{"id":"https://openalex.org/W4391407003","doi":"https://doi.org/10.1109/jiot.2024.3360626","title":"Improving IoT Security With Explainable AI: Quantitative Evaluation of Explainability for IoT Botnet Detection","display_name":"Improving IoT Security With Explainable AI: Quantitative Evaluation of Explainability for IoT Botnet Detection","publication_year":2024,"publication_date":"2024-01-31","ids":{"openalex":"https://openalex.org/W4391407003","doi":"https://doi.org/10.1109/jiot.2024.3360626"},"language":"en","primary_location":{"id":"doi:10.1109/jiot.2024.3360626","is_oa":false,"landing_page_url":"https://doi.org/10.1109/jiot.2024.3360626","pdf_url":null,"source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101916839","display_name":"Rajesh Kalakoti","orcid":"https://orcid.org/0000-0001-7390-8034"},"institutions":[{"id":"https://openalex.org/I111112146","display_name":"Tallinn University of Technology","ror":"https://ror.org/0443cwa12","country_code":"EE","type":"education","lineage":["https://openalex.org/I111112146"]}],"countries":["EE"],"is_corresponding":false,"raw_author_name":"Rajesh Kalakoti","raw_affiliation_strings":["Department of Software Science, Tallinn University of Technology, Tallinn, Estonia","Department of Software Science, Tallinn University of Technology (TalTech), Estonia"],"raw_orcid":"https://orcid.org/0000-0001-7390-8034","affiliations":[{"raw_affiliation_string":"Department of Software Science, Tallinn University of Technology, Tallinn, Estonia","institution_ids":["https://openalex.org/I111112146"]},{"raw_affiliation_string":"Department of Software Science, Tallinn University of Technology (TalTech), Estonia","institution_ids":["https://openalex.org/I111112146"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075157158","display_name":"Hayretdin Bah\u015fi","orcid":"https://orcid.org/0000-0001-8882-4095"},"institutions":[{"id":"https://openalex.org/I111112146","display_name":"Tallinn University of Technology","ror":"https://ror.org/0443cwa12","country_code":"EE","type":"education","lineage":["https://openalex.org/I111112146"]},{"id":"https://openalex.org/I203172682","display_name":"Northern Arizona University","ror":"https://ror.org/0272j5188","country_code":"US","type":"education","lineage":["https://openalex.org/I203172682"]}],"countries":["EE","US"],"is_corresponding":false,"raw_author_name":"Hayretdin Bahsi","raw_affiliation_strings":["Department of Software Science, Tallinn University of Technology, Tallinn, Estonia","School of Informatics, Computing and Cyber Systems, Northern Arizona University, USA","Department of Software Science, Tallinn University of Technology (TalTech), Estonia"],"raw_orcid":"https://orcid.org/0000-0001-8882-4095","affiliations":[{"raw_affiliation_string":"Department of Software Science, Tallinn University of Technology, Tallinn, Estonia","institution_ids":["https://openalex.org/I111112146"]},{"raw_affiliation_string":"School of Informatics, Computing and Cyber Systems, Northern Arizona University, USA","institution_ids":["https://openalex.org/I203172682"]},{"raw_affiliation_string":"Department of Software Science, Tallinn University of Technology (TalTech), Estonia","institution_ids":["https://openalex.org/I111112146"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5081748391","display_name":"Sven N\u00f5mm","orcid":"https://orcid.org/0000-0001-5571-1692"},"institutions":[{"id":"https://openalex.org/I111112146","display_name":"Tallinn University of Technology","ror":"https://ror.org/0443cwa12","country_code":"EE","type":"education","lineage":["https://openalex.org/I111112146"]}],"countries":["EE"],"is_corresponding":false,"raw_author_name":"Sven N\u00f5mm","raw_affiliation_strings":["Department of Software Science, Tallinn University of Technology, Tallinn, Estonia","Department of Software Science, Tallinn University of Technology (TalTech), Estonia"],"raw_orcid":"https://orcid.org/0000-0001-5571-1692","affiliations":[{"raw_affiliation_string":"Department of Software Science, Tallinn University of Technology, Tallinn, Estonia","institution_ids":["https://openalex.org/I111112146"]},{"raw_affiliation_string":"Department of Software Science, Tallinn University of Technology (TalTech), Estonia","institution_ids":["https://openalex.org/I111112146"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":22.7643,"has_fulltext":false,"cited_by_count":77,"citation_normalized_percentile":{"value":0.99616032,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":100},"biblio":{"volume":"11","issue":"10","first_page":"18237","last_page":"18254"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9904999732971191,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9904999732971191,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.9722999930381775,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.970300018787384,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/botnet","display_name":"Botnet","score":0.9062455892562866},{"id":"https://openalex.org/keywords/internet-of-things","display_name":"Internet of Things","score":0.8235210180282593},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7872837781906128},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6021984219551086},{"id":"https://openalex.org/keywords/security-analysis","display_name":"Security analysis","score":0.4466785490512848},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.13061287999153137},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.1019105315208435}],"concepts":[{"id":"https://openalex.org/C22735295","wikidata":"https://www.wikidata.org/wiki/Q317671","display_name":"Botnet","level":3,"score":0.9062455892562866},{"id":"https://openalex.org/C81860439","wikidata":"https://www.wikidata.org/wiki/Q251212","display_name":"Internet of Things","level":2,"score":0.8235210180282593},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7872837781906128},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6021984219551086},{"id":"https://openalex.org/C38369872","wikidata":"https://www.wikidata.org/wiki/Q7445009","display_name":"Security analysis","level":2,"score":0.4466785490512848},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.13061287999153137},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.1019105315208435}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/jiot.2024.3360626","is_oa":false,"landing_page_url":"https://doi.org/10.1109/jiot.2024.3360626","pdf_url":null,"source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":69,"referenced_works":["https://openalex.org/W1994606570","https://openalex.org/W2053075547","https://openalex.org/W2099940443","https://openalex.org/W2129888542","https://openalex.org/W2131251708","https://openalex.org/W2296509296","https://openalex.org/W2487898712","https://openalex.org/W2516809705","https://openalex.org/W2528491735","https://openalex.org/W2789828921","https://openalex.org/W2799758613","https://openalex.org/W2894279555","https://openalex.org/W2901508923","https://openalex.org/W2902900716","https://openalex.org/W2917767525","https://openalex.org/W2958089299","https://openalex.org/W2958285686","https://openalex.org/W2961434948","https://openalex.org/W2962772482","https://openalex.org/W2962790223","https://openalex.org/W2963095307","https://openalex.org/W2963197901","https://openalex.org/W2963748489","https://openalex.org/W2963806301","https://openalex.org/W2963847595","https://openalex.org/W2972689670","https://openalex.org/W3006526650","https://openalex.org/W3007358546","https://openalex.org/W3013100408","https://openalex.org/W3017093935","https://openalex.org/W3022550689","https://openalex.org/W3025804100","https://openalex.org/W3035366542","https://openalex.org/W3043083589","https://openalex.org/W3090540360","https://openalex.org/W3116286104","https://openalex.org/W3122864121","https://openalex.org/W3214024265","https://openalex.org/W3215572174","https://openalex.org/W3216145890","https://openalex.org/W4210361514","https://openalex.org/W4210659135","https://openalex.org/W4226065182","https://openalex.org/W4226108798","https://openalex.org/W4285234540","https://openalex.org/W4288020676","https://openalex.org/W4289469015","https://openalex.org/W4293192745","https://openalex.org/W4294284964","https://openalex.org/W4294691140","https://openalex.org/W4294691673","https://openalex.org/W4295313945","https://openalex.org/W4295832444","https://openalex.org/W4297399257","https://openalex.org/W4313045611","https://openalex.org/W4313116287","https://openalex.org/W4318148171","https://openalex.org/W4367309662","https://openalex.org/W4378365142","https://openalex.org/W4379232043","https://openalex.org/W4381327855","https://openalex.org/W4403451191","https://openalex.org/W6734710626","https://openalex.org/W6737947904","https://openalex.org/W6748281036","https://openalex.org/W6755274658","https://openalex.org/W6770827627","https://openalex.org/W6786860526","https://openalex.org/W6787425754"],"related_works":["https://openalex.org/W3159690896","https://openalex.org/W1989286518","https://openalex.org/W2921012173","https://openalex.org/W2124456408","https://openalex.org/W2945572725","https://openalex.org/W2758517546","https://openalex.org/W4230824443","https://openalex.org/W3134680667","https://openalex.org/W2804396347","https://openalex.org/W2185943007"],"abstract_inverted_index":{"Detecting":[0],"botnets":[1],"is":[2,43],"an":[3],"essential":[4],"task":[5],"to":[6,44,73,107,178],"ensure":[7],"the":[8,24,31,46,90,109,112,116,152,159,179],"security":[9],"of":[10,26,30,50,111,118,147,154,163],"IoT":[11,56,81,166],"systems.":[12],"Machine":[13],"learning-based":[14,165],"approaches":[15],"have":[16],"been":[17],"widely":[18],"used":[19,70],"for":[20,55,80],"this":[21,38,136],"purpose,":[22],"but":[23],"lack":[25],"interpretability":[27,49,160],"and":[28,48,76,105,129,161,176,189],"transparency":[29,47,162],"models":[32,54,79,133],"often":[33],"limits":[34],"their":[35],"effectiveness.":[36],"In":[37],"research":[39],"paper,":[40],"our":[41],"aim":[42],"improve":[45],"high-performance":[51],"machine":[52,164],"learning":[53],"botnet":[57,82,167],"detection":[58,141,168],"by":[59,121,173,196],"selecting":[60],"higher-quality":[61],"explanations":[62,119,171],"using":[63],"explainable":[64],"artificial":[65],"intelligence":[66],"(XAI)":[67],"techniques.":[68],"We":[69,94],"three":[71],"datasets":[72],"induce":[74],"binary":[75],"multiclass":[77],"classification":[78],"detection,":[83],"with":[84,143],"Sequential":[85],"Backward":[86],"Selection":[87],"employed":[88,125,134],"as":[89,103],"feature":[91],"selection":[92],"technique.":[93],"then":[95],"use":[96],"two":[97],"post":[98],"hoc":[99],"XAI":[100,122,155],"techniques":[101],"such":[102],"LIME":[104,175,195],"SHAP,":[106],"explain":[108],"behaviour":[110],"models.":[113,169],"To":[114],"evaluate":[115],"quality":[117],"generated":[120,172],"methods,":[123],"we":[124],"faithfulness,":[126,184],"monotonicity,":[127],"complexity,":[128,188],"sensitivity":[130],"metrics.":[131,202],"ML":[132],"in":[135,157,200],"work":[137],"achieve":[138],"very":[139],"high":[140,183,185],"rates":[142],"a":[144],"limited":[145],"number":[146],"features.":[148],"Our":[149],"findings":[150],"demonstrate":[151],"effectiveness":[153],"methods":[156],"improving":[158],"Specifically,":[170],"applying":[174],"SHAP":[177,193],"XGBoost":[180],"model":[181],"yield":[182],"Consistency,":[186],"low":[187,190],"sensitivity.":[191],"Furthermore,":[192],"outperforms":[194],"achieving":[197],"better":[198],"results":[199],"these":[201]},"counts_by_year":[{"year":2026,"cited_by_count":18},{"year":2025,"cited_by_count":41},{"year":2024,"cited_by_count":17},{"year":2021,"cited_by_count":1}],"updated_date":"2026-06-24T13:16:06.693445","created_date":"2025-10-10T00:00:00"}
