On-Board Network Fraud Rule Updates for Malicious Frame Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing on-board network systems in vehicles lack an efficient method to update fraud detection rules, leading to increased risks of malicious ECUs bypassing security measures and transmitting abnormal messages, as the rules are often fixed and not easily modifiable.

Innovation Solution

A fraud detection rule updating method and system that allows for the determination of malicious frames based on dynamic rules, where an external device can deliver updated fraud detection rules to a fraud detecting ECU, which updates its stored rules if certain conditions are met, such as a change in vehicle status or bus type, ensuring compliance with the latest security protocols.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If fraud detection rules are fixed and not easily modifiable, then system stability is maintained, but the system cannot adapt to new malicious patterns and security protocols

Engineering Contradiction:
Improveadaptability to new malicious patternsVSAvoidcomplexity of rule update mechanism
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements dynamic fraud detection rules that can be updated during system operation. The ECU receives updated rules from an external device and applies them without requiring system reconfiguration or restart, allowing the system to adapt to new malicious patterns while maintaining operational stability.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent introduces an intermediary update mechanism where updated fraud detection rules are transmitted through a predetermined communication path from an external device to the ECU. This intermediary process allows rule updates without direct system intervention, balancing adaptability with operational simplicity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If fraud detection rules are updated frequently to maintain security, then security reliability is improved, but system complexity and update management become more difficult

Engineering Contradiction:
Improvesecurity reliabilityVSAvoidcomplexity of rule update management
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a feedback mechanism where the ECU determines whether updated fraud detection rules should be applied based on current system state and update conditions. This feedback loop ensures that updates are performed only when appropriate, maintaining security reliability while preventing unnecessary update complexity.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The ECU autonomously determines whether to apply updated rules by evaluating update conditions internally. This self-service approach allows the system to manage its own update process without external intervention, simplifying update management while maintaining high security reliability.

Inventive Principle:
Principle #25Self-service

3Measurement precision

If the system monitors all message transmissions to detect malicious frames, then detection precision is improved, but processing time and computational load increase

Engineering Contradiction:
Improveprecision of malicious frame detectionVSAvoidprocessing time for message validation
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The patent applies fraud detection rules selectively based on message characteristics and update conditions. Rather than uniformly processing all messages with maximum scrutiny, the system applies detection at appropriate levels, maintaining precision for critical messages while reducing processing time for routine communications.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentEP4064614B1Irregularity detection rule update for an on-board network
Publication Date: 2023.11.01 PANASONIC INTELLECTUAL PROPERTY CORP OF AMERICA
  • EP4064614B1 patent drawingFigure 1
  • EP4064614B1 patent drawingFigure 2
  • EP4064614B1 patent drawingFigure 3

AI summary

Provided is a fraud detection rule updating method enabling the updating of rules that serve as the basis for detecting malicious frames as necessary in an on-board network system. In an on-board network system equipped with multiple electronic control units (ECUs) (100a to 100e) that communicate via buses and fraud detecting ECUs (400a to 400c) that determine, based on fraud detection rules, whether messages transmitted on the buses conform to the rules, a fraud detection rule updating method is used in which delivery data including updated fraud detection rules is received from a server (500) external to the on-board network system, and if a certain update condition is satisfied, the fraud detection rules in a fraud detecting ECU (400a) are updated to the updated fraud detection rules.