Machine Learning for Malware Botnet Detection in IoT Devices

Abstract

Cyber threats against the Department of Defense (DOD) and the greater U.S. public create an ever-increasing security challenge. Advances in information technology provide new capabilities and benefits but also vulnerabilities. Today, the internet of things (IoT) is almost everywhere. Homes, business, and government organizations are continuing to add internet-connected devices for increased productivity and convenience. Military IoT devices provide traditional computing as well as specific functional purpose sensors. The DOD will increasingly depend upon a diverse range of IoT devices to gain information dominance over its adversaries. IoT technology in real time can provide entity-level maintenance, logistics, and intelligence data that has the potential to enable command and control decisions with greater confidence and speed. However, IoT devices are vulnerable to attack by malware, which has proven to be a network security concern. There have been many high-profile attacks such as the Mirai botnet and SolarWinds breaches that demonstrate IoT vulnerabilities. Advances in machine learning offer potential solutions to detect the evolving nature of cyber intrusions on internet networks. This thesis examines approaches to detecting malware-infected devices using machine learning and labeled IoT network flow data. It also seeks to determine whether supervised machine-learning models provide generalizable solutions for malware detection on new networks and IoT devices.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Jun 01, 2021
Accession Number
AD1150961

Entities

People

  • Charles R. Gallagher

Organizations

  • Naval Postgraduate School

Tags

Communities of Interest

  • Autonomy
  • C4I
  • Cyber
  • Energy and Power Technologies

DTIC Thesaurus Topics

  • Application Protocols
  • Artificial Intelligence
  • Artificial Intelligence Software
  • Computational Science
  • Computer Languages
  • Computer Programming
  • Computers
  • Data Mining
  • Dimensionality Reduction
  • Information Science
  • Information Systems
  • Machine Learning
  • Network Protocols
  • Network Science
  • Neural Networks
  • Operating Systems
  • Supervised Machine Learning

Fields of Study

  • Computer science

Readers

  • Cybersecurity.
  • Neural Network Machine Learning.

Technology Areas

  • 5G
  • 5G - Internet of Things
  • AI & ML
  • AI & ML - DoD AI Strategy
  • AI & ML - Neural Networks
  • Cyber
  • Fully Networked C3
  • Fully Networked C3 - Command and Control