PAID: Perturbed Image Attacks Analysis and Intrusion Detection Mechanism for Autonomous Driving Systems

Ko Zheng Teng, Trupil Limbasiya, Federico Turrin, Yan Lin Aung, Sudipta Chattopadhyay, Jianying Zhou, Mauro Conti

Research output: Chapter in Book/Conference proceedings/Edited volumeConference contributionScientificpeer-review

Abstract

Modern Autonomous Vehicles (AVs) leverage road context information collected through sensors (e.g., LiDAR, radar, and camera) to support the automated driving experience. Once such information is collected, a neural network model predicts subsequent actions that the AV executes. However, state-of-the-art research findings have shown the possibility that an attacker can compromise the accuracy of the neural network model in predicting tasks. Indeed, mispredicting the subsequent actions can cause harmful consequences to the road user's safety. In this paper, we analyze the disruptive impact of adversarial attacks on road context-aware Intrusion Detection System (RAIDS) and propose a solution to mitigate such effects. To this end, we implement five state-of-the-art evasion attacks on vehicle camera images the IDS uses to monitor internal vehicular traffic. Our experimental results underline how this type of attack can reduce the attack detection accuracy of such detectors down to 2.83%. To combat such adversarial attacks, we investigate different countermeasure and propose PAID, a robust context-aware IDS that leverage feature squeezing and GPS to detect intrusions. We evaluate PAID's capability in identifying such attacks, and implementation results confirm that PAID achieves a detection accuracy of up to 93.9%, outperforming RAIDS's performance.

Original languageEnglish
Title of host publicationCPSS 2023 - Proceedings of the 9th ACM ASIA Conference on Cyber-Physical System Security Workshop
PublisherAssociation for Computing Machinery (ACM)
Pages3-13
Number of pages11
ISBN (Electronic)9798400700903
DOIs
Publication statusPublished - 10 Jul 2023
Externally publishedYes
Event9th ACM ASIA Conference on Cyber-Physical System Security Workshop, CPSS 2023 - Melbourne, Australia
Duration: 10 Jul 2023 → …

Publication series

NameCPSS 2023 - Proceedings of the 9th ACM ASIA Conference on Cyber-Physical System Security Workshop

Conference

Conference9th ACM ASIA Conference on Cyber-Physical System Security Workshop, CPSS 2023
Country/TerritoryAustralia
CityMelbourne
Period10/07/23 → …

Keywords

  • Adversarial Attacks
  • Adversarial Intrusion Detection
  • Autonomous Vehicles
  • Image Perturbation
  • Road Context;

Fingerprint

Dive into the research topics of 'PAID: Perturbed Image Attacks Analysis and Intrusion Detection Mechanism for Autonomous Driving Systems'. Together they form a unique fingerprint.

Cite this