Mitigating voltage fingerprint spoofing attacks on the controller area network bus

被引:0
|
作者
Wassila Lalouani
Yi Dang
Mohamed Younis
机构
[1] Towson University,Department of Computer and Information Sciences
[2] University of Maryland,Department of Computer Science and Electrical Engineering
来源
Cluster Computing | 2023年 / 26卷
关键词
Cyber physical systems; CAN bus; Security; Fingerprinting; Device authentication; Impersonation attack;
D O I
暂无
中图分类号
学科分类号
摘要
The Controller Area Network (CAN) bus suffers security vulnerabilities that allow message spoofing and masquerading Electronic Control Units (ECUs). A popular provision for mitigating these vulnerabilities is through the use of machine learning (ML) to derive ECU fingerprints based on the physical properties of bus signals. Particularly, voltage-based intrusion detection systems associate the message transmitter with its voltage fingerprint to detect conflicting logical ECU identifiers in the presence of cyberattacks. However, the signal characteristics depend on the operating conditions and hence the fingerprints need to be adapted overtime by online training of the underlying ML model. An adversary may exploit such a shortcoming to superimpose training data based on its own transmissions and thus bypass the protection mechanism. Such an attack not only allows device impersonation but also leads to rejecting transmissions of a legitimate ECU. This paper proposes an effective approach to thwart these attack scenarios. Our approach introduces unpredictably-scheduled transmissions involving one or multiple ECUs to confuse the adversary and ensure the generation of a legitimate fingerprinting dataset for online training. We validate the robustness of our approach using data collected from a real vehicle and show that it outperforms a prominent competing scheme by over 30% in terms of identifying malicious ECUs when the attacker could overwrite 50% of the retraining transmissions.
引用
收藏
页码:1447 / 1460
页数:13
相关论文
共 50 条
  • [21] A Design for Controller Area Network Bus Real-time Monitoring System
    Piao Chang-hao
    Chen Lu
    Cao Ju
    2011 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT), VOLS 1-4, 2012, : 1621 - 1624
  • [22] CAN(Controller Area Network) Bus Communication System Based on Matlab/Simulink
    Li, Fang
    Wang, Lifang
    Liao, Chenglin
    2008 4TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING, VOLS 1-31, 2008, : 4186 - 4189
  • [23] Designing Attacks Against Automotive Control Area Network Bus and Electronic Control Units
    Urien, Pascal
    2019 16TH IEEE ANNUAL CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE (CCNC), 2019,
  • [24] Mitigating Voltage Attacks in Multi-Tenant FPGAs
    Provelengios, George
    Holcomb, Daniel
    Tessier, Russell
    ACM TRANSACTIONS ON RECONFIGURABLE TECHNOLOGY AND SYSTEMS, 2021, 14 (02)
  • [25] Honeypot back-propagation for mitigating spoofing distributed Denial-of-Service attacks
    Khattab, Sherif
    Melhem, Rami
    Mosse, Daniel
    Znati, Taieb
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2006, 66 (09) : 1152 - 1164
  • [26] Robust Cooperative Sparse Representation Solutions for Detecting and Mitigating Spoofing Attacks in Autonomous Vehicles
    Piperigkos, N.
    Lalos, A. S.
    Anagnostopoulos, C.
    Zukhraf, S. Z. N.
    Laoudias, C.
    Michael, M. K.
    2023 31ST MEDITERRANEAN CONFERENCE ON CONTROL AND AUTOMATION, MED, 2023, : 407 - 412
  • [27] Controller-area-network bus control and monitor system for a radio astronomy interferometer
    Woody, David P.
    Wiitala, Bradley
    Scott, Stephen L.
    Lamb, James W.
    Lawrence, Ronald P.
    Giovanine, Curt
    Fredsti, Sancar J.
    Beard, Andrew
    Pryke, Clem
    Loh, Michael
    Greer, Christopher H.
    Cartwright, John K.
    Gutierrez-Kraybill, Colby
    Bolatto, Alberto D.
    Muchovej, Stephen J. C.
    REVIEW OF SCIENTIFIC INSTRUMENTS, 2007, 78 (09):
  • [28] Intrusion detection system for automotive Controller Area Network (CAN) bus system: a review
    Siti-Farhana Lokman
    Abu Talib Othman
    Muhammad-Husaini Abu-Bakar
    EURASIP Journal on Wireless Communications and Networking, 2019
  • [29] On-line Upgrade Method of DSP Program Based on Controller Area Network Bus
    Zhou, Ningqun
    Zeng, Qiyi
    Wu, Yong
    Zhang, Qiao
    2020 CHINESE AUTOMATION CONGRESS (CAC 2020), 2020, : 327 - 332
  • [30] Intrusion detection system for automotive Controller Area Network (CAN) bus system: a review
    Lokman, Siti-Farhana
    Othman, Abu Talib
    Abu-Bakar, Muhammad-Husaini
    EURASIP JOURNAL ON WIRELESS COMMUNICATIONS AND NETWORKING, 2019, 2019 (1)