A system, method and storage medium for botnet detection in iot environment

A botnet and environment technology, applied in the field of intrusion detection, can solve problems such as failure to operate normally, and achieve the effect of reducing complexity and reducing complexity

Active Publication Date: 2022-07-26
UNIV OF ELECTRONICS SCI & TECH OF CHINA
View PDF10 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0009] In view of the problems of the above research, the purpose of the present invention is to provide a system and method for detecting botnets in the IoT environment, so as to solve the problem that the existing botnet detection technology cannot operate normally in the case of limited resources in the IoT environment

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A system, method and storage medium for botnet detection in iot environment
  • A system, method and storage medium for botnet detection in iot environment
  • A system, method and storage medium for botnet detection in iot environment

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0050] The present invention will be further described below with reference to the accompanying drawings and specific embodiments.

[0051] The system is deployed for the IoT device RaspberryPi 4B. The open source IoT botnet dataset N-baiot is used as the detection core plug-in training data, and the open source IoT botnet dataset Kitsune: Mirai is used as the simulated network environment data for the system description.

[0052] A system for botnet detection in IoT environments, including:

[0053] Traffic collector: used to monitor the traffic of the monitored IoT devices, and obtain the traffic data packets that meet the rules to be detected based on the whitelist mechanism;

[0054] Storage unit: used to store the traffic data packets obtained by the traffic collector;

[0055] Packet parser: Based on the improved wireless packet capture tool under the Linux system, it parses the content of the traffic packets in the storage unit, and after parsing, obtains IP informatio...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a system and method for botnet detection in IoT environment, belonging to the technical field of intrusion detection. The present invention includes a flow collector monitoring the flow of the monitored IoT device, and obtaining flow data packets that conform to the rules to be detected based on a whitelist mechanism; a storage unit stores the flow data packets acquired by the flow collector; The content in the existing traffic data packets is parsed. After parsing, IP information is obtained. The IP information includes time, source IP, destination IP, source address and destination address; the feature extractor extracts all statistical features of the IP information and performs feature engineering. The feature dimensionality reduction processing is performed to obtain the top three statistical features; the sample detector based on the detection model constructed by the decision tree algorithm performs malicious behavior judgment and detection on the obtained three statistical features. The present invention is used for botnet detection in IoT environment.

Description

technical field [0001] A system and method for botnet detection in IoT environment, which are used for botnet detection in IoT environment, and belong to the field of intrusion detection technology. Specifically, an automated IoT traffic detection system is designed in an offline manner, and can The detection model of the detection system is updated in a plug-in manner. Background technique [0002] IoT devices are showing a rapid development momentum in today's Internet. Communication technologies such as the Internet of Things significantly transcend the perception of the surrounding environment by traditional technologies, giving devices the ability to collect, quantify and understand their surroundings. The Internet of Things is one of the fastest growing fields in the history of computing, and a survey conducted by CISCO shows that the number of IoT devices is rising every year, exceeding 50 billion in 2020, and 44ZB of data will be exchanged between devices connected ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/40H04L69/22G06K9/62
CPCH04L63/1416H04L63/1425H04L69/22H04L2463/144G06F18/24323G06F18/214
Inventor 牛伟纳张小松代天赐鲁启杨彭钰杰吴昊
Owner UNIV OF ELECTRONICS SCI & TECH OF CHINA
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products