Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
194 tokens/sec
GPT-4o
7 tokens/sec
Gemini 2.5 Pro Pro
45 tokens/sec
o3 Pro
4 tokens/sec
GPT-4.1 Pro
38 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

An Explainable Ensemble-based Intrusion Detection System for Software-Defined Vehicle Ad-hoc Networks (2312.04956v5)

Published 8 Dec 2023 in cs.CR

Abstract: Intrusion Detection Systems (IDS) are widely employed to detect and mitigate external network security events. Vehicle ad-hoc Networks (VANETs) continue to evolve, especially with developments related to Connected Autonomous Vehicles (CAVs). In this study, we explore the detection of cyber threats in vehicle networks through ensemble-based machine learning, to strengthen the performance of the learnt model compared to relying on a single model. We propose a model that uses Random Forest and CatBoost as our main investigators, with Logistic Regression used to then reason on their outputs to make a final decision. To further aid analysis, we use SHAP (SHapley Additive exPlanations) analysis to examine feature importance towards the final decision stage. We use the Vehicular Reference Misbehavior (VeReMi) dataset for our experimentation and observe that our approach improves classification accuracy, and results in fewer misclassifications compared to previous works. Overall, this layered approach to decision-making combining teamwork among models with an explainable view of why they act as they do can help to achieve a more reliable and easy-to-understand cyber security solution for smart transportation networks.

Definition Search Book Streamline Icon: https://streamlinehq.com
References (39)
  1. Secure and dependable software-defined networks. J. Netw. Comput. Appl. 61, 199–221.
  2. Using discriminant analysis to detect intrusions in external communication for self-driving vehicles. Digit. Commun. Netw. 3, 180–187.
  3. Intelligent intrusion detection of grey hole and rushing attacks in self-driving vehicular networks. Computers 5, 16.
  4. An intrusion detection system against malicious attacks on the communication network of driverless cars, in: 2015 12th Annual IEEE Consumer Communications and Networking Conference (CCNC), IEEE. pp. 916–921.
  5. DeepADV: A deep neural network framework for anomaly detection in VANETs. IEEE Trans. Veh. Technol. 70, 12013–12023.
  6. Machine learning-driven optimization for SVM-based intrusion detection system in vehicular ad hoc networks. J. Ambient Intell. Humaniz. Comput. 14, 6113–6122.
  7. Artificial intelligence based intrusion detection system to detect flooding attack in VANETs, in: Handbook of Research on Network Forensics and Analysis Techniques. IGI Global, pp. 87–100.
  8. A hybrid machine learning model for intrusion detection in VANET. Computing 104, 503–531.
  9. The DDoS attacks detection through machine learning and statistical methods in SDN. J. Supercomput. 77, 2383–2415.
  10. Connected vehicles in an intelligent transport system, in: Vehicular Communications and Networks. Elsevier, pp. 193–221.
  11. CISCO, 2022. Cisco encrypted traffic analytics white paper. https://tinyurl.com/2z544md8. Accessed: 2023-6-22.
  12. Intrusion detection system using machine learning for vehicular ad hoc networks based on ToN-IoT dataset. IEEE Access 9, 142206–142217.
  13. A distributed network intrusion detection system for distributed denial of service attacks in vehicular ad hoc network. IEEE Access 7, 154560–154571.
  14. An intrusion detection system against black hole attacks on the communication network of self-driving cars, in: 2015 Sixth International Conference on Emerging Security Technologies (EST), IEEE. pp. 86–91.
  15. Veremi dataset. https://veremi-dataset.github.io/. Accessed: 2023-6-22.
  16. VeReMi: A dataset for comparable evaluation of misbehavior detection in VANETs, in: Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering. Springer International Publishing, Cham, pp. 318–337.
  17. Collaborative security attack detection in software-defined vehicular networks, in: 2017 19th Asia-Pacific Network Operations and Management Symposium (APNOMS), IEEE. pp. 19–24.
  18. Towards software-defined VANET: Architecture and services, in: 2014 13th Annual Mediterranean Ad Hoc Networking Workshop (MED-HOC-NET), IEEE. pp. 103–110.
  19. An intelligent clustering scheme for distributed intrusion detection in vehicular cloud computing. Cluster Comput. 18, 1263–1283.
  20. Data mining intrusion detection in vehicular ad hoc network. IEICE Trans. Inf. Syst. E97.D, 1719–1726.
  21. Detecting greedy behavior by linear regression and watchdog in vehicular ad hoc networks, in: 2014 IEEE Global Communications Conference, IEEE. pp. 5032–5037.
  22. A stochastic learning automata-based solution for intrusion detection in vehicular ad hoc networks. Secur. Commun. Netw. 4, 666–677.
  23. Deep network approach with stacked sparse autoencoders in detection of DDoS attacks on SDN-based VANET. IET Commun. 14, 4089–4100.
  24. Ml-leaks: Model and data independent membership inference attacks and defenses on machine learning models. Cryptography and Security .
  25. Guide to intrusion detection and prevention systems (IDPS). Technical Report. National Institute of Standards and Technology. Gaithersburg, MD.
  26. Researcher finds 10 vulnerabilities in cisco firewalls. https://tinyurl.com/2ltaku9j. Accessed: 2023-6-22.
  27. An accurate and efficient collaborative intrusion detection framework to secure vehicular networks. Comput. Electr. Eng. 43, 33–47.
  28. Toward generating a new intrusion detection dataset and intrusion traffic characterization.
  29. Veremi-dataset-classification: Classification of all five types of position falsification attack present in VeReMI dataset.
  30. Hybrid fuzzy multi-criteria decision making based multi cluster head dolphin swarm optimized IDS for VANET. Veh. Commun. 12, 23–38.
  31. Collaborative intrusion detection for VANETs: A deep learning-based distributed SDN approach. IEEE Trans. Intell. Transp. Syst. 22, 4519–4530.
  32. ML-based approach to detect DDoS attack in V2I communication under SDN architecture, in: TENCON 2018 - 2018 IEEE Region 10 Conference, IEEE. pp. 0144–0149.
  33. A vehicular ad hoc networks intrusion detection system based on BUSNet, in: 2010 2nd International Conference on Future Computer and Communication, IEEE. pp. V1–225–V1–229.
  34. Recognition of ddos attacks on sd-vanet based on combination of hyperparameter optimization and feature selection. Expert Syst. Appl. 203, 117500.
  35. WHO, 2023. Road traffic injuries. https://www.who.int/health-topics/road-safety. Accessed: 2023-6-22.
  36. Wikipedia, 2023. Logistic function. https://tinyurl.com/2l2rw4so.
  37. An efficient SDN-based DDoS attack detection and rapid response platform in vehicular networks. IEEE Access 6, 44570–44579.
  38. Senior2Local: A machine learning based intrusion detection method for VANETs, in: Lecture Notes in Computer Science. Springer International Publishing, Cham, pp. 417–426.
  39. DeepVCM: A deep learning based intrusion detection method in VANET, in: 2019 IEEE 5th Intl Conference on Big Data Security on Cloud (BigDataSecurity), IEEE Intl Conference on High Performance and Smart Computing, (HPSC) and IEEE Intl Conference on Intelligent Data and Security (IDS), IEEE. pp. 288–293.

Summary

We haven't generated a summary for this paper yet.

X Twitter Logo Streamline Icon: https://streamlinehq.com