{"id":"https://openalex.org/W4405441328","doi":"https://doi.org/10.1109/pst62714.2024.10788039","title":"can-fp: An Attack-Aware Analysis of False Alarms in Automotive Intrusion Detection Models","display_name":"can-fp: An Attack-Aware Analysis of False Alarms in Automotive Intrusion Detection Models","publication_year":2024,"publication_date":"2024-08-28","ids":{"openalex":"https://openalex.org/W4405441328","doi":"https://doi.org/10.1109/pst62714.2024.10788039"},"language":"en","primary_location":{"id":"doi:10.1109/pst62714.2024.10788039","is_oa":false,"landing_page_url":"https://doi.org/10.1109/pst62714.2024.10788039","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 21st Annual International Conference on Privacy, Security and Trust (PST)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5026166264","display_name":"Brooke Elizabeth Kidmose","orcid":"https://orcid.org/0000-0002-6673-6163"},"institutions":[{"id":"https://openalex.org/I96673099","display_name":"Technical University of Denmark","ror":"https://ror.org/04qtj9h94","country_code":"DK","type":"education","lineage":["https://openalex.org/I96673099"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Brooke Kidmose","raw_affiliation_strings":["Technical University of Denmark,Department of Applied Mathematics and Computer Science,Kgs. Lyngby,Denmark"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Technical University of Denmark,Department of Applied Mathematics and Computer Science,Kgs. Lyngby,Denmark","institution_ids":["https://openalex.org/I96673099"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5085755018","display_name":"Weizhi Meng","orcid":"https://orcid.org/0000-0003-4384-5786"},"institutions":[{"id":"https://openalex.org/I96673099","display_name":"Technical University of Denmark","ror":"https://ror.org/04qtj9h94","country_code":"DK","type":"education","lineage":["https://openalex.org/I96673099"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Weizhi Meng","raw_affiliation_strings":["Technical University of Denmark,Kgs. Lyngby,Denmark"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Technical University of Denmark,Kgs. Lyngby,Denmark","institution_ids":["https://openalex.org/I96673099"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.9164,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.80500766,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"12"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10761","display_name":"Vehicular Ad Hoc Networks (VANETs)","score":0.9976000189781189,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.8001257181167603},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7116493582725525},{"id":"https://openalex.org/keywords/automotive-industry","display_name":"Automotive industry","score":0.5667464733123779},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.44436556100845337},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.15042585134506226}],"concepts":[{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.8001257181167603},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7116493582725525},{"id":"https://openalex.org/C526921623","wikidata":"https://www.wikidata.org/wiki/Q190117","display_name":"Automotive industry","level":2,"score":0.5667464733123779},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.44436556100845337},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.15042585134506226},{"id":"https://openalex.org/C146978453","wikidata":"https://www.wikidata.org/wiki/Q3798668","display_name":"Aerospace engineering","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/pst62714.2024.10788039","is_oa":false,"landing_page_url":"https://doi.org/10.1109/pst62714.2024.10788039","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 21st Annual International Conference on Privacy, Security and Trust (PST)","raw_type":"proceedings-article"},{"id":"pmh:oai:pure.atira.dk:publications/e75e1760-fe9c-4394-83c9-4caa5ed18ed3","is_oa":false,"landing_page_url":"https://orbit.dtu.dk/en/publications/e75e1760-fe9c-4394-83c9-4caa5ed18ed3","pdf_url":null,"source":{"id":"https://openalex.org/S4306400705","display_name":"Technical University of Denmark, DTU Orbit (Technical University of Denmark, DTU)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I96673099","host_organization_name":"Technical University of Denmark","host_organization_lineage":["https://openalex.org/I96673099"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Kidmose , B &amp; Meng , W 2024 , can-fp: An Attack-Aware Analysis of False Alarms in Automotive Intrusion Detection Models . in Proceedings of the 2024 21st Annual International Conference on Privacy, Security and Trust (PST) . IEEE , 21st Annual International Conference on Privacy, Security and Trust , Sydney , New South Wales , Australia , 28/08/2024 . https://doi.org/10.1109/PST62714.2024.10788039","raw_type":"contributionToPeriodical"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":28,"referenced_works":["https://openalex.org/W1678356000","https://openalex.org/W1981780459","https://openalex.org/W2019678805","https://openalex.org/W2033274527","https://openalex.org/W2070813941","https://openalex.org/W2136042733","https://openalex.org/W2141245797","https://openalex.org/W2296719434","https://openalex.org/W2482592930","https://openalex.org/W2537702951","https://openalex.org/W2898280479","https://openalex.org/W2908163052","https://openalex.org/W2911964244","https://openalex.org/W2997591727","https://openalex.org/W3018640761","https://openalex.org/W4205247907","https://openalex.org/W4254532405","https://openalex.org/W4315630001","https://openalex.org/W4317659178","https://openalex.org/W4386261706","https://openalex.org/W4389545247","https://openalex.org/W4392122558","https://openalex.org/W4393100710","https://openalex.org/W4399648947","https://openalex.org/W6675354045","https://openalex.org/W6757912518","https://openalex.org/W6765033720","https://openalex.org/W6851709646"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W4382644535","https://openalex.org/W2522768275","https://openalex.org/W2352938035","https://openalex.org/W2390279801","https://openalex.org/W2351672553","https://openalex.org/W2373392303","https://openalex.org/W2765894405"],"abstract_inverted_index":{"The":[0,192],"automotive":[1,52,73,123,215],"controller":[2],"area":[3],"network":[4],"(CAN)":[5],"bus":[6,20,42],"functions":[7],"as":[8,55,86,190,206],"the":[9,15,18,24,28,31,35,40,48,56,66,117,132,149,155,209,219,228,255,260,279],"communications":[10],"backbone":[11],"of":[12,27,47,81,96,157,208,218,227,268],"automobiles":[13],"around":[14],"globe.":[16],"Unfortunately,":[17],"CAN":[19,41,67],"was":[21],"developed":[22],"for":[23,265],"closed-system":[25],"vehicles":[26],"1980s,":[29],"not":[30,63,223],"inter-connected\u2014even":[32],"autonomous\u2014vehicles":[33],"hitting":[34],"roads":[36],"today,":[37],"meaning":[38],"that":[39,121,163,231,238,249],"is":[43,59,89,234,241],"extraordinarily":[44],"insecure.":[45],"Much":[46],"literature":[49],"points":[50],"to":[51,78,99,138,214,236],"intrusion":[53,124],"detection":[54,125],"solution;":[57],"it":[58,212,233],"lightweight":[60],"and":[61,134,160,185,198,257],"does":[62],"involve":[64],"re-engineering":[65],"bus.":[68],"That":[69],"said,":[70],"in":[71,108],"safety-critical":[72],"environments,":[74],"we":[75,111,130,152,161,245,258],"can":[76,276],"expect":[77],"see":[79],"millions":[80],"messages":[82,175,187,205],"every":[83,104],"ten":[84,101,105],"minutes;":[85],"such,":[87,244],"accuracy":[88],"paramount.":[90],"A":[91],"false":[92,102,113,158,165,247,274],"positive":[93,144],"rate":[94],"(FPR)":[95],"0.00001":[97],"corresponds":[98],"about":[100],"positives":[103,114,166,248,275],"minutes.":[106],"Therefore,":[107],"this":[109],"paper,":[110],"investigate":[112],"generated":[115],"by":[116],"machine":[118,269],"learning":[119,270],"models":[120],"constitute":[122],"systems":[126],"(IDSs).":[127],"In":[128],"particular,":[129],"explore":[131],"timestamp":[133],"time":[135],"delta":[136],"features":[137],"determine":[139],"if":[140],"they":[141],"have":[142],"a":[143,266],"or":[145],"negative":[146],"impact":[147],"on":[148],"FPR.":[150,280],"Then,":[151],"look":[153],"into":[154],"patterns":[156,182],"positives,":[159],"discover":[162],"many":[164,217],"are":[167,176,183,188],"produced":[168],"during":[169,251],"actual":[170],"attacks.":[171],"Essentially,":[172],"when":[173],"legitimate":[174,186,204],"interlaced":[177],"with":[178],"attack":[179,229,240,252],"messages,":[180],"anomalous":[181],"produced,":[184],"flagged":[189],"anomalous.":[191],"IDS":[193],"has":[194],"done":[195],"its":[196],"job":[197],"detected":[199],"an":[200,239],"attack-it":[201],"simply":[202],"misidentified":[203],"part":[207],"attack.":[210],"When":[211],"comes":[213],"attacks,":[216],"mitigation":[220],"strategies":[221],"do":[222],"require":[224],"precise":[225],"identification":[226],"messages;":[230],"is,":[232],"enough":[235],"know":[237],"ongoing.":[242],"As":[243],"exclude":[246],"occur":[250],"conditions":[253],"from":[254],"FPR,":[256],"examine":[259],"results.":[261],"We":[262],"find":[263],"that,":[264],"number":[267],"models,":[271],"discounting":[272],"attack-related":[273],"significantly":[277],"improve":[278]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
