CAN bus flood attack detection based on communication characteristics

CAN has become the most extensive fieldbus for contemporary automotive applications due to its outstanding reliability and flexibility.However,the standard CAN protocol does not provide sufficient security measures and is vulnerable to eavesdropping,replay,flooding,and denial of service attacks.In o...

Full description

Saved in:
Bibliographic Details
Main Authors: Yimu JI, Zhipeng JIAO, Shangdong LIU, Fei WU, Jing SUN, Na WANG, Zhiyu CHEN, Qiang BI, Penghao TIAN
Format: Article
Language:English
Published: POSTS&TELECOM PRESS Co., LTD 2020-02-01
Series:网络与信息安全学报
Subjects:
Online Access:http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2020005
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841529979314110464
author Yimu JI
Zhipeng JIAO
Shangdong LIU
Fei WU
Jing SUN
Na WANG
Zhiyu CHEN
Qiang BI
Penghao TIAN
author_facet Yimu JI
Zhipeng JIAO
Shangdong LIU
Fei WU
Jing SUN
Na WANG
Zhiyu CHEN
Qiang BI
Penghao TIAN
author_sort Yimu JI
collection DOAJ
description CAN has become the most extensive fieldbus for contemporary automotive applications due to its outstanding reliability and flexibility.However,the standard CAN protocol does not provide sufficient security measures and is vulnerable to eavesdropping,replay,flooding,and denial of service attacks.In order to effectively detect whether the CAN bus is attacked,and to filter malicious messages when subjected to flooding attacks.The characteristics of vehicle CAN bus message communication were analyzed,and an intrusion detection method was proposed,which could effectively perform intrusion detection and malicious message filtering.Through experimental verification,the method can detect whether the CAN bus is attacked by 100%,and the accuracy of malicious packet filtering can reach over 99%.
format Article
id doaj-art-816c981ed8e74110a47dbdbdbfe80efa
institution Kabale University
issn 2096-109X
language English
publishDate 2020-02-01
publisher POSTS&TELECOM PRESS Co., LTD
record_format Article
series 网络与信息安全学报
spelling doaj-art-816c981ed8e74110a47dbdbdbfe80efa2025-01-15T03:13:53ZengPOSTS&TELECOM PRESS Co., LTD网络与信息安全学报2096-109X2020-02-016273759557574CAN bus flood attack detection based on communication characteristicsYimu JIZhipeng JIAOShangdong LIUFei WUJing SUNNa WANGZhiyu CHENQiang BIPenghao TIANCAN has become the most extensive fieldbus for contemporary automotive applications due to its outstanding reliability and flexibility.However,the standard CAN protocol does not provide sufficient security measures and is vulnerable to eavesdropping,replay,flooding,and denial of service attacks.In order to effectively detect whether the CAN bus is attacked,and to filter malicious messages when subjected to flooding attacks.The characteristics of vehicle CAN bus message communication were analyzed,and an intrusion detection method was proposed,which could effectively perform intrusion detection and malicious message filtering.Through experimental verification,the method can detect whether the CAN bus is attacked by 100%,and the accuracy of malicious packet filtering can reach over 99%.http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2020005CAN buscommunication characteristicsintrusion detectionmalicious message filtering
spellingShingle Yimu JI
Zhipeng JIAO
Shangdong LIU
Fei WU
Jing SUN
Na WANG
Zhiyu CHEN
Qiang BI
Penghao TIAN
CAN bus flood attack detection based on communication characteristics
网络与信息安全学报
CAN bus
communication characteristics
intrusion detection
malicious message filtering
title CAN bus flood attack detection based on communication characteristics
title_full CAN bus flood attack detection based on communication characteristics
title_fullStr CAN bus flood attack detection based on communication characteristics
title_full_unstemmed CAN bus flood attack detection based on communication characteristics
title_short CAN bus flood attack detection based on communication characteristics
title_sort can bus flood attack detection based on communication characteristics
topic CAN bus
communication characteristics
intrusion detection
malicious message filtering
url http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2020005
work_keys_str_mv AT yimuji canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT zhipengjiao canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT shangdongliu canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT feiwu canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT jingsun canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT nawang canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT zhiyuchen canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT qiangbi canbusfloodattackdetectionbasedoncommunicationcharacteristics
AT penghaotian canbusfloodattackdetectionbasedoncommunicationcharacteristics