Avionics protection apparatus and method
First Claim
1. An apparatus for protecting electrical and/or electronic device(s) coupled to a data bus from a threat, the data bus comprising two differential signal lines within a shield, said apparatus comprising:
- a data bus coupler comprising one or more connections with at least one differential signal line, said one or more connections configured to acquire analog signal(s) conducted through the at least differential signal line;
a sensor coupled to said data bus coupler, said sensor configured to capture said acquired analog signals;
one or more processors or logic devices; and
a non-transitory computational medium comprising executable instructions that, when executed by said one or more processors or logic devices, cause said one or more processors or logic devices to perform the following steps on said captured analog signals;
measuring a feature value in at least one region of a time domain or a frequency domain of said captured analog signals,calculating a difference value between said measured feature value and one or more baseline feature values, anddetermining, based on said calculated value, a presence or an absence of said threat to the electrical and/or electronic devices.
1 Assignment
0 Petitions
Accused Products
Abstract
An apparatus for a network of electrical and/or electronic devices coupled to a data bus comprises a sensor coupled to the data bus and configured to capture information content communicated through the data bus in a form of electromagnetic emissions being at least one of differential mode electromagnetic emissions, common mode electromagnetic emissions, coupled radiated electromagnetic emissions, and data bit streams; one or more processors or logic devices, and a non-transitory computational medium comprising executable instructions. The apparatus measure a feature value in at least one region of a time domain or a frequency domain of the captured electromagnetic emissions, calculates a difference value between the measured feature value and one or more baseline feature values, and determines, based on the calculated value, a presence or an absence of anomalies indicative of at least one of cyber intrusion attempt, cyber attack, cyber-physical attacks, malware, etc.
45 Citations
21 Claims
-
1. An apparatus for protecting electrical and/or electronic device(s) coupled to a data bus from a threat, the data bus comprising two differential signal lines within a shield, said apparatus comprising:
-
a data bus coupler comprising one or more connections with at least one differential signal line, said one or more connections configured to acquire analog signal(s) conducted through the at least differential signal line; a sensor coupled to said data bus coupler, said sensor configured to capture said acquired analog signals; one or more processors or logic devices; and a non-transitory computational medium comprising executable instructions that, when executed by said one or more processors or logic devices, cause said one or more processors or logic devices to perform the following steps on said captured analog signals; measuring a feature value in at least one region of a time domain or a frequency domain of said captured analog signals, calculating a difference value between said measured feature value and one or more baseline feature values, and determining, based on said calculated value, a presence or an absence of said threat to the electrical and/or electronic devices. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11)
-
-
12. A multimodal coupler system for a data bus with differential signal lines within a shield, comprising:
-
a plurality of analog sensing input forms comprising connection(s) with at least the differential signal lines, said analog sensing input forms including at least one of unintended digital radiated, unintended analog radiated, unintended digital conducted, unintended analog conducted, intended digital radiated, intended analog radiated, intended digital conducted and intended analog conducted emissions through the differential signal lines; and wherein said analog sensing input forms provide information on at least one of intrusion detection, health monitoring, equipment operational status, equipment presence, remaining useful life, operational mode, fault detection, software authenticity, software download in progress, and software change in progress. - View Dependent Claims (13, 14)
-
- 15. A sensor system configured to sense analog signal forms originating in a bus common mode unintended emissions, bus differential mode unintentional emissions, and digital bus data, said sensor system is further configured to use said signal forms to determine status, operational information, or configuration information related to devices connected to said bus.
-
19. A method of protecting electrical and/or electronic device(s) connected to a MIL-STD-1553 data bus from a threat, said MIL-STD-1553 data bus comprising differential signal lines, said method comprising:
-
providing an apparatus comprising a sensor and a controller coupled to said sensor, said apparatus being configured to receive and process electromagnetic emissions conducted through said differential signal lines in said MIL-STD-1553 data bus, said conducted emissions being at least one of differential mode electromagnetic emissions, common mode electromagnetic emissions, coupled radiated electromagnetic emissions, free field electromagnetic emissions and data bit streams; providing a coupling device configured to acquire said conducted emissions; coupling said coupling device to at least said differential signal lines in said MIL-STD-1553 data bus; operatively connecting said coupling device to said apparatus; acquiring, with said coupling device, said conducted emissions; capturing, with said sensor, said acquired conducted emissions; processing, with said controller, said captured conducted emissions; and determining, with said controller based on processing of said captured conducted emissions, a presence or an absence of said threat to said electrical and/or electronic device(s). - View Dependent Claims (20)
-
-
21. An aircraft electronic device protection system, comprising:
-
a MIL-STD-1553 data bus comprising signal lines within a shield, said signal lines being coupled to one or more electronic devices within the aircraft; a coupling device being coupled to at least said signal lines in said MIL-STD-1553 data bus, said coupling device acquires analog signal(s) conducted through said signal lines; a sensor being coupled to said coupling device, said sensor configured to capture emissions of electromagnetic energy conducted from one or more electronic devices through said signal lines in said MIL-STD-1553 data bus; and a controller coupled to said sensor, said controller being configured to process said conducted emissions of electromagnetic energy, and determine, based on processing of said captured conducted emissions of electromagnetic energy, a presence or an absence of a threat to the one or more electronic devices; and said conducted emissions of electromagnetic energy being at least one of differential mode electromagnetic emissions, common mode electromagnetic emissions, coupled radiated electromagnetic emissions, free field electromagnetic emissions and data bit streams.
-
Specification