Attack analyzer, attack analysis method and attack analysis program

    公开(公告)号:US12177239B2

    公开(公告)日:2024-12-24

    申请号:US17851145

    申请日:2022-06-28

    Abstract: An attack analyzer includes: a security log acquisition unit acquiring a security log including an abnormality detection signal generated by a security sensor mounted on an electronic control device constituting part of an electronic control system and indicating that the security sensor has detected an abnormality; an alive signal acquisition unit acquiring an alive signal; a prediction table storage unit storing a prediction table showing a correspondence relationship between a predicted attack route in the electronic control system and a predicted abnormality detection signal predicted to be generated by the security sensor; an attack route estimation unit estimating, using the prediction table, the attack route of an attack received by the electronic control system from the abnormality detection signal and the alive signal included in the security log; and an attack information output unit outputting attack information indicating the attack route.

    Attack analyzer, attack analysis method and attack analysis program

    公开(公告)号:US12235953B2

    公开(公告)日:2025-02-25

    申请号:US17693469

    申请日:2022-03-14

    Abstract: An attack analyzer includes: a common log acquisition unit acquiring a common security log including abnormality information indicating abnormality detected by an electronic control system, and a common abnormality position indicating an abnormality position of the abnormality converted to be common among the electronic control system and other electronic control systems; an attack/abnormality relationship table storage unit storing an attack/abnormality relationship table; an estimation unit; and an output unit outputting attack information including the attack type.

    Attack analyzer for accurate estimation of attack route

    公开(公告)号:US12166781B2

    公开(公告)日:2024-12-10

    申请号:US17851118

    申请日:2022-06-28

    Abstract: An attack analyzer includes: a security log acquisition unit acquiring a security log including an abnormality detection signal generated by a security sensor mounted on an electronic control device constituting an electronic control system and indicating that the security sensor has detected an abnormality; a failure information acquisition unit acquiring failure information indicating a failure occurred in the electronic control device; a prediction table storage unit storing a prediction table showing a correspondence relationship between a predicted attack route in the electronic control system and a predicted abnormality detection signal predicted to be generated by the security sensor; an attack route estimation unit; and an attack information output unit outputting attack information indicating the attack route.

Patent Agency Ranking