-
公开(公告)号:US20200344116A1
公开(公告)日:2020-10-29
申请号:US16915187
申请日:2020-06-29
Inventor: Manabu MAEDA , Hideki MATSUSHIMA , Tomoyuki HAGA , Yoshihiro UJIIE , Takeshi KISHIKAWA
IPC: H04L12/24 , B60R16/023 , G06F11/00 , B60R16/02 , G06F11/36 , G06F8/654 , G06F8/71 , H04L12/46 , H04L12/40 , H04L12/66
Abstract: A gateway device connected to a network used in communication by multiple electronic control units provided on-board a vehicle. The gateway device performs operations including receiving firmware update information that includes updated firmware for one electronic control unit among the electronic control units, and acquiring system configuration information indicating a function of each of the electronic control units connected to the network. The gateway device further performs a controlling operation to update firmware of the one electronic control unit, for which updated firmware is received by the receiving, on a basis of the updated firmware, after an operation verification of the updated firmware is performed in an operating environment appropriately. The operating environment being configured with electronic control units of the same functions as each of the electronic control units indicated by the system configuration information.
-
22.
公开(公告)号:US20200274883A1
公开(公告)日:2020-08-27
申请号:US15930093
申请日:2020-05-12
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L29/06 , H04L29/08 , H04L12/40 , B60R16/023
Abstract: An electronic control unit is connected to a network in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the network via the second control circuit. The second control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. Upon determining that the frame conforms to the first rule, the second control circuit transmits the frame to the first control circuit. The first control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule. The second rule is different from the first rule.
-
公开(公告)号:US20200186552A1
公开(公告)日:2020-06-11
申请号:US16788641
申请日:2020-02-12
Inventor: Manabu MAEDA , Hideki MATSUSHIMA , Tomoyuki HAGA , Yuji UNAGAMI , Yoshihiro UJIIE , Takeshi KISHIKAWA
IPC: H04L29/06 , B60R16/023 , H04L12/28
Abstract: A fraud detecting method for use in an in-vehicle network system including a plurality of electronic control units that communicate with each other via a network includes detecting whether a state of a vehicle satisfies a first condition or a second condition, and switching, upon detecting that the state of the vehicle satisfies the first condition or the second condition, an operation mode of a fraud-sensing electronic control unit connected to the network between a first mode in which a first type of detecting process for detecting a fraudulent message in the network is performed and a second mode in which the first type of detecting process is not performed.
-
24.
公开(公告)号:US20190124091A1
公开(公告)日:2019-04-25
申请号:US16217460
申请日:2018-12-12
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L29/06 , H04L29/08 , B60R16/023 , H04L12/40
Abstract: An electronic control unit is connected to an in-vehicle network bus in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the in-vehicle network bus via the second control circuit over wired communication and/or wireless communication. The first control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. The second control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule, and, upon determining that the frame conforms to the second rule, transmits the frame to the in-vehicle network bus.
-
公开(公告)号:US20250021643A1
公开(公告)日:2025-01-16
申请号:US18903596
申请日:2024-10-01
Inventor: Yoshihiro UJIIE , Hideki MATSUSHIMA , Tomoyuki HAGA , Yuji UNAGAMI , Takeshi KISHIKAWA
Abstract: Provided is a fraud detection rule updating method enabling the updating of rules that serve as the basis for detecting malicious frames as necessary in an on-board network system. In an on-board network system equipped with multiple electronic control units (ECUs) that communicate via buses and fraud detecting ECUs that determine, based on fraud detection rules, whether messages transmitted on the buses conform to the rules, a fraud detection rule updating method is used in which delivery data including updated fraud detection rules is received from a server external to the on-board network system, and if a certain update condition is satisfied, the fraud detection rules in a fraud detecting ECU are updated to the updated fraud detection rules.
-
公开(公告)号:US20240250976A1
公开(公告)日:2024-07-25
申请号:US18590182
申请日:2024-02-28
Inventor: Tomoyuki HAGA , Hideki MATSUSHIMA , Manabu MAEDA , Yoshihiro UJIIE , Takeshi KISHIKAWA , Junichi TSURUMI , Jun ANZAI
CPC classification number: H04L63/1425 , G07C5/0808 , H04L12/40 , H04L63/1441 , H04L67/12 , H04W4/40 , H04W4/44 , H04L2012/40215 , H04L2012/40273 , H04W4/08
Abstract: An anomaly detection server is provided. The anomaly detection server is a server for counteracting an anomalous frame transmitted on an on-board network of a single vehicle. The anomaly detection server acquires information about multiple frames received on one or multiple on-board networks of one or multiple vehicles, including the single vehicle. The anomaly detection server, acting as an assessment unit that, based on the information about the multiple frames and information about a frame received on the on-board network of the single vehicle after the acquisition of the information about the multiple frames, assesses an anomaly level of the frame received on the on-board network of the single vehicle.
-
公开(公告)号:US20240086226A1
公开(公告)日:2024-03-14
申请号:US18517128
申请日:2023-11-22
Inventor: Yoshihiro UJIIE , Ryo HIRANO , Takeshi KISHIKAWA
IPC: G06F9/455 , B60R16/023 , G06F21/57
CPC classification number: G06F9/45558 , B60R16/0239 , G06F21/57 , G06F2009/45587 , G06F2009/45591 , G06F2221/033
Abstract: A monitoring system is for monitoring a vehicle or a monitoring target that operates inside the vehicle, and the monitoring system includes: a reliability manager that manages reliability indicating a security protection state of the monitoring target, according to a vehicle event of the vehicle; and a function restrictor that places a restriction on at least a part of functions of the monitoring target, according to the reliability.
-
公开(公告)号:US20230153099A1
公开(公告)日:2023-05-18
申请号:US18095185
申请日:2023-01-10
Inventor: Yoshihiro UJIIE , Hideki MATSUSHIMA , Jun ANZAI , Toshihisa NAKANO , Tomoyuki HAGA , Manabu MAEDA , Takeshi KISHIKAWA
CPC classification number: G06F8/65 , G06F8/654 , B60R16/023 , G06F11/00 , H04L12/4625 , H04L12/40006 , G06F11/1433 , B60R16/02 , H04L67/12
Abstract: A gateway device is connected via network(s) to electronic controllers on-board a vehicle, where at least one of the electronic controllers is implemented in a virtual machine. The gateway device includes one or more memories, and circuitry that acquires firmware update information. The circuitry determines whether a first electronic controller satisfies a second condition based on second information, which is whether the first electronic controller includes a firmware cache for performing a pre-update firmware cache operation. The circuitry also causes, when the second condition is not satisfied, the gateway device to execute a proxy process, where the gateway device requests the first electronic controller to transmit boot ROM data to the gateway device, creates updated boot ROM data with the updated firmware, and transmits the updated boot ROM data to the first electronic controller that updates the boot ROM and resets the first electronic controller with the updated firmware.
-
公开(公告)号:US20220337494A1
公开(公告)日:2022-10-20
申请号:US17854182
申请日:2022-06-30
Inventor: Takeshi KISHIKAWA , Ryo HIRANO , Yoshihiro UJIIE
IPC: H04L43/026 , H04L67/12 , G07C5/08
Abstract: A communication log aggregation device includes: a communicator that obtains flow information including one or more flow records and first statistical information for each flow from each of collection devices, the one or more flow records each including flow identification information included in a message received by at least one observer that is disposed in a control network system, the flow being classified based on the flow identification information, the collection devices each collecting the one or more flow records and the first statistical information for each flow from the message received by the observer; and a flow aggregator that generates aggregated flow information by performing at least one of the following: (i) selecting at least one of the one or more flow records, (ii) adding second statistical information, and (iii) deleting at least one of the one or more flow records, and outputs the aggregated flow information.
-
公开(公告)号:US20220263849A1
公开(公告)日:2022-08-18
申请号:US17739935
申请日:2022-05-09
Inventor: Yoshihiro UJIIE , Takeshi KISHIKAWA , Ryo HIRANO , Tomoyuki HAGA
Abstract: An anomaly detection method in an in-vehicle network system in which a plurality of ECUs are connected. Among the plurality of ECUs, at least one ECU includes a detector which determines whether a received message satisfies a predetermined rule, and the at least one ECU transmits the detection result determined to a network. The anomaly detection method includes (i) receiving the detection result from the network, and storing the detection result received in a memory, (ii) determining whether the detection result is received within a predetermined time, and storing a determination result in the memory in association with the detection result, and (iii) outputting a message to the outside, the message including the detection result in association with the determination result.
-
-
-
-
-
-
-
-
-