ANOMALY DETECTION DEVICE, ANOMALY DETECTION SYSTEM, AND CONTROL METHOD

    公开(公告)号:US20200351168A1

    公开(公告)日:2020-11-05

    申请号:US16929691

    申请日:2020-07-15

    Abstract: An IDS ECU includes: an anomalous frame detector that detects an anomalous frame; a connector communicator that transmits an anomaly-related request frame to a connector that is a transmitter of the anomalous frame, to request a response from the connector, and receives, from the connector, an anomaly-related response frame generated by the connector based on the anomaly-related request frame and indicating the transmitter; a network anomaly determiner that calculates, from the anomaly-related response frame, the number of anomalous connectors indicating the number of connectors that transmitted the anomaly-related response frame, and determines that an in-vehicle network system is: in a first anomalous state when the number is 0; and in a second anomalous state when the number is not 0; and a network anomaly handler that handles the first or second anomalous state determined by the network anomaly determiner.

    CONTROL MODE SWITCHING APPARATUS AND CONTROL MODE SWITCHING METHOD

    公开(公告)号:US20230205181A1

    公开(公告)日:2023-06-29

    申请号:US18112311

    申请日:2023-02-21

    CPC classification number: G05B19/4155 G05D1/0038 G05D1/0061 G05B2219/50391

    Abstract: A control mode switching apparatus switches a control mode of a robot. The control mode includes at least two of a remote control mode, a manual control mode, and an autonomous control mode. The control mode switching apparatus includes: an anomaly detector that, based on a communication message on a control network in the robot and the control mode, obtains a detection result of at least one anomaly among a user anomaly caused by user control, a robot anomaly caused by the control network, an operating environment anomaly caused by an operating environment of the robot, and an application anomaly caused by an application; and a switcher that calculates, for each type of anomaly detected, a score indicating a likelihood that the type is a cause of the anomaly in the robot, and switches the control mode based on the score calculated.

    FRAME TRANSFER METHOD AND SECURE STAR COUPLER

    公开(公告)号:US20210051090A1

    公开(公告)日:2021-02-18

    申请号:US17089277

    申请日:2020-11-04

    Abstract: A secure star coupler in a communication network adopting a time-triggered protocol based on a time slot include: transceivers each of which is connected to one of branches and transmits and receives signals; a routing table holder that holds a predetermined rule indicating a correspondence between a time slot and a branch; and a router that routes a signal received from a first branch to another branch unless a no-transfer condition is satisfied. The no-transfer condition includes a condition that the predetermined rule is not followed by the first branch and a condition that routing of a signal received from a second branch different from the first branch has started in the time slot.

    COMMUNICATION LOG AGGREGATION DEVICE AND COMMUNICATION LOG AGGREGATION METHOD

    公开(公告)号:US20220337494A1

    公开(公告)日:2022-10-20

    申请号:US17854182

    申请日:2022-06-30

    Abstract: A communication log aggregation device includes: a communicator that obtains flow information including one or more flow records and first statistical information for each flow from each of collection devices, the one or more flow records each including flow identification information included in a message received by at least one observer that is disposed in a control network system, the flow being classified based on the flow identification information, the collection devices each collecting the one or more flow records and the first statistical information for each flow from the message received by the observer; and a flow aggregator that generates aggregated flow information by performing at least one of the following: (i) selecting at least one of the one or more flow records, (ii) adding second statistical information, and (iii) deleting at least one of the one or more flow records, and outputs the aggregated flow information.

    ANOMALY DETECTION METHOD, RECORDING MEDIUM, AND ANOMALY DETECTION SYSTEM

    公开(公告)号:US20220263849A1

    公开(公告)日:2022-08-18

    申请号:US17739935

    申请日:2022-05-09

    Abstract: An anomaly detection method in an in-vehicle network system in which a plurality of ECUs are connected. Among the plurality of ECUs, at least one ECU includes a detector which determines whether a received message satisfies a predetermined rule, and the at least one ECU transmits the detection result determined to a network. The anomaly detection method includes (i) receiving the detection result from the network, and storing the detection result received in a memory, (ii) determining whether the detection result is received within a predetermined time, and storing a determination result in the memory in association with the detection result, and (iii) outputting a message to the outside, the message including the detection result in association with the determination result.

    INTRUSION PATH ANALYSIS DEVICE AND INTRUSION PATH ANALYSIS METHOD

    公开(公告)号:US20220182404A1

    公开(公告)日:2022-06-09

    申请号:US17665218

    申请日:2022-02-04

    Abstract: The control network system is connected to electronic control unit(s) and a communication device, and includes security sensor(s) that transmits a security alert indicating that an indication of a security breach is detected to the network, if the indication is detected in at least one of the network, the electronic control unit(s), or the communication device. The intrusion path analysis device includes: an alert obtainer that obtains the security alert from the security sensor(s); an event obtainer that obtains an event history of an event that occurs in the control network system; and an intrusion path analyzer that performs an analysis on an intrusion path of an attack on the basis of the security alert, the event history, and an intrusion depth indicating an intrusion level to be assumed in a case the security alert occurs, and that outputs a result of the analysis.

Patent Agency Ranking