CONTROL METHOD, SERVER, RECORDING MEDIUM, AND SECURITY ANALYSIS SYSTEM

    公开(公告)号:US20240232416A1

    公开(公告)日:2024-07-11

    申请号:US18613584

    申请日:2024-03-22

    CPC classification number: G06F21/6218

    Abstract: A control method according to the present disclosure is performed by one of a plurality of servers each including a distributed ledger and includes: obtaining request transaction data including an analysis request identification (ID) uniquely identifying a request for analysis, and an access method for accessing relevant information usable for the analysis; and recording a block including the request transaction data into the distributed ledger. The control method further includes: obtaining analysis transaction data including an analysis result corresponding to the analysis request ID, log information associated with the analysis result, and threat intelligence information serving as a basis of the analysis result; obtaining a verification result for the analysis transaction data; generating a block including the analysis transaction data; and when the verification result indicates that the validity of the analysis transaction data has been verified, recording the block including the analysis transaction data into the distributed ledger.

    In-vehicle information processing for unauthorized data

    公开(公告)号:US11411681B2

    公开(公告)日:2022-08-09

    申请号:US17128542

    申请日:2020-12-21

    Abstract: An information processing method performed by an information processing system including a storage device to process a plurality of data frames flowing in an in-vehicle network including at least one electronic control unit includes a receiving step of sequentially receiving a plurality of data frames flowing in the in-vehicle network, a frame collection step of recording, in a reception log held in the storage device, reception interval information indicating reception intervals between the plurality of data frames as frame information, a feature acquisition step of acquiring, from the reception interval information, a feature relating to distribution of the reception intervals between the plurality of data frames, and an unauthorized data presence determination step of determining the presence/absence of an unauthorized data frame among the plurality of data frames.

    COMMUNICATION SECURITY APPARATUS, CONTROL METHOD, AND STORAGE MEDIUM STORING A PROGRAM

    公开(公告)号:US20210203638A1

    公开(公告)日:2021-07-01

    申请号:US17197413

    申请日:2021-03-10

    Abstract: A communication security apparatus includes a communicator that receives a packet from a first device and transmits the received packet to a second device, a memory that retains address authentication information containing pairs of a physical address and a logical address of one or more devices, and a controller. After a learning period of receiving and transmitting packets, the controller determines whether a pair of a physical address and a logical address of the first device and the second device match any one of the pairs of the physical address and the logical address of the one or more devices in the packet, and discards the packet when the pair of the physical address and the logical address of the first device and the second device do not match any one of the pairs of the physical address and the logical address of the one or more devices.

    In-vehicle information processing for unauthorized data

    公开(公告)号:US10911182B2

    公开(公告)日:2021-02-02

    申请号:US16237327

    申请日:2018-12-31

    Abstract: An information processing method performed by an information processing system including a storage device to process a plurality of data frames flowing in an in-vehicle network including at least one electronic control unit includes a receiving step of sequentially receiving a plurality of data frames flowing in the in-vehicle network, a frame collection step of recording, in a reception log held in the storage device, reception interval information indicating reception intervals between the plurality of data frames as frame information, a feature acquisition step of acquiring, from the reception interval information, a feature relating to distribution of the reception intervals between the plurality of data frames, and an unauthorized data presence determination step of determining the presence/absence of an unauthorized data frame among the plurality of data frames.

    Anomaly detection method and anomaly detection device

    公开(公告)号:US11876818B2

    公开(公告)日:2024-01-16

    申请号:US17501693

    申请日:2021-10-14

    Inventor: Tatsumi Oba

    CPC classification number: H04L63/1425 H04L43/04

    Abstract: An anomaly detection method includes: calculating, for a detection target data stream of consecutive detection target data, distances between the detection target data; extracting features of the detection target data stream using the calculated distances; and calculating anomaly degree information about a degree of anomaly in the detection target data stream using the extracted features. Each extracted feature is made up of L consecutive distances (L is an integer greater than or equal to 2). For each feature extracted, supplementary information for calculating the anomaly degree information is calculated using a difference in the feature. For each of one or more information calculation target windows made up of N detection target data (N is an integer greater than or equal to L+1), the anomaly degree information is calculated using all supplementary information calculated from the N detection target data.

Patent Agency Ranking