MTH-IDS: A Multi-Tiered Hybrid Intrusion Detection System for Internet of Vehicles
arXiv:2105.13289 · doi:10.1109/JIOT.2021.3084796
Abstract
Modern vehicles, including connected vehicles and autonomous vehicles, nowadays involve many electronic control units connected through intra-vehicle networks to implement various functionalities and perform actions. Modern vehicles are also connected to external networks through vehicle-to-everything technologies, enabling their communications with other vehicles, infrastructures, and smart devices. However, the improving functionality and connectivity of modern vehicles also increase their vulnerabilities to cyber-attacks targeting both intra-vehicle and external networks due to the large attack surfaces. To secure vehicular networks, many researchers have focused on developing intrusion detection systems (IDSs) that capitalize on machine learning methods to detect malicious cyber-attacks. In this paper, the vulnerabilities of intra-vehicle and external networks are discussed, and a multi-tiered hybrid IDS that incorporates a signature-based IDS and an anomaly-based IDS is proposed to detect both known and unknown attacks on vehicular networks. Experimental results illustrate that the proposed system can detect various types of known attacks with 99.99% accuracy on the CAN-intrusion-dataset representing the intra-vehicle network data and 99.88% accuracy on the CICIDS2017 dataset illustrating the external vehicular network data. For the zero-day attack detection, the proposed system achieves high F1-scores of 0.963 and 0.800 on the above two datasets, respectively. The average processing time of each data packet on a vehicle-level machine is less than 0.6 ms, which shows the feasibility of implementing the proposed system in real-time vehicle systems. This emphasizes the effectiveness and efficiency of the proposed IDS.
Accepted and to appear in IEEE Internet of Things Journal; Code is available at Github link: https://github.com/Western-OC2-Lab/Intrusion-Detection-System-Using-Machine-Learning
References in corpus (7)
- GIDS: GAN based Intrusion Detection System for In-Vehicle Network
- Multi-Stage Optimized Machine Learning Framework for Network Intrusion Detection
- Systematic Ensemble Model Selection Approach for Educational Data Mining
- Machine Learning Towards Intelligent Systems: Applications, Challenges, and Opportunities
- Bayesian Optimization with Machine Learning Algorithms Towards Anomaly Detection
- Multi-split Optimized Bagging Ensemble Model Selection for Multi-class Educational Data Mining
- DNS Typo-squatting Domain Detection: A Data Analytics & Machine Learning Based Approach
Cited by in corpus (16)
- IoT Data Analytics in Dynamic Environments: From An Automated Machine Learning Perspective
- Multi-Perspective Content Delivery Networks Security Framework Using Optimized Unsupervised Anomaly Detection
- Enabling AutoML for Zero-Touch Network Security: Use-Case Driven Analysis
- A Lightweight FPGA-based IDS-ECU Architecture for Automotive CAN
- Towards Zero Touch Networks: Cross-Layer Automated Security Solutions for 6G Wireless Networks
- A Lightweight Multi-Attack CAN Intrusion Detection System on Hybrid FPGAs
- Deep Learning-based Embedded Intrusion Detection System for Automotive CAN
- A Scalable Hierarchical Intrusion Detection System for Internet of Vehicles
- Towards Autonomous Cybersecurity: An Intelligent AutoML Framework for Autonomous Intrusion Detection
- Exploring Highly Quantised Neural Networks for Intrusion Detection in Automotive CAN
- Real-Time Zero-Day Intrusion Detection System for Automotive Controller Area Network on FPGAs
- An Automated Data Engineering Pipeline for Anomaly Detection of IoT Sensor Data
- Quantised Neural Network Accelerators for Low-Power IDS in Automotive Networks
- Is there a Trojan! : Literature survey and critical evaluation of the latest ML based modern intrusion detection systems in IoT environments
- Anomaly Detection in Smart Manufacturing with an Application Focus on Robotic Finishing Systems: A Review
- DAIRE: A lightweight AI model for real-time detection of Controller Area Network attacks in the Internet of Vehicles