Bypassing Authenticity Checks in Secure Control Modules

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for updating or replacing control programs in secure vehicle control modules require digital signatures, limiting the ability to use unsigned control programs.

Innovation Solution

A method and system that receive authenticity data from a secure source, including a unique signature and identifier, to bypass authenticity checks for secure control modules, allowing unsigned control programs to be used by storing this data in non-volatile memory and enabling the bypass of authenticity checks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If digital signatures are required for control program updates, then security and authenticity are improved, but flexibility and ease of programming are worsened

Engineering Contradiction:
ImprovesecurityVSAvoidflexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces an intermediary mechanism (authenticity data structure with signature and identifier) that mediates between the security requirement and the flexibility requirement. This intermediary allows the system to maintain security through digital signatures while enabling flexible programming by providing a controlled bypass mechanism for authenticity checks when proper authentication data is provided.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If authenticity checks are enforced, then security is improved, but ease of operation and programming flexibility are worsened

Engineering Contradiction:
ImprovesecurityVSAvoidease of programming
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies preliminary action by requiring the provision of authenticity data (signature and identifier) before the authenticity check is performed. This preliminary provision of authentication data allows the system to pre-establish security credentials, enabling operators to bypass authenticity checks during programming operations while maintaining security through proper authentication.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If control programs must be digitally signed, then authenticity is improved, but device complexity and programming requirements are worsened

Engineering Contradiction:
ImproveauthenticityVSAvoidprogramming complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent uses copying by creating a simplified representation of the authenticity check mechanism. Instead of requiring complex digital signature verification processes during programming, the system copies the essential authenticity data (signature and identifier) into a simplified data structure that can be directly used to bypass authenticity checks, reducing programming complexity while maintaining authenticity.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS10038565B2Methods and systems for bypassing authenticity checks for secure control modules
Publication Date: 2018.07.31 GM GLOBAL TECHNOLOGY OPERATIONS LLC
  • US10038565B2 patent drawing
  • US10038565B2 patent drawing
  • US10038565B2 patent drawing

AI summary

Methods and systems are provided for bypassing an authenticity check for a secure control module. In one embodiment, a method includes: receiving authenticity data from a secure source, wherein the authenticity data includes a signature and an identifier that is unique to the control module; programming the control module with the authenticity data; and bypassing the authenticity check of a control program of the control module based on the authenticity data.