Volume 15, No. 3, 2024
doi: 10.12720/jait.15.3.330-339

Constructing IoT Botnet Detection Model Based on Degree Centrality and Path Analysis

Wan Nur Fatihah Wan Mohd Zaki 1, Raihana Syahirah Abdullah 1,*, Warusia Yassin 1, Siti Rahayu Selamat 1, Muhammad Safwan Rosli 1, and Syazwani Yahya 2
1. Information Security Forensics and Computer Networking (INSFORNET), Fakulti Teknologi Maklumat dan Komunikasi, Universiti Teknikal Malaysia Melaka (UTeM), Hang Tuah Jaya, 76100 Durian Tunggal Melaka, Malaysia
2. Faculty of Computing and Engineering, Quest International University, 31250 Ipoh, Perak, Malaysia
Email: wantehawanzaki95@gmail.com (W.N.F.W.M.Z.); raihana.syahirah@utem.edu.my (R.S.A.); s.m.warusia@utem.edu.my (W.Y.); sitirahayu@utem.edu.my(S.R.S.); safwan.rosli92@gmail.com (M.S.R.); syazwani.yahya@qiu.edu (S.Y.)
*Corresponding author

Manuscript received April 12, 2023; revised June 16, 2023; accepted September 13, 2023; published March 8, 2024.

Abstract—Internet of Things (IoT) Botnet is a network of connected devices, generally smart devices with software and intelligent sensors, networked over the internet to send and receive data from other intelligent devices infected with IoT Botnet malware. It is very challenging to detect IoT Botnet activity since the targeted devices are IoT devices. IoT Botnet attack patterns have not yet been disclosed. Current IoT Botnet detection is still unable to identify attack patterns, and failing to recognise key IoT Botnet behaviours has led to a loss of ability to meet detection criteria. The purpose of this research study is to identify IoT Botnet behaviour, propose an IoT Botnet attack pattern based on its behaviour, build an IoT Botnet detection model, and validate the selection of the IoT Botnet detection model using the IoT Botnet attack criteria. In addition, an IoT Botnet attack pattern is being developed by combining the IoT Botnet life cycle and IoT Botnet behaviour via IoT Botnet activities. A graph analytics-based IoT Botnet detection model has been created in order to detect IoT Botnet attack activities. The earlier detection of IoT Botnet has been visualised by IoT Botnet attack patterns using degree centrality and path analysis. The outcome demonstrated that the proposed IoT Botnets model met the detection criteria.
Keywords—Internet of Things (IoT) Botnet, attack pattern, graph analytics, degree centrality, path analysis

Cite: Wan Nur Fatihah Wan Mohd Zaki, Raihana Syahirah Abdullah, Warusia Yassin, Siti Rahayu Selamat, Muhammad Safwan Rosli, and Syazwani Yahya, "Constructing IoT Botnet Detection Model Based on Degree Centrality and Path Analysis," Journal of Advances in Information Technology, Vol. 15, No. 3, pp. 330-339, 2024.

Copyright © 2024 by the authors. This is an open access article distributed under the Creative Commons Attribution License (CC BY-NC-ND 4.0), which permits use, distribution and reproduction in any medium, provided that the article is properly cited, the use is non-commercial and no modifications or adaptations are made.