Wisam Makki Alwash, Mustafa Kara, Muhammed Ali Aydin, Hasan Hüseyin Balik
{"title":"一种安全、私有、可扩展的车联网入侵检测联邦学习方法","authors":"Wisam Makki Alwash, Mustafa Kara, Muhammed Ali Aydin, Hasan Hüseyin Balik","doi":"10.1002/cpe.70160","DOIUrl":null,"url":null,"abstract":"<div>\n \n <p>The rapid proliferation of connected vehicles in the Internet of Vehicles (IoV) has introduced significant data security and privacy challenges, emphasizing the need for advanced intrusion detection systems (IDS). This article proposes a federated learning-based intrusion detection system (FL-IDS), explicitly designed to identify both external network-level threats and internal vehicular cyberattacks. Federated learning enables collaborative training across distributed vehicles without sharing raw data, significantly reducing communication overhead and preserving data privacy. To further enhance privacy, differential privacy (DP) mechanisms are applied, ensuring sensitive information remains protected even during model updates. Additionally, secure communication channels are established using Secure Sockets Layer/Transport Layer Security (SSL/TLS) protocols, effectively safeguarding the integrity and authenticity of data exchanges between vehicles, roadside units, and cloud servers. Robust preprocessing methods, including data balancing, normalization, and feature selection, are combined with an adaptive federated learning strategy (FedXgbBagging) specifically designed to address the challenges posed by heterogeneous and non-independent and identically distributed (non-IID) data. Extensive evaluations on two real-world datasets, CSE-CIC-IDS2018 for network attacks and CICIoV2024 for in-vehicle Controller Area Network (CAN) bus attacks—show remarkable performance, achieving accuracy rates of 99.64% and 99.99%, respectively. The proposed FL-IDS significantly outperforms existing methods, demonstrating its robustness, adaptability, and scalability in securing IoV environments against diverse cyber threats.</p>\n </div>","PeriodicalId":55214,"journal":{"name":"Concurrency and Computation-Practice & Experience","volume":"37 15-17","pages":""},"PeriodicalIF":1.5000,"publicationDate":"2025-06-10","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"An Effective Federated Learning Approach for Secure and Private Scalable Intrusion Detection on the Internet of Vehicles\",\"authors\":\"Wisam Makki Alwash, Mustafa Kara, Muhammed Ali Aydin, Hasan Hüseyin Balik\",\"doi\":\"10.1002/cpe.70160\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<div>\\n \\n <p>The rapid proliferation of connected vehicles in the Internet of Vehicles (IoV) has introduced significant data security and privacy challenges, emphasizing the need for advanced intrusion detection systems (IDS). This article proposes a federated learning-based intrusion detection system (FL-IDS), explicitly designed to identify both external network-level threats and internal vehicular cyberattacks. Federated learning enables collaborative training across distributed vehicles without sharing raw data, significantly reducing communication overhead and preserving data privacy. To further enhance privacy, differential privacy (DP) mechanisms are applied, ensuring sensitive information remains protected even during model updates. Additionally, secure communication channels are established using Secure Sockets Layer/Transport Layer Security (SSL/TLS) protocols, effectively safeguarding the integrity and authenticity of data exchanges between vehicles, roadside units, and cloud servers. Robust preprocessing methods, including data balancing, normalization, and feature selection, are combined with an adaptive federated learning strategy (FedXgbBagging) specifically designed to address the challenges posed by heterogeneous and non-independent and identically distributed (non-IID) data. Extensive evaluations on two real-world datasets, CSE-CIC-IDS2018 for network attacks and CICIoV2024 for in-vehicle Controller Area Network (CAN) bus attacks—show remarkable performance, achieving accuracy rates of 99.64% and 99.99%, respectively. The proposed FL-IDS significantly outperforms existing methods, demonstrating its robustness, adaptability, and scalability in securing IoV environments against diverse cyber threats.</p>\\n </div>\",\"PeriodicalId\":55214,\"journal\":{\"name\":\"Concurrency and Computation-Practice & Experience\",\"volume\":\"37 15-17\",\"pages\":\"\"},\"PeriodicalIF\":1.5000,\"publicationDate\":\"2025-06-10\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Concurrency and Computation-Practice & Experience\",\"FirstCategoryId\":\"94\",\"ListUrlMain\":\"https://onlinelibrary.wiley.com/doi/10.1002/cpe.70160\",\"RegionNum\":4,\"RegionCategory\":\"计算机科学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q3\",\"JCRName\":\"COMPUTER SCIENCE, SOFTWARE ENGINEERING\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Concurrency and Computation-Practice & Experience","FirstCategoryId":"94","ListUrlMain":"https://onlinelibrary.wiley.com/doi/10.1002/cpe.70160","RegionNum":4,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q3","JCRName":"COMPUTER SCIENCE, SOFTWARE ENGINEERING","Score":null,"Total":0}
An Effective Federated Learning Approach for Secure and Private Scalable Intrusion Detection on the Internet of Vehicles
The rapid proliferation of connected vehicles in the Internet of Vehicles (IoV) has introduced significant data security and privacy challenges, emphasizing the need for advanced intrusion detection systems (IDS). This article proposes a federated learning-based intrusion detection system (FL-IDS), explicitly designed to identify both external network-level threats and internal vehicular cyberattacks. Federated learning enables collaborative training across distributed vehicles without sharing raw data, significantly reducing communication overhead and preserving data privacy. To further enhance privacy, differential privacy (DP) mechanisms are applied, ensuring sensitive information remains protected even during model updates. Additionally, secure communication channels are established using Secure Sockets Layer/Transport Layer Security (SSL/TLS) protocols, effectively safeguarding the integrity and authenticity of data exchanges between vehicles, roadside units, and cloud servers. Robust preprocessing methods, including data balancing, normalization, and feature selection, are combined with an adaptive federated learning strategy (FedXgbBagging) specifically designed to address the challenges posed by heterogeneous and non-independent and identically distributed (non-IID) data. Extensive evaluations on two real-world datasets, CSE-CIC-IDS2018 for network attacks and CICIoV2024 for in-vehicle Controller Area Network (CAN) bus attacks—show remarkable performance, achieving accuracy rates of 99.64% and 99.99%, respectively. The proposed FL-IDS significantly outperforms existing methods, demonstrating its robustness, adaptability, and scalability in securing IoV environments against diverse cyber threats.
期刊介绍:
Concurrency and Computation: Practice and Experience (CCPE) publishes high-quality, original research papers, and authoritative research review papers, in the overlapping fields of:
Parallel and distributed computing;
High-performance computing;
Computational and data science;
Artificial intelligence and machine learning;
Big data applications, algorithms, and systems;
Network science;
Ontologies and semantics;
Security and privacy;
Cloud/edge/fog computing;
Green computing; and
Quantum computing.