.
    Journal of Big Data, 4 (1)
  • [6] A review on graph-based approaches for network security monitoring and botnet detection
    Sofiane Lagraa
    Martin Husák
    Hamida Seba
    Satyanarayana Vuppala
    Radu State
    Moussa Ouedraogo
    International Journal of Information Security, 2024, 23 : 119 - 140
  • [7] A review on graph-based approaches for network security monitoring and botnet detection
    Lagraa, Sofiane
    Husak, Martin
    Seba, Hamida
    Vuppala, Satyanarayana
    State, Radu
    Ouedraogo, Moussa
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, 23 (01) : 119 - 140
  • [8] LogGC: Novel Approach for Graph-based Log Anomaly Detection
    Andonov, Stefan
    Madjarov, Gjorgji
    2023 23RD IEEE INTERNATIONAL CONFERENCE ON DATA MINING WORKSHOPS, ICDMW 2023, 2023, : 1194 - 1202
  • [9] Deep Graph Embedding for IoT Botnet Traffic Detection
    Zhang, Bonan
    Li, Jingjin
    Ward, Lindsay
    Zhang, Ying
    Chen, Chao
    Zhang, Jun
    Security and Communication Networks, 2023, 2023
  • [10] Botnet Attack Detection Approach in IoT Networks
    T. M. Tatarnikova
    I. A. Sikarev
    P. Yu. Bogdanov
    T. V. Timochkina
    Automatic Control and Computer Sciences, 2022, 56 : 838 - 846