Apparatus for detecting in-vehicle external data intrusion by comparing multiple information entropy and operating method thereof

US2020382528A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2020382528-A1
Application numberUS-201916721934-A
CountryUS
Kind codeA1
Filing dateDec 20, 2019
Priority dateMay 27, 2019
Publication dateDec 3, 2020
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Disclosed are an apparatus for detecting in-vehicle external data intrusion by comparing multiple information entropy and a method of operating the same. The present invention may prevent a danger due to in-vehicle external data intrusion by providing a technology that may determine whether in-vehicle external data intrusion occurs by checking information entropy representing the amount of information for a package ID generable through an in-vehicle Controller Area Network (CAN) communication network.

First claim

Opening claim text (preview).

What is claimed is: 1 . An apparatus for detecting in-vehicle external data intrusion by comparing multiple information entropy, the apparatus comprising: a reference entropy storage unit configured to store, for each of a plurality of predetermined different travelling environment conditions, an upper limit value and a lower limit value of predetermined first reference information entropy, an upper limit value and a lower limit value of predetermined second reference information entropy, and an upper limit value and a lower limit value of predetermined third reference information entropy for detecting external data intrusion on a vehicle; a travelling environment condition checking unit configured to check a control signal associated with travelling of the vehicle by accessing an Electronic Control Unit (ECU) of the vehicle and check a current travelling environment condition of the vehicle; a count unit configured to collect N packets (N is a natural number equal to or larger than 2) sequentially generated through an in-vehicle Controller Area Network (CAN) communication network and generate a packet group formed of N packets, and count each of the number of times of occurrence of first overlapping event (which is the event generated when the two packets having the same ID are continuously generated through the CAN communication network), a second overlapping event (which is the event generated when the three packets having the same ID are continuously generated through the CAN communication network), and a third overlapping event (which is the event generated when the four packets having the same ID are continuously generated through the CAN communication network) by checking IDs allocated to the N packets forming the packet group; a criteria information entropy estimating unit configured to estimate first criteria information entropy representing the amount of information for the packet ID generable through the CAN communication network under the current travelling environment condition of the vehicle based on the number of times of the occurrence of the first overlapping event and the number of N packets forming the packet group, estimate second criteria information entropy representing the amount of information for the packet ID generable through the CAN communication network under the current travelling environment condition of the vehicle based on the number of times of the occurrence of the second overlapping event and the number of N packets forming the packet group, and estimate third criteria information entropy representing the amount of information for the packet ID generable through the CAN communication network under the current travelling environment condition of the vehicle based on the number of times of the occurrence of the third overlapping event and the number of N packets forming the packet group; an entropy checking unit configured to, when the first criteria information entropy, the second criteria information entropy, and the third criteria information entropy are estimated, check whether the first criteria information entropy belongs to values between the upper limit value and the lower limit value of the first reference information entropy stored in the reference entropy storage unit while corresponding to the travelling environment condition corresponding to the current travelling environment condition of the vehicle, check whether the second criteria information entropy belongs to values between the upper limit value and the lower limit value of the second reference information entropy stored in the reference entropy storage unit while corresponding to the travelling environment condition corresponding to the current travelling environment condition of the vehicle, and check whether the third criteria information entropy belongs to values between the upper limit value and the lower limit value of the third reference information entropy stored in the reference entropy storage unit while corresponding to the travelling environment condition corresponding to the current travelling environment condition of the vehicle; and an external data intrusion determining unit configured to, when it is checked that any one of the first criteria information entropy, the second criteria information entropy, and the third criteria information entropy does not belong to the values between the upper limit value and the lower limit values of the first reference information entropy, the second reference information entropy, and the third reference information entropy stored while corresponding to the travelling environment condition corresponding to the current travelling environment condition of the vehicle, determine that the external data intrusion occurs on the vehicle. 2 . The apparatus of claim 1 , wherein the criteria information entropy estimating unit estimates the first criteria information entropy based on a calculation according to Equation 1 below, estimates the second criteria information entropy based on a calculation according to Equation 2 below, and estimates the third criteria information entropy based on a calculation according to Equation 3 below, R 1 = - log 2  S 1 n 1 [ Equation   1 ] R 2 = - log 2  S 2 n 1 [ Equation   2 ] R 3 = - log 2  S

Assignees

Inventors

Classifications

  • for vehicles, e.g. vehicle-to-pedestrians [V2P] · CPC title

  • specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks · CPC title

  • Event detection, e.g. attack signature detection · CPC title

  • Details regarding the feeding of energy to the node from the bus · CPC title

  • Wireless intrusion detection systems [WIDS]; Wireless intrusion prevention systems [WIPS] · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2020382528A1 cover?
Disclosed are an apparatus for detecting in-vehicle external data intrusion by comparing multiple information entropy and a method of operating the same. The present invention may prevent a danger due to in-vehicle external data intrusion by providing a technology that may determine whether in-vehicle external data intrusion occurs by checking information entropy representing the amount of info…
Who is the assignee on this patent?
Univ Chosun Iacf
What technology area does this patent fall under?
Primary CPC classification H04L63/1416. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Dec 03 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).