Systems and methods for detecting a security breach in an aircraft network

US9938019B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9938019-B2
Application numberUS-201514718820-A
CountryUS
Kind codeB2
Filing dateMay 21, 2015
Priority dateMay 21, 2015
Publication dateApr 10, 2018
Grant dateApr 10, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A network system of an aircraft implements a target system to attract, detect, log, and mitigate a potential breach by the malicious entities. The target system simulates the systems of the aircraft in order to attract a potential breach. The target system simulates the data, file structure, communications, etc., of the systems of the aircraft. The target system includes little, or no security or access controls in order to attract a potential breach and allow the malicious entity to gain access. Once a breach occurs, the target system can be configured to log, report, and/or mitigate the potential breach.

First claim

Opening claim text (preview).

What is claimed is: 1. A system, comprising: a network system comprising a hardware electronic processor on-board an aircraft; a plurality of aircraft systems on-board the aircraft and comprising a hardware electronic processor coupled to the network system; and a target system comprising a hardware electronic processor coupled to the network system, wherein the target system is implemented in at least one of: the network system on-board the aircraft, or one or more of the plurality of aircraft systems on-board the aircraft; wherein the target system comprises a virtual machine instantiated on the network system and is configured to simulate data, file structure, communications, and operations of the plurality of aircraft systems, wherein the plurality of aircraft systems comprises flight systems, operator information systems, an in-flight entertainment system, and an off-board communication system, and wherein the target system is configured to detect an attempted access of the target system; monitoring access to the target system; determining, based on the monitoring, that the attempted access of the target system has occurred; and logging the attempted access as an attempted breach of the plurality of aircraft systems. 2. The system of claim 1 , wherein the network system is configured to implement security controls to prevent access to the plurality of aircraft systems, and wherein access to the target system is not controlled by the security controls. 3. The system of claim 2 , wherein the target system is configured to alter the security controls in response to the attempted access. 4. The system of claim 1 further comprising: one or more memory device that are configured to store data representing the attempted access of the target system, wherein the data comprises a network address of an entity attempting access, one or more simulated aircraft systems which were attempted to be accessed, or a time of the attempted access. 5. The system of claim 1 , wherein the target system is configured to report the attempted access to an entity associated with the aircraft. 6. A method, comprising: initiating a target system that communicates with a network system of an aircraft, simulating, by the target system, operations of a plurality of aircraft systems on-board the aircraft, wherein the target system is implemented in at least one of: the network system on-board the aircraft, or one or more of the plurality of aircraft systems on-board the aircraft, and wherein the target system comprises a virtual machine instantiated on the network system and is configured to simulate data, file structure, communications, and operations of the plurality of aircraft systems, wherein the plurality of aircraft systems comprises flight systems, operator information systems, an in-flight entertainment system, and an off-board communication system; and wherein the target system is configured to detect an attempted access of the target system; monitoring access to the target system; determining, based on the monitoring, that the attempted access of the target system has occurred; and logging the attempted access as an attempted breach of the plurality of aircraft systems. 7. The method of claim 6 , the method further comprising: reporting the attempted breach to an entity associated with the aircraft. 8. The method of claim 6 , the method further comprising: determining that the attempted breach targeted a critical system of the plurality of aircraft systems; and reporting the attempted breach based on the attempted breach targeted the critical system. 9. The method of claim 6 , the method further comprising: altering security controls of the network system based on detecting the attempted breach. 10. The method of claim 6 , wherein logging the attempted access comprises: storing data representing the attempted access of the target system, wherein the data comprises a network address of an entity attempting access, one or more simulated aircraft systems which were attempted to be accessed, or a time of the attempted access. 11. A non-transitory computer readable medium comprising instructions for causing one or more processors to perform a method, the method comprising: initiating a target system that communicates with a network system of an aircraft, simulating, by the target system, operations of a plurality of aircraft systems on-board the aircraft, wherein the target system is implemented in at least one of: the network system on-board the aircraft, or one or more of the plurality of aircraft systems on-board the aircraft, and wherein the target system comprises a virtual machine instantiated on the network system and is configured to simulate data, file structure, communications, and operations of the plurality of aircraft systems, wherein the plurality of aircraft systems comprises flight systems, operator information systems, an in-flight entertainment system, and an off-board communication system; and wherein the target system is configured to detect an attempted access of the target system; monitoring access to the target system; determining, based on the monitoring, that the attempted access of the target system has occurred; and logging the attempted access as an attempted breach of the plurality of aircraft systems. 12. The non-transitory computer readable medium of claim 11 , the method further comprising: reporting the attempted breach to an entity associated with the aircraft. 13. The non-transitory computer readable medium of claim 11 , the method further comprising: determining that the attempted breach targeted a critical system of the plurality of aircraft systems; and reporting the attempted breach based on the attempted breach targeted the critical system. 14. The non-transitory computer readable medium of claim 11 , the method further comprising: altering security controls of the network system based on detecting the attempted breach. 15. The non-transitory computer readable medium of claim 11 , wherein logging the attempted access comprises: storing data representing the attempted access of the target system, wherein the data comprises a network address of an entity attempting access, one or more simulated aircraft systems which were attempted to be accessed, or a time of the attempted access.

Assignees

Inventors

Classifications

  • Operations & Transport · mapped topic

  • Devices specially adapted for the protection against criminal attack, e.g. anti-hijacking systems · CPC title

  • Countermeasures against malicious traffic (countermeasures against attacks on cryptographic mechanisms H04L9/002) · CPC title

  • for detecting or protecting against malicious traffic · CPC title

  • Electricity · mapped topic

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9938019B2 cover?
A network system of an aircraft implements a target system to attract, detect, log, and mitigate a potential breach by the malicious entities. The target system simulates the systems of the aircraft in order to attract a potential breach. The target system simulates the data, file structure, communications, etc., of the systems of the aircraft. The target system includes little, or no security …
Who is the assignee on this patent?
Boeing Co
What technology area does this patent fall under?
Primary CPC classification B64D45/0015. Mapped technology areas include Operations & Transport.
When was this patent published?
Publication date Tue Apr 10 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).