COMMUNICATION LOG AGGREGATION DEVICE AND COMMUNICATION LOG AGGREGATION METHOD

    公开(公告)号:US20220337494A1

    公开(公告)日:2022-10-20

    申请号:US17854182

    申请日:2022-06-30

    Abstract: A communication log aggregation device includes: a communicator that obtains flow information including one or more flow records and first statistical information for each flow from each of collection devices, the one or more flow records each including flow identification information included in a message received by at least one observer that is disposed in a control network system, the flow being classified based on the flow identification information, the collection devices each collecting the one or more flow records and the first statistical information for each flow from the message received by the observer; and a flow aggregator that generates aggregated flow information by performing at least one of the following: (i) selecting at least one of the one or more flow records, (ii) adding second statistical information, and (iii) deleting at least one of the one or more flow records, and outputs the aggregated flow information.

    ANOMALY DETECTION METHOD, RECORDING MEDIUM, AND ANOMALY DETECTION SYSTEM

    公开(公告)号:US20220263849A1

    公开(公告)日:2022-08-18

    申请号:US17739935

    申请日:2022-05-09

    Abstract: An anomaly detection method in an in-vehicle network system in which a plurality of ECUs are connected. Among the plurality of ECUs, at least one ECU includes a detector which determines whether a received message satisfies a predetermined rule, and the at least one ECU transmits the detection result determined to a network. The anomaly detection method includes (i) receiving the detection result from the network, and storing the detection result received in a memory, (ii) determining whether the detection result is received within a predetermined time, and storing a determination result in the memory in association with the detection result, and (iii) outputting a message to the outside, the message including the detection result in association with the determination result.

    INTRUSION PATH ANALYSIS DEVICE AND INTRUSION PATH ANALYSIS METHOD

    公开(公告)号:US20220182404A1

    公开(公告)日:2022-06-09

    申请号:US17665218

    申请日:2022-02-04

    Abstract: The control network system is connected to electronic control unit(s) and a communication device, and includes security sensor(s) that transmits a security alert indicating that an indication of a security breach is detected to the network, if the indication is detected in at least one of the network, the electronic control unit(s), or the communication device. The intrusion path analysis device includes: an alert obtainer that obtains the security alert from the security sensor(s); an event obtainer that obtains an event history of an event that occurs in the control network system; and an intrusion path analyzer that performs an analysis on an intrusion path of an attack on the basis of the security alert, the event history, and an intrusion depth indicating an intrusion level to be assumed in a case the security alert occurs, and that outputs a result of the analysis.

    ANOMALOUS VEHICLE DETECTION SERVER AND ANOMALOUS VEHICLE DETECTION METHOD

    公开(公告)号:US20210349997A1

    公开(公告)日:2021-11-11

    申请号:US17380228

    申请日:2021-07-20

    Abstract: An anomalous vehicle detection server includes an anomaly score calculator that detects a suspicious behavior different from a predetermined driving behavior based on pieces of vehicle information that are received from a plurality of vehicles, respectively, and are each based on a vehicle log including the content of an event that has occurred in a vehicle system provided in the vehicle, and acquires an anomaly score of each of the plurality of vehicles that indicates a likelihood that reverse engineering is performed on the vehicle; and an anomalous vehicle determiner that determines whether one vehicle of the plurality of vehicles is an anomalous vehicle based on the anomaly score of the one vehicle and a statistical value of the anomaly scores of two or more vehicles of the plurality of vehicles.

Patent Agency Ranking