-
公开(公告)号:US20200344116A1
公开(公告)日:2020-10-29
申请号:US16915187
申请日:2020-06-29
Inventor: Manabu MAEDA , Hideki MATSUSHIMA , Tomoyuki HAGA , Yoshihiro UJIIE , Takeshi KISHIKAWA
IPC: H04L12/24 , B60R16/023 , G06F11/00 , B60R16/02 , G06F11/36 , G06F8/654 , G06F8/71 , H04L12/46 , H04L12/40 , H04L12/66
Abstract: A gateway device connected to a network used in communication by multiple electronic control units provided on-board a vehicle. The gateway device performs operations including receiving firmware update information that includes updated firmware for one electronic control unit among the electronic control units, and acquiring system configuration information indicating a function of each of the electronic control units connected to the network. The gateway device further performs a controlling operation to update firmware of the one electronic control unit, for which updated firmware is received by the receiving, on a basis of the updated firmware, after an operation verification of the updated firmware is performed in an operating environment appropriately. The operating environment being configured with electronic control units of the same functions as each of the electronic control units indicated by the system configuration information.
-
公开(公告)号:US20200304532A1
公开(公告)日:2020-09-24
申请号:US16897853
申请日:2020-06-10
Inventor: Tomoyuki HAGA , Yuishi TORISAKI , Hiroyasu TERAZAWA , Ryo KATO
IPC: H04L29/06 , H04L12/40 , B60R16/023 , H04L29/08 , G06F11/34
Abstract: An anomaly detection device for detecting anomaly in frames flowing through an in-vehicle network system includes: an obtainer that obtains one or more frames; a first holder holding a first rule defining a rule indicating that when a frame satisfies a first condition based on a source or a destination, the frame is to be transferred; a first frame controller that transfers the one or more frames in accordance with the first rule; a second holder holding a second rule defining a rule indicating that a frame satisfying a second condition is to be determined as being anomalous; and a second frame controller that performs, in accordance with the second rule, an anomaly detection process on each of the one or more frames transferred by the first frame controller. When an anomalous frame is detected, the second frame controller provides or stores a detection result.
-
33.
公开(公告)号:US20200274883A1
公开(公告)日:2020-08-27
申请号:US15930093
申请日:2020-05-12
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L29/06 , H04L29/08 , H04L12/40 , B60R16/023
Abstract: An electronic control unit is connected to a network in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the network via the second control circuit. The second control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. Upon determining that the frame conforms to the first rule, the second control circuit transmits the frame to the first control circuit. The first control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule. The second rule is different from the first rule.
-
公开(公告)号:US20200274737A1
公开(公告)日:2020-08-27
申请号:US16872881
申请日:2020-05-12
Inventor: Takamitsu SASAKI , Tomoyuki HAGA , Manabu MAEDA , Hideki MATSUSHIMA
Abstract: An electronic control unit connected to a bus of a first network where first-type frames are transmitted following a first communication protocol and a second network where second-type frames are transmitted following a second communication protocol in an onboard network system. The electronic control unit sequentially receives the first-type and the second-type frames from the bus and the second network respectively, and stores in first and second reception buffers, respectively. The electronic control unit sequentially generates first-type data and second-type data by referencing the contents of the first reception buffer and the second reception buffer, and stores the first-type and second-type data in first and second transmission buffers, respectively. The first-type data is traveling control data for a vehicle, and the second-type data is other data. The first-type or second-type data that is priority type data is transmitted with priority.
-
公开(公告)号:US20200186552A1
公开(公告)日:2020-06-11
申请号:US16788641
申请日:2020-02-12
Inventor: Manabu MAEDA , Hideki MATSUSHIMA , Tomoyuki HAGA , Yuji UNAGAMI , Yoshihiro UJIIE , Takeshi KISHIKAWA
IPC: H04L29/06 , B60R16/023 , H04L12/28
Abstract: A fraud detecting method for use in an in-vehicle network system including a plurality of electronic control units that communicate with each other via a network includes detecting whether a state of a vehicle satisfies a first condition or a second condition, and switching, upon detecting that the state of the vehicle satisfies the first condition or the second condition, an operation mode of a fraud-sensing electronic control unit connected to the network between a first mode in which a first type of detecting process for detecting a fraudulent message in the network is performed and a second mode in which the first type of detecting process is not performed.
-
36.
公开(公告)号:US20190124091A1
公开(公告)日:2019-04-25
申请号:US16217460
申请日:2018-12-12
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L29/06 , H04L29/08 , B60R16/023 , H04L12/40
Abstract: An electronic control unit is connected to an in-vehicle network bus in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the in-vehicle network bus via the second control circuit over wired communication and/or wireless communication. The first control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. The second control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule, and, upon determining that the frame conforms to the second rule, transmits the frame to the in-vehicle network bus.
-
公开(公告)号:US20240314145A1
公开(公告)日:2024-09-19
申请号:US18671378
申请日:2024-05-22
Inventor: Tomoyuki HAGA , Takamitsu SASAKI , Hajime TASAKI , Hideki MATSUSHIMA
IPC: H04L9/40
CPC classification number: H04L63/1416 , H04L63/1425
Abstract: A threat information analysis server includes: an update manager that manages update information indicating that function addition to an IoT device is performed; a threat information manager that stores threat information of a cyberattack; a risk level manager that manages risk level information defining a risk level of the IoT device; a related threat information manager that manages the threat information and related threat information associating the IoT device with the risk level; a risk level updater that associates the threat information and the risk level of the IoT device with each other and updates the related threat information, based on the update information; and an outputter that outputs the related threat information managed by the related threat information manager.
-
公开(公告)号:US20230306427A1
公开(公告)日:2023-09-28
申请号:US18205069
申请日:2023-06-02
Inventor: Yuji UNAGAMI , Kakuya YAMAMOTO , Ayaka MITANI , Tomoyuki HAGA
IPC: G06Q20/40 , G06Q20/02 , G06Q30/0207
CPC classification number: G06Q20/4014 , G06Q20/02 , G06Q30/0236
Abstract: A service server generates a first smart contract programmed to be capable of executing provision of an incentive to a user when a goal indicated by generated challenge content generated is achieved, generates first transaction data including the first smart contract, and transmits the data to a first authentication server. The first authentication server executes a consensus algorithm and records the first transaction data in a distributed ledger to run the first smart contract. The first authentication server notifies a device used by the user of the challenge content. The first authentication server obtains, from the device, second transaction data including first challenge content selected to be registered by the user, and records the second transaction data in the distributed ledger by executing a consensus algorithm.
-
公开(公告)号:US20230283622A1
公开(公告)日:2023-09-07
申请号:US18197460
申请日:2023-05-15
Inventor: Nhan Lam Chi VU , Taejin CHUN , Hai-Anh TRINH , Timothy Michael Gerard ROZARIO , Khang An PHAM , Bao Quoc NGUYEN , Thang Phuc TRAN , Takashi USHIO , Hajime TASAKI , Tomoyuki HAGA , Takamitsu SASAKI , An Hoang Bao MAI , Zooey NGUYEN , Christopher NGUYEN
IPC: H04L9/40
CPC classification number: H04L63/1425 , H04L63/123 , H04L63/20 , H04L63/1416
Abstract: An anomaly detection method for detecting an anomaly in an in-vehicle network of an in-vehicle network system including a plurality of electronic control units that transmit and receive messages via the network includes: generating image data of a reception interval between a plurality of messages included in a message sequence in a predetermined period out of a message sequence received from the in-vehicle network, or image data of a transition of a sensor value of the plurality of messages; classifying the image data using a trained CNN according to whether an attack message has been inserted in the predetermined period; and when the attack message has been inserted in the predetermined period, outputting a detection result indicating that an insertion attack which is an insertion of the attack message has been made in the predetermined period.
-
40.
公开(公告)号:US20230246849A1
公开(公告)日:2023-08-03
申请号:US18131448
申请日:2023-04-06
Inventor: Yuji UNAGAMI , Manabu MAEDA , Tomoyuki HAGA , Hideki MATSUSHIMA , Jun ANZAI
CPC classification number: H04L9/3247 , H04L9/3242 , H04L63/123 , H04L67/12 , G06F21/64 , G06F21/6236 , G08G1/09
Abstract: A method for verifying content data to be used in a vehicle is provided. The method includes acquiring content data, acquiring, from partial data divided from the content data, a respective plurality of first hash values, acquiring a signature generated by using the first hash values and a key, acquiring state information that indicates a state of a vehicle, determining an integer N that is greater than or equal to one based on the acquired state information, generating, from N pieces of partial data included in the partial data, respective second hash values, verifying the content data by using each of (a) a subset of the plurality of first hash values respectively generated from partial data other than the N pieces of partial data, (b) the second hash values, and (c) the signature, and outputting information that indicates a result of the verifying.
-
-
-
-
-
-
-
-
-