Method of updating fraud detection rules for detecting malicious frames, fraud detecting electronic control unit, and on-board network system

US2023214483A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2023214483-A1
Application numberUS-202318120749-A
CountryUS
Kind codeA1
Filing dateMar 13, 2023
Priority dateJan 20, 2015
Publication dateJul 6, 2023
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method used in an on-board network system, having electronic controllers that exchange messages and a fraud-detecting electronic controller. The method includes receiving an inquiry for a vehicle status indicating whether a vehicle in which the fraud-detecting electronic controller is installed is running from an external device, transmitting the vehicle status to the external device, and determining whether a message transmitted conforms to fraud detection rules. The method also includes receiving from the external device the delivery data, including updated fraud detection rules and network type information indicating a network type that the updated fraud detection rules are to be applied The method further includes determining whether the vehicle is running, and whether the network type information indicates a drive network that is connected to an electronic controller related to travel of the vehicle. When the network type information does not indicate the drive network, updating the fraud detection rules.

First claim

Opening claim text (preview).

What is claimed is: 1 . A method used in an on-board network system provided with a plurality of electronic controllers that exchange messages by communication over one or more networks, and a fraud detecting electronic controller connected to the one or more networks, the method comprising: receiving an inquiry for a vehicle status indicating whether or not a vehicle in which the fraud detecting electronic controller is installed is running from an external device, transmitting the vehicle status to the external device, determining, in the fraud detecting electronic controller, whether or not a message transmitted on the one or more networks connected to the fraud detecting electronic controller conforms to the rules based on fraud detection rules; receiving, from the external device external to the on-board network system, the delivery data including updated fraud detection rules and network type information indicating one of a plurality of network types to which the updated fraud detection rules are to be applied: determining whether or not the vehicle is running; when the vehicle is determined to be running, additionally determining whether or not the network type information indicates a drive network that is connected to an electronic controller related to travel of the vehicle, (i) when the network type information indicates the drive network, not conducting an update process with the updated fraud detection rules; and (ii) when the network type information does not indicate the drive network, updating the fraud detection rules to the updated fraud detection rules. 2 . The method according to claim 1 , wherein when the network type connected to the fraud detecting electronic controller is indicated by the network type information, the fraud detecting electronic controller treats a certain update condition as satisfied, and performs the update. 3 . The method according to claim 1 , wherein the delivery data includes a plurality of updated fraud detection rules and network type information indicating a network type corresponding to each of the plurality of updated fraud detection rules, and the fraud detecting electronic controller conducts the receiving of the delivery data by communicating with the external device, extracts from the delivers’ data updated fraud detection rules corresponding to network type information matching the network type connected to the fraud detecting electronic controller, and updates the fraud detection rules associated with the determination to the extracted updated fraud detection rules. 4 . The method according to claim 1 , wherein the delivery data includes a plurality of updated fraud detection rules and network type information indicating network type corresponding to each of tire plurality of updated fraud detection rules, one of the electronic controllers conducts the receiving of the delivery data, includes each of the updated fraud detection rules from the delivery data in a message with an attached message ID for updating fraud detection rules according to the network type indicated by the corresponding network type information, and transmits the message over the one or more networks, and the fraud detecting electronic controller receives, from the one or more networks, the message with the message ID for updating fraud detection rules according to the network type connected to the fraud detecting electronic controller, and updates the fraud detection rules associated with the determination to the updated fraud detection rules included in the message. 5 . The method according to claim 1 , wherein the delivery data includes associated information, a certain update condition is a condition related to the associated information, and the updating of the fraud detection rules is conducted when the associated information in the received delivery data satisfies the certain update condition, and is not conducted when the associated information does not satisfy the certain update condition. 6 . The method according to claim 5 , wherein whether or not the certain update condition is satisfied is determined according to a result of comparing the associated information to information stored by the electronic controller or the fraud detecting electronic controller. 7 . The method according to claim 6 . wherein the associated information indicates a version of the updated fraud detection rules, and when the associated information indicates a version newer than the version of the fraud detection rules serving as a basis of the determination, the fraud detecting electronic controller treats the certain update condition as satisfied, and conducts the update. 8 . The method according to claim 5 , wherein the associated information indicates a vehicle type to which the updated fraud detection rules are to be applied, and when the associated information indicates a vehicle type corresponding to a vehicle in which the on-board network system is installed, the certain update condition is treated as satisfied, and the update is conducted. 9 . The method according to claim 1 , wherein the fraud detection rules and the updated fraud detection rules are configured to include a program for determining conformity to the rules. 10 . The method according to claim 1 , wherein the delivery data has been subjected to a cryptographic process, and during the receiving of the delivery data, a process corresponding to the cryptographic process is performed. 11 . The method according to claim 1 , wherein the plurality of electronic controllers communicate over the one or more networks in accordance with a controller area network (CAN) protocol. 12 . The method according to claim 1 , wherein the plurality of network types includes (i) the drive network connected to an electronic controller related to a travel of the vehicle, the travel of the vehicle including an engine, fuel and a transmission, (ii) a body network connected to an electronic controller related to a control of one of equipment of the vehicle, the equipment including a door lock, an air conditioner, a light and a winker, and (iii) a safety network connected to an electronic controller related to safety, the safety including a brake and an air bag. 13 . A fraud detecting electronic controller connected to one or more networks used for communication by a plurality of electronic controllers, comprising: a processor: a communicator: and a memory having a computer program stored thereon, the computer program causing the processor to execute operations, including determining whether or not the communicator receives an inquiry for a vehicle status indicating whether or not a vehicle in which the fraud detecting electronic controller is installed is running from an external device and transmits the vehicle status to the external device, storing fraud detection rules: determining whether or not a message transmitted on a network connected to the fraud detecting electronic controller conforms to the rules based on the fraud detection rules, receiving the delivery data including updated fraud detection rules and network type information indicating one of a plurality of network types to which the updated fraud detection rules are to be applied: determining whether or not the vehicle is running, the on-board network system including the plurality of controllers: when the vehicle is determined to be running, additionally determining whether or not the network type information indicates a drive network that is connected to an electronic controller related to a travel of the vehicle, (i) when the network type informatio

Assignees

Inventors

Classifications

  • for access to common bus or bus system · CPC title

  • for transmission of signals between vehicle parts or subsystems · CPC title

  • electric {constitutive elements} · CPC title

  • G06F21/552Primary

    involving long-term monitoring or reporting · CPC title

  • Controller Area Network CAN · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2023214483A1 cover?
A method used in an on-board network system, having electronic controllers that exchange messages and a fraud-detecting electronic controller. The method includes receiving an inquiry for a vehicle status indicating whether a vehicle in which the fraud-detecting electronic controller is installed is running from an external device, transmitting the vehicle status to the external device, and det…
Who is the assignee on this patent?
Panasonic Ip Corp America
What technology area does this patent fall under?
Primary CPC classification G06F21/552. Mapped technology areas include Physics.
When was this patent published?
Publication date Thu Jul 06 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).