In this work, we present an algorithm for detecting Mirai botnet by analyzing the network traffic comprehensively. The algorithm is based on 3 characteristics of Mirai botnet: port scanning, heartbeat communication between bots and C&C server, and DDOS attacks. This work focusses on improving the accuracy of detecting Mirai botnet.
Нгуен Д. (науч. рук. Ханов А.Р., Комаров И.И.) Development and testing of an algorithm for detecting malicious traffic using the Mirai botnet as an example // Сборник тезисов докладов конгресса молодых ученых. Электронное издание. – СПб: Университет ИТМО, [2021]. URL: https://kmu.itmo.ru/digests/article/6451