Vehicle Start Control Using Occupant Detection Against Relay Attacks

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing vehicle communication systems face challenges in accurately distinguishing between authorized and unauthorized signals, leading to potential engine start issues due to relay attacks, which can prevent authorized occupants from starting the vehicle.

Innovation Solution

An on-vehicle control device that includes a transmission unit, authentication unit, detection unit, and different determination thresholds to differentiate between authorized and unauthorized signals, allowing the engine to start only when an authorized occupant is detected.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If relay attack detection is implemented to prevent unauthorized engine starts, then vehicle security is improved, but authorized occupants may be erroneously blocked from starting the vehicle

Engineering Contradiction:
Improvevehicle securityVSAvoidengine start availability for authorized occupants
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary authentication of the mobile device before allowing engine start, and detects occupied state in advance. When the vehicle is detected as occupied by the authorized occupant, the system pre-approves the engine start request, bypassing the relay attack detection that would otherwise block it. This resolves the contradiction by preparing the approval state beforehand based on occupancy detection.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system continuously monitors the vehicle's occupied/unoccupied state and uses this feedback to dynamically adjust the engine start control logic. When feedback indicates the vehicle is occupied by an authorized occupant, the system modifies its relay attack detection behavior to permit engine start. This feedback mechanism ensures that security measures adapt to the actual usage context, preventing false rejections of authorized starts.

Inventive Principle:
Principle #23Feedback

2Reliability

If relay attack detection sensitivity is increased to block unauthorized starts, then security against relay attacks is improved, but the accuracy of distinguishing authorized signals deteriorates

Engineering Contradiction:
Improverelay attack preventionVSAvoidsignal authentication accuracy
Core Design Contradiction:
ReliabilityVSMeasurement precision

Solution Approach 1:

The system applies different authentication criteria and detection thresholds depending on the local context of vehicle occupancy status. When the vehicle is detected as occupied by an authorized occupant, the system uses more lenient authentication criteria that allow authorized signals to pass through. When unoccupied, stricter criteria are applied to block relay attacks. This localized adaptation of authentication quality resolves the contradiction between security and accuracy.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS11993226B2On-vehicle control device, on-vehicle control method and computer program
Publication Date: 2024.05.28 SUMITOMO WIRING SYSTEMS LTD
  • US11993226B2 patent drawing
  • US11993226B2 patent drawing
  • US11993226B2 patent drawing

AI summary

An on-vehicle control device includes a transmission unit transmitting to a mobile device a response request signal requesting a response in response to operation of instructing a start of a driving source causing a vehicle to drive. An authentication unit authenticates the mobile device and performs start control of the driving source depending on success or failure of authentication by the authentication unit. A determination unit determines a presence or an absence of unauthorized authentication for the authentication unit. A detection unit detects an authorized occupant for the vehicle. A start prohibition unit prohibits the start of the driving source when the determination unit determines that unauthorized authentication is present for the authentication unit. A start permission unit permits the start of the driving source regardless of determination by the determination unit when the detection unit detects the occupant.