Method of secure management of a memory space for microcontroller
US-2015032976-A1 · Jan 29, 2015 · US
US9762600B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9762600-B2 |
| Application number | US-201414278275-A |
| Country | US |
| Kind code | B2 |
| Filing date | May 15, 2014 |
| Priority date | May 16, 2006 |
| Publication date | Sep 12, 2017 |
| Grant date | Sep 12, 2017 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
An embodiment is provided of a mobile router for installation in a vehicle comprising a vehicle network bus coupled to a plurality of electronic control units. The mobile router comprises: a processor; a memory comprising a plurality of programs; a wireless wide area network interface; a wireless local area network interface; and an interface to the vehicle network bus coupled to vehicle electronic control units. The processor utilizes the interface to monitor data on the vehicle network bus. The plurality of programs comprises an intrusion detection program executable by the processor to detect one or more anomalies in the monitored data; and to generate an alert upon detection of one or more anomalies.
Opening claim text (preview).
The invention claimed is: 1. A mobile router for installation in a vehicle, comprising a wireless local area network mobile with said vehicle and a wireless wide area network, said mobile router operable to route data between one or more mobile devices located in said vehicle coupled to said wireless local area network mobile with said vehicle and a wireless wide area network, said vehicle comprising a vehicle network bus coupled to a plurality of vehicle electronic control units each comprising a separate processor and a separate physical memory, said mobile router comprising: a processor; a separate physical mobile router memory comprising a plurality of programs; a wireless wide area network interface to access said wireless wide area network; a wireless local area network interface operable to provide said mobile wireless local area network for said one or more mobile devices; an interface to said vehicle network bus coupled to said plurality of vehicle electronic control units; said processor utilizing said vehicle network bus interface to monitor data on said vehicle network bus; said plurality of programs comprises an intrusion detection program and one or more other programs, said intrusion detection program executable by said processor to detect electronic intrusions, said intrusion detection program being isolated from said one or more other programs to insure the integrity of said intrusion detection program by utilizing one or more memory isolation approaches to isolate said intrusion detection program from all other programs in said vehicle including all other programs of said plurality of programs; said processor utilizing said intrusion detection program to detect one or more anomalies indicative of an electronic intrusion in said monitored data; said one or more anomalies comprise reflashing of an electronic control unit memory and predetermined radio frequency hub activity in said vehicle of a type that comprises attempts to determine a predetermined code assigned to said vehicle; said wireless wide area network interface and said wireless local area network interface are selectively operable to receive at least one of calibration information and update information for said intrusion detection program; and said mobile router generating an alert upon detection of said one or more of anomalies indicative of an electronic intrusion. 2. The mobile router in accordance with claim 1 , wherein: said separate physical mobile router memory comprises a first memory portion comprising said intrusion detection program and a second memory portion comprising said one or more other programs. 3. The mobile router in accordance with claim 2 , comprising: said intrusion detection program comprises statistical anomaly detection. 4. The mobile router in accordance with claim 2 , comprising: said intrusion detection program comprises Bayes' Law. 5. The mobile router in accordance with claim 2 , comprising: said mobile router transmits said alert to one of a display in said vehicle, a mobile device, and a server. 6. The mobile router in accordance with claim 5 , comprising: said mobile router transmits said alert via a selected one of said wireless wide area network interface and said wireless local area network interface to one of a mobile device and a server. 7. The mobile router in accordance with claim 3 , comprising: said statistical anomaly detection utilizes a profile of normal data on said vehicle network bus based upon learned data. 8. The mobile router in accordance with claim 7 , comprising: said normal data comprises one or more of an amount of normal traffic, identification of normal messages, identification of normal vehicle device to device communication, and identification of normal sensor data. 9. The mobile router in accordance with claim 1 , wherein: said vehicle network bus comprises a Controller Area Network (CAN) bus. 10. The mobile router in accordance with claim 1 , comprising: said intrusion detection program comprises specification based anomaly detection. 11. The mobile router in accordance with claim 10 , comprising: said processor executing said intrusion detection program ignores all specification compliant data on said vehicle network bus and generates said alert for data on said vehicle network bus that is not specification compliant. 12. The mobile router in accordance with claim 11 , comprising: said mobile router transmits said alert to one of a display in said vehicle, a mobile device, and a server. 13. The mobile router in accordance with claim 12 , comprising: said mobile router transmits said alert via a selected one of said wireless wide area network interface and said wireless local area network interface to one of a mobile device and a server. 14. The mobile router in accordance with claim 12 , wherein: said vehicle network bus comprises a Controller Area Network (CAN) bus. 15. The mobile router in accordance with claim 10 , comprising: said specification-based anomaly detection is utilized to detect one or more of acceleration patterns, braking patterns, original equipment manufacturer (OEM) provided patterns, counterfeit airbags, and invalid bus identifications. 16. The mobile router in accordance with claim 1 , wherein: said intrusion detection program comprises an anomaly detection engine. 17. The mobile router in accordance with claim 16 , comprising: said anomaly detection engine comprises one of statistical anomaly detection and specification based anomaly detection. 18. The mobile router in accordance with claim 1 , comprising: said mobile router transmits said alert to one of a display in said vehicle, a mobile device, and a server.
specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks · CPC title
Electricity · mapped topic
Electricity · mapped topic
Traffic logging, e.g. anomaly detection · CPC title
by monitoring network traffic (monitoring network traffic per se H04L43/00) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.