This document presents a master's thesis on detecting IoT malware using a threshold random walk algorithm, addressing the vulnerabilities of IoT devices due to low security. It discusses the design and implementation of a lightweight, efficient detection system capable of identifying attacks while utilizing limited computing resources. The thesis also covers related works, a distributed honeypot architecture for capturing attack samples, and experimental results that demonstrate the algorithm's promising performance in detecting unknown attack patterns.