-
公开(公告)号:US20200055470A1
公开(公告)日:2020-02-20
申请号:US16664192
申请日:2019-10-25
Inventor: Tomoyuki HAGA , Toshihisa NAKANO , Jun ANZAI , Hideki MATSUSHIMA , Yoshihiro UJIIE , Yuji UNAGAMI
IPC: B60R16/023 , H04L12/66 , H04L12/40 , H04L12/46 , H04L9/32
Abstract: A gateway connected to a bus, a bus, and the like used by a plurality of electronic control units for communication includes a frame communication unit that receives a frame, a transfer control unit that removes verification information used to verify a frame from the content of the frame received by the frame communication unit and transfers the frame to a destination bus or that adds verification information to the content of the frame and transfers the frame to the destination bus, and the like.
-
公开(公告)号:US20180219832A1
公开(公告)日:2018-08-02
申请号:US15940200
申请日:2018-03-29
Inventor: Manabu MAEDA , Jun ANZAI , Yoshihiro UJIIE , Masato TANABE , Takeshi KISHIKAWA
IPC: H04L29/06 , B60R16/023
CPC classification number: H04L63/0209 , B60R16/023 , G06F21/55 , G06F21/85 , H04L12/28 , H04L12/40006 , H04L63/0245 , H04L63/14 , H04L63/1441 , H04L67/12
Abstract: A security apparatus is provided that is connected to a bus. The security apparatus includes a receiver that receives a first frame from the bus, a memory that stores an examination parameter defining a content of an examination on the first frame, and processing circuitry that performs operations. The performed operations include first determining whether a predetermined condition is satisfied for the first frame. The performed operations also include, in a case where the first determining determined that the predetermined condition is satisfied, updating the examination parameter stored in the memory. The performed operations further include second determining whether the first frame is an attack frame based on the updated examination parameter stored in the memory.
-
3.
公开(公告)号:US20230246849A1
公开(公告)日:2023-08-03
申请号:US18131448
申请日:2023-04-06
Inventor: Yuji UNAGAMI , Manabu MAEDA , Tomoyuki HAGA , Hideki MATSUSHIMA , Jun ANZAI
CPC classification number: H04L9/3247 , H04L9/3242 , H04L63/123 , H04L67/12 , G06F21/64 , G06F21/6236 , G08G1/09
Abstract: A method for verifying content data to be used in a vehicle is provided. The method includes acquiring content data, acquiring, from partial data divided from the content data, a respective plurality of first hash values, acquiring a signature generated by using the first hash values and a key, acquiring state information that indicates a state of a vehicle, determining an integer N that is greater than or equal to one based on the acquired state information, generating, from N pieces of partial data included in the partial data, respective second hash values, verifying the content data by using each of (a) a subset of the plurality of first hash values respectively generated from partial data other than the N pieces of partial data, (b) the second hash values, and (c) the signature, and outputting information that indicates a result of the verifying.
-
4.
公开(公告)号:US20200084025A1
公开(公告)日:2020-03-12
申请号:US16686855
申请日:2019-11-18
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Takeshi KISHIKAWA
IPC: H04L9/08 , B60R16/023 , H04L29/06
Abstract: A key management method serves as an electronic control unit (ECU) in an onboard network system having a plurality of ECUs that perform communication by frames via a network. The method includes storing a shared key, acquiring a session key, and executing encryption processing using the session key. The method further includes executing inspection of a security state of the shared key stored in a case where a vehicle is in at least one of the following particular states: the vehicle is not driving and is an accessory-on state; a fuel cap of the vehicle is open, and the vehicle is not driving and is fueling; the vehicle is parked, which is indicated by the gearshift; the vehicle is in a stopped state before driving, which is indicated by the gearshift; and a charging plug is connected to the vehicle, and the vehicle is electrically charging.
-
5.
公开(公告)号:US20240236115A1
公开(公告)日:2024-07-11
申请号:US18584704
申请日:2024-02-22
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L9/40 , B60R16/023 , H04L12/40 , H04L67/12
CPC classification number: H04L63/123 , B60R16/023 , H04L12/40 , H04L63/08 , H04L63/102 , H04L63/20 , H04L67/12 , H04L2012/40215 , H04L2012/40273
Abstract: An electronic control unit is connected to a network in an in-vehicle network system. The electronic control unit includes a first control circuit that operates on a first operating system and a second control circuit that operates on a second operating system. The first control circuit is connected to the network via the second control circuit. The second control circuit performs a first determination process on frames to determine conformity of the frames with a first rule. Upon determining that the frames conform to the first rule, the second control circuit transmits contents of the frames to the first control circuit. The first control circuit performs a second determination process on the contents of the frames to determine conformity with a second rule. The second rule is different from the first rule.
-
公开(公告)号:US20240086290A1
公开(公告)日:2024-03-14
申请号:US18519690
申请日:2023-11-27
Inventor: Ryo HIRANO , Yoshihiro UJIIE , Takeshi KISHIKAWA , Tomoyuki HAGA , Jun ANZAI , Yoshiharu IMAMOTO
CPC classification number: G06F11/301 , B60W50/04
Abstract: A monitoring device includes three or more monitors each monitoring, as a monitoring target, at least one of software and a communication log. The three or more monitors include a first monitor operating with a first execution privilege, a second monitor operating with a second execution privilege having a reliability level lower than the first execution privilege, and a third monitor operating with a third execution privilege having a reliability level that is the same as the second execution privilege or that is lower than the second execution privilege. The first monitor monitors software of the second monitor, and at least one of the first monitor or the second monitor monitors software of the third monitor.
-
7.
公开(公告)号:US20210105143A1
公开(公告)日:2021-04-08
申请号:US17101876
申请日:2020-11-23
Inventor: Yuji UNAGAMI , Manabu MAEDA , Tomoyuki HAGA , Hideki MATSUSHIMA , Jun ANZAI
Abstract: A method for verifying content data to be used in a vehicle is provided. The method includes acquiring content data, acquiring, from partial data divided from the content data, a respective plurality of first hash values, acquiring a signature generated by using the first hash values and a key, acquiring state information that indicates a state of a vehicle, determining an integer N that is greater than or equal to one based on the acquired state information, generating, from N pieces of partial data included in the partial data, respective second hash values, verifying the content data by using each of (a) a subset of the plurality of first hash values respectively generated from partial data other than the N pieces of partial data, (b) the second hash values, and (c) the signature, and outputting information that indicates a result of the verifying.
-
8.
公开(公告)号:US20200274883A1
公开(公告)日:2020-08-27
申请号:US15930093
申请日:2020-05-12
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L29/06 , H04L29/08 , H04L12/40 , B60R16/023
Abstract: An electronic control unit is connected to a network in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the network via the second control circuit. The second control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. Upon determining that the frame conforms to the first rule, the second control circuit transmits the frame to the first control circuit. The first control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule. The second rule is different from the first rule.
-
9.
公开(公告)号:US20190124091A1
公开(公告)日:2019-04-25
申请号:US16217460
申请日:2018-12-12
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L29/06 , H04L29/08 , B60R16/023 , H04L12/40
Abstract: An electronic control unit is connected to an in-vehicle network bus in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the in-vehicle network bus via the second control circuit over wired communication and/or wireless communication. The first control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. The second control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule, and, upon determining that the frame conforms to the second rule, transmits the frame to the in-vehicle network bus.
-
公开(公告)号:US20240250976A1
公开(公告)日:2024-07-25
申请号:US18590182
申请日:2024-02-28
Inventor: Tomoyuki HAGA , Hideki MATSUSHIMA , Manabu MAEDA , Yoshihiro UJIIE , Takeshi KISHIKAWA , Junichi TSURUMI , Jun ANZAI
CPC classification number: H04L63/1425 , G07C5/0808 , H04L12/40 , H04L63/1441 , H04L67/12 , H04W4/40 , H04W4/44 , H04L2012/40215 , H04L2012/40273 , H04W4/08
Abstract: An anomaly detection server is provided. The anomaly detection server is a server for counteracting an anomalous frame transmitted on an on-board network of a single vehicle. The anomaly detection server acquires information about multiple frames received on one or multiple on-board networks of one or multiple vehicles, including the single vehicle. The anomaly detection server, acting as an assessment unit that, based on the information about the multiple frames and information about a frame received on the on-board network of the single vehicle after the acquisition of the information about the multiple frames, assesses an anomaly level of the frame received on the on-board network of the single vehicle.
-
-
-
-
-
-
-
-
-