Security reporting via message tagging

US12047398B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-12047398-B2
Application numberUS-202218077205-A
CountryUS
Kind codeB2
Filing dateDec 7, 2022
Priority dateDec 12, 2019
Publication dateJul 23, 2024
Grant dateJul 23, 2024

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Techniques and screening messages based on tags in an automotive environment, such as, messages communicated via a communication bus, like the CAN bus. Messages can be tagged with either a binary or probabilistic tag indicating whether the message is fraudulent. ECUs coupled to the CAN bus can receive the messages and the message tags and can determine whether to fully consume the message based on the tag.

First claim

Opening claim text (preview).

What is claimed is: 1. An apparatus, comprising: an interface to communicate information over a communication link; processing circuitry communicatively coupled to the interface, the processing circuitry to: receive a message from the interface, the message to include a message identifier and information generated by an electronic control unit (ECU); receive a message tag for the message from the interface separate from the message, the message tag to include the message identifier and an indication of a message status generated by security tagging circuitry; determine the message identifier for the message matches the message identifier in the message tag; and determine whether to process the message based on the message status indicated by the message tag. 2. The apparatus of claim 1 , wherein the message status is a binary indication of whether the message is authentic or not authentic. 3. The apparatus of claim 1 , the processing circuitry to process the message when the message status of the message tag indicates the message is authentic. 4. The apparatus of claim 1 , the processing circuitry to discard the message when the message status of the message tag indicates the message is not authentic. 5. The apparatus of claim 1 , the processing circuitry to: determine the message status of the message tag indicates the message is not authentic; compare the information generated by the ECU to information stored in a database; and determine whether to process the message based on results of the comparison. 6. The apparatus of claim 1 , wherein the message tag further includes a probabilistic indication for the message status, the probabilistic indication to comprise a percentage amount of certainty that the message is authentic or not authentic. 7. The apparatus of claim 6 , the processing circuitry to: determine the message status of the message tag indicates the message is not authentic; compare the probabilistic indication of the message tag to a threshold value; and determine whether to process the message based on results of the comparison. 8. The apparatus of claim 1 , the interface to receive the message and the message tag over the communication link, wherein the communication link is a communication bus for an in-vehicle network (IVN) or a sideband bus of the IVN. 9. The apparatus of claim 1 , wherein the interface and the processing circuitry are part of a single chip architecture. 10. A system, comprising: a single microchip to comprise an interface and circuitry, the interface to communicate information, and the circuitry to: receive a message from the interface, the message to include a message identifier and information generated by an electronic control unit (ECU); receive a message tag for the message from the interface separate from the message, the message tag to include the message identifier and an indication of a message status generated by security tagging circuitry; determine the message identifier for the message matches the message identifier in the message tag; and determine whether to process the message based on the message status indicated by the message tag. 11. The system of claim 10 , wherein the message status is a binary indication of whether the message is authentic or not authentic. 12. The system of claim 10 , the circuitry to: process the message when the message status of the message tag indicates the message is authentic; or discard the message when the message status of the message tag indicates the message is not authentic. 13. The system of claim 10 , the circuitry to: determine the message status of the message tag indicates the message is not authentic; compare the information generated by the ECU to information stored in a database; and determine whether to process the message based on results of the comparison. 14. The system of claim 10 , wherein the message tag further includes a probabilistic indication for the message status, the probabilistic indication to comprise a percentage amount of certainty that the message is authentic or not authentic. 15. The system of claim 14 , the circuitry to: determine the message status of the message tag indicates the message is not authentic; compare the probabilistic indication of the message tag to a threshold value; and determine whether to process the message based on results of the comparison. 16. The system of claim 10 , comprising a communication bus communicatively coupled to the interface, the communication bus comprising part of an in-vehicle network (IVN). 17. An apparatus, comprising: an interface to communicate information over a communication link; security tagging circuitry coupled to the interface, the security tagging circuitry to: receive a message from the interface, the message to include a message identifier and information generated by a first electronic control unit (ECU); perform a security analysis of the message; generate a message tag for the message, the message tag to include the message identifier and an indication of a message status for the message; and send the message tag separate from the message to a second ECU via the interface. 18. The apparatus of claim 17 , wherein the message status is a binary indication of whether the message is authentic or not authentic. 19. The apparatus of claim 17 , wherein the message tag further includes a probabilistic indication for the message status, the probabilistic indication to comprise a percentage amount of certainty that the message is authentic or not authentic. 20. The apparatus of claim 17 , the interface to send the message tag to the second ECU over the communication link, wherein the communication link is a communication bus of an in-vehicle network (IVN) or a sideband bus of the IVN.

Assignees

Inventors

Classifications

  • by tagging of packets, e.g. using discard eligibility [DE] bits · CPC title

  • the source of the received data · CPC title

  • Filtering by address, protocol, port number or service, e.g. IP-address or URL · CPC title

  • Controller Area Network CAN · CPC title

  • Active attacks involving interception, injection, modification, spoofing of data unit addresses, e.g. hijacking, packet injection or TCP sequence number attacks · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US12047398B2 cover?
Techniques and screening messages based on tags in an automotive environment, such as, messages communicated via a communication bus, like the CAN bus. Messages can be tagged with either a binary or probabilistic tag indicating whether the message is fraudulent. ECUs coupled to the CAN bus can receive the messages and the message tags and can determine whether to fully consume the message based…
Who is the assignee on this patent?
Intel Corp
What technology area does this patent fall under?
Primary CPC classification H04L63/1416. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Jul 23 2024 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).