-
公开(公告)号:US10137862B2
公开(公告)日:2018-11-27
申请号:US15868663
申请日:2018-01-11
Inventor: Tomoyuki Haga , Hideki Matsushima , Manabu Maeda , Yuji Unagami , Yoshihiro Ujiie , Takeshi Kishikawa
Abstract: An anti-fraud method for use in an in-vehicle network system including a plurality of electronic control units that exchange, in an in-vehicle network, data frames, each having added thereto a message authentication code (MAC). The method includes generating a first MAC by using a MAC key and a value of a counter that counts a number of times a data frame having added thereto a MAC is transmitted to the in-vehicle network. The method also includes performing verification that the data frame received has added thereto the generated first MAC and incrementing a number of error occurrences when the verification has failed for the data frame, the data frame including a predetermined ID. When the number of error occurrences exceeds a predetermined threshold, a process associated in advance with the predetermined ID is executed.
-
公开(公告)号:US20180167360A1
公开(公告)日:2018-06-14
申请号:US15880769
申请日:2018-01-26
Inventor: Manabu Maeda , Jun Anzai , Yoshihiro Ujiie , Masato Tanabe , Takeshi Kishikawa
IPC: H04L29/06 , B60R16/023
CPC classification number: H04L63/0209 , B60R16/023 , G06F21/55 , G06F21/85 , H04L9/36 , H04L12/28 , H04L12/40006 , H04L63/0245 , H04L63/14 , H04L63/1441 , H04L67/12
Abstract: A gateway serving as a security apparatus connected to one or a plurality of buses includes a receiver that receives a frame from a bus, a parameter storage that stores an examination parameter defining a content of an examination of the frame, an updater configured to, in a case where a predetermined condition is satisfied for the frame received by the receiver, update the examination parameter stored in the parameter storage, and an examiner that performs an examination, based on the examination parameter stored in the parameter storage, in terms of judgment of whether or not the frame received by the receiver is an attack frame.
-
公开(公告)号:US09762407B2
公开(公告)日:2017-09-12
申请号:US14441974
申请日:2014-09-11
Inventor: Natsume Matsuzaki , Yuichi Futa , Motoji Ohmori , Manabu Maeda , Yuji Unagami
CPC classification number: H04L12/2825 , G06F13/00 , G06Q10/00 , G06Q10/20 , H04L43/065 , H04Q9/00 , H04Q2209/40 , H04Q2209/86
Abstract: When it is determined that a position of the display terminal is within a range of a prescribed distance from the house and when it is determined that the log information and the information indicating the operational state of the one electric home appliance are not consistent with each other, the server provides the display terminal with information on a possibility of a malfunction of the one electric home appliance while the position of the display terminal is still within the range of the prescribed distance from the house.
-
公开(公告)号:US12244607B2
公开(公告)日:2025-03-04
申请号:US17840224
申请日:2022-06-14
Inventor: Manabu Maeda , Daisuke Kunimune
IPC: H04L9/40 , B60R16/023 , H04L67/12
Abstract: A selection method is for selecting a reference message to be used to detect unauthorized communication in an in-vehicle network system including a network and one or more electronic control units connected to the network. The reference message is used as a reference for determining whether a message sent to the network is anomalous. The selection method includes: storing candidate information regarding one or more reference message candidates each being a candidate of the reference message; selecting, based on the candidate information regarding the one or more reference message candidates stored in the storing, the selection method for selecting the reference message from among the one or more reference message candidates; and selecting the reference message from among the one or more reference message candidates using the selection method.
-
公开(公告)号:US12177038B2
公开(公告)日:2024-12-24
申请号:US18376641
申请日:2023-10-04
Inventor: Manabu Maeda , Toshihisa Nakano , Yoshiharu Imamoto
IPC: H04L12/40
Abstract: In an anomaly determination method for determining an anomaly in a received message, a plurality of messages which include messages that are periodic and each of which includes a first field having a fixed value and a second field having a variable value are each received as the received message, and one of a plurality of combinations to be used for determination each of which includes at least one of a plurality of anomaly determinations including an anomaly determination utilizing a reception timing based on the periodicity or the number of received messages, an anomaly determination utilizing the first field, and an anomaly determination utilizing the second field, is selected according to one or more criteria among available execution time of the anomaly determination method, a load amount, a data amount, and the number of messages.
-
公开(公告)号:US12155677B2
公开(公告)日:2024-11-26
申请号:US16583996
申请日:2019-09-26
Inventor: Manabu Maeda , Takeshi Kishikawa , Daisuke Kunimune
Abstract: A fraud detection method includes: determining whether a period of a message repeatedly transmitted in an in-vehicle network is anomalous; detecting whether arbitration occurs when the message is transmitted in the in-vehicle network; and determining that the message is an anomalous message, in the case where the period of the message is anomalous and no arbitration occurs when the message is transmitted in the in-vehicle network.
-
公开(公告)号:US11962653B2
公开(公告)日:2024-04-16
申请号:US17512028
申请日:2021-10-27
Inventor: Manabu Maeda , Tomoyuki Haga , Yuji Unagami
IPC: H04L67/125 , H04L12/66
CPC classification number: H04L67/125 , H04L12/66
Abstract: A device monitoring method includes: receiving a message transmitted from a first device to a second device and addressed to the second device; determining whether the message contains a device control command for controlling the second device; if the message contains the device control command, further determining whether to transmit the message to the second device based on a predetermined condition; and when the message is determined to be transmitted to the second device, transmitting the message to the second device. The predetermined condition includes a first condition that the first device is registered as a device having a predetermined function in a device list containing information about whether each of the devices is a device having the predetermined function. The message is determined to be transmitted to the second device when the predetermined condition is satisfied.
-
公开(公告)号:US11463275B2
公开(公告)日:2022-10-04
申请号:US17233088
申请日:2021-04-16
Inventor: Manabu Maeda , Tomoyuki Haga , Takamitsu Sasaki , Hideki Matsushima
Abstract: An electronic control unit (ECU) is provided. The ECU is connected to a first network in an onboard network system. The onboard network system includes the first network and a second network. In the first network, first-type frames are transmitted following a first communication protocol. In the second network, second-type frames are transmitted following a second communication protocol. The first-type frame includes first information serving as a base for the second-type frame to be transmitted to the second network, and second information indicating that the first-type frame includes information that is to be transmitted to the second network. The ECU includes a generator that generates the first-type frame following the first communication protocol, and a transmitter that transmits, to the first network, the first-type frame generated by the generator.
-
公开(公告)号:US11438350B2
公开(公告)日:2022-09-06
申请号:US17194514
申请日:2021-03-08
Inventor: Manabu Maeda , Takeshi Kishikawa , Daisuke Kunimune
Abstract: An unauthorized activity detection method in an onboard network system. The detection method includes determining whether or not a message sent out onto the network is an attack message, saving information relating to the attack message in at least one memory in a case where the message is an attack message, identifying a communication pattern from information relating to the attack message, and determining whether or not the message matches a communication pattern. The determination of whether an attack message and determination of whether matching a communication pattern are executed on each of a plurality of messages received from the network. In the determining of whether an attack message executed on a message received after executing of determining of whether matching a communication pattern, results of the determination of whether an attack message that has already be executed are used.
-
20.
公开(公告)号:US11425128B2
公开(公告)日:2022-08-23
申请号:US17039107
申请日:2020-09-30
Inventor: Takeshi Kishikawa , Manabu Maeda , Tohru Wakabayashi , Toshihisa Nakano , Hideki Matsushima
IPC: H04L9/40 , B60R16/023 , H04L12/40 , H04L67/125 , H04L67/12
Abstract: A method for use in a network system is provided. The network system includes a plurality of electronic controllers that transmits and receives, via a network, a plurality of frames. The plurality of frames includes at least one control frame that instructs predetermined control to an object of control. The method receives, sequentially, the plurality of frames from the network, and determines whether the predetermined control, instructed by the control frame received in the receiving, is to be suppressed, based on a set of frames received in the receiving. The set of frames is received in the receiving within a predetermined period preceding a time of reception of the control frame.
-
-
-
-
-
-
-
-
-