-
公开(公告)号:US20230353656A1
公开(公告)日:2023-11-02
申请号:US18220072
申请日:2023-07-10
Inventor: Takeshi KISHIKAWA , Yoshihiro UJIIE , Ryo HIRANO
IPC: H04L67/562 , H04L67/51 , H04L67/12
CPC classification number: H04L67/562 , H04L67/51 , H04L67/12
Abstract: A service broker that is connected to each of a server unit and a client unit in a service offer system for offering a service from the server unit to the client unit by way of a service oriented communication includes: a communication controller that receives a frame for use in offer of the service, from the server unit or the client unit; and a service manager that determines whether a combination of a service identifier included in the frame received by the communication controller, an identifier indicating one of a transmission source and a destination of the frame, and a type of the frame is appropriate, and provides output of a result of the determination.
-
2.
公开(公告)号:US20230089171A1
公开(公告)日:2023-03-23
申请号:US17991357
申请日:2022-11-21
Inventor: Tomoyuki HAGA , Hideki MATSUSHIMA , Yoshihiro UJIIE , Takeshi KISHIKAWA
IPC: G08G1/00 , G08G1/16 , H04W4/46 , H04W12/12 , B60R16/023
Abstract: An anomaly handling method using a device installed outside of a vehicle is disclosed. The method includes receiving, from the vehicle, an anomaly detection notification, which includes level information indicating a level affecting safety, and a location of the vehicle. The method also includes obtaining a location of another vehicle and determining whether a distance between the location of the vehicle and the location of the other vehicle is within a predetermined range. When the distance is within the predetermined range and is shorter than a first predetermined distance, not changing the level information and transmitting the received anomaly detection information to the other vehicle. When the distance is within the predetermined range and is longer than or equal to the first predetermined distance, changing to decrement a level indicated by the level information, and transmitting changed anomaly detection information to the other vehicle.
-
公开(公告)号:US20220368708A1
公开(公告)日:2022-11-17
申请号:US17876204
申请日:2022-07-28
Inventor: Manabu MAEDA , Takeshi KISHIKAWA , Daisuke KUNIMUNE
IPC: H04L9/40 , B60R16/023 , G06F21/55
Abstract: An unauthorized activity detection method in an onboard network system. The detection method includes determining whether or not a message sent out onto the network is an attack message, saving information relating to the attack message in at least one memory in a case where the message is an attack message, identifying a communication pattern from information relating to the attack message, and determining whether or not the message matches a communication pattern. The determination of whether an attack message and determination of whether matching a communication pattern are executed on each of a plurality of messages received from the network. In the determining of whether an attack message executed on a message received after executing of determining of whether matching a communication pattern, results of the determination of whether an attack message that has already be executed are used.
-
公开(公告)号:US20210349977A1
公开(公告)日:2021-11-11
申请号:US17380209
申请日:2021-07-20
Inventor: Takeshi KISHIKAWA , Ryo HIRANO , Yoshihiro UJIIE , Tomoyuki HAGA
Abstract: A vehicle surveillance device for an in-vehicle network system that includes one or more electronic control units includes: a frame transmitter and receiver that receives a frame flowing over the in-vehicle network system; and a score calculator that detects a suspicious behavior different from a normal driving behavior based on the frame received by the frame transmitter and receiver and vehicle data including information on one or more frames received by the frame transmitter and receiver prior to receiving the frame, and calculates, based on a detection result, a score indicating a likelihood that reverse engineering has been performed on a vehicle provided with the in-vehicle network system.
-
公开(公告)号:US20210281595A1
公开(公告)日:2021-09-09
申请号:US17330020
申请日:2021-05-25
Inventor: Ryo HIRANO , Takeshi KISHIKAWA , Yoshihiro UJIIE , Tomoyuki HAGA
Abstract: An anomaly detection device (IDS ECU) includes a detection rule generator that monitors a communication establishment frame flowing over Ethernet in a communication establishment phase of service-oriented communication and that generates, for each communication ID, a detection rule including the communication ID written in the communication establishment frame and a server (or client) address written in the communication establishment frame; an anomaly detector that monitors a communication frame flowing over the Ethernet in a communication phase of the service-oriented communication and that, by referring to a detection rule that includes a communication ID written in the communication frame, detects the communication frame as an anomalous frame when a server (or client) address written in the communication frame differs from a server (or client) address included in the detection rule; and an anomaly notifier that provides a notification of an anomaly in response to the anomalous frame being detected.
-
6.
公开(公告)号:US20210226872A1
公开(公告)日:2021-07-22
申请号:US17201839
申请日:2021-03-15
Inventor: Yoshihiro UJIIE , Tomoyuki HAGA , Manabu MAEDA , Hideki MATSUSHIMA , Takeshi KISHIKAWA , Junichi TSURUMI , Hisashi KASHIMA , Yukino TORIUMI , Takuya KUWAHARA
Abstract: An abnormality detection method is provided. The abnormality detection method is for detecting an abnormality that may be transmitted to a bus in an on-board network system. The on-board network system includes a plurality of electronic controllers that transmit and receive messages via the bus in a mobility entity. In the abnormality detection method, for example, a gateway transmits identification information to a server and receives a response determining a unit time. An operation process is performed using feature information based on a number of messages received from the bus per the determined unit time and using a model indicating a criterion in terms of a message occurrence frequency. A judgment is made as to an abnormality according to a result of the operation process.
-
7.
公开(公告)号:US20210090442A1
公开(公告)日:2021-03-25
申请号:US17115055
申请日:2020-12-08
Inventor: Tomoyuki HAGA , Hideki MATSUSHIMA , Yoshihiro UJIIE , Takeshi KISHIKAWA
IPC: G08G1/00 , G08G1/16 , H04W4/46 , H04W12/12 , B60R16/023
Abstract: An anomaly handling method using a roadside device is disclosed. The method includes receiving, from a vehicle, an anomaly detection notification, which includes level information indicating a level affecting safety, and a location of the vehicle. The method also includes obtaining a location of the roadside device and determining whether a distance between the location of the vehicle and the location of the roadside device is within a predetermined range. When the distance is within the predetermined range and is shorter than a first predetermined distance, not changing the level information and transmitting the received anomaly detection notification externally from the one vehicle. When the distance is within the predetermined range and is longer than or equal to the first predetermined distance, changing to decrement a level indicated by the level information, and transmitting changed anomaly detection notification externally from the one vehicle.
-
公开(公告)号:US20210044610A1
公开(公告)日:2021-02-11
申请号:US17082431
申请日:2020-10-28
Inventor: Takeshi KISHIKAWA , Yoshihiro UJIIE , Ryo HIRANO , Tohru WAKABAYASHI
IPC: H04L29/06
Abstract: An anomaly detection device included in a communication network adopting a time-triggered protocol based on a time slot includes: a frame transceiver that receives frames; and an anomaly detector that detects an occurrence of an anomalous frame in accordance with a time slot among a plurality of time slots included in a cycle and the number of repeated cycles of the cycle for each frame. The anomaly detector detects an occurrence of an anomalous frame by verifying a statistic on the frames received while the cycle is repeated a predetermined number of times, which is at least once, against a rule indicating a reference range of the statistic.
-
9.
公开(公告)号:US20200084025A1
公开(公告)日:2020-03-12
申请号:US16686855
申请日:2019-11-18
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Takeshi KISHIKAWA
IPC: H04L9/08 , B60R16/023 , H04L29/06
Abstract: A key management method serves as an electronic control unit (ECU) in an onboard network system having a plurality of ECUs that perform communication by frames via a network. The method includes storing a shared key, acquiring a session key, and executing encryption processing using the session key. The method further includes executing inspection of a security state of the shared key stored in a case where a vehicle is in at least one of the following particular states: the vehicle is not driving and is an accessory-on state; a fuel cap of the vehicle is open, and the vehicle is not driving and is fueling; the vehicle is parked, which is indicated by the gearshift; the vehicle is in a stopped state before driving, which is indicated by the gearshift; and a charging plug is connected to the vehicle, and the vehicle is electrically charging.
-
公开(公告)号:US20190068715A1
公开(公告)日:2019-02-28
申请号:US16170451
申请日:2018-10-25
Inventor: Takeshi KISHIKAWA , Hideki MATSUSHIMA , Tomoyuki HAGA , Manabu MAEDA , Yuji UNAGAMI , Yoshihiro UJIIE
IPC: H04L29/08 , B60R16/023 , H04L9/32 , H04L29/06
CPC classification number: H04L67/12 , B60R16/023 , H04L9/3242 , H04L9/3297 , H04L63/08 , H04L63/10 , H04L63/12 , H04L63/20 , H04L2209/84
Abstract: A fraud detection method for use in an in-vehicle network system including a plurality of electronic control units that communicate with one another via an in-vehicle network is provided. The method includes receiving at least one data frame sent to the in-vehicle network, verifying a specific identifier in the received data frame only when the received data frame is event-driven data and a state of a vehicle having the in-vehicle network system mounted therein is a predetermined state, detecting the received data frame as an authenticated data frame when the verifying is successful, and detecting the received data frame as a fraudulent data frame when the verifying fails. The predetermined state of the vehicle is the vehicle traveling.
-
-
-
-
-
-
-
-
-