-
31.
公开(公告)号:US20220116405A1
公开(公告)日:2022-04-14
申请号:US17559749
申请日:2021-12-22
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L67/12 , H04L12/40 , B60R16/023
Abstract: An electronic control unit is connected to a network in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the network via the second control circuit. The second control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. Upon determining that the frame conforms to the first rule, the second control circuit transmits the frame to the first control circuit. The first control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule. The second rule is different from the first rule.
-
公开(公告)号:US20210211442A1
公开(公告)日:2021-07-08
申请号:US17211211
申请日:2021-03-24
Inventor: Tomoyuki HAGA , Takamitsu SASAKI , Hajime TASAKI , Hideki MATSUSHIMA
IPC: H04L29/06
Abstract: A threat information analysis server includes: an update manager that manages update information indicating that function addition to an IoT device is performed; a threat information manager that stores threat information of a cyberattack; a risk level manager that manages risk level information defining a risk level of the IoT device; a related threat information manager that manages the threat information and related threat information associating the IoT device with the risk level; a risk level updater that associates the threat information and the risk level of the IoT device with each other and updates the related threat information, based on the update information; and an outputter that outputs the related threat information managed by the related threat information manager.
-
公开(公告)号:US20210203525A1
公开(公告)日:2021-07-01
申请号:US17201797
申请日:2021-03-15
Inventor: Yoshihiro UJIIE , Hideki MATSUSHIMA , Toshihisa NAKANO , Tohru WAKABAYASHI , Hiroshi AMANO , Tomoyuki HAGA , Takeshi KISHIKAWA
IPC: H04L12/40 , H04L29/06 , H04L12/46 , H04B1/3822 , H04L12/66
Abstract: A gateway device for a vehicle network system installed in a vehicle is provided. The vehicle network system includes a network, an electronic control unit connected to the network, and the gateway device connected to the first network and configured to communicate outside the vehicle. The gateway device receives a first frame from outside the vehicle; determines whether or not the first frame is appropriate; generates a second frame when the first frame is not determined to be appropriate; and transmits the second frame to the network. The second frame includes control information and additional information based on content of the first frame. The control information restricts processing of the additional information included in the second frame by the electronic control unit, after the second frame is received by the electronic control unit.
-
公开(公告)号:US20210192095A1
公开(公告)日:2021-06-24
申请号:US17193091
申请日:2021-03-05
Inventor: Hideki MATSUSHIMA , Teruto HIROTA , Yukie SHODA , Shunji HARADA
IPC: G06F21/87 , G06F21/14 , G06F21/10 , G06F21/52 , H04L29/06 , G06F21/53 , G06F21/57 , G06F12/14 , H04L9/32 , G06F21/74
Abstract: A program execution device capable of protecting a program against unauthorized analysis and alteration is provided. The program execution device includes an execution unit, a first protection unit, and a second protection unit. The execution unit executes a first program and a second program, and is connected with an external device that is capable of controlling the execution. The first protection unit disconnects the execution unit from the external device while the execution unit is executing the first program. The second protection unit protects the first program while the execution unit is executing the second program.
-
公开(公告)号:US20210184949A1
公开(公告)日:2021-06-17
申请号:US17189795
申请日:2021-03-02
Inventor: Hideki MATSUSHIMA , Motoji OHMORI , Natsume MATSUZAKI , Yuichi FUTA , Toshihisa NAKANO , Manabu MAEDA , Yuji UNAGAMI , Hiroshi AMANO , Kotaro HAKODA
Abstract: An information management method collects log information of one or more home electrical apparatuses corresponding to service providers. Display screen data is generated which indicates a status of the log information. The display screen data includes groups of information which each contain information on an apparatus, a service provider corresponding to the apparatus, and log information output from the apparatus. Provision of the log information of each group is individually selectable. The display screen data is provided via a network to a display terminal that performs access to a server device. Information is received from the display terminal, which indicates that selection on whether or not provision of the log information is performed. Provision of the log information is not performed on the selected group when a determination is made that refusal of provision of the log information on the selected group is performed.
-
36.
公开(公告)号:US20210133309A1
公开(公告)日:2021-05-06
申请号:US17122659
申请日:2020-12-15
Inventor: Takeshi KISHIKAWA , Yoshihiro UJIIE , Manabu MAEDA , Hideki MATSUSHIMA , Hiroshi AMANO , Toshihisa NAKANO
Abstract: A misuse detection method used in an electronic control unit in a vehicle network system including multiple electronic control units that communicate with one another through networks. The misuse detection method includes receiving a target data frame at one time point, and receiving a reference data frame at another time point different than the one time point. The misuse detection method further includes performing, as misuse detection for the target data frame based on a certain rule specifying a reception interval between the one time point at which the target data frame is received and the other time point at which the reference data frame is received, and determining the target data frame received is for misuse based on a length of the reception interval.
-
37.
公开(公告)号:US20200220716A1
公开(公告)日:2020-07-09
申请号:US16820428
申请日:2020-03-16
Inventor: Tomoyuki HAGA , Hideki MATSUSHIMA , Manabu MAEDA , Yuji UNAGAMI , Jun ANZAI
Abstract: An update management method is used in an onboard network system having a plurality of electronic control units (ECUs) that performs communication via a network and connects to an external tool. The method includes a master ECU storing a shared key and an expiration date of the shared key. When the master ECU receives an update message, verifying update authority information indicating authority of the external tool, and determining whether or not a transmission of the update message is within a range of an authority of the external tool. The method also includes acquiring external point-in-time information, determining whether or not the external point-in-time information is before the expiration date, and transmitting an alert message prompting an update of the shared key. The ECUs are prioritized according to a designated level of authority, including chassis-related functions, body-related functions, safety/comfort functions, and telematics/infotainment functions.
-
38.
公开(公告)号:US20200007567A1
公开(公告)日:2020-01-02
申请号:US16566269
申请日:2019-09-10
Inventor: Yoshihiro UJIIE , Hideki MATSUSHIMA , Tomoyuki HAGA , Manabu MAEDA , Yuji UNAGAMI , Takeshi KISHIKAWA
Abstract: A method for use in a network communication system including a plurality of electronic controllers that communicate with each other via a bus in accordance with a Controller Area Network (CAN) protocol determines whether or not content of a predetermined field in a frame which has started to be transmitted meets a predetermined condition indicating fraud. In a case where the content of the predetermined field meets the predetermined condition, an error frame is transmitted before an end of the frame is transmitted. A number of times the error frame is transmitted is recorded for each identifier (ID) represented by content of an ID field included in a plurality of frames which has been transmitted. A malicious electronic controller is determined in accordance with the number of times recorded for each ID.
-
公开(公告)号:US20190251300A1
公开(公告)日:2019-08-15
申请号:US16393313
申请日:2019-04-24
Inventor: Hideki MATSUSHIMA , Teruto HIROTA , Yukie SHODA , Shunji HARADA
IPC: G06F21/87 , G06F21/52 , G06F21/10 , G06F12/14 , G06F21/14 , G06F21/74 , H04L9/32 , H04L29/06 , G06F21/57 , G06F21/53
CPC classification number: G06F21/87 , G06F12/1408 , G06F21/10 , G06F21/14 , G06F21/52 , G06F21/53 , G06F21/57 , G06F21/74 , G06F2212/1052 , G06F2221/2153 , H04L9/3234 , H04L9/3247 , H04L63/105
Abstract: A program execution device capable of protecting a program against unauthorized analysis and alteration is provided. The program execution device includes an execution unit, a first protection unit, and a second protection unit. The execution unit executes a first program and a second program, and is connected with an external device that is capable of controlling the execution. The first protection unit disconnects the execution unit from the external device while the execution unit is executing the first program. The second protection unit protects the first program while the execution unit is executing the second program.
-
公开(公告)号:US20190215252A1
公开(公告)日:2019-07-11
申请号:US16355069
申请日:2019-03-15
Inventor: Hideki MATSUSHIMA , Motoji OHMORI , Natsume MATSUZAKI , Yuichi FUTA , Toshihisa NAKANO , Manabu MAEDA , Yuji UNAGAMI , Hiroshi AMANO , Kotaro HAKODA
CPC classification number: H04L43/04 , G06F21/552 , G06Q10/20 , H04L41/069 , H04L67/10
Abstract: An information management method collects log information of one or more home electrical apparatuses corresponding to service providers. Display screen data is generated which indicates a status of the log information. The display screen data includes groups of information which each contain information on an apparatus, a service provider corresponding to the apparatus, and log information output from the apparatus. Provision of the log information of each group is individually selectable. The display screen data is provided via a network to a display terminal that performs access to a server device. Information is received from the display terminal, which indicates that selection on whether or not provision of the log information is performed. Provision of the log information is not performed on the selected group when a determination is made that refusal of provision of the log information on the selected group is performed.
-
-
-
-
-
-
-
-
-