IDS-DEC: A novel intrusion detection for CAN bus traffic based on deep embedded clustering

被引:2
作者
Shi, Jiahao [1 ]
Xie, Zhijun [1 ]
Dong, Li [1 ]
Jiang, Xianliang [1 ]
Jin, Xing [1 ]
机构
[1] Ningbo Univ, Fac Elect Engn & Comp Sci, Ningbo, Zhejiang, Peoples R China
关键词
Controller area network; In-vehicle network; Unsupervised learning; Deep embedded clustering; Intrusion detection; IN-VEHICLE; ANOMALY DETECTION; DETECTION SYSTEM; ATTACKS;
D O I
10.1016/j.vehcom.2024.100830
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
As the automotive industry advances towards greater automation, the proliferation of electronic control units (ECUs) has led to a substantial increase in the connectivity of in-vehicle networks with the external environment. However, the widely used Controller Area Network (CAN), which serves as the standard for in-vehicle networks, lacks robust security features, such as authentication or encrypted information transmission. This poses a significant challenge to the security of these networks. Despite the availability of powerful intrusion detection methods based on machine learning and deep learning, there are notable limitations in terms of stability and accuracy in the absence of a supervised learning process with labeled data. To address this issue, this paper introduces a novel in-vehicle intrusion detection system, termed IDS-DEC. This system combines a spatiotemporal self-coder employing LSTM and CNN (LCAE) with an entropy-based deep embedding clustering. Specifically, our approach involves encoding in-vehicle network traffic into windowed messages using a stream builder, designed to adapt to high-frequency traffic. These messages are then fed into the LCAE to extract a low-dimensional nonlinear spatiotemporal mapping from the initially high-dimensional data. The resulting low-dimensional mapping is subjected to a dual constraint in conjunction with our entropy-based pure deep embedding clustering module. This creates a bidirectional learning objective, addressing the optimization problem and facilitating an end-to-end training pattern for our model to adapt to diverse attack environments. The effectiveness of IDS-DEC is validated using both the benchmark Car Hacking dataset and the Car Hacking-Attack & Defense Challenge dataset. Experimental results demonstrate the model's high detection accuracy across various attacks, stabilizing at approximately 99% accuracy with a 0.5% false alarm rate. The F1 score also stabilizes at around 99%. In comparison with unsupervised methods based on deep stream clustering, LSTM-based self-encoder, and classification-based methods, IDS-DEC exhibits significant improvements across all performance metrics.
引用
收藏
页数:15
相关论文
共 50 条
  • [41] A Network Traffic Intrusion Detection Method for Industrial Control Systems Based on Deep Learning
    Jin, Kai
    Zhang, Lei
    Zhang, Yujie
    Sun, Duo
    Zheng, Xiaoyuan
    ELECTRONICS, 2023, 12 (20)
  • [42] Intrusion Detection System Based on Deep Neural Network and Incremental Learning for In-Vehicle CAN Networks
    Lin, Jiaying
    Wei, Yehua
    Li, Wenjia
    Long, Jing
    UBIQUITOUS SECURITY, 2022, 1557 : 255 - 267
  • [43] A deep learning based intrusion detection system for CAN vehicle based on combination of triple attention mechanism and GGO algorithm
    Hongwei Yang
    Mehdi Effatparvar
    Scientific Reports, 15 (1)
  • [44] Intrusion Detection System for In-Vehicle CAN-FD Bus ID Based on GAN Model
    Wang, Xu
    Xu, Yihu
    Xu, Yinan
    Wang, Ziyi
    Wu, Yujing
    IEEE ACCESS, 2024, 12 : 82402 - 82412
  • [45] DTL-IDS: Deep Transfer Learning-based Intrusion Detection System in 5G Networks
    Farzaneh, Behnam
    Shahriar, Nashid
    Al Muktadir, Abu Hena
    Towhid, Md. Shamim
    2023 19TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT, CNSM, 2023,
  • [46] Multiple Observation HMM-Based CAN Bus Intrusion Detection System for In-Vehicle Network
    Dong, Chen
    Wu, Hao
    Li, Qingyuan
    IEEE ACCESS, 2023, 11 : 35639 - 35648
  • [47] Optimized Ensemble Learning Models Based on Clustering and Hybrid Deep Learning for Wireless Intrusion Detection
    Pitchandi, Perumal
    Nivaashini, M.
    Grace, R. Kingsy
    IETE JOURNAL OF RESEARCH, 2024, 70 (10) : 7787 - 7807
  • [48] Deep and Machine Learning Approaches for Anomaly-Based Intrusion Detection of Imbalanced Network Traffic
    Abdulhammed, Razan
    Faezipour, Miad
    Abuzneid, Abdelshakour
    AbuMallouh, Arafat
    IEEE SENSORS LETTERS, 2019, 3 (01)
  • [49] A Novel Approach based on Lightweight Deep Neural Network for Network Intrusion Detection
    Zhao, Ruijie
    Li, Zhaojie
    Xue, Zhi
    Ohtsuki, Tomoaki
    Gui, Guan
    2021 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2021,
  • [50] A Novel Method Based on Clustering Algorithm and SVM for Anomaly Intrusion Detection of Wireless Sensor Networks
    Xiao, Zhenghong
    Chen, Zhigang
    Deng, Xiaoheng
    FRONTIERS OF MANUFACTURING AND DESIGN SCIENCE II, PTS 1-6, 2012, 121-126 : 3745 - 3749