Vehicle Authentication Control Using Time-Based Relay Attack Detection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current vehicle remote control systems are vulnerable to hacking through relay attacks, where authentication signals are intercepted and relayed to deceive the vehicle into authenticating unauthorized user terminals, compromising security and convenience.
Innovation Solution
A vehicle communication system that includes a control unit capable of determining an authentication allowed time based on terminal information, calculating compensation times, and authenticating user terminals by comparing elapsed authentication times with pre-determined allowed times to differentiate between normal and abnormal authentication processes, thereby preventing relay attacks.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional remote control authentication is used, then ease of operation is improved, but reliability deteriorates due to vulnerability to relay attacks
Solution Approach 1:
The patent changes the authentication parameter from simple signal presence to time-based verification. By measuring the elapsed time between search signal transmission and response signal reception, and comparing it against an authentication allowed time, the system transforms the authentication mechanism to detect relay attacks while maintaining user convenience.
Solution Approach 2:
The system implements feedback by measuring the authentication elapsed time and using this information to determine whether authentication should be granted. The control unit continuously monitors the time parameter and provides feedback by either approving or rejecting authentication based on whether the elapsed time exceeds the allowed threshold.
2Ease of operation
If authentication time is extended to accommodate normal variations, then ease of operation is improved, but reliability deteriorates as relay attacks become more feasible
Solution Approach 1:
The authentication allowed time is determined dynamically based on terminal information rather than being a fixed value. The control unit adjusts the authentication allowed time according to the specific terminal characteristics, creating a dynamic authentication mechanism that adapts to different devices while maintaining security against relay attacks.
Solution Approach 2:
The system changes the authentication parameter from a static time threshold to a dynamic value derived from terminal information. By calculating the authentication allowed time based on terminal-specific data, the system allows flexibility for normal authentication variations while maintaining a security threshold that prevents relay attacks.
3Reliability
If time-based authentication verification is implemented, then reliability is improved, but device complexity increases
Solution Approach 1:
The control unit determines the authentication allowed time in advance based on terminal information before the actual authentication occurs. This preliminary calculation of the time threshold simplifies the authentication process by pre-establishing the verification criterion, reducing the complexity of real-time decision-making during authentication.
Solution Approach 2:
The patent transforms the authentication process by introducing a time parameter that is calculated once based on terminal information and then used for verification. This parameter change from signal-based to time-based authentication improves reliability while the one-time calculation approach minimizes the increase in device complexity.
Data Source
AI summary
Provided is a vehicle including: a communication unit configured to communicate with a user terminal; and a control unit configured to, upon receiving a response signal including terminal information of the user terminal from the user terminal, determine an authentication allowed time for authenticating the user terminal on the basis of the terminal information, generate user information including the terminal information and the authentication allowed time corresponding to the terminal information, and authenticate the user terminal on the basis of the generated user information.


