paper-with-me

홈 › Papers

Machine Learning-Based Early Detection of IoT Botnets Using Network-Edge Traffic

2020-10-22 · Ayush Kumar, Mrinalini Shridhar, Sahithya Swaminathan, Teng Joon Lim

In this work, we present a lightweight IoT botnet detection solution, EDIMA, which is designed to be deployed at the edge gateway installed in home networks and targets early detection of botnets prior to the launch of an attack. EDIMA includes a novel two-stage Machine Learning (ML)-based detector developed specifically for IoT bot detection at the edge gateway. The ML-based bot detector first employs ML algorithms for aggregate traffic classification and subsequently Autocorrelation Function (ACF)-based tests to detect individual bots. The EDIMA architecture also comprises a malware traffic database, a policy engine, a feature extractor and a traffic parser. Performance evaluation results show that EDIMA achieves high bot scanning and bot-CnC traffic detection accuracies with very low false positive rates. The detection performance is also shown to be robust to an increase in the number of IoT devices connected to the edge gateway where EDIMA is deployed. Further, the runtime performance analysis of a Python implementation of EDIMA deployed on a Raspberry Pi reveals low bot detection delays and low RAM consumption. EDIMA is also shown to outperform existing detection techniques for bot scanning traffic and bot-CnC server communication.

📄 PDF Abstract BibTeX arXiv:2010.11453

Code (0)

등록된 구현이 없습니다.

Tasks

BIG-bench Machine LearningTraffic Classification

Similar Papers 제목 키워드 기반

Botnet Detection Using Recurrent Variational Autoencoder

2020-04-01 · Jeeyung Kim, Alex Sim, Jinoh Kim, Kesheng Wu

Botnets are increasingly used by malicious actors, creating increasing threat to a large number of internet users. To address this growing danger, we propose to study methods to detect botnets, especially those that are …

Line Detection

Cyber Attack Detection thanks to Machine Learning Algorithms

2020-01-17 · Antoine Delplace, Sheryl Hermoso, Kristofer Anandita

Cybersecurity attacks are growing both in frequency and sophistication over the years. This increasing sophistication and complexity call for more advancement and continuous innovation in defensive strategies. Traditiona…

BIG-bench Machine LearningCyber Attack Detectionfeature selectionIntrusion Detection

Improving Botnet Detection with Recurrent Neural Network and Transfer Learning

2021-04-26 · Jeeyung Kim, Alex Sim, Jinoh Kim, Kesheng Wu 외

Botnet detection is a critical step in stopping the spread of botnets and preventing malicious activities. However, reliable detection is still a challenging task, due to a wide variety of botnets involving ever-increasi…

Transfer Learning

Machine Learning DDoS Detection for Consumer Internet of Things Devices

2018-04-11 · Rohan Doshi, Noah Apthorpe, Nick Feamster

An increasing number of Internet of Things (IoT) devices are connecting to the Internet, yet many of these devices are fundamentally insecure, exposing the Internet to a variety of attacks. Botnets such as Mirai have use…

BIG-bench Machine Learningfeature selection

Hybrid CNN-LSTM Framework for Intelligent Cyber Attack Detection and Prevention in U.S. Critical Digital Infrastructure: A Comparative Machine Learning Evaluation on CSE-CIC-IDS2018

2026-06-04 · Md. Iqbal Hossan, Md. Serajul Kabir Chowdhury Rubel, Md. Arifur Rahman, B. M. Taslimul Haque arxiv

Digital infrastructure is growing at a rapid pace in the United States, and as a result, exposure to advanced cyber threats to critical sectors including healthcare, finance, transportation, energy and government systems…

Feature EngineeringIntrusion Detection