Vehicle Authentication Using RSSI Session Keys Against Relay Attacks

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Keyless entry systems for vehicles are vulnerable to relay attacks, where attackers can impersonate the vehicle and unlock it remotely, compromising security.

Innovation Solution

A remote server-based authentication method using session keys generated from wireless signal strength indicators (RSSIs) to verify the legitimacy of user devices, eliminating direct communication between the vehicle and the user equipment, thereby preventing relay and other attacks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Speed

If direct communication between vehicle and UE is used for authentication, then authentication speed is improved, but security against relay and replay attacks deteriorates

Engineering Contradiction:
Improveauthentication speedVSAvoidsecurity against relay and replay attacks
Core Design Contradiction:
SpeedVSReliability

Solution Approach 1:

The patent introduces a server as an intermediary component that mediates the authentication process between the vehicle and UE. The server generates session keys and verifies authentication results, preventing direct communication that enables relay and replay attacks while maintaining authentication efficiency through centralized key management

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If session keys are generated and transmitted directly between vehicle and UE, then authentication efficiency is improved, but information leakage risk increases

Engineering Contradiction:
Improveauthentication efficiencyVSAvoidinformation leakage during authentication
Core Design Contradiction:
ProductivityVSLoss of information

Solution Approach 1:

The server acts as a secure intermediary that generates session keys using quantum random number generation and distributes them to the vehicle and UE through encrypted channels. This eliminates direct key exchange between vehicle and UE, preventing information leakage while maintaining authentication efficiency

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces traditional cryptographic key exchange mechanisms with quantum random number generation for session key creation. This substitution provides information-theoretic security, ensuring that session keys cannot be predicted or intercepted, thus preventing information leakage while maintaining efficient authentication

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS12592833B2Method for authentication and related devices
Publication Date: 2026.03.31 YINWANG INTELLIGENT TECHNOLOGIES CO LTD
  • US12592833B2 patent drawing
  • US12592833B2 patent drawing
  • US12592833B2 patent drawing

AI summary

A method for authentication and related devices includes obtaining a first session key BS1 generated according to a set X and a set Y. The set X is a set of samples of received signal strength indicators (RSSIs) of a wireless channel of a user equipment (UE), and the set Y is a set of samples of RSSIs of a wireless channel of a vehicle. Upon receiving a second message from the UE, wherein the second message is hashed by a second session key BS2, extracting the second session key BS2 from the second message. When the first session key BS1 is the same as the second session key BS2, the authentication between the UE and the vehicle is successful.