Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

12380results about "Key distribution for secure communication" patented technology

Systems and methods for enhancing autoencoder performance and interpretability through language-guided feature selection and encoding

A method for structuring the latent space of an autoencoder is provided. The method includes analyzing natural language descriptions related to input data; creating language-guided libraries that categorize and abstract data features based on the analyzed descriptions; mapping input data into the categorized and abstracted features within the latent space of the autoencoder; and training the autoencoder to minimize reconstruction loss while adhering to the structure imposed by the language-guided libraries.
Owner:LEPTUDE INC

Safety control method and system for remote control of Internet of Things

The invention relates to the technical field of management of the Internet of Things, and discloses a security control method and system for remote control of the Internet of Things, and the system comprises a security remote control platform, a zero-trust gateway, an authentication module, a security policy engine, edge proxy equipment and an encryption communication module. And the authentication module is used for performing identity authentication on the equipment and the user. The security policy engine dynamic access control table comprises access rule entries and associated signature information, and is issued to the edge proxy device through the zero-trust gateway. And the edge proxy device stores the dynamic access control table, verifies the signature information based on the platform public key, and performs matching and verification according to the access rule entry when receiving the control instruction. And the encryption communication module is used for performing encryption transmission on the access control table, the control instruction and the execution result. According to the invention, the whole process of remote control of the Internet of Things is dynamic, secure and credible, and the anti-attack capability and operation reliability of the system are effectively improved.
Owner:JINLANCHEN (BEIJING) TECHNOLOGY CO LTD

Know your model and know your data systems and methods for transactions

In embodiments, systems and methods for configuring and deploying artificial intelligence driven transacting agents that are permitted to autonomously execute transactions on behalf of the individual or organization and configuring the transacting agent based on the agent configuration instructions and a set of predefined system prompts. The method further includes granting the transacting agent access to a digital wallet associated with the individual or organization and deploying the transacting agent to a public network, such that the transacting agent executes transactions on behalf of the individual or organization via one or more digital marketplaces using the digital wallet to which the transacting agent was granted access. In some embodiments, the transacting agent is granted access to the digital wallet using a consent token. In some embodiments, the method also includes hyper-personalizing and / or fine-tuning the agent.
Owner:STRONG FORCE TX PORTFOLIO 2018 LLC

Trust-enabled artificial intelligence and non-human identity orchestrator framework

Described herein are techniques for secure orchestration and publication control among agents (e.g., distributed agents), such as non-human identities (NHI), using cryptographic certificates, trust rules, and / or an Information-Centric Networking (ICN) architecture. In an example, a framework establishes identity for human and non-human identities-such as AI agents, services, and autonomous workloads—via cryptographically signed publications and / or collections. Trust policies can be defined and enforced through signed, verifiable trust rules, enabling access control, provenance validation, and / or policy delegation across federated domains. The disclosed techniques can enable multi-agent systems (MAS), zero-trust enforcement, and / or secure cross-domain communication using ICN-named role-based certificates and programmable trust shims. The disclosed techniques can also enable decentralized validation and selective replication of data while maintaining traceability and fine-grained control of agent behavior.
Owner:OPERANT NETWORKS

Server BMC dynamic security authentication and firmware protection method and system based on hardware root of trust

The invention discloses a server BMC dynamic security authentication and firmware protection method and system based on a hardware root of trust, relates to the technical field of server remote management security, and discloses the server BMC dynamic security authentication and firmware protection method and system based on the hardware root of trust, which realize dynamic authentication by generating a device fingerprint through a security chip. According to the method, a multi-layer protection mechanism is constructed in combination with fragment encryption, differential hash check and memory integrity verification, and meanwhile, the data credibility is enhanced by using a block chain storage key hash value, so that the problems of static authentication risk, insufficient firmware tampering detection and missing of a trust chain in a traditional scheme are effectively solved, and the security protection capability of a BMC system can be improved.
Owner:SHENZHEN HUAKUN INFORMATION TECH CO LTD +1

Control method of multi-protocol switching anti-quantum security gateway

The invention relates to a control method for a multi-protocol switching anti-quantum security gateway, and the method comprises the steps: carrying out the safety self-inspection of a hardware environment after the security gateway is powered on, generating a unique root key of equipment based on a physical unclonable function, continuously collecting and analyzing the network traffic characteristics, and carrying out the self-inspection of the hardware environment. Based on a machine learning model, a quantum attack mode is identified and an encryption algorithm mode is dynamically decided, protocol analysis is carried out on a communication data packet, dynamic conversion and adaptation are carried out between a traditional protocol and an anti-quantum cryptography protocol according to an instruction and a preset rule, and an anti-quantum cryptography engine is called to carry out encryption or signature operation. And dynamically deriving and managing a session key in a complete period based on a root key, switching an algorithm mode, a communication protocol and a key in a linkage manner according to a quantum attack detection result, and starting anti-side channel attack protection and hardware security response. According to the method, active protection of the security gateway on quantum attacks, multi-protocol seamless compatibility and full-life-cycle security management of keys are realized.
Owner:WEIDE GUANGDONG INFORMATION TECH CO LTD

Systems and Methods for Performing Secure Transactions on Blockchain

Systems and methods for securing transactions in accordance with various embodiments of the invention are illustrated. One embodiment includes a method for confirming token ownership rights. The method generates a pre-image value using a random number generator. The method generates an action request that corresponds to an action performed cryptographic token(s). The method derives a commit output based on the pre-image value. The method generates a commit request that obfuscates the action request based on the commit output and submits the commit request to an immutable ledger. The method receives a confirmation when the commit request is approved by the ledger. When a reveal request referencing the commit output is published, the method receives a confirmation of at least one of: the reveal request being published, that the reveal request comprises a reference to the commit output, or that the action request has been approved.
Owner:ARTEMA LABS INC

Medical data privacy protection method and device

The invention discloses a medical data privacy protection method and device, and relates to the field of medical data security. The method comprises the following steps: acquiring medical data feature information of a plurality of medical institutions to form a medical data feature map; constructing a hierarchical federal learning framework based on the medical data characteristic spectrum; performing parameter aggregation optimization through a convolution weighting method of a recursive context guide network; a dynamic differential privacy budget allocation strategy is combined with a multi-first-choice Lambda weighted list DPO technology to optimize a noise injection process, and adaptive differential privacy protection is realized; and in combination with a homomorphic encryption technology, performing multi-party calculation through a security aggregation protocol to obtain a medical data privacy protection analysis system. According to the method, efficient cooperative analysis is carried out while the privacy of the medical data is protected, the problems that in the prior art, simple parameter exchange may cause model inversion attack, special optimization for medical scenes is lacked, and a supervision and auditing mechanism is imperfect are solved, and the utilization efficiency and safety of the medical data are improved.
Owner:GUIZHOU UNIVERSITY OF FINANCE AND ECONOMICS +1

Encryption-based power grid cross-domain operation and maintenance data secure transmission method and system

The invention relates to the technical field of data encryption and transmission, in particular to a power grid cross-domain operation and maintenance data secure transmission method and system based on encryption, and the method comprises the steps: pre-judging a current risk through a historical network security event, dividing a network environment into different risk intervals based on a risk level evaluation value, encryption strategies with different intensities are correspondingly matched, so that refined security management and control with higher risk and stronger protection are realized; a triple progressive identity authentication system of an equipment layer, a dynamic layer and a biological layer is constructed, a dynamic permission management and control mechanism driven by identity attributes and risk levels is constructed, a basic permission boundary is determined based on inherent identity attributes of an operation and maintenance terminal, and permission strength and validity period are dynamically adjusted in combination with a risk level evaluation value. And finally, generating an access control strategy only adapted to the current terminal, the current risk and the current access request, so as to perform data encryption and transmission through the target encryption strategy and the access control strategy, thereby ensuring the security of data transmission.
Owner:STATE GRID SIJI DIGITAL TECH (BEIJING) CO LTD +1

Data asset management system based on block chain and big data analysis

The invention is suitable for the technical field of data asset management, and provides a data asset management system based on a block chain and big data analysis, and the system comprises a first terminal which carries out the storage of the ownership information of data assets through a block chain network, and generates a storage data package; generating an evaluation result based on a preset technical index analysis model; writing the hash value of the evaluation result into transaction data of the main chain of the block chain, and generating an evidence storage voucher matched with the block chain transaction; an interaction data sequence is packaged for identity signature, encryption and compression to generate a target code stream, and the target code stream is sent to the second terminal; the second terminal decrypts the encrypted data in the target code stream by using a private key, decompresses the data by using a compression algorithm matched with the first terminal, and restores the data into an interactive data sequence; verifying the access authority and the transaction condition of the evidence storage data packet; checking the anchoring state of the evidence storage voucher on the main chain of the block chain; and the data transaction is completed, the data asset state report is generated, and the data element marketization configuration efficiency is improved.
Owner:GUANGXI ZHUANG AUTONOMOUS REGION COMPUTER CO

Image data secure transmission method, computing device and computer storage medium

The invention provides an image data secure transmission method, computing equipment and a computer storage medium. The method is applied to a data sender, and comprises the following steps: executing a first image encryption algorithm, and performing encryption processing on a transmission image through an image key to obtain a ciphertext of the transmission image; executing a first key encryption algorithm, and performing encryption processing on the image key through an encryption key to obtain an encrypted image key; the first image encryption algorithm is different from the first key encryption algorithm; and forming a transmission data packet from the ciphertext, the encryption key and the encrypted image key, and transmitting the transmission data packet to a data receiver. Therefore, a proper image encryption algorithm is adopted for the image data, and a proper key encryption algorithm is adopted for the image key, so that real-time performance and security are both considered in the image data encryption process through a mixed encryption mode.
Owner:HANGZHOU KANGBEI MOTOR

Real estate full life cycle intelligent management method and system based on Internet of Things perception

The invention provides a real estate full life cycle intelligent management method and system based on Internet of Things perception, and the method comprises the steps: distributing a unique hardware identifier of equipment, combining a lightweight digital certificate with a pre-shared key to achieve two-factor authentication, and storing a root certificate in a cloud end; an access authentication process is optimized, an identity label and a certificate signature request need to be submitted when a node accesses for the first time, a temporary session key is generated after the gateway verifies, and abnormal access is immediately isolated and reported; data integrity verification is implemented, and after a sensor collects data, an abstract is generated and data encryption transmission is carried out; after decryption, the receiving end recalculates the abstract for comparison, and if not, the abstract is discarded and nodes are marked to be abnormal; a data anomaly detection model is constructed, energy consumption fluctuation is determined based on historical data, a frequency baseline is collected, data reasonability is monitored in real time, secondary authentication is triggered when the data is abnormal, and node data access is suspended if the data fails; a hierarchical key system is established, hardware is solidified by a root key, session keys are alternated for 24 hours, and data encryption keys are dynamically derived and distributed through encryption channels.
Owner:LERUAN CENTURY (BEIJING) INFORMATION TECHNOLOGY CO LTD

Multi-party collaborative anti-quantum signature method and system based on homomorphic hash

The invention provides a multi-party collaborative anti-quantum signature method and system based on homomorphic Hash, and relates to the technical field of digital signatures, the system comprises a plurality of participants and a verification party, and the method is specifically as follows: each participant generates a pair of public and private keys, the public key is composed of a total public key, a total signature matrix and a total Hash matrix of all participants; based on the public and private keys, all participants perform multi-party signature on the target message through a homomorphic hash function, and a generated signature is composed of total hash challenge values of all participants, total response vectors of all participants and commitment value high-order difference values of all participants; according to the signature, the verifier recovers the high order of the total commitment value, further calculates the total hash challenge value, and verifies the validity of the signature through comparison of the total hash challenge value; according to the method, multi-user collaborative signature is realized, and the security of resisting malicious opponents under a quantum computer is obtained.
Owner:SHANDONG NORMAL UNIV

Industrial Internet of Things equipment data encryption transmission method based on edge computing

The invention discloses an edge computing-based industrial Internet of Things equipment data encryption transmission method, which comprises the following steps of: constructing an edge node alliance comprising at least two cross-regional edge gateways, completing bidirectional identity authentication through an alliance root certificate, and establishing an encrypted communication link; industrial equipment collects original data and then transmits the original data to an edge gateway which the industrial equipment belongs to, and the gateway extracts data features and divides the data features into a core control level, a process parameter level, a common monitoring level and a security level; differential encryption strategies are adopted for different levels of data; each edge gateway uploads the encrypted data to a distributed key management node, and obtains and synchronizes a periodically updated key chain; during cross-region transmission, performing secondary packaging and encryption to generate a data packet containing identifications such as a security level and the like; and the receiving end verifies the legality of the node, decrypts and verifies the integrity of the data, distributes the data if the decryption is passed, and blocks the alarm if the decryption The method is suitable for scenes such as single-area monitoring and multi-area manufacturing, data security and transmission efficiency balance are achieved, and all-weather stable transmission is guaranteed.
Owner:HEFEI UNIV OF ECONOMICS

Network card data local preprocessing system fused with edge computing

The invention discloses a network card data local preprocessing system fused with edge computing, and relates to the technical field of edge computing and artificial intelligence collaborative optimization. Comprising an edge computing unit, a hierarchical collaborative architecture, a model hot switching and generative fragmentation module, an intention recognition and adaptive scheduling module, a delay energy consumption optimization scheduling module, a CXL zero-copy sharing module, an edge computing unit integrated processor, an FPGA or ASIC and a neuromorphic computing unit. According to the method, an FPGA, an ASIC and a neuromorphic computing unit are integrated in an intelligent network card, microsecond-level dynamic connection reconfiguration and adaptive generative model fragmentation execution are realized through a reconfigurable Mesh interconnection matrix, an attention layer and a feed-forward layer of a Transform class model are fragmented and allocated to different computing units for parallel execution, and cross-card streamlined processing is realized in cooperation with a zero-copy shared memory. And the intention recognition module is deeply coupled with the model hot switching module, so that dynamic model switching and fragmentation strategy optimization based on service priorities and system loads are realized.
Owner:ZHUHAI SHININGDA TECH CO LTD

System and Method for Direct, Structured, and Versioned Data Storage and Retrieval on a Blockchain Network

The present embodiment discloses a novel process and system for storing versioned data on the Bitcoin blockchain network. This process involves generating derived public keys linked to specific versions and data parts using a key tweaking method, and storing each data part on the blockchain using its associated derived public key. Information about versions and parts are stored in root transactions. An API is provided for managing the stored data, with options for encryption, checksums, data anchoring, timestamping, segmentation, and digital signatures. AIDIOS, a data protocol designed for direct storage and retrieval on the Bitcoin blockchain, is also included. This system allows for significant amounts of data to be stored directly on the blockchain.
Owner:DATAFAIR INC

Apparatus and method for secure communication and integration with secure and non-secure root ports

Secure communication provided with secure and non-secure root ports. One embodiment comprises: a plurality of cores; a memory controller to couple to a memory; an interconnect fabric coupled to the plurality of cores and the memory controller; and a root complex to support end-to-end encrypted channels between devices, the root complex comprising: a root port to receive non-posted requests from a requestor device, the root port to associate a first tag value with a non-posted request to indicate whether the non-posted request is received over an end-to-end encrypted channel; and a bridge device to transmit the non-posted request with the first tag value and to subsequently receive a completion message including the first tag value, wherein the root port is to determine whether the completion message is to be encrypted in accordance with the end-to-end encrypted channel based on the first tag value.
Owner:INTEL CORP

Mimicry encryption method and system for communication data transmission

The invention relates to the technical field of communication data security, and discloses a mimicry encryption method and system for communication data transmission. The method comprises the following steps: synchronizing a high-precision timestamp through an NTP protocol and generating a standardized environment parameter; temperature, voltage and signal strength indexes are extracted based on the environmental parameters, entropy hybrid calculation and dynamic splicing coding are carried out, and a dynamic encryption key is generated; performing multi-layer mimicry permutation and diffusion confusion on plaintext data after the plaintext data is partitioned by using the key to generate a final ciphertext; performing protocol encapsulation and transmission optimization on the ciphertext; and the receiving end realizes decryption through de-encapsulation and inverse mimicry transformation, and dynamically adjusts the key in combination with environmental parameter feedback. According to the method, key dynamics is enhanced through environment randomness, multi-layer encryption and integrity verification are combined, the anti-attack ability and safety of data transmission are remarkably improved, and the method is suitable for communication scenes with high real-time performance requirements.
Owner:CHONGQING DACHENG ZHIXIN TECH DEV CO LTD

Cross-industry logistics data trusted sharing method and system based on block chain

The invention relates to the technical field of computers and information processing, in particular to a block chain-based cross-industry logistics data trusted sharing method and system, and the method comprises the steps: S1, carrying out the cross-industry semantic alignment; s2, performing field-level ciphertext access; s3, zero knowledge permission verification; s4, federal learning and on-chain coordination are carried out; s5, carrying out privacy budget and service linkage; s6, variable structure consensus; step S7, two-way auditing tracing is carried out; and S8, carrying out consistency challenge. Semantic alignment and chaining commitment are achieved through industry ontology, visibility is controlled through attribute-based field-level encryption and zero-knowledge verification, and commitment-driven median anchoring, symmetric truncation, quality * sample size weighted federal aggregation and on-chain differential privacy budget linkage are combined. And an end-to-end trusted sharing closed loop is constructed in cooperation with PBFT scalable consensus of VRF grouping, forward security signature and Merkle bidirectional auditing and challenge-response verification.
Owner:HARBIN INST OF TECH WEIHAI RES INST

Anti-quantum cryptographic dual-mode cryptographic algorithm switching method and system based on dynamic scheduling

The invention provides an anti-quantum national secret dual-mode cryptographic algorithm switching method and system based on dynamic scheduling, and relates to the technical field of dynamic scheduling, and the method comprises the steps: collecting the operation characteristics of a cryptographic communication session, and carrying out the analysis to obtain an evaluation result containing an attenuation inflection point and an algorithm failure time boundary; determining a candidate switching algorithm set from the heterogeneous algorithm pool according to an evaluation result, and calculating a resource overhead expected value and a safety gain expected value of each candidate algorithm; establishing a dual-mode collaborative switching decision mechanism, mapping resource overhead and security gain into a Pareto leading edge solution set in a reserved response interval before an algorithm failure time boundary, and determining a switching scheme by combining a semantic fragment boundary; algorithm switching is executed by inserting a control frame at a semantic fragment boundary, and iterative correction is carried out by utilizing scheduling execution feedback. According to the method, smooth switching between the national cryptographic algorithm and the anti-quantum algorithm is realized, the security and the resource efficiency are both considered, and the long-term security of the cryptographic system is ensured.
Owner:BEIJING CATHAY INTERNET INFORMATION TECH CO LTD +1

Rail transit vehicle-ground security encryption control method and device based on national secret algorithm

The invention provides a rail transit vehicle-ground security encryption control method based on a national cryptographic algorithm. The method comprises the following steps: realizing rail transit vehicle-ground security encryption control enabled by the national cryptographic algorithm by adopting a layered and segmented three-level security encryption architecture of a vehicle-mounted terminal layer-a network transmission layer-a core network layer; cooperative control of a national cryptographic algorithm is realized through three stages of terminal authentication, data encryption and tunnel encapsulation; in order to solve the problem of encryption interruption caused by wireless link switching such as 5G signal attenuation, the technical scheme of the patent realizes lossless switching through a three-layer linkage mechanism of signal monitoring, switching decision and key synchronization; self-adaptive intelligent adjustment of a key strategy is realized through a three-layer closed-loop architecture of environmental perception, intelligent evaluation and dynamic regulation and control; and the self-adaptive intelligent adjustment of the key strategy is realized through a three-layer closed-loop architecture of environmental perception, intelligent evaluation and dynamic regulation and control. And the national secret algorithm is combined with the block chain evidence storage technology to realize data tampering prevention, and the speed is high.
Owner:CRRC CHANGCHUN RAILWAY VEHICLES CO LTD

Methods and procedures for a one-way quantum channel authentication for secure quantum communication

The present technology pertains to systems and methods for one-way authentication of quantum channels. A transmitter generates an entangled quantum state comprising a first state and a second state, modulates the second state according to a clock-synchronized pattern, and transmits it through a quantum channel to a receiver. The first state is retained and measured at the transmitter to extract quantum-state information. Authentication is performed based on this information, without requiring feedback from the receiver. The quantum-state information may be derived using quadrature measurements, Gaussian tomography, or other statistical analyses to detect whether the second state underwent irreversible interactions such as eavesdropping or decoherence. The system enables secure unidirectional quantum authentication, reduces protocol complexity, and supports real-time anomaly detection. It is compatible with continuous-variable quantum states, quantum key distribution (QKD), and scalable communication architectures.
Owner:EIGENQ INC

Government affair data dynamic authorization management method based on secure multi-party computing

The invention discloses a government affair data dynamic authorization management method based on secure multi-party computing, and relates to the field of government affair data security authorization management, and the method comprises the steps: distributing a unique identity identifier for each participant, generating an asymmetric key pair through employing a national secret SM2 algorithm, registering a public key and mechanism attribute information to an alliance chain smart contract, and generating an identity certificate package; and based on attribute information in the identity credential packet, the participants cooperatively generate anti-quantum dynamic attribute-based encryption key fragments through a secure multi-party computing protocol, and the anti-quantum dynamic attribute-based encryption key fragments are distributed to the participants by adopting a threshold secret sharing technology. Threshold decryption and token verification are achieved through an alliance chain verification intelligent contract, an authorization record is generated, an access control strategy of an edge computing node is configured according to the authorization record, an oblivious transmission protocol is adopted to respond to data query, and an audit node monitors an access log, dynamically adjusts attribute weight parameters and synchronizes the attribute weight parameters to a key fragment.
Owner:CHINA NAT INST OF STANDARDIZATION

System and Method for AI-Orchestrated Multi-Source Renewable Energy Harvesting and Decentralized Energy Trading

A system and method are disclosed for AI-orchestrated multi-source renewable energy harvesting and decentralized trading. A plurality of energy harvesting nodes convert renewable resources, including solar irradiance, wind, hydrodynamic flow, salinity gradients, geothermal heat, and waste-heat streams, into electrical power. Each node includes a sensor array that measures operating and environmental parameters and an edge AI processing unit that predicts performance degradation and computes control actions to maximize net power output subject to stress constraints. A power conversion subsystem conditions the generated power for delivery to storage, microgrids, or utility grids. A blockchain-based orchestration layer receives validated energy summaries, tokenizes discrete energy quanta as digital energy tokens with provenance metadata, and executes smart contracts for peer-to-peer trading, dynamic pricing, and programmable revenue distribution. A fleet-level AI coordination module performs federated learning across nodes and coordinates dispatch and curtailment among heterogeneous modalities, improving portfolio efficiency, grid stability, and environmental accounting.
Owner:ODEH SAMUEL

Intelligent abnormity early warning system and method for edge node of industrial Internet of Things

The invention discloses an intelligent abnormity early warning system for an industrial Internet of Things edge node, which comprises an edge sensing layer, an edge intelligent layer and a cloud edge collaboration layer, and is characterized in that the edge sensing layer is used for data acquisition and security preprocessing; the edge intelligent layer is used for intelligently analyzing the data transmitted by the edge sensing layer and constructing a dynamic space-time diagram neural network model and a dynamic edge knowledge graph; a digital twinning threshold engine is set, when the digital twinning threshold engine detects abnormity, reverse reasoning is carried out along the knowledge graph, and self-adaptive early warning is carried out; and the cloud edge collaboration layer is used for carrying out collaboration processing on early warning triggered by the digital twin threshold engine. According to the invention, the spatial-temporal features of the equipment group are learned through the set dynamic spatial-temporal diagram neural network; the digital twin threshold engine generates a dynamic threshold based on physical simulation and adapts to environment and load changes; the edge layer realizes lightweight real-time analysis; and a full-link embedded chaotic encryption and national cipher SM4 algorithm is adopted.
Owner:BEIJING ORIENTAL SENTAI TECH DEV CO LTD

NFC encrypted IMS server security data exchange method

The invention belongs to the technical field of communication, and particularly relates to an NFC (Near Field Communication) encrypted IMS (IP Multimedia Subsystem) server security data exchange method, which comprises the following steps of: in response to a near field communication connection event, acquiring an original service data message of service equipment to be opened and physical environment data monitored when the event occurs, forming a seed data set, executing Hash operation to generate an initial data fingerprint, and sending the initial data fingerprint to a server; and generating a symmetric session key through a key derivation algorithm by combining a device identifier in the original service data message, so as to encrypt the original service data message, packaging an encrypted data packet and the initial data fingerprint into a transmission data packet, sending the transmission data packet to an IMS server, reconstructing the session key by the server based on expected service parameters stored locally, and sending the session key to the IMS server. According to the method, decryption verification of the encrypted data packet is carried out, and service opening is executed after the verification is passed, so that deep binding of an encryption process and data integrity verification is realized, and the security of data exchange and the system processing efficiency are improved.
Owner:SHANXI ELECTRIC POWER CO POWER COMM CENT

Data encryption method, encryption equipment and storage medium

The invention relates to the technical field of data encryption, and discloses a data encryption method, encryption equipment and a storage medium. In the method, an encryption device obtains to-be-encrypted data uploaded by a terminal, and extracts a plurality of data features from the to-be-encrypted data, the data features including a data sensitive feature, a business risk feature and a user behavior feature; performing quantitative scoring on the plurality of data features to obtain a plurality of feature scores, and calculating a total data score according to the plurality of feature scores; inputting the total data score into a preset trained decision tree model to determine the security level of the to-be-encrypted data; according to the security level, determining a target encryption algorithm from a preset corresponding relationship between the security level and the encryption algorithm; and encrypting the to-be-encrypted data according to the target encryption algorithm and the dynamically generated encryption key. By means of the method, the problems that differential protection is difficult to achieve according to data characteristics in a related encryption method, and security risks are caused by key management staticization are solved.
Owner:SHANGHAI TELECOMM ENG

Authentication data validation

A server computer may receive an authentication data packet including authentication data from a relying party computer in communication with an authenticator associated with a user device. The server computer may verify the authentication data in the authentication data packet. The server computer may store the authentication data packet in a database. The server computer may transmit to an authorizing entity computer, a data packet including data relating to the verification of the authentication data.
Owner:VISA INTERNATIONAL SERVICE ASSOCIATION

Government administration department knowledge base access authority control method based on block chain

The invention discloses a government affair department knowledge base access authority control method based on a block chain, and relates to the technical field of block chains and information security, distributed nodes jointly participate in decision making, the performance bottleneck of a single control point and the single point fault risk are effectively eliminated, and the reliability and stability of a system are remarkably improved; when a plurality of departments need to collaboratively update a strategy, the intelligent contract based on the threshold multi-signature mechanism can automatically execute voting aggregation and a strategy effective process without depending on manual operation of a central administrator, so that the efficiency and the automation level of cross-department collaboration are greatly improved, and the instantaneity and the consistency of strategy change are ensured; the inherent non-tampering and traceable characteristics of the block chain provide powerful auditing guarantee for the whole authority management process; and each policy update request, voting process, final decision and policy version switching are completely recorded on the chain to form a non-repudiated audit clue.
Owner:HANGZHOU CHUANGMING ZHICAI INTELLIGENT TECH CO LTD

Dynamic security authentication method for cross-platform information system integration

The invention discloses a dynamic security authentication method for cross-platform information system integration, and relates to the technical field of cross-platform dynamic authentication. A non-tampering identity trust chain is established through a block chain consensus algorithm, the problems of single-point fault and expansibility of centralized identity management are solved, cross-platform unified identity verification is realized, the problem that multi-factor authentication lacks intelligent risk assessment is solved through intelligent contract automatic verification and user behavior analysis, threats can be dynamically responded, and the user experience is improved. The authority is dynamically adjusted based on the risk level, and a real-time access control decision engine is combined, so that the problem of response lag of traditional access control is solved, accurate authority control is realized, and finally, a continuously optimized security authentication mechanism and a unified and coordinated cross-platform security protection system are formed.
Owner:TIBET JINHUI TECHNOLOGY CO LTD