| CPC H04L 67/12 (2013.01) [G07C 5/0816 (2013.01)] | 10 Claims |

|
1. A computer-implemented method for recognizing and/or preventing an intrusion into a service-oriented communication system of a vehicle, comprising the following steps:
registering a process originating from an instance in the service-oriented communication system;
checking, at least based on a predetermined negative list, whether the process in the service-oriented communication system is impermissible, wherein the predetermined negative list includes a hierarchy of criteria, and the process in the service-oriented communication system is assessed as impermissible during the check when at least one criterion of the hierarchy of criteria is met with respect to the process; and
in response to the check indicating the process is impermissible:
updating the predetermined negative list, the updating including using a radio interface to download an updated version of the predetermined negative list from a server outside of the vehicle via a wireless mobile communications network;
rechecking, based on the updated predetermined negative list, whether the process in the service-oriented communication system is impermissible;
determining, by the rechecking, that the process is not impermissible; and
in response to the rechecking determining that the process is not impermissible, allowing the process.
|