{"id":"https://openalex.org/W4402813503","doi":"https://doi.org/10.1109/csr61664.2024.10679348","title":"Explainable Federated Learning for Botnet Detection in IoT Networks","display_name":"Explainable Federated Learning for Botnet Detection in IoT Networks","publication_year":2024,"publication_date":"2024-09-02","ids":{"openalex":"https://openalex.org/W4402813503","doi":"https://doi.org/10.1109/csr61664.2024.10679348"},"language":"en","primary_location":{"id":"doi:10.1109/csr61664.2024.10679348","is_oa":false,"landing_page_url":"https://doi.org/10.1109/csr61664.2024.10679348","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Conference on Cyber Security and Resilience (CSR)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101916839","display_name":"Rajesh Kalakoti","orcid":"https://orcid.org/0000-0001-7390-8034"},"institutions":[{"id":"https://openalex.org/I111112146","display_name":"Tallinn University of Technology","ror":"https://ror.org/0443cwa12","country_code":"EE","type":"education","lineage":["https://openalex.org/I111112146"]}],"countries":["EE"],"is_corresponding":false,"raw_author_name":"Rajesh Kalakoti","raw_affiliation_strings":["School of Information Technology, Taltech,Department of Software Science,Tallinn,Estonia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Information Technology, Taltech,Department of Software Science,Tallinn,Estonia","institution_ids":["https://openalex.org/I111112146"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075157158","display_name":"Hayretdin Bah\u015fi","orcid":"https://orcid.org/0000-0001-8882-4095"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hayretdin Bahsi","raw_affiliation_strings":["School of Information Technology,Department of Software Science,TalTech,Estonia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Information Technology,Department of Software Science,TalTech,Estonia","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5081748391","display_name":"Sven N\u00f5mm","orcid":"https://orcid.org/0000-0001-5571-1692"},"institutions":[{"id":"https://openalex.org/I111112146","display_name":"Tallinn University of Technology","ror":"https://ror.org/0443cwa12","country_code":"EE","type":"education","lineage":["https://openalex.org/I111112146"]}],"countries":["EE"],"is_corresponding":false,"raw_author_name":"Sven N\u00f5mm","raw_affiliation_strings":["School of Information Technology, Taltech,Department of Software Science,Tallinn,Estonia"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Information Technology, Taltech,Department of Software Science,Tallinn,Estonia","institution_ids":["https://openalex.org/I111112146"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":3.3601,"has_fulltext":false,"cited_by_count":11,"citation_normalized_percentile":{"value":0.93267005,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"01","last_page":"08"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9968000054359436,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9968000054359436,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9959999918937683,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9915000200271606,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/botnet","display_name":"Botnet","score":0.9500998258590698},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7088871002197266},{"id":"https://openalex.org/keywords/internet-of-things","display_name":"Internet of Things","score":0.5792823433876038},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4361759126186371},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.4159579575061798},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.39150160551071167},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.2206430733203888}],"concepts":[{"id":"https://openalex.org/C22735295","wikidata":"https://www.wikidata.org/wiki/Q317671","display_name":"Botnet","level":3,"score":0.9500998258590698},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7088871002197266},{"id":"https://openalex.org/C81860439","wikidata":"https://www.wikidata.org/wiki/Q251212","display_name":"Internet of Things","level":2,"score":0.5792823433876038},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4361759126186371},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.4159579575061798},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.39150160551071167},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.2206430733203888}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/csr61664.2024.10679348","is_oa":false,"landing_page_url":"https://doi.org/10.1109/csr61664.2024.10679348","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Conference on Cyber Security and Resilience (CSR)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":20,"referenced_works":["https://openalex.org/W2133590498","https://openalex.org/W2487898712","https://openalex.org/W2773478894","https://openalex.org/W2799758613","https://openalex.org/W2804154669","https://openalex.org/W2903872466","https://openalex.org/W2912213068","https://openalex.org/W2982426954","https://openalex.org/W3007358546","https://openalex.org/W3040552057","https://openalex.org/W3044515030","https://openalex.org/W3195027245","https://openalex.org/W4210968720","https://openalex.org/W4294691673","https://openalex.org/W4387830504","https://openalex.org/W4391407003","https://openalex.org/W4392945363","https://openalex.org/W6728757088","https://openalex.org/W6759226220","https://openalex.org/W6781175393"],"related_works":["https://openalex.org/W2748952813","https://openalex.org/W3159690896","https://openalex.org/W4230824443","https://openalex.org/W2945572725","https://openalex.org/W1989286518","https://openalex.org/W2921012173","https://openalex.org/W2758517546","https://openalex.org/W3134680667","https://openalex.org/W2804396347","https://openalex.org/W2185943007"],"abstract_inverted_index":{"The":[0,207],"widespread":[1],"use":[2],"of":[3,5,41,87,135,168,177,195,213],"Internet":[4],"Things":[6],"(IoT)":[7],"de-vices":[8],"has":[9,130],"increased":[10],"the":[11,38,70,79,108,118,123,128,133,157,187,193,203,211,219],"vulnerability":[12],"to":[13,19,66,85,106,132,198],"botnet":[14,200],"attacks,":[15],"presenting":[16],"significant":[17],"challenges":[18],"network":[20,145],"security.":[21],"Federated":[22],"learning":[23,153],"(FL)":[24],"is":[25],"a":[26,142,150],"promising":[27],"approach":[28,65,115],"for":[29,52,69,74],"detecting":[30],"IoT":[31,88,102,137,182,199],"botnets":[32],"while":[33],"preserving":[34],"data":[35,86,134,227],"privacy.":[36,228],"However,":[37],"black-box":[39],"nature":[40],"FL":[42,80],"models":[43,105,185],"impedes":[44],"their":[45],"interpretability":[46],"and":[47,54,186],"transparency,":[48],"which":[49],"are":[50],"crucial":[51],"trust":[53],"accountability":[55],"in":[56,78,149,174],"security":[57],"applications.":[58],"In":[59],"this":[60,114],"paper,":[61],"we":[62,191],"propose":[63],"an":[64],"generate":[67],"explanations":[68,99,121,125,216],"server":[71,109,129],"model":[72,147,163],"induced":[73],"intrusion":[75],"detection":[76,166,201],"tasks":[77],"setting":[81,155],"without":[82,225],"direct":[83],"access":[84,131],"device-based":[89,103,183],"clients.":[90,139],"This":[91],"involves":[92],"aggregating":[93],"SHAP":[94,205,215],"(SHapley":[95],"Additive":[96],"ex-Planations)":[97],"value":[98],"from":[100],"individual":[101],"client":[104],"approximate":[107],"model's":[110],"explanations.":[111,206],"We":[112,140],"evaluated":[113],"by":[116],"comparing":[117],"aggregated":[119],"client-based":[120,214],"with":[122,156],"server-based":[124,220],"obtained":[126],"when":[127],"participating":[136],"device":[138],"employed":[141],"deep":[143],"neural":[144],"(DNN)":[146],"trained":[148],"horizontal":[151],"federated":[152,158],"(HFL)":[154],"averaging":[159],"(FedAvg)":[160],"algorithm.":[161],"DNN":[162],"achieved":[164],"high":[165],"rates":[167],"Accuracy,":[169],"Precision,":[170],"Recall":[171],"&":[172],"Fl-Score":[173],"Botnet":[175],"Detection":[176],"multiclass":[178],"classification":[179],"on":[180],"both":[181],"client-side":[184],"server-side":[188],"model.":[189],"Additionally,":[190],"analyzed":[192],"importance":[194],"features":[196],"contributing":[197],"using":[202],"generated":[204],"results":[208],"demonstrate":[209],"that":[210],"aggregation":[212],"closely":[217],"approximates":[218],"explanations,":[221],"achieving":[222],"comparable":[223],"explainability":[224],"compromising":[226]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":7},{"year":2024,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
