-
公开(公告)号:US12126645B2
公开(公告)日:2024-10-22
申请号:US18384553
申请日:2023-10-27
Inventor: Takeshi Kishikawa , Hideki Matsushima , Tomoyuki Haga , Manabu Maeda , Takamitsu Sasaki
IPC: G06F21/00 , B60R16/023 , G07C5/00 , H04L9/40
CPC classification number: H04L63/1441 , B60R16/023 , G07C5/008 , H04L63/062 , H04L63/1416
Abstract: A gateway that notifies a fraud detection server located outside a vehicle of information about an in-vehicle network system including an in-vehicle network includes: a priority determiner that determines a priority using at least one of: a state of the vehicle including the in-vehicle network system; an identifier of a message communicated on the in-vehicle network; and a result of fraud detection performed on the message; a frame transmitter-receiver that transmits and receives the message communicated on the in-vehicle network; a frame interpreter that extracts information about the in-vehicle network based on the message received by the frame transmitter-receiver; and a frame uploader that notifies the fraud detection server of notification information including the priority and the information about the in-vehicle network.
-
公开(公告)号:US12063235B2
公开(公告)日:2024-08-13
申请号:US17015569
申请日:2020-09-09
Inventor: Takeshi Kishikawa , Tomoyuki Haga , Hideki Matsushima
CPC classification number: H04L63/1425 , H04L12/40013 , H04L63/123 , H04L2012/40215 , H04L2012/40273
Abstract: A communication control device connects an engine ECU to a network and includes: a communicator that receives a message from the engine ECU and transmits the message to the network, and receives a message from the network and transmits the message to the engine ECU; a transmission ID list holder that holds a transmission ID list including a transmission ID included in the message from the engine ECU; and a controller that controls the communicator and the transmission ID list holder. When the transmission ID included in the message from the engine ECU is not in the transmission ID list, the controller adds the transmission ID to the transmission ID list and transmits information related to the transmission ID list to the network.
-
公开(公告)号:US12063233B2
公开(公告)日:2024-08-13
申请号:US18225957
申请日:2023-07-25
Inventor: Manabu Maeda , Takeshi Kishikawa , Daisuke Kunimune
IPC: H04L9/40 , B60R16/023 , G06N7/01 , G06N20/00 , H04L12/40
CPC classification number: H04L63/1416 , G06N7/01 , G06N20/00 , H04L12/40 , B60R16/023 , H04L2012/40215
Abstract: A reference message determining method is used in unauthorized communication detection in an onboard network system that is executed by an information processing system including at least one memory. The onboard network system including a network and one or more electronic control units connected to the network. The method includes executing unauthorized activity detection for determining whether or not a message received from the network is an attack message. A message that could not be determined to be unauthorized is regarded as a gray message. The method also includes determining whether or not the gray message is unauthorized again at a predetermined timing. In a case where the gray message is determined to be an attack message in the unauthorized-activity-detection executing operation, a communication pattern is identified based on information relating to the gray message and information relating to the plurality of the received messages previously determined as unauthorized.
-
公开(公告)号:US11956262B2
公开(公告)日:2024-04-09
申请号:US17330020
申请日:2021-05-25
Inventor: Ryo Hirano , Takeshi Kishikawa , Yoshihiro Ujiie , Tomoyuki Haga
CPC classification number: H04L63/1425 , H04L63/20 , H04L67/12
Abstract: An anomaly detection device (IDS ECU) includes a detection rule generator that monitors a communication establishment frame flowing over Ethernet in a communication establishment phase of service-oriented communication and that generates, for each communication ID, a detection rule including the communication ID written in the communication establishment frame and a server (or client) address written in the communication establishment frame; an anomaly detector that monitors a communication frame flowing over the Ethernet in a communication phase of the service-oriented communication and that, by referring to a detection rule that includes a communication ID written in the communication frame, detects the communication frame as an anomalous frame when a server (or client) address written in the communication frame differs from a server (or client) address included in the detection rule; and an anomaly notifier that provides a notification of an anomaly in response to the anomalous frame being detected.
-
公开(公告)号:US11886588B2
公开(公告)日:2024-01-30
申请号:US17094377
申请日:2020-11-10
Inventor: Ryo Hirano , Takeshi Kishikawa
CPC classification number: G06F21/566 , G01C21/36 , G06F2221/034
Abstract: An intrusion point identification device includes: a threat information collector that collects and stores threat information including identification information identifying a moving body, route information indicating a route through which the threat has intruded into the moving body, and discovery information indicating a discovery date of an attack; a vehicle log collector that collects logs, extracts, from the logs, histories of points that indicate locations of one or more moving bodies within a predetermined period, and stores the histories of the points as history information, the logs indicating points that indicate locations of the one or more moving bodies, the predetermined period being set based on the discovery information; an intrusion point identification unit that identifies an intrusion point of the threat from a first attack source through a first route among the points indicated in the history information; and an intrusion point notifier that outputs the intrusion point.
-
公开(公告)号:US11764998B2
公开(公告)日:2023-09-19
申请号:US17089277
申请日:2020-11-04
Inventor: Takeshi Kishikawa , Yoshihiro Ujiie , Ryo Hirano
IPC: H04L12/44 , H04L12/40 , H04L12/417
CPC classification number: H04L12/44 , H04L12/40013 , H04L12/417 , H04L2012/40241
Abstract: A secure star coupler in a communication network adopting a time-triggered protocol based on a time slot include: transceivers each of which is connected to one of branches and transmits and receives signals; a routing table holder that holds a predetermined rule indicating a correspondence between a time slot and a branch; and a router that routes a signal received from a first branch to another branch unless a no-transfer condition is satisfied. The no-transfer condition includes a condition that the predetermined rule is not followed by the first branch and a condition that routing of a signal received from a second branch different from the first branch has started in the time slot.
-
公开(公告)号:US11595422B2
公开(公告)日:2023-02-28
申请号:US17344097
申请日:2021-06-10
Inventor: Yoshihiro Ujiie , Hideki Matsushima , Tomoyuki Haga , Manabu Maeda , Yuji Unagami , Takeshi Kishikawa
Abstract: A method for use in a network communication system including a plurality of electronic controllers that communicate with each other via a bus in accordance with a Controller Area Network (CAN) protocol determines whether or not content of a predetermined field in a frame which has started to be transmitted meets a predetermined condition indicating fraud. In a case where the content of the predetermined field meets the predetermined condition, a frame including predetermined consecutive dominant bits for notifying an anomaly is transmitted before an end of the frame is transmitted. A number of times the frame including the predetermined consecutive dominant bits is transmitted is recorded for each identifier (ID) represented by content of an ID field included in a plurality of frames which has been transmitted. A malicious electronic controller is determined in accordance with the number of times recorded for each ID.
-
公开(公告)号:US11522733B2
公开(公告)日:2022-12-06
申请号:US17201797
申请日:2021-03-15
Inventor: Yoshihiro Ujiie , Hideki Matsushima , Toshihisa Nakano , Tohru Wakabayashi , Hiroshi Amano , Tomoyuki Haga , Takeshi Kishikawa
IPC: H04L12/40 , H04L9/40 , H04L12/46 , H04B1/3822 , H04L12/66
Abstract: A gateway device for a vehicle network system installed in a vehicle is provided. The vehicle network system includes a network, an electronic control unit connected to the network, and the gateway device connected to the first network and configured to communicate outside the vehicle. The gateway device receives a first frame from outside the vehicle; determines whether or not the first frame is appropriate; generates a second frame when the first frame is not determined to be appropriate; and transmits the second frame to the network. The second frame includes control information and additional information based on content of the first frame. The control information restricts processing of the additional information included in the second frame by the electronic control unit, after the second frame is received by the electronic control unit.
-
公开(公告)号:US11363045B2
公开(公告)日:2022-06-14
申请号:US16654728
申请日:2019-10-16
Inventor: Yuishi Torisaki , Tomoyuki Haga , Takamitsu Sasaki , Takeshi Kishikawa , Hideki Matsushima
Abstract: A vehicle anomaly detection server includes: a communicator that communicates with a vehicle to receive a log of an in-vehicle network in the vehicle; a processor; and a memory including at least one set of instructions that, when executed by the processor causes the processor to perform operations including: selecting, when information indicating that an anomaly is occurring to a first vehicle among vehicles is obtained by the processor, an anomaly-related vehicle from among the vehicles based on the anomaly, the first vehicle being the vehicle that communicates with the communicator; transmitting, to the anomaly-related vehicle via the communicator, a first request to transmit a log of an in-vehicle network in the anomaly-related vehicle; and determining whether an anomaly is occurring to the anomaly-related vehicle, based on information indicated by the log transmitted from the anomaly-related vehicle and received by the communicator.
-
公开(公告)号:US11217042B2
公开(公告)日:2022-01-04
申请号:US16540668
申请日:2019-08-14
Inventor: Takeshi Kishikawa , Tomoyuki Haga , Yuishi Torisaki , Takamitsu Sasaki , Hideki Matsushima
IPC: G07C5/00 , G07C5/02 , H04W4/029 , H04L29/08 , G06Q50/30 , G08G1/01 , G08G1/04 , G07C5/08 , B60R25/32
Abstract: A vehicle monitoring apparatus includes: a first communicator that receives specifying information for specifying a target vehicle from a server; and an acquirer that acquires driving information from the target vehicle, the driving information being information regarding driving of the target vehicle specified by the specifying information received by the first communicator. The first communicator transmits the driving information acquired by the acquirer to the server. For example, the acquirer may acquire the driving information obtained from the target vehicle through communication.
-
-
-
-
-
-
-
-
-