IP Library › Granted Patent US 12,587,856
Granted Patent B2
US 12,587,856 · App. 18/578,840 · Granted Mar 24, 2026

Mobile device, method for operating a mobile device, and vehicle

Inventors: Osman Aydin (Leinfelden-Echterdingen, DE); Viktor Pavlovic (Stuttgart, DE)
Assignee: MERCEDES-BENZ GROUP AG
H04W12/121
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,587,856
App. No.
18/578,840
Granted
Mar 24, 2026
Kind
B2
Abstract

A mobile device includes an operating system and at least two SIM profiles for providing several independent mobile connections. Network traffic is exchanged via at least one mobile connection with a mobile network and information transmitted with the network traffic is identified. The mobile device includes an intrusion detection system or an intrusion detection and defense system configured to identify at least the information transmitted with the network traffic. The intrusion detection system or the intrusion detection and defense system is arranged in a direction of the information flow of network traffic received from at least one mobile connection upstream of the operating system.

Claims (46)

1 . A mobile device comprising:

an operating system;

at least two SIM profiles configured to provide several independent mobile connections, wherein network traffic is exchanged via at least one mobile connection with a mobile network and information transmitted with the network traffic is identified; and

an intrusion detection system or an intrusion detection and defense system configured to identify at least the information transmitted with the network traffic,

wherein the intrusion detection system or the intrusion detection and defense system is arranged in a direction of the information flow of network traffic received from at least one mobile connection upstream of the operating system of the mobile device,

wherein a deep packet inspection module is integrated into the intrusion detection system or the intrusion detection and defense system, and

wherein the deep packet inspection module is configured to analyze decrypted data packets of the network traffic received from the at least one mobile connection prior to the operating system of the mobile device by checking headers and contents of the decrypted data packets.

2 . The mobile device of claim 1 , further comprising:

a firewall arranged downstream of the intrusion detection system or the intrusion detection and defense system in the direction of the information flow.

3 . The mobile device of claim 1 , wherein the intrusion detection system or the intrusion detection and defense system is configured to monitor, control, and filter the network traffic.

4 . The mobile device of claim 1 , wherein the intrusion detection system or the intrusion detection and defense system is integrated into a modem of the mobile device.

5 . The mobile device of claim 1 , wherein the mobile device is a mobile terminal or telecommunications module of a vehicle.

6 . The mobile device of claim 1 , wherein the intrusion detection system or the intrusion detection and defense system is further configured to:

detect a security threat for the mobile device; and

responsive to the detection of the security threat

reconfigure the operating system to adapt system behavior of the mobile device to the security threat, or

restrict a functionality of at least one hardware or software component downstream of the mobile device in the direction of the information flow.

7 . A method for operating a mobile device comprising an operating system and at least two SIM profiles configured to provide several independent mobile connections, the method comprising:

identifying, by an intrusion detection system or an intrusion detection and defense system of the mobile device, at least information transmitted with network traffic exchanged via at least one network connection with a mobile network, wherein one of the at least two SIM profiles is used for the at least one network connection, and wherein the intrusion detection system or the intrusion detection and defense system is arranged in a direction of the information flow of network traffic received from at least one mobile connection upstream of the operating system of the mobile device;

detecting, by the intrusion detection system or the intrusion detection and defense system, a security threat for the mobile device; and

responsive to the detection of the security threat

reconfiguring the operating system to adapt system behavior of the mobile device to the security threat, or

restricting a functionality of at least one hardware or software component downstream of the mobile device in the direction of the information flow.

8 . The method of claim 7 , wherein the system behavior is adapted in such a way that the mobile device

logs events or information,

at least one functionality provided by the mobile device is restricted or deactivated, or

a selected path for transferring the network traffic is changed.

9 . The method of claim 7 , wherein after detecting a security threat for the mobile device, a functionality of at least one mobile connection is restricted.

10 . The method of claim 9 , wherein network traffic exchanged via a first mobile connection is adjusted when the mobile device receives a trigger via a second mobile connection.

11 . A vehicle, comprising:

a mobile device, which comprises

an operating system;

at least two SIM profiles configured to provide several independent mobile connections, wherein network traffic is exchanged via at least one mobile connection with a mobile network and information transmitted with the network traffic is identified; and

an intrusion detection system or an intrusion detection and defense system configured to identify at least the information transmitted with the network traffic, wherein the intrusion detection system or the intrusion detection and defense system is arranged in a direction of the information flow of network traffic received from at least one mobile connection upstream of the operating system of the mobile device,

wherein a deep packet inspection module is integrated into the intrusion detection system or the intrusion detection and defense system, and

wherein the deep packet inspection module is configured to analyze decrypted data packets of the network traffic received from the at least one mobile connection prior to the operating system of the mobile device by checking headers and contents of the decrypted data packets.

12 . The vehicle of claim 11 , wherein the intrusion detection system or the intrusion detection and defense system is further configured to:

detect a security threat for the mobile device; and

responsive to the detection of the security threat

reconfigure the operating system to adapt system behavior of the mobile device to the security threat, or

restrict a functionality of at least one hardware or software component downstream of the mobile device in the direction of the information flow.

13 . The vehicle of claim 11 , wherein the mobile device further comprises:

a firewall arranged downstream of the intrusion detection system or the intrusion detection and defense system in the direction of the information flow.

14 . The vehicle of claim 11 , wherein the intrusion detection system or the intrusion detection and defense system is configured to monitor, control, and filter the network traffic.

15 . The vehicle of claim 11 , wherein the intrusion detection system or the intrusion detection and defense system is integrated into a modem of the mobile device.

16 . The vehicle of claim 11 , wherein the mobile device is a telecommunications module of the vehicle.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 12, 2024
From: AYDIN, OSMAN; PAVLOVIC, VIKTOR
To: MERCEDES-BENZ GROUP AG
Reel/Frame 066109/0810 →
Priority Claims (1)
DE 10 2021 003 596.8 · Jul 13, 2021 · national
Continuity (1)
Related Publication 20240323693A1 · Sep 26, 2024
References Cited (22)
US 9801045B2 · Ho · 2017 [cited by examiner]
US 9807613B2 · Egner · 2017 [cited by examiner]
US 9894601B2 · Murray et al. · 2018 [cited by applicant]
US 10735944B2 · Syed · 2020 [cited by examiner]
US 11082855B2 · Khan · 2021 [cited by examiner]
US 11356841B2 · Lee · 2022 [cited by examiner]
US 11711691B2 · Gundavelli · 2023 [cited by examiner]
US 11785662B2 · Prakash · 2023 [cited by examiner]
US 12225503B2 · Esswie · 2025 [cited by examiner]
US 20140004829A1 · Rieger et al. · 2014 [cited by applicant]
US 20150271138A1 · Lukin et al. · 2015 [cited by applicant]
US 20160269891A1 · Chen · 2016 [cited by examiner]
US 20200274851A1 · Qiao et al. · 2020 [cited by applicant]
DE 102016114321A1 · 2017 [cited by applicant]
DE 102017128063A1 · 2019 [cited by applicant]
WO 2014105309A1 · 2014 [cited by applicant]
Office Action dated Jun. 16, 2025 in related/corresponding EP Application No. 22744400.7. [cited by applicant]
Office Action dated Jun. 16, 2025 in related/corresponding KR Application No. 10-2023-7045514. [cited by applicant]
Office Action dated Dec. 3, 2024 in related/corresponding JP Application No. 2024501547. [cited by applicant]
HT Auto Desk; “This SUV has dual sim connectivity, just like your smartphone;” Jan. 14, 2020; https://auto.hindustantimes.com/auto/cars/this-suv-has-dual-simconnectivity-just-like-your-smartphone-41578976136569.html. [cited by applicant]
International Search Report and Written Opinion mailed Oct. 27, 2022 in related/corresponding International Application No. PCT/EP2022/068013. [cited by applicant]
Office Action created Mar. 25, 2022 in related/corresponding DE Application No. 10 2021 003 596.8. [cited by applicant]