-
公开(公告)号:US20240232356A9
公开(公告)日:2024-07-11
申请号:US18402429
申请日:2024-01-02
Inventor: Ryo KATO , Manabu MAEDA , Tomoyuki HAGA , Naohisa NISHIDA
CPC classification number: G06F21/566 , G06F11/3062
Abstract: A malware detection method for a home network system including one or more home appliances that are connected to a home network includes: obtaining a plurality of setting values including at least information indicating a device type and an operating state of a target device subject to malware detection; selecting one detection model out of a plurality of detection models according to the plurality of setting values obtained; obtaining power consumption or current consumption of the target device; and detecting whether the target device is infected with malware, based on stable power or stable current obtained in the obtaining of the power consumption or the current consumption using the one detection model selected in the selecting, when the power consumption indicates stable power that varies within a predetermined range or the current consumption indicates stable current that varies within a predetermined range.
-
公开(公告)号:US20240169083A1
公开(公告)日:2024-05-23
申请号:US18425252
申请日:2024-01-29
Inventor: Ayaka NAKASAKA , Yuji UNAGAMI , Kakuya YAMAMOTO , Tomoyuki HAGA
CPC classification number: G06F21/6218 , G06F21/64
Abstract: A verification method includes: obtaining log information items generated in a device; storing the log information items in storage, and storing, in a blockchain, converted information items obtained by converting the log information items; and conducting, at a predetermined frequency, verification as to whether at least one of a target log information item or a target converted information item has been tampered with, based on the target log information item and the target converted information item, the target log information item being included in the log information items and targeted for verification, the target converted information item being included in the converted information items and corresponding to the target log information item. A higher frequency is determined as the predetermined frequency when a time point at which the target converted information item was stored in the blockchain is closer to a current time at which the verification is conducted.
-
公开(公告)号:US20240064169A1
公开(公告)日:2024-02-22
申请号:US18384553
申请日:2023-10-27
Inventor: Takeshi KISHIKAWA , Hideki MATSUSHIMA , Tomoyuki HAGA , Manabu MAEDA , Takamitsu SASAKI
IPC: H04L9/40 , B60R16/023 , G07C5/00
CPC classification number: H04L63/1441 , B60R16/023 , G07C5/008 , H04L63/062 , H04L63/1416
Abstract: A gateway that notifies a fraud detection server located outside a vehicle of information about an in-vehicle network system including an in-vehicle network includes: a priority determiner that determines a priority using at least one of: a state of the vehicle including the in-vehicle network system; an identifier of a message communicated on the in-vehicle network; and a result of fraud detection performed on the message; a frame transmitter-receiver that transmits and receives the message communicated on the in-vehicle network; a frame interpreter that extracts information about the in-vehicle network based on the message received by the frame transmitter-receiver; and a frame uploader that notifies the fraud detection server of notification information including the priority and the information about the in-vehicle network.
-
公开(公告)号:US20240053977A1
公开(公告)日:2024-02-15
申请号:US18495971
申请日:2023-10-27
Inventor: Yoshihiro UJIIE , Hideki MATSUSHIMA , Jun ANZAI , Toshihisa NAKANO , Tomoyuki HAGA , Manabu MAEDA , Takeshi KISHIKAWA
CPC classification number: G06F8/65 , G06F8/654 , B60R16/02 , B60R16/023 , G06F11/00 , G06F11/1433 , H04L12/40006 , H04L12/4625 , H04W4/48
Abstract: A gateway device is connected to a plurality of electronic controllers on-board a vehicle. The gateway device acquires firmware update information, which includes at least a part of updated firmware to be applied to a first electronic controller, patch data, and information indicating where to apply the patch data. When the gateway device determines that the first electronic controller does not include a firmware cache for performing a pre-update firmware cache operation, the gateway device executes a proxy process. In this regard, the gateway device requests the first electronic controller to transmit boot ROM data to the gateway device, merges the patch data and existing firmware to create updated boot ROM data with updated firmware, and transmits the updated boot ROM data to the first electronic controller that updates the boot ROM data and resets the first electronic controller with the updated firmware.
-
公开(公告)号:US20220321649A1
公开(公告)日:2022-10-06
申请号:US17843408
申请日:2022-06-17
Inventor: Yuji UNAGAMI , Hideki MATSUSHIMA , Tomoyuki HAGA , Manabu MAEDA
IPC: H04L67/1087 , H04L9/40 , H04L9/00
Abstract: In a data distribution method according to the disclosure, first authentication servers and a first data server belong to a first group, and second authentication servers and a second data server belong to a second group different from the first group. A first authentication server obtains first transaction data that includes a data obtaining request indicating a request for obtaining or referring to data pertaining to an apparatus, and records a block including the first transaction data into its distributed ledger belonging to the first group. A second authentication server obtains the first transaction data, and records the block including the first transaction data into a distributed ledger belonging to the second group. The first authentication server causes the first data server to transfer the data pertaining to the apparatus held therein to the second data server or to make such data available for reference by the second data server.
-
6.
公开(公告)号:US20220116405A1
公开(公告)日:2022-04-14
申请号:US17559749
申请日:2021-12-22
Inventor: Yoshihiro UJIIE , Jun ANZAI , Yoshihiko KITAMURA , Masato TANABE , Hideki MATSUSHIMA , Tomoyuki HAGA , Takeshi KISHIKAWA , Ryota SUGIYAMA
IPC: H04L67/12 , H04L12/40 , B60R16/023
Abstract: An electronic control unit is connected to a network in an in-vehicle network system. The electronic control unit includes a first control circuit and a second control circuit. The first control circuit is connected to the network via the second control circuit. The second control circuit performs a first determination process on a frame to determine conformity of the frame with a first rule. Upon determining that the frame conforms to the first rule, the second control circuit transmits the frame to the first control circuit. The first control circuit performs a second determination process on the frame to determine conformity of the frame with a second rule. The second rule is different from the first rule.
-
公开(公告)号:US20210211442A1
公开(公告)日:2021-07-08
申请号:US17211211
申请日:2021-03-24
Inventor: Tomoyuki HAGA , Takamitsu SASAKI , Hajime TASAKI , Hideki MATSUSHIMA
IPC: H04L29/06
Abstract: A threat information analysis server includes: an update manager that manages update information indicating that function addition to an IoT device is performed; a threat information manager that stores threat information of a cyberattack; a risk level manager that manages risk level information defining a risk level of the IoT device; a related threat information manager that manages the threat information and related threat information associating the IoT device with the risk level; a risk level updater that associates the threat information and the risk level of the IoT device with each other and updates the related threat information, based on the update information; and an outputter that outputs the related threat information managed by the related threat information manager.
-
公开(公告)号:US20210203525A1
公开(公告)日:2021-07-01
申请号:US17201797
申请日:2021-03-15
Inventor: Yoshihiro UJIIE , Hideki MATSUSHIMA , Toshihisa NAKANO , Tohru WAKABAYASHI , Hiroshi AMANO , Tomoyuki HAGA , Takeshi KISHIKAWA
IPC: H04L12/40 , H04L29/06 , H04L12/46 , H04B1/3822 , H04L12/66
Abstract: A gateway device for a vehicle network system installed in a vehicle is provided. The vehicle network system includes a network, an electronic control unit connected to the network, and the gateway device connected to the first network and configured to communicate outside the vehicle. The gateway device receives a first frame from outside the vehicle; determines whether or not the first frame is appropriate; generates a second frame when the first frame is not determined to be appropriate; and transmits the second frame to the network. The second frame includes control information and additional information based on content of the first frame. The control information restricts processing of the additional information included in the second frame by the electronic control unit, after the second frame is received by the electronic control unit.
-
9.
公开(公告)号:US20200220716A1
公开(公告)日:2020-07-09
申请号:US16820428
申请日:2020-03-16
Inventor: Tomoyuki HAGA , Hideki MATSUSHIMA , Manabu MAEDA , Yuji UNAGAMI , Jun ANZAI
Abstract: An update management method is used in an onboard network system having a plurality of electronic control units (ECUs) that performs communication via a network and connects to an external tool. The method includes a master ECU storing a shared key and an expiration date of the shared key. When the master ECU receives an update message, verifying update authority information indicating authority of the external tool, and determining whether or not a transmission of the update message is within a range of an authority of the external tool. The method also includes acquiring external point-in-time information, determining whether or not the external point-in-time information is before the expiration date, and transmitting an alert message prompting an update of the shared key. The ECUs are prioritized according to a designated level of authority, including chassis-related functions, body-related functions, safety/comfort functions, and telematics/infotainment functions.
-
10.
公开(公告)号:US20200007567A1
公开(公告)日:2020-01-02
申请号:US16566269
申请日:2019-09-10
Inventor: Yoshihiro UJIIE , Hideki MATSUSHIMA , Tomoyuki HAGA , Manabu MAEDA , Yuji UNAGAMI , Takeshi KISHIKAWA
Abstract: A method for use in a network communication system including a plurality of electronic controllers that communicate with each other via a bus in accordance with a Controller Area Network (CAN) protocol determines whether or not content of a predetermined field in a frame which has started to be transmitted meets a predetermined condition indicating fraud. In a case where the content of the predetermined field meets the predetermined condition, an error frame is transmitted before an end of the frame is transmitted. A number of times the error frame is transmitted is recorded for each identifier (ID) represented by content of an ID field included in a plurality of frames which has been transmitted. A malicious electronic controller is determined in accordance with the number of times recorded for each ID.
-
-
-
-
-
-
-
-
-