IDS-DEC: A novel intrusion detection for CAN bus traffic based on deep embedded clustering

被引:2
作者
Shi, Jiahao [1 ]
Xie, Zhijun [1 ]
Dong, Li [1 ]
Jiang, Xianliang [1 ]
Jin, Xing [1 ]
机构
[1] Ningbo Univ, Fac Elect Engn & Comp Sci, Ningbo, Zhejiang, Peoples R China
关键词
Controller area network; In-vehicle network; Unsupervised learning; Deep embedded clustering; Intrusion detection; IN-VEHICLE; ANOMALY DETECTION; DETECTION SYSTEM; ATTACKS;
D O I
10.1016/j.vehcom.2024.100830
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
As the automotive industry advances towards greater automation, the proliferation of electronic control units (ECUs) has led to a substantial increase in the connectivity of in-vehicle networks with the external environment. However, the widely used Controller Area Network (CAN), which serves as the standard for in-vehicle networks, lacks robust security features, such as authentication or encrypted information transmission. This poses a significant challenge to the security of these networks. Despite the availability of powerful intrusion detection methods based on machine learning and deep learning, there are notable limitations in terms of stability and accuracy in the absence of a supervised learning process with labeled data. To address this issue, this paper introduces a novel in-vehicle intrusion detection system, termed IDS-DEC. This system combines a spatiotemporal self-coder employing LSTM and CNN (LCAE) with an entropy-based deep embedding clustering. Specifically, our approach involves encoding in-vehicle network traffic into windowed messages using a stream builder, designed to adapt to high-frequency traffic. These messages are then fed into the LCAE to extract a low-dimensional nonlinear spatiotemporal mapping from the initially high-dimensional data. The resulting low-dimensional mapping is subjected to a dual constraint in conjunction with our entropy-based pure deep embedding clustering module. This creates a bidirectional learning objective, addressing the optimization problem and facilitating an end-to-end training pattern for our model to adapt to diverse attack environments. The effectiveness of IDS-DEC is validated using both the benchmark Car Hacking dataset and the Car Hacking-Attack & Defense Challenge dataset. Experimental results demonstrate the model's high detection accuracy across various attacks, stabilizing at approximately 99% accuracy with a 0.5% false alarm rate. The F1 score also stabilizes at around 99%. In comparison with unsupervised methods based on deep stream clustering, LSTM-based self-encoder, and classification-based methods, IDS-DEC exhibits significant improvements across all performance metrics.
引用
收藏
页数:15
相关论文
共 50 条
  • [31] Facial-based Intrusion Detection System with Deep Learning in Embedded Devices
    Amato, Giuseppe
    Carrara, Fabio
    Falchi, Fabrizio
    Gennaro, Claudio
    Vairo, Claudio
    2018 INTERNATIONAL CONFERENCE ON SENSORS, SIGNAL AND IMAGE PROCESSING (SSIP 2018), 2018, : 64 - 68
  • [32] A novel scalable intrusion detection system based on deep learning
    Mighan, Soosan Naderi
    Kahani, Mohsen
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2021, 20 (03) : 387 - 403
  • [33] ABDNN-IDS: Attention-Based Deep Neural Networks for Intrusion Detection in Industrial IoT
    Ullah, Safi
    Boulila, Wadii
    Koubaa, Anis
    Khan, Zahid
    Ahmad, Jawad
    2023 IEEE 98TH VEHICULAR TECHNOLOGY CONFERENCE, VTC2023-FALL, 2023,
  • [34] A novel scalable intrusion detection system based on deep learning
    Soosan Naderi Mighan
    Mohsen Kahani
    International Journal of Information Security, 2021, 20 : 387 - 403
  • [35] An Intrusion Detection Model Based on Deep Convolutional Factorization Machine for Controller Area Network Bus in Internet of Vehicles
    Lu, Yong
    Guo, Yifan
    Chen, Shikang
    Li, Jiayun
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (22): : 36203 - 36213
  • [36] A hybrid deep learning based intrusion detection system using spatial-temporal representation of in-vehicle network traffic
    Lo, Wei
    Alqahtani, Hamed
    Thakur, Kutub
    Almadhor, Ahmad
    Chander, Subhash
    Kumar, Gulshan
    VEHICULAR COMMUNICATIONS, 2022, 35
  • [37] Intrusion Detection Framework for CAN Networks Based on Evidence Deep Learning
    Shi, Qin
    Li, Zhiwei
    Cheng, Teng
    Zhang, Qiang
    Wang, Wenchong
    Qiche Gongcheng/Automotive Engineering, 2024, 46 (11): : 2039 - 2045
  • [38] IDS-INT: Intrusion detection system using transformer-based transfer learning for imbalanced network traffic
    Ullah, Farhan
    Ullah, Shamsher
    Srivastava, Gautam
    Lin, Jerry Chun -Wei
    DIGITAL COMMUNICATIONS AND NETWORKS, 2024, 10 (01) : 190 - 204
  • [39] A novel clustering method for intrusion detection based on the OPTOC competitive learning paradigm
    Chen, S
    Xu, BG
    DYNAMICS OF CONTINUOUS DISCRETE AND IMPULSIVE SYSTEMS-SERIES A-MATHEMATICAL ANALYSIS, 2006, 13 : 1658 - 1663
  • [40] Intrusion Detection Method for In-Vehicle CAN Bus Based on Message and Time Transfer Matrix
    Bi, Zixiang
    Xu, Guoai
    Xu, Guosheng
    Tian, Miaoqing
    Jiang, Ruobing
    Zhang, Sutao
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022