On-Board Network Fraud Rule Updates for Malicious Frame Detection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing on-board network systems in vehicles lack an efficient method to update fraud detection rules, leading to increased risks of malicious ECUs bypassing security measures and transmitting abnormal messages, as the rules are often fixed and not easily modifiable.
Innovation Solution
A fraud detection rule updating method and system that allows for the determination of malicious frames based on dynamic rules, where an external device can deliver updated fraud detection rules to a fraud detecting ECU, which updates its stored rules if certain conditions are met, such as a change in vehicle status or bus type, ensuring compliance with the latest security protocols.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If fraud detection rules are fixed and not easily modifiable, then system stability is maintained, but the system cannot adapt to new malicious patterns and security protocols
Solution Approach 1:
The patent implements dynamic fraud detection rules that can be updated during system operation. The ECU receives updated rules from an external device and applies them without requiring system reconfiguration or restart, allowing the system to adapt to new malicious patterns while maintaining operational stability.
Solution Approach 2:
The patent introduces an intermediary update mechanism where updated fraud detection rules are transmitted through a predetermined communication path from an external device to the ECU. This intermediary process allows rule updates without direct system intervention, balancing adaptability with operational simplicity.
2Reliability
If fraud detection rules are updated frequently to maintain security, then security reliability is improved, but system complexity and update management become more difficult
Solution Approach 1:
The patent implements a feedback mechanism where the ECU determines whether updated fraud detection rules should be applied based on current system state and update conditions. This feedback loop ensures that updates are performed only when appropriate, maintaining security reliability while preventing unnecessary update complexity.
Solution Approach 2:
The ECU autonomously determines whether to apply updated rules by evaluating update conditions internally. This self-service approach allows the system to manage its own update process without external intervention, simplifying update management while maintaining high security reliability.
3Measurement precision
If the system monitors all message transmissions to detect malicious frames, then detection precision is improved, but processing time and computational load increase
Solution Approach 1:
The patent applies fraud detection rules selectively based on message characteristics and update conditions. Rather than uniformly processing all messages with maximum scrutiny, the system applies detection at appropriate levels, maintaining precision for critical messages while reducing processing time for routine communications.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Provided is a fraud detection rule updating method enabling the updating of rules that serve as the basis for detecting malicious frames as necessary in an on-board network system. In an on-board network system equipped with multiple electronic control units (ECUs) (100a to 100e) that communicate via buses and fraud detecting ECUs (400a to 400c) that determine, based on fraud detection rules, whether messages transmitted on the buses conform to the rules, a fraud detection rule updating method is used in which delivery data including updated fraud detection rules is received from a server (500) external to the on-board network system, and if a certain update condition is satisfied, the fraud detection rules in a fraud detecting ECU (400a) are updated to the updated fraud detection rules.