Network Anomaly Detection in Cars: A Case for Time-Sensitive Stream Filtering and Policing

12/21/2021
by   Philipp Meyer, et al.
0

Connected cars are vulnerable to cyber attacks. Security challenges arise from vehicular management uplinks, from signaling with roadside units or nearby cars, as well as from common Internet services. Major threats arrive from bogus traffic that enters the in-car backbone, which will comprise of Ethernet technologies in the near future. Various security techniques from different areas and layers are under discussion to protect future vehicles. In this paper, we show how Per-Stream Filtering and Policing of IEEE Time-Sensitive Networking (TSN) can be used as a core technology for identifying misbehaving traffic flows in cars, and thereby serve as network anomaly detectors. TSN is the leading candidate for implementing quality of service in vehicular Ethernet backbones. We classify the impact of network attacks on traffic flows and benchmark the detection performance in each individual class. Based on a backbone topology derived from a real car and its traffic definition, we evaluate the detection system in realistic scenarios with real attack traces. Our results show that the detection accuracy depends on the precision of the in-vehicle communication specification, the traffic type, the corruption layer, and the attack impact on the link layer. Most notably, the anomaly indicators of our approach remain free of false positive alarms, which is an important foundation for implementing automated countermeasures in future vehicles.

READ FULL TEXT

page 1

page 5

page 6

page 8

page 14

research
01/03/2022

Secure Time-Sensitive Software-Defined Networking in Vehicles

Current designs of future In-Vehicle Networks (IVN) prepare for switched...
research
12/10/2018

Crossfire Attack Detection using Deep Learning in Software Defined ITS Networks

Recent developments in intelligent transport systems (ITS) based on smar...
research
10/08/2020

Strategies for Integrating Controls Flows in Software-Defined In-Vehicle Networks and Their Impact on Network Security

Current In-Vehicle Networks (IVNs) connect Electronic Control Units (ECU...
research
11/06/2017

Advanced Analytics for Connected Cars Cyber Security

The vehicular connectivity revolution is fueling the automotive industry...
research
10/04/2021

A Scalable Factory Backbone for Multiple Independent Time-Sensitive Networks

Convergence of time-sensitive machine control networks as part of the op...
research
03/27/2023

Authenticated and Secure Automotive Service Discovery with DNSSEC and DANE

Automotive softwarization is progressing and future cars are expected to...
research
11/04/2019

Real-Time Sensor Anomaly Detection and Recovery in Connected Automated Vehicle Sensors

In this paper we propose a novel observer-based method to improve the sa...

Please sign up or login with your details

Forgot password? Click here to reset