Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

12results about "Data taking prevention" patented technology

Communication analysis system, analysis method, and recording medium

ActiveUS12641424B2Data taking preventionConnection managementTelecommunications linkSystems analysis
A communication analysis system includes: an information obtainer that obtains past communication information indicating communication performed by a monitoring target; a prediction target link extractor that extracts, based on the past communication information obtained, an unestablished communication link of communication that has not been established in the past communication information, the unestablished communication link being at least one communication link that is a prediction target; a link confidence level calculator that calculates a confidence level indicating the likelihood that the unestablished communication link extracted will be established as a normal communication link in the future; and a NW graph creator that creates a NW graph, in which the unestablished communication link and information regarding the unestablished communication link are mapped, as graph information for determining whether to add the communication link to a whitelist, using the unestablished communication link extracted, the confidence level calculated, and the past communication information obtained.
Owner:PANASONIC INTELLECTUAL PROPERTY CORP OF AMERICA

Information processing device, information processing program, and information processing method

PendingJP2026103758AData taking preventionNetwork connectionsInformation processingData pack
This makes it easy to analyze the settings of firewall policies. [Solution] The information processing device according to the present invention comprises: a configuration file that describes a firewall policy that controls packet transmission based on a pre-configured policy; a policy format that shows a policy description pattern; an extraction unit that identifies an authorization record from the configuration file that corresponds to a policy containing authorization information that allows the firewall to transmit packets; and extracts source information and destination information from the authorization record; and a generation unit that generates first communication pattern information relating to a communication pattern permitted between the source and the destination based on the source information and destination information.
Owner:SOFTBANK CORPORATION

In-vehicle network

ActiveJP7868494B2Data taking preventionData switching by path configuration
To provide an ECU layout determination method with which it is possible to suppress the adverse effect of illegal access to an onboard network.SOLUTION: The layout of each ECU is determined on the basis of the cost attributable to the number of wire and the diameter of wire used in an onboard network (step ST4). The form of wire division for realizing the layout of each ECU is determined, and accordingly the position of a connector located at the divided position and the number of connectors are determined (step ST5). Determination is made as to whether or not there exists an ECU whose access difficulty is low (step ST7), and when a bus to which an ECU having security risk is connected is the one that has an ECU connected thereto whose security level is not high, the ECU having security risk is connected to anther bus by layout change and an onboard network to be established is determined (step ST10).SELECTED DRAWING: Figure 2
Owner:TOYOTA JIDOSHA KK

Networking and security split architecture

PendingJP2026090526AData taking preventionPlatform integrity maintainance
Technologies for providing networking and security split architectures are disclosed. [Solution] In some embodiments, a system, process, and / or computer program product for providing a networking and security split architecture includes the steps of: receiving flows in a security service; processing flows in the network layer of the security service to perform one or more networking functions; and offloading flows to the security layer of the security service to perform security enforcement based on policies.
Owner:PALO ALTO NETWORKS INC

A device having a flexible communication structure for real-time network applications with advanced data security, particularly an automated device, and a method for configuring the device.

PendingJP2026517639AProgramme controlData taking prevention
1. A device having a flexible communication structure for real-time network applications with advanced data security, particularly an automated device, and a method for configuring such a device. 2.1 To support all communication protocols of automation technologies relevant to the market, the device (AG) has a communication processor (KP), which has - at least one freely programmable communication controller (KC), at least one freely programmable data controller (DC), and at least one interactive dual-port RAM memory (DPM), where the communication processor (KP) cooperates with a higher-level control device via a host interface (HS), thereby making the higher-level control device replaceable, and - an application-dependently programmable processor core (gMA) built into the communication controller (KC). The device (AG) has at least one flexible communication structure consisting of RPU; TPU; gPEC), and at least one flexible data processing structure including a cryptographic accelerator (KB) incorporated within a data controller (DC), and further includes a replaceable physical interface (PYS) located within the device (AG) and connected to a communication controller (KC) located within a communication processor (KP) via signal lines for transmitting identification code (ID), control data (ST), received data (ED), and transmitted data (SD), enabling processing, filtering, and distribution of data streams at transmission speeds ranging from 10 Mbps to 1 Gbps. 2.2 The present invention relates to devices having a flexible communication structure, particularly to automation devices.
Owner:HILSCHER GES FUR SYSTAUTOMATION +1

Methods and Systems for Efficient Enforcement of Cybersecurity Policies in Network Communications

PendingJP2026518346AData taking preventionNetwork connectionsData packTree (data structure)
This document discloses methods, apparatus, systems, and computer-readable media for improving packet filtering efficiency by reducing processing time and / or memory usage. The packet filtering appliance uses one of various types of data structures, such as flat hash maps and / or rule trees, to look up packet filtering rules of a cybersecurity policy that should be applied to packets in transit. The packet filtering appliance searches an index data structure for matches of the search object against the matching criteria of the policy rule's threat indicators, in the form of values ​​that the packet filtering appliance extracts from packets in transit. Each of the index data structures maps the rule identifiers (rule IDs) of the policy rules to keys based on (or containing) the matching criteria of those rules.
Owner:CENTRIPETAL NETWORKS INC

Information processing device, information processing method, program, and recording medium

PCT designated stageWO2026105251A1Data taking preventionInformation processingData pack
In order to provide security measures spanning a plurality of protocols, an information processing device (1) comprises: an acquisition unit (11) that acquires a communication packet including a protocol stack; a tokenization unit (12) that generates a plurality of tokens by tokenizing at least a portion of the communication packet; and an evaluation unit (14) that inputs the plurality of tokens into a model trained through machine learning, and evaluates the security of the communication packet by referring to the output of the model.
Owner:SOFTBANK CORPORATION

Data communication path establishment system and method

ActiveJP7875152B2Data taking prevention
To provide a system and method for establishing a data communication path that eliminates the hassle of a user having to manage connection information and perform connection tasks when there are multiple ICT device candidates with which a mobile terminal can communicate, enables the user to quickly connect to the desired ICT device, and easily provides the user with the functions they desire.SOLUTION: A mobile terminal 3 includes a communication control unit 31 that accesses a management database 4 by specifying a user and obtains information linked to the organization to which a user belongs from the database, and a display unit 34 that presents to the user identification information and functions of construction machinery (vehicle 1) that the user can use and connectable control units 10 on the basis of the obtained information, and when the user selects the presented construction machinery and the control unit, a data communication path between the mobile terminal and the control unit is established using the connection information of the control unit.SELECTED DRAWING: Figure 1
Owner:HITACHI CONSTRUCTION MACHINERY CO LTD

In-vehicle device, detection device, transmission control method, and detection method

PendingUS20260163895A1Data taking preventionData switching by path configuration
Provided is an in-vehicle device configured to transmit, in an in-vehicle network, messages to which identification information is added. The messages include a periodic message and an event message. The in-vehicle device includes: a creation unit configured to create the periodic message and the event message; and a transmission control unit configured to transmit the periodic message and the event message created by the creation unit. In transmitting the event message, after a waiting time elapses from a transmission timing of a previously transmitted message among the messages to which the identification information of the same value as that of the event message to be transmitted is added, the transmission control unit transmits the event message to which the identification information of the same value is added. The waiting time is longer than half a transmission cycle of the periodic message and is shorter than the transmission cycle.
Owner:SUMITOMO ELECTRIC INDUSTRIES LTD +2

Monitoring device, system, method, and program

PCT designated stageWO2026133564A1Data taking preventionVirtualizationComputer network
This network device (1) comprises: an eBPF user unit (13A) that registers a policy file (33B) transmitted via a secure channel as a policy (16C) in the network device (1) itself; and a device monitoring control unit (15A) that monitors communication between applications operating on a virtualization infrastructure (12) outside the virtualization infrastructure (12) and detects communication between the applications not conforming to the policy (16C) as communication between unauthorized applications. The device monitoring control unit (15A) detects communication between the applications that do not conform to the policy (16C) by referencing a process map (16B) that maps information on processes of the applications and a socket list (16D) that indicates socket communication between the applications.
Owner:NT T INC