Relay Attack Detection Using Signal Echo Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authorization systems using frequency hopping based carrier phase measurements are susceptible to malicious manipulations, particularly relay attacks that can compromise the accuracy of distance measurements, leading to unauthorized access.

Innovation Solution

A method to detect relay attacks by identifying at least two copies of an authentication signal in a received signal, utilizing power measurement, phase step detection, correlation analysis, and super-resolution signal analysis, which can verify results through multiple methods to enhance reliability.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Length of stationary object

If frequency hopping based carrier phase measurements are used for distance measurement, then the measurement range is extended, but the system becomes susceptible to relay attacks and malicious manipulations

Engineering Contradiction:
Improvemeasurement rangeVSAvoidsusceptibility to relay attacks
Core Design Contradiction:
Length of stationary objectVSReliability

Solution Approach 1:

The patent introduces an intermediary verification mechanism by analyzing the signal structure itself. Instead of directly trusting the measured distance, the system uses signal processing techniques (correlation analysis, power measurement) to detect whether the received signal is a genuine direct transmission or a manipulated relayed signal. This intermediary verification layer resolves the contradiction by maintaining extended measurement range while filtering out malicious manipulations through signal integrity checks.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Length of stationary object

If relay attacks are allowed to extend the reach of the system, then the operational range is increased, but the authorization system becomes compromised and unauthorized access is enabled

Engineering Contradiction:
Improveoperational reachVSAvoidunauthorized access
Core Design Contradiction:
Length of stationary objectVSObject-affected harmful factors

Solution Approach 1:

The patent converts the harmful effect of signal relaying into a beneficial detection mechanism. By analyzing the temporal and power characteristics of received signals, the system identifies the presence of relay attacks (which would normally be harmful) and uses this information to trigger security responses. The harm of extended reach through relaying is transformed into a detectable signature that enables the system to distinguish between legitimate extended operation and malicious relay attacks.

Inventive Principle:
Principle #22Blessing in disguise (Convert harm into benefit)

3Reliability

If multiple detection methods are used to verify signal authenticity, then the reliability of attack detection is improved, but the device complexity increases

Engineering Contradiction:
Improvedetection reliabilityVSAvoidcomplexity of signal analysis
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the signal analysis process into distinct, modular detection methods that can be independently implemented and combined. Each detection method (power measurement, correlation analysis, phase analysis) operates as a separate functional block that processes specific aspects of the signal. This segmentation allows the system to achieve high detection reliability through multiple verification methods while managing complexity by organizing the analysis into discrete, manageable components with clear interfaces.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS11348388B2Method for determining a relay attack, relay attack detecting device, and computer program
Publication Date: 2022.05.31 FRAUNHOFER GESELLSCHAFT ZUR FORDERUNG DER ANGEWANDTEN FORSCHUNG EV
  • US11348388B2 patent drawing
  • US11348388B2 patent drawing
  • US11348388B2 patent drawing

AI summary

A method to determine a relay attack on an authorization system granting permission on using a resource, includes receiving a signal from an authentication device; determining, whether at least two copies of an authentication signal are included in the signal; and concluding on a relay attack if at least two copies of the authentication signal are identified in the signal.