{"title":"基于域的可持续轻量级车载网络入侵检测系统","authors":"Edy Kristianto , Po-Ching Lin , Ren-Hung Hwang","doi":"10.1016/j.suscom.2023.100936","DOIUrl":null,"url":null,"abstract":"<div><p>Intelligent transportation systems<span><span> are designed to enhance and optimize the traffic flow, safety of urban mobility, and improve energy efficiency. While advanced vehicles are equipped with new features, such as communication technologies for the exchange of safety messages, the communication interfaces of the vehicles increase the attack surfaces for attackers to exploit, even into the in-vehicle network (IVN). The automotive Ethernet and intrusion detection systems (IDSs) are promising solutions to the security problem inside the IVN. The automotive Ethernet has higher bandwidth capacity at an economical cost and flexibility for expansion than the current solution. The IDSs can protect the IVN from attackers compromising the vehicle. They can be implemented based on </span>machine learning to learn from the normal IVN traffic behavior. However, numerous IDSs that utilize machine learning face hardware limitations when training within the in-vehicle network. Thus, the models have to be trained outside the IVN and then imported into it. Moreover, the IVN messages are unlabeled whether they are normal or under attack. We propose a lightweight unsupervised IDS that enables training in the IVN with limited computation resources. Our IDS models have an impressive parameter reduction of up to 94% compared to existing models. This leads to a remarkable reduction in memory usage of up to 86%, training time slashed by up to 69%, and a remarkable drop in energy consumption by up to 68%. Despite the size reduction, the proposed models remain only slightly less accurate than current solutions by up to 2%.</span></p></div>","PeriodicalId":48686,"journal":{"name":"Sustainable Computing-Informatics & Systems","volume":"41 ","pages":"Article 100936"},"PeriodicalIF":3.8000,"publicationDate":"2023-11-25","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Sustainable and lightweight domain-based intrusion detection system for in-vehicle network\",\"authors\":\"Edy Kristianto , Po-Ching Lin , Ren-Hung Hwang\",\"doi\":\"10.1016/j.suscom.2023.100936\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<div><p>Intelligent transportation systems<span><span> are designed to enhance and optimize the traffic flow, safety of urban mobility, and improve energy efficiency. While advanced vehicles are equipped with new features, such as communication technologies for the exchange of safety messages, the communication interfaces of the vehicles increase the attack surfaces for attackers to exploit, even into the in-vehicle network (IVN). The automotive Ethernet and intrusion detection systems (IDSs) are promising solutions to the security problem inside the IVN. The automotive Ethernet has higher bandwidth capacity at an economical cost and flexibility for expansion than the current solution. The IDSs can protect the IVN from attackers compromising the vehicle. They can be implemented based on </span>machine learning to learn from the normal IVN traffic behavior. However, numerous IDSs that utilize machine learning face hardware limitations when training within the in-vehicle network. Thus, the models have to be trained outside the IVN and then imported into it. Moreover, the IVN messages are unlabeled whether they are normal or under attack. We propose a lightweight unsupervised IDS that enables training in the IVN with limited computation resources. Our IDS models have an impressive parameter reduction of up to 94% compared to existing models. This leads to a remarkable reduction in memory usage of up to 86%, training time slashed by up to 69%, and a remarkable drop in energy consumption by up to 68%. Despite the size reduction, the proposed models remain only slightly less accurate than current solutions by up to 2%.</span></p></div>\",\"PeriodicalId\":48686,\"journal\":{\"name\":\"Sustainable Computing-Informatics & Systems\",\"volume\":\"41 \",\"pages\":\"Article 100936\"},\"PeriodicalIF\":3.8000,\"publicationDate\":\"2023-11-25\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Sustainable Computing-Informatics & Systems\",\"FirstCategoryId\":\"94\",\"ListUrlMain\":\"https://www.sciencedirect.com/science/article/pii/S2210537923000914\",\"RegionNum\":3,\"RegionCategory\":\"计算机科学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q1\",\"JCRName\":\"COMPUTER SCIENCE, HARDWARE & ARCHITECTURE\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Sustainable Computing-Informatics & Systems","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S2210537923000914","RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, HARDWARE & ARCHITECTURE","Score":null,"Total":0}
Sustainable and lightweight domain-based intrusion detection system for in-vehicle network
Intelligent transportation systems are designed to enhance and optimize the traffic flow, safety of urban mobility, and improve energy efficiency. While advanced vehicles are equipped with new features, such as communication technologies for the exchange of safety messages, the communication interfaces of the vehicles increase the attack surfaces for attackers to exploit, even into the in-vehicle network (IVN). The automotive Ethernet and intrusion detection systems (IDSs) are promising solutions to the security problem inside the IVN. The automotive Ethernet has higher bandwidth capacity at an economical cost and flexibility for expansion than the current solution. The IDSs can protect the IVN from attackers compromising the vehicle. They can be implemented based on machine learning to learn from the normal IVN traffic behavior. However, numerous IDSs that utilize machine learning face hardware limitations when training within the in-vehicle network. Thus, the models have to be trained outside the IVN and then imported into it. Moreover, the IVN messages are unlabeled whether they are normal or under attack. We propose a lightweight unsupervised IDS that enables training in the IVN with limited computation resources. Our IDS models have an impressive parameter reduction of up to 94% compared to existing models. This leads to a remarkable reduction in memory usage of up to 86%, training time slashed by up to 69%, and a remarkable drop in energy consumption by up to 68%. Despite the size reduction, the proposed models remain only slightly less accurate than current solutions by up to 2%.
期刊介绍:
Sustainable computing is a rapidly expanding research area spanning the fields of computer science and engineering, electrical engineering as well as other engineering disciplines. The aim of Sustainable Computing: Informatics and Systems (SUSCOM) is to publish the myriad research findings related to energy-aware and thermal-aware management of computing resource. Equally important is a spectrum of related research issues such as applications of computing that can have ecological and societal impacts. SUSCOM publishes original and timely research papers and survey articles in current areas of power, energy, temperature, and environment related research areas of current importance to readers. SUSCOM has an editorial board comprising prominent researchers from around the world and selects competitively evaluated peer-reviewed papers.