ANOMALY MONITORING APPARATUS AND ANOMALY MONITORING METHOD

    公开(公告)号:US20230208859A1

    公开(公告)日:2023-06-29

    申请号:US18112246

    申请日:2023-02-21

    CPC classification number: H04L63/1416 H04L67/12

    Abstract: An anomaly monitoring apparatus in a remote operation system for remotely operating a mobility entity includes: a log collector that collects an operation log from an operation apparatus which remotely operates the mobility entity and a control log from a control apparatus installed in the mobility entity; an anomaly detector that detects whether an anomaly is present in the mobility entity based on at least one of the operation log or the control log; an attack origin identifier that, when the anomaly detector detects an anomaly, identifies an attack origin that caused the anomaly in the mobility entity from among a plurality of attack origins based on a result of comparing the operation log with the control log; and an anomaly notifier that makes a notification for taking a countermeasure for the attack origin identified by the attack origin identifier.

    METHOD FOR SENSING FRAUDULENT FRAMES TRANSMITTED TO IN-VEHICLE NETWORK

    公开(公告)号:US20230016161A1

    公开(公告)日:2023-01-19

    申请号:US17945752

    申请日:2022-09-15

    Abstract: A fraud detecting method for use in an in-vehicle network system including a plurality of electronic control units that communicate with each other via a network includes detecting whether a state of a vehicle satisfies a first condition or a second condition, and switching, upon detecting that the state of the vehicle satisfies the first condition or the second condition, an operation mode of a fraud-sensing electronic control unit connected to the network between a first mode in which a first type of detecting process for detecting a fraudulent message in the network is performed and a second mode in which the first type of detecting process is not performed. Moreover, in the second mode, a second type of detecting process having a different degree to which a fraudulent message is detectible than the first type of detecting process is performed.

    ANOMALY DETECTING DEVICE, ANOMALY DETECTING SYSTEM, AND ANOMALY DETECTING METHOD

    公开(公告)号:US20220263709A1

    公开(公告)日:2022-08-18

    申请号:US17738837

    申请日:2022-05-06

    Abstract: An anomaly detecting device includes a flow collector that collects an amount of flow communication traffic in each of two or more networks in an in-vehicle network system that including the two or more networks, the amount of flow communication traffic being information obtained by tallying an amount of communication traffic of one or more frames classified according to a predetermined rule that is based on header information of a network protocol; and an anomaly detector that calculates, based on the amount of flow communication traffic, an observed ratio indicating a ratio of respective amounts of communication traffic in the two or more networks and determines whether the two or more networks are anomalous based on the observed ratio calculated and a normal ratio indicating a ratio of respective amounts of communication traffic in the two or more networks in a normal state.

    UNAUTHORIZED FRAME DETECTION DEVICE AND UNAUTHORIZED FRAME DETECTION METHOD

    公开(公告)号:US20210314336A1

    公开(公告)日:2021-10-07

    申请号:US17354213

    申请日:2021-06-22

    Abstract: An unauthorized frame detection device that can keep an unauthorized ECU from spoofing as a legitimate server or client while suppressing an overhead during communication is provided. The unauthorized frame detection device includes a plurality of communication ports corresponding to the respective of networks, a communication controller, and an unauthorized frame detector. The plurality of communication ports are each connected to a corresponding predetermined network among the plurality of networks and each transmit or receive a frame via the predetermined network. The unauthorized frame detector determines whether an identifier of a service, a type of the service, and port information that are each included in the frame match a permission rule set in advance and outputs a result of the determination.

Patent Agency Ranking