IP Library › Granted Patent US 12,386,961
Granted Patent B2
US 12,386,961 · App. 18/272,094 · Granted Aug 12, 2025

Falsification detection device, falsification detection method, and falsification detection program

Inventors: Yuki Yamanaka (Tokyo, JP); Manami Ito (Tokyo, JP); Ryota Sato (Tokyo, JP); Hiroyoshi Takiguchi (Tokyo, JP); Nobuhiro Chiba (Tokyo, JP); Yoshiaki Nakajima (Tokyo, JP)
Assignee: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
G06F21/565G06F21/566G06F2221/033
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,386,961
App. No.
18/272,094
Granted
Aug 12, 2025
Kind
B2
Abstract

A tampering detection device includes tampering detection circuitry configured to acquire an access frequency of a monitoring target file, calculate a number of times of scanning in a scan pattern for each monitoring target file on a basis of the access frequency acquired, and determine the scan pattern on a basis of the number of times of scanning calculated.

Claims (21)

1. A tampering detection device comprising: tampering detection circuitry configured to:

acquire information on resources of a monitoring target device, an access frequency and a file size of a monitoring target file in the monitoring target device, and a scan pattern set time;

calculate a time required for hash calculation using the information on resources and the file size acquired by the acquisition step, and calculate a number of times of scanning in a scan pattern for each monitoring target file on a basis of the time required for hash calculation and the access frequency; and

determine the scan pattern on a basis of the number of times of scanning calculated.

2. The tampering detection device according to claim 1 , wherein the tampering detection circuitry configured to

calculate the number of times of scanning thereby minimizing an average time lapse between an occurrence of scanning the monitoring target file and a first-time occurrence of an access to the monitoring target file subsequent to the occurrence.

3. The tampering detection device according to claim 1 , wherein the tampering detection circuitry configured to

randomly determine a scan pattern in which all the monitoring target files are included at least once on a basis of the number of times of scanning.

4. The tampering detection device according to claim 1 , wherein the tampering detection circuitry configured to

acquire the access frequency from a monitoring target device that stores the monitoring target file, and

the tampering detection device further comprises: tampering detection circuitry configured to:

transmit the scan pattern to the monitoring target device; and

verify whether or not the file has been tampered by using a digest of a file generated on a basis of the scan pattern by the monitoring target device.

5. A tampering detection method executed by a tampering detection device, the method comprising:

acquiring information on resources of a monitoring target device, an access frequency and a file size of a monitoring target file in the monitoring target device, and a scan pattern set time;

calculating a time required for hash calculation using the information on resources and the file size acquired by the acquiring process, and calculating a number of times of scanning in a scan pattern for each monitoring target file on a basis of the time required for hash calculation and the access frequency; and

determining the scan pattern on a basis of the number of times of scanning calculated.

6. A non-transitory computer-readable recording medium storing therein a tampering detection program causing a computer to execute a process comprising:

acquiring information on resources of a monitoring target device, an access frequency and a file size of a monitoring target file in the monitoring target device, and a scan pattern set time;

calculating a time required for hash calculation using the information on resources and the file size acquired by the acquisition step, and calculating a number of times of scanning in a scan pattern for each monitoring target file on a basis of the time required for hash calculation and the access frequency; and

determining the scan pattern on a basis of the number of times of scanning calculated.

Assignments (2)
CHANGE OF NAME Recorded Oct 3, 2025
From: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
To: NTT, INC.
Reel/Frame 073007/0308 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 12, 2023
From: YAMANAKA, YUKI; ITO, MANAMI; SATO, RYOTA; TAKIGUCHI, HIROYOSHI; CHIBA, NOBUHIRO; NAKAJIMA, YOSHIAKI
To: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
Reel/Frame 064234/0051 →
Continuity (1)
Related Publication 20240303332A1 · Sep 12, 2024
References Cited (10)
US 10733183B2 · Parayatham · 2020 [cited by examiner]
US 20200034534A1 · Toley · 2020 [cited by examiner]
US 20210216659A1 · Kinoshita · 2021 [cited by examiner]
US 20220222342A1 · Ma · 2022 [cited by examiner]
AU 2021419776A1 · 2023 [cited by examiner]
JP 2004013607A · 2004 [cited by examiner]
JP 2010211453A · 2010 [cited by applicant]
JP 2019008376A · 2019 [cited by applicant]
JP 2019008732A · 2019 [cited by applicant]
JP 2019207661A · 2019 [cited by applicant]