{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,20]],"date-time":"2026-06-20T02:01:16Z","timestamp":1781920876262,"version":"3.54.5"},"reference-count":36,"publisher":"Springer Science and Business Media LLC","issue":"9","license":[{"start":{"date-parts":[[2025,10,29]],"date-time":"2025-10-29T00:00:00Z","timestamp":1761696000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0"},{"start":{"date-parts":[[2025,10,29]],"date-time":"2025-10-29T00:00:00Z","timestamp":1761696000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0"}],"funder":[{"name":"Songshan Laboratory","award":["No.ZZK202403002"],"award-info":[{"award-number":["No.ZZK202403002"]}]},{"name":"Songshan Laboratory","award":["232102210124"],"award-info":[{"award-number":["232102210124"]}]},{"name":"Open Foundation of Key Laboratory of Cyberspace Security","award":["No.KLCS20240211"],"award-info":[{"award-number":["No.KLCS20240211"]}]},{"DOI":"10.13039\/501100017700","name":"Henan Provincial Science and Technology Research Project","doi-asserted-by":"publisher","award":["No.232102210124"],"award-info":[{"award-number":["No.232102210124"]}],"id":[{"id":"10.13039\/501100017700","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J. King Saud Univ. Comput. Inf. Sci."],"published-print":{"date-parts":[[2025,11]]},"DOI":"10.1007\/s44443-025-00273-2","type":"journal-article","created":{"date-parts":[[2025,10,29]],"date-time":"2025-10-29T09:34:37Z","timestamp":1761730477000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["Driveshield: Unmasking stealthy attacks on CAN bus via adversarial spatiotemporal feature learning"],"prefix":"10.1007","volume":"37","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5351-9349","authenticated-orcid":false,"given":"Haoyang","family":"Jia","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Xiaobing","family":"Xiong","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Haibin","family":"Luo","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0008-8369-5173","authenticated-orcid":false,"given":"Yan","family":"Cao","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2025,10,29]]},"reference":[{"key":"273_CR1","doi-asserted-by":"publisher","first-page":"22596","DOI":"10.1109\/TITS.2022.3146024","volume":"23","author":"K Agrawal","year":"2022","unstructured":"Agrawal K, Alladi T, Agrawal A, Chamola V, Benslimane A (2022) NovelADS: a novel anomaly detection system for intra-vehicular networks. IEEE Trans Intell Transp Syst 23:22596\u201322606. https:\/\/doi.org\/10.1109\/TITS.2022.3146024","journal-title":"IEEE Trans Intell Transp Syst"},{"key":"273_CR2","doi-asserted-by":"publisher","first-page":"44772","DOI":"10.1109\/ACCESS.2023.3267764","volume":"11","author":"H Ahmadvand","year":"2023","unstructured":"Ahmadvand H, Lal C, Hemmati H, Sookhak M, Conti M (2023) Privacy-preserving and security in SDN-based IoT: a survey. IEEE Access 11:44772\u201344786. https:\/\/doi.org\/10.1109\/ACCESS.2023.3267764","journal-title":"IEEE Access"},{"key":"273_CR3","doi-asserted-by":"publisher","DOI":"10.1016\/j.vehcom.2024.100837","volume":"49","author":"M Althunayyan","year":"2024","unstructured":"Althunayyan M, Javed A, Rana O (2024) A robust multi-stage intrusion detection system for in-vehicle network security using hierarchical federated learning. Vehicular Commun 49:100837. https:\/\/doi.org\/10.1016\/j.vehcom.2024.100837","journal-title":"Vehicular Commun"},{"key":"273_CR4","doi-asserted-by":"publisher","first-page":"4507","DOI":"10.1109\/TITS.2020.3017882","volume":"22","author":"J Ashraf","year":"2021","unstructured":"Ashraf J, Bakhshi AD, Moustafa N, Khurshid H, Javed A, Beheshti A (2021) Novel deep learning-enabled LSTM autoencoder architecture for discovering anomalous events from intelligent transportation systems. IEEE Trans Intell Transp Syst 22:4507\u20134518. https:\/\/doi.org\/10.1109\/TITS.2020.3017882","journal-title":"IEEE Trans Intell Transp Syst"},{"key":"273_CR5","doi-asserted-by":"publisher","unstructured":"Buttigieg R, Farrugia M, Meli C (2017) Security issues in controller area networks in automobiles, in: 2017 18th Int Conf Sci Tech Autom Control Comput Eng STA pp. 93\u201398. https:\/\/doi.org\/10.1109\/STA.2017.8314877","DOI":"10.1109\/STA.2017.8314877"},{"key":"273_CR6","doi-asserted-by":"publisher","unstructured":"Cho K-T, Shin KG (2016) Error Handling of In-vehicle Networks Makes Them Vulnerable, in: Proc. 2016 ACM SIGSAC Conf. Comput. Commun. Secur., Association for Computing Machinery, New York, NY, USA pp. 1044\u20131055. https:\/\/doi.org\/10.1145\/2976749.2978302","DOI":"10.1145\/2976749.2978302"},{"key":"273_CR7","unstructured":"commaai\/opendbc, https:\/\/github.com\/commaai\/opendbc. (Accessed 16 June 2023), 2023."},{"key":"273_CR8","doi-asserted-by":"publisher","DOI":"10.1016\/j.vehcom.2022.100470","volume":"35","author":"AK Desta","year":"2022","unstructured":"Desta AK, Ohira S, Arai I, Fujikawa K (2022) Rec-CNN: In-vehicle networks intrusion detection using convolutional neural networks trained on recurrence plots. Vehicular Commun 35:100470. https:\/\/doi.org\/10.1016\/j.vehcom.2022.100470","journal-title":"Vehicular Commun"},{"key":"273_CR9","doi-asserted-by":"publisher","unstructured":"Gmiden M, Gmiden MH, Trabelsi H (2016) An intrusion detection method for securing in-vehicle CAN bus, in: 2016 17th Int Conf Sci Tech Autom Control Comput Eng STA pp. 176\u2013180. https:\/\/doi.org\/10.1109\/STA.2016.7952095","DOI":"10.1109\/STA.2016.7952095"},{"key":"273_CR10","doi-asserted-by":"publisher","first-page":"52","DOI":"10.1016\/j.vehcom.2018.09.004","volume":"14","author":"ML Han","year":"2018","unstructured":"Han ML, Kwak BI, Kim HK (2018) Anomaly intrusion detection method for vehicular networks based on survival analysis. Veh Commun 14:52\u201363. https:\/\/doi.org\/10.1016\/j.vehcom.2018.09.004","journal-title":"Veh Commun"},{"key":"273_CR11","doi-asserted-by":"publisher","first-page":"58194","DOI":"10.1109\/ACCESS.2020.2982544","volume":"8","author":"M Hanselmann","year":"2020","unstructured":"Hanselmann M, Strauss T, Dormann K, Ulmer H (2020) CANet: an unsupervised intrusion detection system for high dimensional CAN bus data. IEEE Access 8:58194\u201358205. https:\/\/doi.org\/10.1109\/ACCESS.2020.2982544","journal-title":"IEEE Access"},{"key":"273_CR12","doi-asserted-by":"publisher","DOI":"10.1016\/j.vehcom.2022.100520","volume":"38","author":"T-N Hoang","year":"2022","unstructured":"Hoang T-N, Kim D (2022) Detecting in-vehicle intrusion via semi-supervised learning-based convolutional adversarial autoencoders. Vehicular Commun 38:100520. https:\/\/doi.org\/10.1016\/j.vehcom.2022.100520","journal-title":"Vehicular Commun"},{"key":"273_CR13","doi-asserted-by":"publisher","DOI":"10.1016\/j.vehcom.2025.100956","volume":"55","author":"K Ileri","year":"2025","unstructured":"Ileri K, Rakib A, Djahel S (2025) Metacan: an optimized adaptive hybrid metaheuristic-based intrusion detection system for CAN bus security. Vehicular Commun 55:100956. https:\/\/doi.org\/10.1016\/j.vehcom.2025.100956","journal-title":"Vehicular Commun"},{"key":"273_CR14","doi-asserted-by":"publisher","first-page":"1456","DOI":"10.1109\/TNSE.2021.3059881","volume":"8","author":"AR Javed","year":"2021","unstructured":"Javed AR, Rehman S, Khan MU, Alazab M, G TR (2021) CANintelliIDS: detecting in-vehicle intrusion attacks on a controller area network using CNN and attention-based GRU. IEEE Trans Netw Sci Eng 8:1456\u20131466. https:\/\/doi.org\/10.1109\/TNSE.2021.3059881","journal-title":"IEEE Trans Netw Sci Eng"},{"key":"273_CR15","doi-asserted-by":"publisher","first-page":"4651","DOI":"10.1109\/TII.2023.3324949","volume":"20","author":"S Jeong","year":"2024","unstructured":"Jeong S, Kim HK, Han ML, Kwak BI (2024a) AERO: automotive ethernet real-time observer for anomaly detection in in-vehicle networks. IEEE Trans Ind Inform 20:4651\u20134662. https:\/\/doi.org\/10.1109\/TII.2023.3324949","journal-title":"IEEE Trans Ind Inform"},{"key":"273_CR16","doi-asserted-by":"publisher","first-page":"3230","DOI":"10.1109\/TVT.2023.3327275","volume":"73","author":"S Jeong","year":"2024","unstructured":"Jeong S, Lee S, Lee H, Kim HK (2024b) X-CANIDS: signal-aware explainable intrusion detection system for controller area network-based in-vehicle network. IEEE Trans Veh Technol 73:3230\u20133246. https:\/\/doi.org\/10.1109\/TVT.2023.3327275","journal-title":"IEEE Trans Veh Technol"},{"key":"273_CR17","doi-asserted-by":"publisher","unstructured":"Jeong S, Kang H, Kim HK (2024) X-CANIDS dataset (in-vehicle signal dataset). https:\/\/doi.org\/10.21227\/epsj-y384","DOI":"10.21227\/epsj-y384"},{"key":"273_CR18","doi-asserted-by":"publisher","first-page":"6123","DOI":"10.1109\/TITS.2021.3078740","volume":"23","author":"HJ Jo","year":"2022","unstructured":"Jo HJ, Choi W (2022) A survey of attacks on controller area networks and corresponding countermeasures. IEEE Trans Intell Transp Syst 23:6123\u20136141. https:\/\/doi.org\/10.1109\/TITS.2021.3078740","journal-title":"IEEE Trans Intell Transp Syst"},{"key":"273_CR19","doi-asserted-by":"publisher","DOI":"10.1016\/j.vehcom.2024.100845","volume":"50","author":"H Kang","year":"2024","unstructured":"Kang H, Vo T, Kim HK, Hong JB (2024) Canival: a multimodal approach to intrusion detection on the vehicle CAN bus. Vehicular Commun 50:100845. https:\/\/doi.org\/10.1016\/j.vehcom.2024.100845","journal-title":"Vehicular Commun"},{"key":"273_CR20","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2024.103712","volume":"139","author":"MH Khan","year":"2024","unstructured":"Khan MH, Javed AR, Iqbal Z, Asim M, Awad AI (2024) Divacan: detecting in-vehicle intrusion attacks on a controller area network using ensemble learning. Computers Security 139:103712. https:\/\/doi.org\/10.1016\/j.cose.2024.103712","journal-title":"Computers Security"},{"key":"273_CR21","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.102150","volume":"103","author":"K Kim","year":"2021","unstructured":"Kim K, Kim JS, Jeong S, Park J-H, Kim HK (2021) Cybersecurity for autonomous vehicles: review of attacks and defense. Comput Secur 103:102150. https:\/\/doi.org\/10.1016\/j.cose.2020.102150","journal-title":"Comput Secur"},{"key":"273_CR22","doi-asserted-by":"publisher","DOI":"10.1186\/s13638-019-1484-3","volume":"2019","author":"S-F Lokman","year":"2019","unstructured":"Lokman S-F, Othman AT, Abu-Bakar M-H (2019) Intrusion detection system for automotive controller area network (CAN) bus system: a review. EURASIP J Wirel Commun Netw 2019:184. https:\/\/doi.org\/10.1186\/s13638-019-1484-3","journal-title":"EURASIP J Wirel Commun Netw"},{"key":"273_CR23","doi-asserted-by":"publisher","first-page":"1913","DOI":"10.1109\/TNSM.2020.3038991","volume":"18","author":"S Longari","year":"2021","unstructured":"Longari S, Nova Valcarcel DH, Zago M, Carminati M, Zanero S (2021) CANnolo: An anomaly detection system based on LSTM autoencoders for controller area network. IEEE Trans Netw Serv Manag 18:1913\u20131924. https:\/\/doi.org\/10.1109\/TNSM.2020.3038991","journal-title":"IEEE Trans Netw Serv Manag"},{"key":"273_CR24","doi-asserted-by":"publisher","unstructured":"M\u00fcter M, Asaj N (2011) Entropy-based anomaly detection for in-vehicle networks, in: 2011 IEEE Intell Veh Symp IV pp. 1110\u20131115. https:\/\/doi.org\/10.1109\/IVS.2011.5940552.","DOI":"10.1109\/IVS.2011.5940552"},{"key":"273_CR25","doi-asserted-by":"publisher","first-page":"1484","DOI":"10.1109\/TVT.2019.2961344","volume":"69","author":"H Olufowobi","year":"2020","unstructured":"Olufowobi H, Young C, Zambreno J, Bloom G (2020) Saiducant: specification-based automotive intrusion detection using controller area network (CAN) timing. IEEE Trans Veh Technol 69:1484\u20131494. https:\/\/doi.org\/10.1109\/TVT.2019.2961344","journal-title":"IEEE Trans Veh Technol"},{"key":"273_CR26","doi-asserted-by":"publisher","first-page":"13820","DOI":"10.1038\/s41598-025-98433-x","volume":"15","author":"R Rai","year":"2025","unstructured":"Rai R, Grover J, Sharma P, Pareek A (2025) Securing the CAN bus using deep learning for intrusion detection in vehicles. Sci Rep 15:13820. https:\/\/doi.org\/10.1038\/s41598-025-98433-x","journal-title":"Sci Rep"},{"key":"273_CR27","doi-asserted-by":"publisher","unstructured":"Seo E, Song HM, Kim HK (2018) GIDS: GAN based Intrusion Detection System for In-Vehicle Network, in: 2018 16th Annu Conf Priv Secur Trust PST pp. 1\u20136. https:\/\/doi.org\/10.1109\/PST.2018.8514157","DOI":"10.1109\/PST.2018.8514157"},{"key":"273_CR28","doi-asserted-by":"publisher","first-page":"22111","DOI":"10.1109\/JIOT.2023.3303271","volume":"10","author":"MH Shahriar","year":"2023","unstructured":"Shahriar MH, Xiao Y, Moriano P, Lou W, Hou YT (2023) CanShield: deep-learning-based intrusion detection framework for controller area networks at the signal level. IEEE Internet Things J 10:22111\u201322127. https:\/\/doi.org\/10.1109\/JIOT.2023.3303271","journal-title":"IEEE Internet Things J"},{"key":"273_CR29","doi-asserted-by":"publisher","DOI":"10.1016\/j.vehcom.2019.100198","volume":"21","author":"HM Song","year":"2020","unstructured":"Song HM, Woo J, Kim HK (2020) In-vehicle network intrusion detection using deep convolutional neural network. Vehicular Commun 21:100198. https:\/\/doi.org\/10.1016\/j.vehcom.2019.100198","journal-title":"Vehicular Commun"},{"key":"273_CR30","doi-asserted-by":"publisher","unstructured":"Song HM, Kim HR, Kim HK (2016) Intrusion detection system based on the analysis of time intervals of CAN messages for in-vehicle network, in: 2016 Int Conf Inf Netw ICOIN pp. 63\u201368. https:\/\/doi.org\/10.1109\/ICOIN.2016.7427089","DOI":"10.1109\/ICOIN.2016.7427089"},{"key":"273_CR31","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101857","volume":"94","author":"S Tariq","year":"2020","unstructured":"Tariq S, Lee S, Kim HK, Woo SS (2020) CAN-ADF: The controller area network attack detection framework. Comput Secur 94:101857. https:\/\/doi.org\/10.1016\/j.cose.2020.101857","journal-title":"Comput Secur"},{"key":"273_CR32","doi-asserted-by":"publisher","first-page":"534","DOI":"10.1109\/TITS.2014.2320605","volume":"16","author":"S Tuohy","year":"2015","unstructured":"Tuohy S, Glavin M, Hughes C, Jones E, Trivedi M, Kilmartin L (2015) Intra-vehicle networks: a review. IEEE Trans Intell Transp Syst 16:534\u2013545. https:\/\/doi.org\/10.1109\/TITS.2014.2320605","journal-title":"IEEE Trans Intell Transp Syst"},{"key":"273_CR33","doi-asserted-by":"publisher","first-page":"9685","DOI":"10.1109\/TVT.2021.3092354","volume":"70","author":"ME Verma","year":"2021","unstructured":"Verma ME, Bridges RA, Sosnowski JJ, Hollifield SC, Iannacone MD (2021) Can-d: a modular four-step pipeline for comprehensively decoding controller area network data. IEEE Trans Veh Technol 70:9685\u20139700. https:\/\/doi.org\/10.1109\/TVT.2021.3092354","journal-title":"IEEE Trans Veh Technol"},{"key":"273_CR34","doi-asserted-by":"publisher","first-page":"919","DOI":"10.1109\/TITS.2019.2908074","volume":"21","author":"W Wu","year":"2020","unstructured":"Wu W, Li R, Xie G, An J, Bai Y, Zhou J, Li K (2020) A survey of intrusion detection for in-vehicle networks. IEEE Trans Intell Transp Syst 21:919\u2013933. https:\/\/doi.org\/10.1109\/TITS.2019.2908074","journal-title":"IEEE Trans Intell Transp Syst"},{"key":"273_CR35","doi-asserted-by":"publisher","first-page":"138","DOI":"10.58496\/MJBD\/2023\/018","volume":"2023","author":"MG Yaseen","year":"2023","unstructured":"Yaseen MG, Albahri AS (2023) Mapping the evolution of intrusion detection in big data: a bibliometric analysis. Mesopotamian J Big Data 2023:138\u2013148. https:\/\/doi.org\/10.58496\/MJBD\/2023\/018","journal-title":"Mesopotamian J Big Data"},{"key":"273_CR36","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3540198","volume":"21","author":"Q Zhao","year":"2022","unstructured":"Zhao Q, Chen M, Gu Z, Luan S, Zeng H, Chakrabory S (2022) CAN bus intrusion detection based on auxiliary classifier GAN and out-of-distribution detection. ACM Trans Embed Comput Syst 21:1\u201330. https:\/\/doi.org\/10.1145\/3540198","journal-title":"ACM Trans Embed Comput Syst"}],"container-title":["Journal of King Saud University Computer and Information Sciences"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s44443-025-00273-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s44443-025-00273-2\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s44443-025-00273-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,19]],"date-time":"2025-11-19T15:45:54Z","timestamp":1763567154000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s44443-025-00273-2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,29]]},"references-count":36,"journal-issue":{"issue":"9","published-print":{"date-parts":[[2025,11]]}},"alternative-id":["273"],"URL":"https:\/\/doi.org\/10.1007\/s44443-025-00273-2","relation":{},"ISSN":["1319-1578","2213-1248"],"issn-type":[{"value":"1319-1578","type":"print"},{"value":"2213-1248","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,10,29]]},"assertion":[{"value":"19 July 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"5 September 2025","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"29 October 2025","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors have no relevant financial or non-financial interests to disclose.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}}],"article-number":"286"}}