Semi-supervised intrusion detection system for in-vehicle networks based on variational autoencoder and adversarial reinforcement learning

被引:0
作者
Nguyen, Trieu-Phong [1 ]
Cho, Jeongho [2 ]
Kim, Daehee [1 ]
机构
[1] Soonchunhyang Univ, Dept Mobil Convergence Secur, Asan 31538, Chungcheongnam, South Korea
[2] Soonchunhyang Univ, Dept Elect Engn, Asan 31538, Chungcheongnam, South Korea
基金
新加坡国家研究基金会;
关键词
Intrusion detection system (IDS); Controller area network (CAN); Automotive security; Semi-supervised learning; Reinforcement learning; ANOMALY DETECTION; NEURAL-NETWORK; LSTM;
D O I
10.1016/j.knosys.2024.112563
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Despite the affordability, simplicity, and efficiency of controller area network (CAN) protocols, the security vulnerability remains a major challenge. Currently, a machine learning-based intrusion detection system (IDS) is considered an effective approach for improving security in CAN by identifying malicious attacks. However, earlier studies that relied on supervised learning methods required considerable amounts of labeled data. Data collection from vehicles is time-consuming and expensive. Furthermore, the obtained data exhibited a class imbalance, which presents further challenges in the analysis and model training. Thus, we propose a semi- supervised learning-based IDS that combines variational autoencoder (VAE) and adversarial reinforcement learning for the multi-class classification of both known and unknown attacks. The proposed system capitalizes on the diverse patterns inherent in unlabeled data, transforming this data space into one that is more conducive to classification. Concurrently, adversarial agents in the reinforcement learning algorithm interact competitively, progressively enhancing their ability to intelligently classify and select samples. To reduce the reliance on labeled data and effectively exploit them, we utilize a pseudo-labeling process for pre-training. Experimental results indicate that the proposed model achieves more effective classification while requiring less labeled data compared to other baseline models for known attacks. By inheriting the advantages of VAE, promising results demonstrate that the proposed system detects unknown attacks containing similar or completely different characteristics with high F1 scores exceeding 0.9 and 0.84, respectively. Finally, the proposed system was demonstrated to be a lightweight model for the expeditious detection of malevolent messages introduced into in- vehicle networks to ensure minimal latency.
引用
收藏
页数:15
相关论文
共 42 条
  • [1] Survey of Interoperability Challenges in the Internet of Vehicles
    Agbaje, Paul
    Anjum, Afia
    Mitra, Arkajyoti
    Oseghale, Emmanuel
    Bloom, Gedare
    Olufowobi, Habeeb
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2022, 23 (12) : 22838 - 22861
  • [2] IIDS: Intelligent Intrusion Detection System for Sustainable Development in Autonomous Vehicles
    Anbalagan, Sudha
    Raja, Gunasekaran
    Gurumoorthy, Sugeerthi
    Suresh, R. Deepak
    Dev, Kapal
    [J]. IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (12) : 15866 - 15875
  • [3] Two Novel SMOTE Methods for Solving Imbalanced Classification Problems
    Bao, Yuan
    Yang, Sibo
    [J]. IEEE ACCESS, 2023, 11 : 5816 - 5823
  • [4] Adversarial environment reinforcement learning algorithm for intrusion detection
    Caminero, Guillermo
    Lopez-Martin, Manuel
    Carro, Belen
    [J]. COMPUTER NETWORKS, 2019, 159 : 96 - 109
  • [5] SMOTE: Synthetic minority over-sampling technique
    Chawla, Nitesh V.
    Bowyer, Kevin W.
    Hall, Lawrence O.
    Kegelmeyer, W. Philip
    [J]. 2002, American Association for Artificial Intelligence (16)
  • [6] DESC-IDS: Towards an efficient real-time automotive intrusion detection system based on deep evolving stream clustering
    Cheng, Pengzhou
    Han, Mu
    Liu, Gongshen
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2023, 140 : 266 - 281
  • [7] Dong C., 2023, IEEE ACCESS
  • [8] Network Abnormal Traffic Detection Model Based on Semi-Supervised Deep Reinforcement Learning
    Dong, Shi
    Xia, Yuanjun
    Peng, Tao
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (04): : 4197 - 4212
  • [9] Open World Intrusion Detection: An Open Set Recognition Method for CAN Bus in Intelligent Connected Vehicles
    Du, Lei
    Gu, Zhaoquan
    Wang, Ye
    Gao, Cuiyun
    [J]. IEEE NETWORK, 2024, 38 (03): : 76 - 82
  • [10] TOW-IDS: Intrusion Detection System Based on Three Overlapped Wavelets for Automotive Ethernet
    Han, Mee Lan
    Kwak, Byung Il
    Kim, Huy Kang
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 411 - 422