VALID: Voltage-Based Lightweight Intrusion Detection for the Controller Area Network

被引:11
|
作者
Schell, Oleg [1 ]
Kneib, Marcel [2 ]
机构
[1] Bosch Engn GmbH, Abstatt, Germany
[2] Robert Bosch GmbH, Stuttgart, Germany
关键词
Intrusion Detection; Automotive Security; Controller Area Network; CONNECTED VEHICLES;
D O I
10.1109/TrustCom50675.2020.00041
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The Controller Area Network (CAN), a broadcasting bus for intra-vehicle communication, does not provide any security mechanisms, although it is implemented in almost every vehicle. Attackers can exploit this issue, transmit malicious messages unnoticeably and cause severe harm. As the utilization of Message Authentication Codes (MACs) is only possible to a limited extent in resource-constrained systems, the focus is put on the development of Intrusion Detection Systems (IDSs). Due to their simple idea of operation, current developments are increasingly utilizing physical signal properties like voltages to realize these systems. Although the feasibility for CAN-based networks could be demonstrated, the least approaches consider the constrained resource-availability of vehicular hardware. To close this gap, we present Voltage-Based Lightweight Intrusion Detection (VALID), which provides physics-based intrusion detection with low resource requirements. By utilizing solely the individual voltage levels on the network during communication, the system detects unauthorized message transmissions without any sophisticated sampling approaches and feature calculations. Having performed evaluations on data from two real vehicles, we show that VALID is not only able to detect intrusions with an accuracy of 99.54 %, but additionally is capable of identifying the attack source reliably. These properties make VALID one of the most lightweight intrusion detection approaches that is ready-to-use, as it can be easily implemented on hardware already installed in vehicles and does not require any further components. Additionally, this allows existing platforms to be retrofitted and vehicular security systems to be improved and extended.
引用
收藏
页码:225 / 232
页数:8
相关论文
共 50 条
  • [21] CopyCAN: An Error-Handling Protocol based Intrusion Detection System for Controller Area Network
    Longari, Stefano
    Penco, Matteo
    Carminati, Michele
    Zanero, Stefano
    CPS-SPC'19: PROCEEDINGS OF THE ACM WORKSHOP ON CYBER-PHYSICAL SYSTEMS SECURITY & PRIVACY, 2019, : 39 - 50
  • [22] U-CAN: A Convolutional Neural Network Based Intrusion Detection for Controller Area Networks
    Desta, Araya Kibrom
    Ohira, Shuji
    Arai, Ismail
    Fujikawa, Kazutoshi
    2022 IEEE 46TH ANNUAL COMPUTERS, SOFTWARE, AND APPLICATIONS CONFERENCE (COMPSAC 2022), 2022, : 1481 - 1488
  • [23] TIDAL-CAN: Differential Timing Based Intrusion Detection and Localization for Controller Area Network
    Murvay, Pal-Stefan
    Groza, Bogdan
    IEEE ACCESS, 2020, 8 : 68895 - 68912
  • [24] Stability Analysis of a Voltage-Based Controller for Robot Manipulators
    Orrante-Sakanassi, Jorge
    Santibanez, Victor
    Moreno-Valenzuela, Javier
    INTERNATIONAL JOURNAL OF ADVANCED ROBOTIC SYSTEMS, 2013, 10
  • [25] A Lightweight Network Intrusion Detection Model Based on Feature Selection
    Dai Hong
    Li Haibo
    IEEE 15TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING, PROCEEDINGS, 2009, : 165 - +
  • [26] A Voltage-Based Controller for an Electric-Vehicle Charger
    Al-Awami, Ali T.
    Sortomme, Eric
    Akhtar, Ghous Muhammad Asim
    Faddel, Samy
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2016, 65 (06) : 4185 - 4196
  • [27] A Novel Approach based on Lightweight Deep Neural Network for Network Intrusion Detection
    Zhao, Ruijie
    Li, Zhaojie
    Xue, Zhi
    Ohtsuki, Tomoaki
    Gui, Guan
    2021 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2021,
  • [28] Adaptive Controller Area Network Intrusion Detection System Considering Temperature Variations
    Jeong, Woojin
    Choi, Eunmin
    Song, Hoseung
    Cho, Minji
    Choi, Ji-Woong
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 3925 - 3933
  • [29] Using Streaming Data Algorithm for Intrusion Detection on the Vehicular Controller Area Network
    Sharmin, Shaila
    Mansor, Hafizah
    Kadir, Andi Fitriah Abdul
    Aziz, Normaziah A.
    UBIQUITOUS SECURITY, 2022, 1557 : 131 - 144
  • [30] A Differential Voltage-Based Wide-Area Backup Protection Scheme for Transmission Network
    Samantaray, Shalini Ranjan
    Samantaray, Subhransu Ranjan
    IEEE SYSTEMS JOURNAL, 2022, 16 (01): : 520 - 530