LATTE: LSTM Self-Attention based Anomaly Detection in Embedded Automotive Platforms

by   Vipin K. Kukkala, et al.

Modern vehicles can be thought of as complex distributed embedded systems that run a variety of automotive applications with real-time constraints. Recent advances in the automotive industry towards greater autonomy are driving vehicles to be increasingly connected with various external systems (e.g., roadside beacons, other vehicles), which makes emerging vehicles highly vulnerable to cyber-attacks. Additionally, the increased complexity of automotive applications and the in-vehicle networks results in poor attack visibility, which makes detecting such attacks particularly challenging in automotive systems. In this work, we present a novel anomaly detection framework called LATTE to detect cyber-attacks in Controller Area Network (CAN) based networks within automotive platforms. Our proposed LATTE framework uses a stacked Long Short Term Memory (LSTM) predictor network with novel attention mechanisms to learn the normal operating behavior at design time. Subsequently, a novel detection scheme (also trained at design time) is used to detect various cyber-attacks (as anomalies) at runtime. We evaluate our proposed LATTE framework under different automotive attack scenarios and present a detailed comparison with the best-known prior works in this area, to demonstrate the potential of our approach.


page 13

page 19

page 20

page 21

page 22


TENET: Temporal CNN with Attention for Anomaly Detection in Automotive Cyber-Physical Systems

Modern vehicles have multiple electronic control units (ECUs) that are c...

INDRA: Intrusion Detection using Recurrent Autoencoders in Automotive Embedded Systems

Today's vehicles are complex distributed embedded systems that are incre...

In-Vehicle False Information Attack Detection and Mitigation Framework using Machine Learning and Software Defined Networking

A modern vehicle contains many electronic control units (ECUs), which co...

Advanced Analytics for Connected Cars Cyber Security

The vehicular connectivity revolution is fueling the automotive industry...

Anomaly Detection in Intra-Vehicle Networks

The progression of innovation and technology and ease of inter-connectiv...

CASAD: CAN-Aware Stealthy-Attack Detection for In-Vehicle Networks

Nowadays, vehicles have complex in-vehicle networks (IVNs) with millions...

Anomaly Detection from Cyber Threats via Infrastructure to Automated Vehicle

Using Infrastructure-to-Vehicle (I2V) information can be of great benefi...