Skip to main content
Video s3
    Details
    Poster
    Presenter(s)
    SHIYI JIN Headshot
    Display Name
    SHIYI JIN
    Affiliation
    Affiliation
    Univ.
    Country
    Abstract

    In-vehicle CAN bus network does not have any network security protection measures, which is facing a serious network security threat. However, most of the intrusion detection solutions requiring extensive computational resources cannot be implemented in in-vehicle network system because of the resource constrained ECUs. To add additional hardware or to utilize cloud computing, we need to solve the cost problem and the reliable communication requirement between vehicles and cloud platform, which is difficult to be applied in a short time. Therefore, we need to propose a short-term solution for automobile manufacturers. In this paper, we propose a signature-based light-weight intrusion detection system, which can be applied directly and promptly to vehicle’s ECUs. We detect the anomalies caused by several attack modes on CAN bus from real-world scenarios, which provide the basis for selecting signatures. Experimental results show that our method can effectively detect CAN traffic related anomalies. For the content related anomalies, the detection ratio can be improved by exploiting the relationship between the signals.

    Slides
    • Signature-Based Intrusion Detection System (IDS) for In-Vehicle CAN Bus Network (application/pdf)