Enhancing can security with ML-based IDS: Strategies and efficacies against adversarial attacks

被引:0
|
作者
Lin, Ying-Dar [1 ]
Chan, Wei-Hsiang [1 ]
Lai, Yuan-Cheng [2 ]
Yu, Chia-Mu [3 ]
Wu, Yu-Sung [1 ]
Lee, Wei-Bin [4 ]
机构
[1] Natl Yang Ming Chiao Tung Univ, Dept Comp Sci, Hsinchu 300, Taiwan
[2] Natl Taiwan Univ Sci & Technol, Dept Informat Management, Taipei 10607, Taiwan
[3] Natl Yang Ming Chiao Tung Univ, Dept Elect & Elect Engn, Hsinchu 300, Taiwan
[4] Hon Hai Res Inst, Taipei, Taiwan
关键词
Adversarial attack; Machine learning; Intrusion detection; Distance-based optimization; Electronic vehicle;
D O I
10.1016/j.cose.2025.104322
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Control Area Networks (CAN) face serious security threats recently due to their inherent vulnerabilities and the increasing sophistication of cyberattacks targeting automotive and industrial systems. This paper focuses on enhancing the security of CAN, which currently lack adequate defense mechanisms. We propose integrating Machine Learning-based Intrusion Detection Systems (ML-based IDS) into the network to address this vulnerability. However, ML systems are susceptible to adversarial attacks, leading to misclassification of data. We introduce three defense combination methods to mitigate this risk: adversarial training, ensemble learning, and distance-based optimization. Additionally, we employ a simulated annealing algorithm in distance-based optimization to optimize the distance moved in feature space, aiming to minimize intra-class distance and maximize the inter-class distance. Our results show that the ZOO attack is the most potent adversarial attack, significantly impacting model performance. In terms of model, the basic models achieve an F1 score of 0.99, with CNN being the most robust against adversarial attacks. Under known adversarial attacks, the average F1 score decreases to 0.56. Adversarial training with triplet loss does not perform well, achieving only 0.64, while our defense method attains the highest F1 score of 0.97. For unknown adversarial attacks, the F1 score drops to 0.24, with adversarial training with triplet loss scoring 0.47. Our defense method still achieves the highest score of 0.61. These results demonstrate our method's excellent performance against known and unknown adversarial attacks.
引用
收藏
页数:13
相关论文
共 50 条
  • [21] SECURITY OF FACIAL FORENSICS MODELS AGAINST ADVERSARIAL ATTACKS
    Huang, Rong
    Fang, Fuming
    Nguyen, Huy H.
    Yamagishi, Junichi
    Echizen, Isao
    2020 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING (ICIP), 2020, : 2236 - 2240
  • [22] Enhancing Cyber Security of LoRaWAN Gateways under Adversarial Attacks
    Mohamed, Ali
    Wang, Franz
    Butun, Ismail
    Qadir, Junaid
    Lagerstrom, Robert
    Gastaldo, Paolo
    Caviglia, Daniele D.
    SENSORS, 2022, 22 (09)
  • [23] Enhancing Security in Multimodal Biometric Fusion: Analyzing Adversarial Attacks
    Alghamdi, Shaima M.
    Jarraya, Salma Kammoun
    Kateb, Faris
    IEEE ACCESS, 2024, 12 : 106133 - 106145
  • [24] Enhancing ML-Based DoS Attack Detection with Feature Engineering
    Zhao, Shujun
    Santana, Lesther
    Owusu, Evans
    Rahouti, Mohamed
    Xiong, Kaiqi
    Xin, Yufeng
    2023 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY, CNS, 2023,
  • [25] Detection of adversarial attacks against security systems based on deep learning model
    Jaber, Mohanad J.
    Jaber, Zahraa Jasim
    Obaid, Ahmed J.
    JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2024, 27 (05): : 1523 - 1538
  • [26] ML-Based Detection of DDoS Attacks Using Evolutionary Algorithms Optimization
    Talpur, Fauzia
    Korejo, Imtiaz Ali
    Chandio, Aftab Ahmed
    Ghulam, Ali
    Talpur, Mir. Sajjad Hussain
    SENSORS, 2024, 24 (05)
  • [27] Enhancing Model Robustness Against Adversarial Attacks with an Anti-adversarial Module
    Qin, Zhiquan
    Liu, Guoxing
    Lin, Xianming
    PATTERN RECOGNITION AND COMPUTER VISION, PRCV 2023, PT IX, 2024, 14433 : 66 - 78
  • [28] Adversarial Attacks on SDN-Based Deep Learning IDS System
    Huang, Chi-Hsuan
    Lee, Tsung-Han
    Chang, Lin-Huang
    Lin, Jhih-Ren
    Horng, Gwoboa
    MOBILE AND WIRELESS TECHNOLOGY 2018, ICMWT 2018, 2019, 513 : 181 - 191
  • [29] Strengthening IDS against Evasion Attacks with GAN-based Adversarial Samples in SDN-enabled network
    Cao Phan Xuan Qui
    Dang Hong Quang
    Phan The Duy
    Do Thi Thu Hien
    Van-Hau Pham
    2021 RIVF INTERNATIONAL CONFERENCE ON COMPUTING AND COMMUNICATION TECHNOLOGIES (RIVF 2021), 2021, : 192 - 197
  • [30] Enhancing the robustness of QMIX against state-adversarial attacks
    Guo, Weiran
    Liu, Guanjun
    Zhou, Ziyuan
    Wang, Ling
    Wang, Jiacun
    NEUROCOMPUTING, 2024, 572