IoT botnets Unveiled: architectural analysis, threat vectors, and cutting-edge detection techniques
摘要
The widespread deployment of Internet of Things (IoT) devices introduces significant security vulnerabilities due to limited computational power, resource-constrained networks, and insufficient energy reserves. These limitations coupled with lack of standard security protocols and weak configurations, make IoT systems highly susceptible to cyber threats. Consequently, IoT botnet which consists of numerous compromised and inadequately secured devices, has the potential to disrupt connected systems, thereby posing substantial risks to the integrity and stability of the entire IoT ecosystem. This paper presents a comprehensive study of IoT botnets, covering their evolution, architecture, and a taxonomy of defensive solutions. It classifies IoT botnets based on structural and behavioral attributes, highlighting correlations among different botnet families. Furthermore, the study discusses key publicly available datasets and open-source tools used for analysis and evaluation. A detailed review and classification of existing Intrusion Detection System (IDS) techniques tailored for IoT botnets is also provided. The paper concludes by identifying critical research challenges and open issues, aiming to provide future research directions. We hope that this work serves as a valuable resource for researchers seeking an in-depth understanding of IoT botnets and the current landscape of defensive strategies.