-
公开(公告)号:US20230394149A1
公开(公告)日:2023-12-07
申请号:US18236031
申请日:2023-08-21
Inventor: Kento TAMURA , Jun ANZAI , Toshihisa NAKANO , Yoshiharu IMAMOTO
CPC classification number: G06F21/566 , G06F9/45558 , G06F2009/45591 , G06F2221/034
Abstract: The monitoring system is a system that monitors a virtualization system, the system including: a VM monitor and a request monitor each of which has a different authority, monitors the virtualization system, and detects an anomaly; and a determiner that determines a state of the virtualization system based on monitoring results from the VM monitor and the request monitor.
-
公开(公告)号:US20230177140A1
公开(公告)日:2023-06-08
申请号:US18070221
申请日:2022-11-28
Inventor: Hitoshi ONO , Yoshiharu IMAMOTO , Kento TAMURA
IPC: G06F21/44
CPC classification number: G06F21/44
Abstract: An information processing device includes: a guest OS; a host OS that accesses a sector group stored in an external storage device in response to an access request from the guest OS; a virtualization control system that is executed on a hardware and controls execution of the guest OS and the host OS. The host OS includes: a back-end device driver that obtains the access request from the guest OS; and a sector group access determiner that determines whether or not the access request is anomalous, based on a sector group access rule database indicating a rule for accessing the sector group stored in the external storage device.
-
公开(公告)号:US20210237665A1
公开(公告)日:2021-08-05
申请号:US17239187
申请日:2021-04-23
Inventor: Kento TAMURA , Jun ANZAI , Yoshiharu IMAMOTO
IPC: B60R16/023 , G07C5/08 , G06F21/55
Abstract: A vehicle system is a vehicle system used for a vehicle, and includes: a plurality of in-vehicle apparatuses installed in the vehicle; and at least one of (i) a controller that, in accordance with a depth of penetration of a malicious attack carried out on the plurality of in-vehicle apparatuses, changes at least one of a communication method with an outside of the vehicle, a defense method against the malicious attack, or a storage method for logs pertaining to the plurality of in-vehicle apparatuses, or (ii) a determiner that determines whether or not the malicious attack is being carried out based on anomaly detection in the plurality of in-vehicle apparatuses.
-
4.
公开(公告)号:US20200296015A1
公开(公告)日:2020-09-17
申请号:US16814657
申请日:2020-03-10
Inventor: Yoshiharu IMAMOTO
Abstract: An analysis ECU acquires information related to a first flow and information related to a second flow, the first flow and the second flow organizing packets transferred in a monitored system into respective groups. The analysis ECU acquires information related to a conversion that takes the first flow as input and the second flow as output. The analysis ECU acknowledges alert information generated in the monitored system and including information capable of identifying at least one flow. The analysis ECU generates, when the second flow is identified by the alert information, route information that includes at least one of the information related to the conversion and the information related to the first flow associated with the second flow in the information related to the conversion.
-
公开(公告)号:US20230401083A1
公开(公告)日:2023-12-14
申请号:US18236819
申请日:2023-08-22
Inventor: Yoshiharu IMAMOTO , Jun ANZAI , Toshihisa NAKANO
IPC: G06F9/455
CPC classification number: G06F9/45558 , G06F2009/45591 , G06F2009/45587
Abstract: An ECU (Electronic Control Unit) includes a HV (HyperVisor), and a first VM (Virtual Machine) and a second VM that operate on the HV. The first VM detects an abnormality in a process in the first VM. When the first VM detects an abnormality, the first VM notifies the second VM of information related to the abnormality via the HV. The second VM executes a process responsive to the abnormality, based on the information related to the abnormality provided from the first VM.
-
公开(公告)号:US20230306137A1
公开(公告)日:2023-09-28
申请号:US18104996
申请日:2023-02-02
Inventor: Tomonori MITSUGI , Yoshiharu IMAMOTO
CPC classification number: G06F21/6281 , G06F21/121 , G06F2221/2141
Abstract: An information processing device includes a guest OS and a host OS that accesses a sector group in response to an access request from the guest OS. The host OS includes: an access log analyzer that generates, by reference to a sector-group database, a sector-group access log from the access request; a sector-group access determiner that determines, based on the sector-group access log, whether the access request seeks to access the sector group related to an application; and a manager that updates, based on a developer definition policy, a sector-group access rule database and the sector-group database if it is determined that the access request seeks to access the sector group and the guest OS makes a change to an application storage area.
-
7.
公开(公告)号:US20220291944A1
公开(公告)日:2022-09-15
申请号:US17830104
申请日:2022-06-01
Inventor: Yoshiharu IMAMOTO
Abstract: In an ECU, virtualization software operates a first virtual machine (VM) and a second VM. A transfer unit of the second VM acknowledges communication data transmitted from the first VM and destined to the second VM. A transfer unit generates a parameter related to communication between the VMs, based on the communication data acknowledged. A detection unit of the second VM detects abnormal communication, based on the parameter generated by the transfer unit.
-
公开(公告)号:US20220284092A1
公开(公告)日:2022-09-08
申请号:US17825709
申请日:2022-05-26
Inventor: Takayoshi ITO , Kento TAMURA , Yoshiharu IMAMOTO , Junichi TSURUMI , Hiroyuki WADA
Abstract: An information processing device includes: a storage that stores determination criterion information indicating a determination criterion for determining whether or not a behavior of an application operating on a device provided to a vehicle is normal; and a detector that obtains behavior information indicating the behavior of the application, and detects an anomaly in the behavior of the application, based on (i) state information that indicates a state of the mobility and is obtained via the mobility network and (ii) the behavior information obtained and the determination criterion information stored in the storage.
-
公开(公告)号:US20220080989A1
公开(公告)日:2022-03-17
申请号:US17466359
申请日:2021-09-03
Inventor: Hiroyuki WADA , Yoshiharu IMAMOTO , Toru IWANO , Takayuki FUJII
IPC: B60W50/029 , G06F21/74 , G06F9/455 , G06F21/55 , B60W50/02
Abstract: An information processing apparatus includes: a communication device that communicates with an external apparatus outside the information processing apparatus; a memory that includes a protected region and an unprotected region; a processor that operates in a first mode and a second mode, the first mode being a mode in which access to the protected region and access to the unprotected region are allowed, the second mode being a mode in which access to the protected region is prohibited and access to the unprotected region is allowed; a first device controller that controls the communication device by the processor operating in the first mode; a virtual machine manager that causes one or more virtual machines to operate by the processor operating in the second mode; and a second device controller that controls the communication device by the processor operating in the second mode.
-
-
-
-
-
-
-
-