An Efficient Hidden Markov Model For Anomaly Detection In CAN Bus Networks

被引:1
|
作者
Boumiza, Safa [1 ]
Braham, Rafik [1 ]
机构
[1] Univ Sousse, PRINCE Res Lab, ISITCOM, Hammam Sousse, Tunisia
来源
2019 27TH INTERNATIONAL CONFERENCE ON SOFTWARE, TELECOMMUNICATIONS AND COMPUTER NETWORKS (SOFTCOM) | 2019年
关键词
in-vehicle networks; self-driven cars; HMM; anomaly detection; CAN packets;
D O I
10.23919/softcom.2019.8903789
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
CAN Bus is currently the most used bus network in vehicles. It was designed however to be used for internal communications with no external access. On the other hand, nowadays in-vehicle networks allow communication with external devices through wireless interfaces such as Bluetooth, Wi-Fi, cellular, etc. For this reason, the network became vulnerable to many external threats which may cause high danger for both drivers and passengers. Much research is being done on securing this bus. Most proposed solutions are based on cryptographic approaches. There are only few works which employ anomaly-detection techniques despite their efficiencies in systems that need real-time detection. Therefore, we propose an intrusion detection system (IDS) based on Hidden Markov Models for the Controller Area Network (CAN) bus. Our system extracts suitable features from CAN packets and uses them to train and construct system model parameters. The system operates by comparing test transition sequences obtained in the detection phase and normal sequences built in the training phase. HMM is a powerful tool to process no linear and time variant systems. For this reason, the proposed IDS shows a good performance namely substantial decrease of false positive errors and increase of detection rate.
引用
收藏
页码:482 / 487
页数:6
相关论文
共 50 条
  • [31] ML-based Anomaly Detection for Intra-Vehicular CAN-bus Networks
    Purohit, Shaurya
    Govindarasu, Manimaran
    2022 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE (IEEE CSR), 2022, : 227 - 232
  • [32] Hidden Gaussian Markov model for distributed fault detection in wireless sensor networks
    Saihi, Marwa
    Zouinkhi, Ahmed
    Boussaid, Boumedyen
    Abdelkarim, Mohamed Naceur
    Andrieux, Guillaume
    TRANSACTIONS OF THE INSTITUTE OF MEASUREMENT AND CONTROL, 2018, 40 (06) : 1788 - 1798
  • [33] Hidden Markov model interpretations of neural networks
    Visser, I
    Raijmakers, MEJ
    Molenaar, PCM
    CONNECTIONIST MODELS OF LEARNING, DEVELOPMENT AND EVOLUTION, 2000, : 197 - 206
  • [34] A hidden Markov model for matching spatial networks
    Costes, Benoit
    Perret, Julien
    JOURNAL OF SPATIAL INFORMATION SCIENCE, 2019, (18): : 57 - 89
  • [35] Hidden Markov model interpretations of neural networks
    Visser, I
    BEHAVIORAL AND BRAIN SCIENCES, 2000, 23 (04) : 494 - +
  • [36] An Anomaly Detector for CAN Bus Networks in Autonomous Cars based on Neural Networks
    Boumiza, Safa
    Braham, Rafik
    2019 INTERNATIONAL CONFERENCE ON WIRELESS AND MOBILE COMPUTING, NETWORKING AND COMMUNICATIONS (WIMOB), 2019,
  • [37] Method for anomaly detection of user behaviors based on hidden Markov models
    School of Information and Electronic Engineering, Hunan University of Science and Technology, Xiangtan 411201, China
    不详
    不详
    Tongxin Xuebao, 2007, 4 (38-43):
  • [38] Multivariate time series anomaly detection: A framework of Hidden Markov Models
    Li, Jinbo
    Pedrycz, Witold
    Jamal, Iqbal
    APPLIED SOFT COMPUTING, 2017, 60 : 229 - 240
  • [39] Frequency-Based Anomaly Detection for the Automotive CAN bus
    Taylor, Adrian
    Japkowicz, Nathalie
    Leblanc, Sylvain
    2015 WORLD CONGRESS ON INDUSTRIAL CONTROL SYSTEMS SECURITY (WCICSS), 2015, : 45 - 49
  • [40] Splice sites detection by combining Markov and hidden Markov model
    Zhang, Quanwei
    Peng, Qinke
    Li, Kankan
    Kang, Xuejiao
    Li, Jing
    PROCEEDINGS OF THE 2009 2ND INTERNATIONAL CONFERENCE ON BIOMEDICAL ENGINEERING AND INFORMATICS, VOLS 1-4, 2009, : 1531 - +