Vehicle Start Control Using Occupant Detection Against Relay Attacks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing vehicle communication systems face challenges in accurately distinguishing between authorized and unauthorized signals, leading to potential engine start issues due to relay attacks, which can prevent authorized occupants from starting the vehicle.
Innovation Solution
An on-vehicle control device that includes a transmission unit, authentication unit, detection unit, and different determination thresholds to differentiate between authorized and unauthorized signals, allowing the engine to start only when an authorized occupant is detected.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If relay attack detection is implemented to prevent unauthorized engine starts, then vehicle security is improved, but authorized occupants may be erroneously blocked from starting the vehicle
Solution Approach 1:
The system performs preliminary authentication of the mobile device before allowing engine start, and detects occupied state in advance. When the vehicle is detected as occupied by the authorized occupant, the system pre-approves the engine start request, bypassing the relay attack detection that would otherwise block it. This resolves the contradiction by preparing the approval state beforehand based on occupancy detection.
Solution Approach 2:
The system continuously monitors the vehicle's occupied/unoccupied state and uses this feedback to dynamically adjust the engine start control logic. When feedback indicates the vehicle is occupied by an authorized occupant, the system modifies its relay attack detection behavior to permit engine start. This feedback mechanism ensures that security measures adapt to the actual usage context, preventing false rejections of authorized starts.
2Reliability
If relay attack detection sensitivity is increased to block unauthorized starts, then security against relay attacks is improved, but the accuracy of distinguishing authorized signals deteriorates
Solution Approach 1:
The system applies different authentication criteria and detection thresholds depending on the local context of vehicle occupancy status. When the vehicle is detected as occupied by an authorized occupant, the system uses more lenient authentication criteria that allow authorized signals to pass through. When unoccupied, stricter criteria are applied to block relay attacks. This localized adaptation of authentication quality resolves the contradiction between security and accuracy.
Data Source
AI summary
An on-vehicle control device includes a transmission unit transmitting to a mobile device a response request signal requesting a response in response to operation of instructing a start of a driving source causing a vehicle to drive. An authentication unit authenticates the mobile device and performs start control of the driving source depending on success or failure of authentication by the authentication unit. A determination unit determines a presence or an absence of unauthorized authentication for the authentication unit. A detection unit detects an authorized occupant for the vehicle. A start prohibition unit prohibits the start of the driving source when the determination unit determines that unauthorized authentication is present for the authentication unit. A start permission unit permits the start of the driving source regardless of determination by the determination unit when the detection unit detects the occupant.


