Security Device for Mobile Vehicle Command Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The increasing complexity of automotive systems and the trend towards simplified access through mobile devices have compromised vehicle security, making them vulnerable to hacking, as control units are connected via a common data bus, allowing unauthorized access and potential manipulation of control algorithms.

Innovation Solution

Moving vehicle control systems partially to a mobile device with integrated security mechanisms, using a security device to authenticate the mobile device and vehicle, ensuring secure data and command transmission, and blocking access when authenticity is not verified, thus preventing unauthorized control.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If control units are connected via a common data bus to enable simplified access and control, then ease of operation is improved, but security is worsened due to vulnerability to hacking and unauthorized access

Engineering Contradiction:
Improveaccess to vehicle systemsVSAvoidvehicle security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a security device as an intermediary component that sits between the mobile device and the vehicle's control units. This security device authenticates the mobile device before allowing communication, thereby maintaining ease of operation while preventing unauthorized access. The security device acts as a mediator that filters and validates all communications passing through the data bus.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the vehicle's control system into two distinct parts: authenticated control units that remain in the vehicle and authentication functionality that is moved to the mobile device. This segmentation allows the vehicle to maintain its control units while offloading security-critical authentication operations to the mobile device, thereby improving security without compromising operational simplicity.

Inventive Principle:
Principle #1Segmentation

2Reliability

If control units are moved to a mobile device to improve security, then reliability is improved, but device complexity is worsened due to integration requirements

Engineering Contradiction:
Improvevehicle securityVSAvoidsystem integration complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication functionality from the vehicle's control units and places it in the mobile device. This extraction allows the vehicle to maintain simpler control units while the mobile device handles the complex authentication and security operations. The control units remain in the vehicle but lose authentication capabilities, which are now performed externally by the mobile device.

Inventive Principle:
Principle #2Taking out (Extraction)

3Reliability

If authentication mechanisms are implemented to prevent hacking, then security is improved, but ease of operation is worsened due to additional verification steps

Engineering Contradiction:
Improvevehicle securityVSAvoidaccess to vehicle systems
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements preliminary authentication action where the security device verifies the mobile device's authenticity before allowing any communication. This preliminary verification ensures that only authenticated devices can access the vehicle systems, preventing hacking attempts before they can occur. The authentication happens in advance, so once verified, the operation becomes straightforward without repeated verification steps.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11259179B2Systems and methods for enabling transmission of data and commands between a mobile device and a vehicle
Publication Date: 2022.02.22 AO KASPERSKY LAB
  • US11259179B2 patent drawing
  • US11259179B2 patent drawing
  • US11259179B2 patent drawing

AI summary

Disclosed are systems and methods for enabling transmission of data and commands between a mobile device and a vehicle. An exemplary method comprises connecting a security device to a vehicle and to a mobile device, the security device having a protected memory, verifying, by the security device, an authenticity of the mobile device, allowing, by the security device, transmission of data and commands between the mobile device and at least one actuating device of the vehicle when the mobile device is verified as being authentic, transmitting, by the security device, results of executions of commands from the at least one actuating device of the vehicle to the mobile device.