IP Library Granted Patent US 12,499,230
Granted Patent B2
US 12,499,230 · App. 17/284,359 · Granted Dec 16, 2025

Method for detecting safety-relevant data streams

Inventor: Peter Priller (Gratwein-Strassengel, AT)
Assignee: AVL LIST GMBH
G06F21/566G06F9/45558G06F11/3457G06F21/565G06F2009/45587G06F2221/034G06F2221/2141
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,499,230
App. No.
17/284,359
Granted
Dec 16, 2025
Kind
B2
Abstract

A method for detecting safety-relevant data streams which occur in a hardware system during the execution of at least one data processing task. In one example embodiment, the method includes the steps of: defining critical data via an interface, mapping of the hardware system onto a simulation model capable of running in a simulation environment; executing the at least one data processing task as a simulation with the simulation model in the simulation environment, monitoring the creation, transmission and deletion of the critical data and instances of the critical data in the simulation model during the execution of the at least one data processing task, and identifying and logging the security-relevant data streams.

Claims (17)

1 . Method for detecting security relevant data streams which occur in a hardware system during the execution of at least one data processing task, the method including the following steps:

dividing the hardware system into a variety of hardware components for mapping the hardware system onto a simulation model; wherein the hardware components are connected to one another via at least one communication device and configured and arranged to exchange data via this communication device; wherein each of the hardware components has at least one communication unit, at least one storage unit and at least one processor unit;

mapping the hardware system onto the simulation model capable of running in a simulation environment, and simulating the data streams, occurring during the execution of the at least one data processing task, with the simulation model of the hardware system, wherein the data streams executed by the individual hardware components are observed and logged during the simulation in the simulation environment and wherein the data streams comprise creating a copy of a datum stored at a storage address of a storage unit at another storage address of the same storage unit or a different storage unit, changing a datum or a copy of a datum, deleting a datum stored at a storage address of a storage unit, transmitting a datum from a hardware component via a communication device used by a plurality of hardware components to one or more other hardware components or transmitting and receiving data via external interfaces of the hardware system;

defining critical data, which may be stored in at least one storage unit of the hardware system and/or transferred to the hardware system via an interface, wherein the hardware components of the hardware system are divided into a permitted domain and a prohibited domain based on whether the processor is running in a user or kernel mode, and wherein at least the following data streams are identified as security-relevant data streams:

transmission of a critical datum or instances thereof via a communication device of the prohibited domain,

deletion of a critical datum while an instance of the critical datum continues to exist,

creation of an instance of a critical datum in the prohibited domain,

continued existence of a critical datum after a particular point in time and/or system status;

monitoring the creation, transmission and deletion of the critical data and instances of the critical data in the simulation model during the execution of the at least one data processing task, and

identifying and logging the security-relevant data streams.

2 . The method according to claim 1 , characterized in that the critical data is defined by defining data properties.

3 . The method according to claim 1 , further including creating a warning message when at least security-relevant data streams are identified.

4 . The method according to claim 3 , characterized in that the evaluation is displayed graphically.

5 . The method according to claim 1 , characterized in that the detected security relevant data streams are stored in an evaluation.

6 . The method according to claim 1 , characterized in that the course of the simulation is logged.

7 . The method according to claim 1 , characterized in that the at least one data processing task results from the execution of application software, which is operated, if applicable, while processing defined test cases.

8 . The method of claim 1 , wherein the continued existence of the critical datum after a critical point in time and/or system status is after completion of the at least one data processing task.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 4, 2021
From: PRILLER, PETER
To: AVL LIST GMBH
Reel/Frame 057075/0316 →
Priority Claims (1)
AT A 50889/2018 · Oct 11, 2018 · national
Continuity (1)
Related Publication 20210342249A1 · Nov 4, 2021
References Cited (31)
US 8127360B1 · Wilhelm et al. · 2012 [cited by applicant]
US 8584239B2 · Aziz · 2013 [cited by examiner]
US 8881282B1 · Aziz · 2014 [cited by examiner]
US 8996864B2 · Maigne · 2015 [cited by examiner]
US 9479526B1 · Yang · 2016 [cited by examiner]
US 9519781B2 · Golshan · 2016 [cited by examiner]
US 9846774B2 · Alme · 2017 [cited by examiner]
US 10146937B2 · Fischer · 2018 [cited by examiner]
US 10740459B2 · Diehl · 2020 [cited by examiner]
US 12013941B2 · Kurtz · 2024 [cited by examiner]
US 20130139262A1 · Glew et al. · 2013 [cited by applicant]
US 20160085567A1 · Holler · 2016 [cited by applicant]
US 20170185437A1 · Thomas et al. · 2017 [cited by applicant]
US 20180032760A1 · Hu et al. · 2018 [cited by applicant]
US 20190258805A1 · Elovici · 2019 [cited by examiner]
US 20200202008A1 · Pfleger de Aguiar · 2020 [cited by examiner]
CN 1711525A · 2005 [cited by applicant]
CN 108255711A · 2018 [cited by applicant]
JP 2005301981A · 2005 [cited by applicant]
JP 2013242633A · 2013 [cited by applicant]
JP 2014225160A · 2014 [cited by applicant]
WO 2015067649A1 · 2015 [cited by applicant]
WO 2016141998A1 · 2016 [cited by applicant]
Bayer, U., et al. “Dynamic analysis of malicious code” J. Computer Virology, vol. 2, pp. 67-77 (2006) (Year: 2006). [cited by examiner]
Jacob, G., et al. “Behavioral detection of malware: from a survey towards an established taxonomy” J. Computer Virology, vol. 4, pp. 251-266 (2008) (Year: 2008). [cited by examiner]
Cao, Y., et al. “Osiris: A Malware Behavior Capturing System Implemented at Virtual Machine Monitor Layer” Hindawi, Mathematical Problems in Engineering, vol. 2013, article ID 402438 (2013) (Year: 2013). [cited by examiner]
Gruss, D.Maurice, C.Wagner, K.Mangard, S.: “International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment”, Jul. 2016, Springer, article “Rowhammer.js: A remote software-induced fault att… [cited by applicant]
Hu, W.Irturk, A.Tiwari, M.Sherwood, T.Kastner, R.: “Proceedings of the 48th Design Automation Conference”, Jun. 2011, ACM, article “Information flow isolation in 12C and USB”, pp. 254-259. [cited by applicant]
Kocher, P. C.: “Annual International Cryptology Conference”, Aug. 1996, Springer, article “Timing attacks on implementations of Diffie-Hellman, RSA, DSS, and other systems”, pp. 104-113. [cited by applicant]
Lipp M.Gruss D.Schwarz M.Bidner D.Maurice C.Mangard S.: “Computer Security—ESORICS 2017”, vol. 10493, Sep. 2017, article “Practical Keystroke Timing Attacks in Sandboxed JavaScript”. [cited by applicant]
Ye, X.Fan, D.Sun, N.Tang, S.Zhang, M.Zhang, H.: “Proceedings of the 2013 International Symposium on Low Power Electronics and Design”, Sep. 2013, IEEE Press, article “SimICT: A fast and flexible framework for performanc… [cited by applicant]