COMMUNICATION LOG AGGREGATION DEVICE AND COMMUNICATION LOG AGGREGATION METHOD

    公开(公告)号:US20220337494A1

    公开(公告)日:2022-10-20

    申请号:US17854182

    申请日:2022-06-30

    Abstract: A communication log aggregation device includes: a communicator that obtains flow information including one or more flow records and first statistical information for each flow from each of collection devices, the one or more flow records each including flow identification information included in a message received by at least one observer that is disposed in a control network system, the flow being classified based on the flow identification information, the collection devices each collecting the one or more flow records and the first statistical information for each flow from the message received by the observer; and a flow aggregator that generates aggregated flow information by performing at least one of the following: (i) selecting at least one of the one or more flow records, (ii) adding second statistical information, and (iii) deleting at least one of the one or more flow records, and outputs the aggregated flow information.

    ATTACK DETECTION METHOD, ATTACK DETECTION SYSTEM, AND RECORDING MEDIUM

    公开(公告)号:US20220329611A1

    公开(公告)日:2022-10-13

    申请号:US17852038

    申请日:2022-06-28

    Abstract: An attack detection method includes determining a sampling rule including a sampling interval and a sampling time on the basis of at least one of a statistic indicating a variation in sensor values included in the sensor data or event information on the mobility entity, which indicates the timing of a change in sensor values; generating sampling data including two or more sensor values selected from the sensor data on the basis of the sampling interval and the sampling time, first order information, and second order information; and calculating a first anomaly score indicating the degree of anomalies in the evaluation target data and a second anomaly score indicating the degree of anomalies in the evaluation target data, determining on the basis of the calculated first and second anomaly scores whether the evaluation target data has resulted from the attack, and outputting a determination result.

    SELECTION METHOD, SELECTION SYSTEM, AND RECORDING MEDIUM

    公开(公告)号:US20220311781A1

    公开(公告)日:2022-09-29

    申请号:US17840224

    申请日:2022-06-14

    Abstract: A selection method is for selecting a reference message to be used to detect unauthorized communication in an in-vehicle network system including a network and one or more electronic control units connected to the network. The reference message is used as a reference for determining whether a message sent to the network is anomalous. The selection method includes: storing candidate information regarding one or more reference message candidates each being a candidate of the reference message; selecting, based on the candidate information regarding the one or more reference message candidates stored in the storing, the selection method for selecting the reference message from among the one or more reference message candidates; and selecting the reference message from among the one or more reference message candidates using the selection method.

Patent Agency Ranking