IDS-DEC: A novel intrusion detection for CAN bus traffic based on deep embedded clustering

被引:2
作者
Shi, Jiahao [1 ]
Xie, Zhijun [1 ]
Dong, Li [1 ]
Jiang, Xianliang [1 ]
Jin, Xing [1 ]
机构
[1] Ningbo Univ, Fac Elect Engn & Comp Sci, Ningbo, Zhejiang, Peoples R China
关键词
Controller area network; In-vehicle network; Unsupervised learning; Deep embedded clustering; Intrusion detection; IN-VEHICLE; ANOMALY DETECTION; DETECTION SYSTEM; ATTACKS;
D O I
10.1016/j.vehcom.2024.100830
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
As the automotive industry advances towards greater automation, the proliferation of electronic control units (ECUs) has led to a substantial increase in the connectivity of in-vehicle networks with the external environment. However, the widely used Controller Area Network (CAN), which serves as the standard for in-vehicle networks, lacks robust security features, such as authentication or encrypted information transmission. This poses a significant challenge to the security of these networks. Despite the availability of powerful intrusion detection methods based on machine learning and deep learning, there are notable limitations in terms of stability and accuracy in the absence of a supervised learning process with labeled data. To address this issue, this paper introduces a novel in-vehicle intrusion detection system, termed IDS-DEC. This system combines a spatiotemporal self-coder employing LSTM and CNN (LCAE) with an entropy-based deep embedding clustering. Specifically, our approach involves encoding in-vehicle network traffic into windowed messages using a stream builder, designed to adapt to high-frequency traffic. These messages are then fed into the LCAE to extract a low-dimensional nonlinear spatiotemporal mapping from the initially high-dimensional data. The resulting low-dimensional mapping is subjected to a dual constraint in conjunction with our entropy-based pure deep embedding clustering module. This creates a bidirectional learning objective, addressing the optimization problem and facilitating an end-to-end training pattern for our model to adapt to diverse attack environments. The effectiveness of IDS-DEC is validated using both the benchmark Car Hacking dataset and the Car Hacking-Attack & Defense Challenge dataset. Experimental results demonstrate the model's high detection accuracy across various attacks, stabilizing at approximately 99% accuracy with a 0.5% false alarm rate. The F1 score also stabilizes at around 99%. In comparison with unsupervised methods based on deep stream clustering, LSTM-based self-encoder, and classification-based methods, IDS-DEC exhibits significant improvements across all performance metrics.
引用
收藏
页数:15
相关论文
共 50 条
  • [21] GGNB: Graph-based Gaussian naive Bayes intrusion detection system for CAN bus
    Islam, Riadul
    Devnath, Maloy K.
    Samad, Manar D.
    Al Kadry, Syed Md Jaffrey
    VEHICULAR COMMUNICATIONS, 2022, 33
  • [22] Intrusion Detection System for CAN Bus In-Vehicle Network based on Machine Learning Algorithms
    Alfardus, Asma
    Rawat, Danda B.
    2021 IEEE 12TH ANNUAL UBIQUITOUS COMPUTING, ELECTRONICS & MOBILE COMMUNICATION CONFERENCE (UEMCON), 2021, : 944 - 949
  • [23] TDL-IDS: Towards A Transfer Deep Learning based Intrusion Detection System
    Sun, Xingguo
    Meng, Weizhi
    Chiu, Wei-Yang
    Lampe, Brooke
    2022 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2022), 2022, : 2603 - 2608
  • [24] Metaverse-IDS: Deep learning-based intrusion detection system for Metaverse-IoT networks
    Gaber, Tarek
    Awotunde, Joseph Bamidele
    Torky, Mohamed
    Ajagbe, Sunday A.
    Hammoudeh, Mohammad
    Li, Wei
    INTERNET OF THINGS, 2023, 24
  • [25] A Model-Based Method for Enabling Source Mapping and Intrusion Detection on Proprietary Can Bus
    Zhou, Jia
    Xie, Guoqi
    Zeng, Haibo
    Zhang, Weizhe
    Yang, Laurence T.
    Alazab, Mamoun
    Li, Renfa
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (11) : 12922 - 12932
  • [26] Intrusion Detection for In-Vehicle CAN Bus Based on Lightweight Neural Network
    Ding, Defeng
    Wei, Yehua
    Cheng, Can
    Long, Jing
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2023, 32 (07)
  • [27] A novel intrusion detection model for the CAN bus packet of in-vehicle network based on attention mechanism and autoencoder
    Wei, Pengcheng
    Wang, Bo
    Dai, Xiaojun
    Li, Li
    He, Fangcheng
    DIGITAL COMMUNICATIONS AND NETWORKS, 2023, 9 (01) : 14 - 21
  • [28] DOC-IDS: A Deep Learning-Based Method for Feature Extraction and Anomaly Detection in Network Traffic
    Yoshimura, Naoto
    Kuzuno, Hiroki
    Shiraishi, Yoshiaki
    Morii, Masakatu
    SENSORS, 2022, 22 (12)
  • [29] LSTM-Based Intrusion Detection System for In-Vehicle Can Bus Communications
    Hossain, Md Delwar
    Inoue, Hiroyuki
    Ochiai, Hideya
    Fall, Doudou
    Kadobayashi, Youki
    IEEE ACCESS, 2020, 8 (08) : 185489 - 185502
  • [30] A novel intrusion detection method based on clonal selection clustering algorithm
    Xian, JQ
    Lang, FH
    Tang, XL
    PROCEEDINGS OF 2005 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-9, 2005, : 3905 - 3910