Enhancing can security with ML-based IDS: Strategies and efficacies against adversarial attacks

被引:0
|
作者
Lin, Ying-Dar [1 ]
Chan, Wei-Hsiang [1 ]
Lai, Yuan-Cheng [2 ]
Yu, Chia-Mu [3 ]
Wu, Yu-Sung [1 ]
Lee, Wei-Bin [4 ]
机构
[1] Natl Yang Ming Chiao Tung Univ, Dept Comp Sci, Hsinchu 300, Taiwan
[2] Natl Taiwan Univ Sci & Technol, Dept Informat Management, Taipei 10607, Taiwan
[3] Natl Yang Ming Chiao Tung Univ, Dept Elect & Elect Engn, Hsinchu 300, Taiwan
[4] Hon Hai Res Inst, Taipei, Taiwan
关键词
Adversarial attack; Machine learning; Intrusion detection; Distance-based optimization; Electronic vehicle;
D O I
10.1016/j.cose.2025.104322
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Control Area Networks (CAN) face serious security threats recently due to their inherent vulnerabilities and the increasing sophistication of cyberattacks targeting automotive and industrial systems. This paper focuses on enhancing the security of CAN, which currently lack adequate defense mechanisms. We propose integrating Machine Learning-based Intrusion Detection Systems (ML-based IDS) into the network to address this vulnerability. However, ML systems are susceptible to adversarial attacks, leading to misclassification of data. We introduce three defense combination methods to mitigate this risk: adversarial training, ensemble learning, and distance-based optimization. Additionally, we employ a simulated annealing algorithm in distance-based optimization to optimize the distance moved in feature space, aiming to minimize intra-class distance and maximize the inter-class distance. Our results show that the ZOO attack is the most potent adversarial attack, significantly impacting model performance. In terms of model, the basic models achieve an F1 score of 0.99, with CNN being the most robust against adversarial attacks. Under known adversarial attacks, the average F1 score decreases to 0.56. Adversarial training with triplet loss does not perform well, achieving only 0.64, while our defense method attains the highest F1 score of 0.97. For unknown adversarial attacks, the F1 score drops to 0.24, with adversarial training with triplet loss scoring 0.47. Our defense method still achieves the highest score of 0.61. These results demonstrate our method's excellent performance against known and unknown adversarial attacks.
引用
收藏
页数:13
相关论文
共 50 条
  • [31] Enhancing Robustness of Weather Removal: Preprocessing-Based Defense Against Adversarial Attacks
    Frants, Vladimir
    Agaian, Sos
    MULTIMODAL IMAGE EXPLOITATION AND LEARNING 2024, 2024, 13033
  • [32] Enhancing trustworthiness in ML-based network intrusion detection with uncertainty quantification
    Talpini, Jacopo
    Sartori, Fabio
    Savi, Marco
    Journal of Reliable Intelligent Environments, 2024, 10 (04) : 501 - 520
  • [33] Smart Home Networks: Security Perspective and ML-based DDoS Detection
    Al Mtawa, Yaser
    Singh, Harsimranjit
    Haque, Anwar
    Refaey, Ahmed
    2020 IEEE CANADIAN CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING (CCECE), 2020,
  • [34] Advanced evasion attacks and mitigations on practical ML-based phishing website classifiers
    Song, Fu
    Lei, Yusi
    Chen, Sen
    Fan, Lingling
    Liu, Yang
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2021, 36 (09) : 5210 - 5240
  • [35] Enhancing Model Robustness and Accuracy Against Adversarial Attacks via Adversarial Input Training
    Ingle, Ganesh
    Pawale, Sanjesh
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2024, 15 (03) : 1210 - 1228
  • [36] Enhancing Security against Software Attacks with Reprogrammable Hardware
    Andel, Todd R.
    Whitehurst, Lindsey N.
    McDonald, J. Todd
    Al-Assadi, Waleed
    2018 1ST INTERNATIONAL CONFERENCE ON DATA INTELLIGENCE AND SECURITY (ICDIS 2018), 2018, : 258 - 266
  • [37] Enhancing the security of LTE networks against jamming attacks
    Jover, Roger Piqueras
    Lackey, Joshua
    Raghavan, Arvind
    EURASIP JOURNAL ON INFORMATION SECURITY, 2014, Springer International Publishing (01):
  • [38] On the Robustness of ML-Based Network Intrusion Detection Systems: An Adversarial and Distribution Shift Perspective
    Wang, Minxiao
    Yang, Ning
    Gunasinghe, Dulaj H.
    Weng, Ning
    COMPUTERS, 2023, 12 (10)
  • [39] Adversarial Analysis of ML-Based Anomaly Detection in Multi-Layer Network Automation
    Pan, Xiaoqin
    Yang, Hao
    Xu, Zichen
    Zhu, Zuqing
    JOURNAL OF LIGHTWAVE TECHNOLOGY, 2022, 40 (15) : 4934 - 4944
  • [40] Different ML-based strategies for customer churn prediction in banking sector
    Nadia Siddiqui
    Md Asraful Haque
    S. M. Shadab Khan
    Mohd Adil
    Haris Shoaib
    Journal of Data, Information and Management, 2024, 6 (3): : 217 - 234