Method for the anonymized provision of data of a first vehicle for a vehicle-external server device, and anonymization apparatus and motor vehicle
US-11889299-B2 · Jan 30, 2024 · US
US12028704B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-12028704-B2 |
| Application number | US-201917269462-A |
| Country | US |
| Kind code | B2 |
| Filing date | Nov 11, 2019 |
| Priority date | Nov 27, 2018 |
| Publication date | Jul 2, 2024 |
| Grant date | Jul 2, 2024 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
The present disclosure invention relates to a method for the anonymized transmission of sensor data of a vehicle to a vehicle-external receiving unit, to an anonymizing system, and to a receiving unit, the method including the following steps: determining the sensor data at a measurement location at a measurement time, determining a traffic density in an environment of the measurement location, determining an anonymized time and/or an anonymized location, calculating an anonymization probability of the vehicle, which results from the traffic density and the anonymized time and/or location, determining whether the anonymization probability meets a predetermined anonymization condition, and if the anonymization condition is met, transmitting the sensor data to the external receiving unit, the anonymized time being indicated as a measurement time indication and/or the anonymized location being indicated as a measurement location indication.
Opening claim text (preview).
The invention claimed is: 1. A method for anonymized transmission of sensor data of a vehicle to a vehicle-external receiving unit, wherein the sensor data is transmitted with a measurement time indication or with a measurement location indication, the method comprising: determining the sensor data at a measurement location of the vehicle at a measurement time; determining a traffic density in an environment of the measurement location; determining an anonymized time or an anonymized location, wherein the anonymized time lies within a predetermined time duration of the measurement time, and wherein the anonymized location lies within a predetermined distance from the measurement location; calculating, using a statistical method, an anonymization probability of the vehicle based on the traffic density and the predetermined time duration and/or based on the traffic density and the predetermined distance, wherein the anonymization probability indicates probability of the sensor data being originated from at least two vehicles that are within the predetermined distance or the predetermined time duration; determining whether the anonymization probability meets a predetermined anonymization condition, wherein the predetermined anonymization condition indicates a predetermined number of vehicles present as potential senders of sensor data; and in response to determining that the predetermined anonymization condition is met, transmitting the sensor data to the vehicle-external receiving unit, wherein the anonymized time is indicated as a measurement time indication or the anonymized location is indicated as a measurement location indication. 2. The method of claim 1 , wherein the determining the anonymized time further comprises determining the anonymized time using a random generator, wherein the random generator generates a value by means of a uniform distribution which lies within the predetermined time duration. 3. The method of claim 1 , wherein the determining the anonymized location further comprises determining the anonymized location using a random generator, wherein the random generator generates a value by means of a uniform distribution which lies within the predetermined distance. 4. The method of claim 1 , further comprising: determining the anonymization condition being met in response to the anonymization probability of the sensor data having originated from another vehicle compared to the anonymization probability of the sensor data having originated from the vehicle being greater than a threshold value. 5. The method of claim 1 , wherein the calculating the anonymization probability of the vehicle further comprises calculating the anonymization probability using a Poisson distribution. 6. The method of claim 1 , further comprising: selecting the predetermined time duration or the predetermined distance according to the sensor or a data type of the sensor data. 7. The method of claim 1 , further comprising: removing transmission information from the sensor data received at the vehicle-external receiving unit. 8. The method of claim 7 , further comprising: determining, by the vehicle-external receiving unit, whether there are at least two sets of sensor data for the environment; upon determining that there are at least two sets of sensor data for the environment, providing the at least two sets of sensor data for further processing by an external service provider. 9. An anonymizing system for anonymized transmission of sensor data to a vehicle-external receiving unit, the anonymizing system comprising: the vehicle-external receiving unit; and a vehicle of a plurality of vehicles, wherein the vehicle is configured to: determine the sensor data at a measurement location of the vehicle at a measurement time, determine a traffic density in an environment of the measurement location, determine an anonymized time or an anonymized location, wherein the anonymized time lies within a predetermined time duration of the measurement time, and wherein the anonymized location lies within a predetermined distance from the measurement location, calculate, using a statistical method, an anonymization probability of the vehicle based on the traffic density and the predetermined time duration and/or based on the traffic density and the predetermined distance, wherein the anonymization probability indicates probability of the sensor data being originated from at least two vehicles that are within the predetermined distance or the predetermined time duration, determine whether the anonymization probability meets a predetermined anonymization condition, wherein the predetermined anonymization condition indicates a predetermined number of vehicles present as potential senders of sensor data, and in response to determining that the predetermined anonymization condition is met, transmit the sensor data to the vehicle-external receiving unit, wherein the anonymized time is indicated as a measurement time indication or the anonymized location is indicated as a measurement location indication. 10. A motor vehicle, comprising: a controller; and a sensor, wherein the controller is configured to: determine sensor data collected by the sensor at a measurement location of the motor vehicle at a measurement time, determine a traffic density in an environment of the measurement location, determine an anonymized time or an anonymized location, wherein the anonymized time lies within a predetermined time duration of the measurement time, and wherein the anonymized location lies within a predetermined distance from the measurement location, calculate, using a statistical method, an anonymization probability of the motor vehicle based on the traffic density and the predetermined time duration and/or based on the traffic density and the predetermined distance, wherein the anonymization probability indicates probability of the sensor data being originated from at least two vehicles that are within the predetermined distance or the predetermined time duration, determine whether the anonymization probability meets a predetermined anonymization condition, wherein the predetermined anonymization condition indicates a predetermined number of vehicles present as potential senders of sensor data, and in response to determining that the predetermined anonymization condition is met, transmit the sensor data to a vehicle-external receiving unit, wherein the anonymized time is indicated as a measurement time indication or the anonymized location is indicated as a measurement location indication.
communicating information to a remotely located station (transmission systems for measured values G08C) · CPC title
Location-sensitive, e.g. geographical location, GPS · CPC title
by anonymising data, e.g. decorrelating personal data from the owner's identification · CPC title
for communication between vehicles and infrastructures, e.g. vehicle-to-cloud [V2C] or vehicle-to-home [V2H] · CPC title
Registering performance data (recording measured values G01D; information storage G11B) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.