Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

4083results about "Public key for secure communication" patented technology

Collaborative sharing method, system and device on energy data link fusing multi-party security calculation and zero knowledge proof, and storage medium

The invention discloses a collaborative sharing method, system and device on an energy data chain fusing multi-party security calculation and zero knowledge proof and a storage medium, and belongs to the field of energy data security sharing and block chain privacy protection, and the method comprises the steps: executing desensitization processing on original data according to types, and generating a cryptographic commitment value and a data hash identifier; encrypting and fragmenting the desensitized data, registering a task structure body through an intelligent contract, and uploading the task structure body; and each node decrypts the ciphertext, executes calculation and generates a zero-knowledge proof, and submits the zero-knowledge proof to the block chain to be verified by the smart contract. According to the method, data privacy protection and result verifiability unification are realized, cross-mechanism cooperation efficiency is improved, an auditing system on a whole process chain is constructed, and safe sharing of energy data is guaranteed.
Owner:GUIZHOU POWER GRID CO LTD

Big data auxiliary key generation method and system in communication data encryption transmission

The invention discloses a big data auxiliary key generation method and system in communication data encryption transmission, and relates to the technical field of big data analysis and processing. The dynamic entropy source processing module is used for generating a high-randomness entropy pool by combining an information entropy quantification model and adopting a Shannon entropy and minimum entropy fusion algorithm; the anti-quantum key generation module is used for generating a dynamic variable-length key seed based on an entropy pool driven post-quantum cryptographic algorithm; the hierarchical key negotiation module adopts a clustering Diffie-Hellman protocol, dynamically divides negotiation according to network topology, and precomputes and reduces the load of a core network through edge nodes; and a lightweight verification and update module. According to the method, high-entropy sources such as environmental noise, user behaviors and equipment hardware fingerprints are fused with low-entropy sources such as network messages and sensor data, and an intelligent acquisition strategy and a nonlinear decorrelation technology are combined, so that the anti-quantum dynamic entropy pool is generated, and the randomness of a secret key and the reliability of the entropy sources are improved.
Owner:COLLEGE OF MOBILE TELECOMM CHONGQING UNIV OF POSTS & TELECOMM

Safety control method and system for remote control of Internet of Things

The invention relates to the technical field of management of the Internet of Things, and discloses a security control method and system for remote control of the Internet of Things, and the system comprises a security remote control platform, a zero-trust gateway, an authentication module, a security policy engine, edge proxy equipment and an encryption communication module. And the authentication module is used for performing identity authentication on the equipment and the user. The security policy engine dynamic access control table comprises access rule entries and associated signature information, and is issued to the edge proxy device through the zero-trust gateway. And the edge proxy device stores the dynamic access control table, verifies the signature information based on the platform public key, and performs matching and verification according to the access rule entry when receiving the control instruction. And the encryption communication module is used for performing encryption transmission on the access control table, the control instruction and the execution result. According to the invention, the whole process of remote control of the Internet of Things is dynamic, secure and credible, and the anti-attack capability and operation reliability of the system are effectively improved.
Owner:JINLANCHEN (BEIJING) TECHNOLOGY CO LTD

Financial data privacy protection system based on block chain security multi-party computing

The invention discloses a financial data privacy protection system based on block chain security multi-party computing, and belongs to the technical field of data protection, and the system specifically comprises the steps that a data preprocessing module segments original financial data, and adds a unique watermark identifier; the distributed account book stores the Hash abstract and watermark mapping relation of the encrypted logic data fragment, and the digital signature and the timestamp are fused to ensure reliability; the computing node cluster receives data through a special interface, dynamically builds a computing group according to a service rule and outputs an encrypted computing result; bidirectional authentication is carried out on the zero-knowledge proof verifier and the computing node cluster to verify the data holding right; the encryption proxy gateway processes an output result of the computing node cluster to complete format conversion and ciphertext superposition; the cross-link routing module constructs a virtual coverage layer, cross-link transmission of encryption results is achieved through protocol conversion and three-way handshake verification, and a heterogeneous chain protocol converter and a verification assembly guarantee transmission safety; the financial data privacy security is comprehensively guaranteed, and the data processing efficiency and reliability are improved.
Owner:王蓓蓓

Driving vehicle road cloud cooperative safety control method and system based on trusted computing

The invention discloses a driving vehicle road cloud collaborative safety management and control method and system based on trusted computing, and the method comprises the steps: generating an HMAC-SM3 data fingerprint through employing an SM3 Hash algorithm engine, and proposing an LSTM lightweight dynamic trust evaluation model based on a TinyML framework; through a step-by-step Hash verification and rollback mechanism, through Geohash coding and SM3 Hash joint calculation, based on an aggregation signature of a BLS12-381 curve and public key aggregation, the communication overhead during multi-RSU collaborative signature is reduced; distributed private key fragmentation decryption is realized by adding a homomorphic aggregation ciphertext; aggregating and delaying the compressed ciphertext; dynamically evaluating the credibility of the nodes by a Krum dynamic defense mechanism; the system comprises a vehicle side credible sensing layer, a roadside credible broadcast layer and a cloud credible decision-making layer. According to the invention, through layered credibility verification, dynamic trust chain extension and a data privacy protection mechanism, the security and credibility problems of multi-node cooperation in an automatic driving scene are solved.
Owner:BEIJING INST OF TECH

Network security analysis early warning system based on artificial intelligence

The invention discloses a network security analysis early warning system based on artificial intelligence, and the system comprises a data collection layer which captures full flow based on DPI, aggregates firewall logs, terminal behaviors and threat intelligence, and constructs a structured data pool; through TLS fingerprint identification of AI driving, the encrypted traffic is penetrated, and a sampling strategy is dynamically adjusted in combination with reinforcement learning. The intelligent analysis layer is used for carrying out cross validation on known threats and abnormal behaviors; the time sequence CNN extracts encrypted traffic features, and a novel threat detector is rapidly generated by using historical attack fragments in combination with a meta-learning framework; sHAP value driving dynamic feature selection and optimization feature vector input; the decision-making early warning layer is used for fusing multi-source features through a Bayesian network and generating 0-100 score risk scores; a self-adaptive threshold module is combined to adjust a score threshold in real time, and a high-risk event is pushed; the collaborative response layer is used for triggering a preset decision tree, deploying a GAN dynamic honeypot to trap an attacker and reversely tracing; the Neo4j visually restores the attack path, and blocking is executed after the threat is confirmed by a progressive response mechanism.
Owner:CHINA GEOLOGICAL SURVEY XINING NATURAL RESOURCES COMPREHENSIVE SURVEY CENT

Vehicle-mounted ad hoc network security communication system and method based on NTRU lattice cryptosystem

The invention belongs to the technical field of digital information transmission, and relates to a vehicle-mounted ad hoc network security communication system and method based on an NTRU lattice cryptosystem, and the system comprises a message signature module, a message encryption module, a message decryption module, an identity authentication module, and a key exchange module. The message signature module carries out signature by utilizing a private key and a random polynomial dynamically generated by a pseudo-random number generator based on an NTRU lattice cryptosystem; the message encryption module encrypts a to-be-sent message by randomly selecting a temporary polynomial and combining a public key of a receiver; the message decryption module is used for decrypting the received ciphertext # imgabs1 # by using a private key and an inverse element # imgabs0 # of a module p of the private key; the identity authentication module is used for performing identity authentication; the key exchange module realizes secure key exchange between communication nodes in the vehicle-mounted ad hoc network through an improved Blom key distribution protocol. The system improves the security and communication efficiency of the vehicle-mounted network.
Owner:CHANGCHUN UNIV OF TECH

Medical examination data sharing method and system based on cloud authentication

The invention relates to the field of medical examination data, and discloses a medical examination data sharing method based on cloud authentication, and the method comprises the following steps: carrying out the dynamic desensitization of original medical examination data at an edge node, and generating desensitization data meeting the privacy-utility balance; verifying the identity and authority of a request end user through a zero-knowledge proof protocol, and generating an authentication result bound with the privacy policy; performing hierarchical encryption on the desensitized data based on an anti-quantum attribute-based encryption algorithm to generate a ciphertext dynamically associated with the access attribute; and dynamically decrypting the data according to the real-time context parameters, and performing secondary desensitization processing in combination with an access scene. The technical scheme is optimized by adopting the dynamic desensitization and rate distortion theory, the technical effect of privacy-utility dynamic balance is achieved, and compared with the problems of fixed static desensitization rule and over-protection or under-protection in the prior art, the core defect that the method cannot adapt to the multi-scene data sharing requirement is overcome.
Owner:TAIZHOU MUNICIPAL HOSPITAL

High-security method for negotiating temporary session key based on national secret algorithm

The invention relates to the technical field of commercial password detection methods, and discloses a high-security method for negotiating a temporary session key based on a national secret algorithm, and the commercial password detection method comprises the following steps: initialization and identity authentication: two communication parties generate an SM2 public and private key pair, and the identity is verified through a digital certificate and an SM2 signature; temporary key negotiation: generating a shared key point based on an SM2 key exchange protocol; session key derivation: generating a temporary session key by using an SM3 hash algorithm; key confirmation and encrypted communication: verifying the key through an SM4 algorithm and encrypting communication data; according to the high-security method for negotiating the temporary session key based on the national secret algorithm, efficient key negotiation of both communication parties in an unsecure channel is realized through an SM2 key exchange protocol, an SM3 hash algorithm and an SM4 symmetric encryption algorithm. The method combines digital certificate authentication, dynamic random numbers and timestamps, has forward security, replay attack resistance and man-in-the-middle attack resistance, and is suitable for high-security scenes such as finance and government affairs.
Owner:SHAANXI QINGSHAN SIJI INFORMATION TECH CO LTD

Server BMC dynamic security authentication and firmware protection method and system based on hardware root of trust

The invention discloses a server BMC dynamic security authentication and firmware protection method and system based on a hardware root of trust, relates to the technical field of server remote management security, and discloses the server BMC dynamic security authentication and firmware protection method and system based on the hardware root of trust, which realize dynamic authentication by generating a device fingerprint through a security chip. According to the method, a multi-layer protection mechanism is constructed in combination with fragment encryption, differential hash check and memory integrity verification, and meanwhile, the data credibility is enhanced by using a block chain storage key hash value, so that the problems of static authentication risk, insufficient firmware tampering detection and missing of a trust chain in a traditional scheme are effectively solved, and the security protection capability of a BMC system can be improved.
Owner:SHENZHEN HUAKUN INFORMATION TECH CO LTD +1

Intelligent lock control method and system based on dynamic identity verification

The invention provides an intelligent lock control method and system based on dynamic identity verification, and relates to the technical field of artificial intelligence, and the method comprises the steps: building a multi-dimensional risk assessment model comprising an operation time interval, a biological characteristic change rate and a spatial position parameter, and obtaining a risk assessment score; according to the risk assessment score, performing preliminary adjustment on the biological characteristic data, and performing encryption processing and characteristic enhancement on the preliminarily adjusted biological characteristic data in combination with a dynamic key to obtain processed biological characteristic data; performing collaborative calibration on the processed biological characteristic data according to the risk assessment score to obtain calibrated biological characteristic data; and encrypting the calibrated biological characteristic data through an anti-quantum computing encryption protocol, and carrying out weighted fusion on the encrypted characteristic data, the dynamic key, the environmental adaptability score and the risk assessment score to generate a final unlocking instruction. According to the invention, the safety and robustness of the intelligent lock are improved.
Owner:HEFEI ZHIHUI SPACE TECH CO LTD

Interface authentication method, system and equipment based on national cryptographic algorithm and medium

The invention discloses an interface authentication method, system and device based on a national cryptographic algorithm and a medium, belongs to the technical field of computer security, and aims to solve the technical problem of how to realize identity authentication, data encryption, integrity verification and replay attack protection of interface interaction and meet the security requirement of a key information system. According to the technical scheme, the method comprises the following steps: system initialization: a server and a client respectively generate SM2 key pairs, the client and the server exchange public keys through a secure channel, and a mapping relation between the public key of the opposite side and an identity label is stored; session key negotiation: exchanging a temporary public key based on an SM2-ECDH algorithm, calculating a shared secret value, and deriving an SM4 session key through a KDF; the client side carries out SM3 hash and SM2 signature on request parameters, and the server side verifies the signature and verifies a timestamp and a random number to resist replay attacks; and session key updating: triggering key updating according to a preset condition, and encrypting the new key negotiation message by using the original session key.
Owner:SHANDONG INSPUR DIGITAL BUSINESS TECHNOLOGY CO LTD

Methods, architectures, apparatuses, and systems for decentralized data control and access management

Procedures, methods, architectures, apparatuses, systems, devices, and computer program products for decentralized data control and access management. For example, a data owner may perform a subscription procedure to obtain verification credentials and an index (e.g., address, identifier) to public data control and access information. The data owner may perform a registration procedure to register ownership of data using the public data control and access information. The public data control and access information may include a public key. The public key is paired with a private trapdoor key to form a key pair. The data owner and a data consumer may perform an access procedure to grant access to registered data. For example, the registration procedure may verify collisions between a token hash, a data hash, and a data owner hash based on use of the key pair.
Owner:INTERDIGITAL PATENT HOLDINGS INC

Encryption-based power grid cross-domain operation and maintenance data secure transmission method and system

The invention relates to the technical field of data encryption and transmission, in particular to a power grid cross-domain operation and maintenance data secure transmission method and system based on encryption, and the method comprises the steps: pre-judging a current risk through a historical network security event, dividing a network environment into different risk intervals based on a risk level evaluation value, encryption strategies with different intensities are correspondingly matched, so that refined security management and control with higher risk and stronger protection are realized; a triple progressive identity authentication system of an equipment layer, a dynamic layer and a biological layer is constructed, a dynamic permission management and control mechanism driven by identity attributes and risk levels is constructed, a basic permission boundary is determined based on inherent identity attributes of an operation and maintenance terminal, and permission strength and validity period are dynamically adjusted in combination with a risk level evaluation value. And finally, generating an access control strategy only adapted to the current terminal, the current risk and the current access request, so as to perform data encryption and transmission through the target encryption strategy and the access control strategy, thereby ensuring the security of data transmission.
Owner:STATE GRID SIJI DIGITAL TECH (BEIJING) CO LTD +1

Secure communication method for edge node and terminal equipment based on dynamic key negotiation

The invention relates to a secure communication method for an edge node and terminal equipment based on dynamic key negotiation. The method comprises the following steps: the terminal equipment sends an initial signal when initiating a communication request; the edge node generates a scenarized first key negotiation parameter and feeds back the scenarized first key negotiation parameter after passing dual identity and state verification; after the terminal device decrypts the parameter, a dynamic entropy value is collected by combining a network adaptive sensor, and a second key negotiation parameter associated with the first parameter feature is generated; the two parties calculate session keys based on an ECDH algorithm, and the consistency of the keys is ensured through dynamic entropy verification and Hash comparison; and after the key negotiation succeeds, entering a hierarchical encrypted data transmission stage, and dynamically updating a session key based on a multi-dimensional trigger mechanism. According to the method, through hardware credibility verification, a scenarized key strategy, dynamic entropy enhancement and national secret algorithm adaptation, dynamic management of keys and adaptive matching of terminal resources are achieved, attacks such as equipment counterfeiting and parameter tampering are effectively resisted, and the high-security and compliance requirements in the fields of industrial control and the like are met.
Owner:BEIJING HUAKUN ZHENYU INTELLIGENT TECH CO LTD

Control method and control system of intelligent sound equipment

The invention relates to the technical field of intelligent home control, and discloses a control method and a control system of an intelligent sound box. The control method of the intelligent sound box is applied to a control device, and specifically comprises the following steps: S101, collecting a voice instruction of a user, carrying out noise reduction processing and voiceprint feature extraction on the voice instruction, transmitting the processed voice instruction to a semantic analysis engine, carrying out intention recognition on voice content based on a deep learning model, and sending the intention recognition result to a semantic analysis engine; generating a structured operation instruction set; and S102, according to the device identifier contained in the structured operation instruction set. Through dual authentication of voiceprint feature extraction and dynamic verification phrase, the illegal access false recognition rate is reduced to below 0.12%, the voiceprint database is combined with the Mel frequency cepstrum coefficient and the dynamic time warping algorithm, accurate matching of user identities is achieved, the dynamically generated verification phrase comprises random initial and final combinations, and recording playback attacks are effectively resisted.
Owner:SHENZHEN PARTS BOX ELECTRONIC TECHNOLOGY CO LTD

Privacy-preserving transformer model with encrypted dimensionality reduction

The present disclosure provides a method for processing data using a transformer model with privacy preservation. The method includes receiving input data, applying a dimensionality reduction operation using an input privacy layer positioned horizontally between an input layer and an execution layer of the transformer model, processing the reconstructed data, generating an encryption key for encrypting weights of the input privacy layer, splitting the encryption key into shares, distributing the shares among blockchain addresses, encrypting the weights, receiving signatures from the blockchain addresses, reconstructing the encryption key using the signatures and shares, verifying the authenticity of each signature, decrypting the weights using the reconstructed key if all signatures are verified, and updating the transformer model with the decrypted weights. The input privacy layer includes down projection, transformation, and up projection operations.
Owner:K2 NETWORK LABS INC

Port task processing method of satellite test operation control system

The invention relates to the technical field of satellite telemetering and remote control, and discloses a port task processing method for a satellite measurement, operation and control system, which comprises the following steps of: 1, detecting all available network interfaces through a port scanner, and establishing a multi-path communication channel comprising a public network, a private network and a satellite link; step 2, acquiring packet loss rate, delay, bandwidth and jitter parameters of each path in the multi-path communication channel in real time, and updating the parameters based on a preset period; and step 3, generating a comprehensive score of each path according to the packet loss rate, the delay, the bandwidth and the jitter parameters. According to the method and the device, the technical scheme of dynamic scoring and switching of the multi-path communication channel is adopted, and the technical effect of automatically selecting the optimal path according to the real-time network performance is achieved; the problems of high transmission delay, large packet loss rate and incapability of adaptive adjustment caused by network fluctuation are solved.
Owner:BEIJING CREATUNION INFORMATION TECH CO LTD

Food production traceability management system based on block chain

The invention discloses a food production traceability management system based on a block chain, which belongs to the field of food management systems, and is characterized in that a unique identifier ID of an inheritor is generated based on an SHA-256 Hash algorithm, a Merkle tree root Hash value of food production data is dynamically associated, a non-tampering digital identity file is constructed, a data island of traditional decentralized management is broken through, and the traceability of food production is improved. According to the technical scheme, full-chain credible association between the non-abandoned technology and the production process is ensured, validity of an electronic signature is automatically verified by means of an intelligent contract, data tampering or identity failure risks are recognized in real time by comparing a public key decryption result with a signature hash value, JSON format alarms are pushed by means of Apache Kafka message middleware, cross-department collaborative response is achieved, and the security and reliability of the electronic signature are improved. The risk prevention and control efficiency is remarkably improved, encryption signature is performed in combination with an ECDSA key pair of a hardware security module, strong binding of an inheritor identifier, a production batch and equipment is ensured, identity fraudulent use or qualification counterfeiting is prevented, and traceability of the whole life cycle of non-abandoned skill inheritance is achieved.
Owner:BEIJING KAIWU DIGITAL TECH CO LTD

Utilizing two-terminal resistive switching memory to store validation data of an integrated circuit device

An electronic device can be validated at a circuit-level or device-level to provide supply chain verification of an integrated circuit (IC) product. A modern integrated circuit package can comprise multiple dies, systems and circuitry built from a variety of device-level structures. Device-level verification disclosed herein can confirm that a device-level (sub-) component of an integrated circuit product is sourced by a known or otherwise valid manufacturer. This serves to mitigate or avoid a hacking attempt involving illicit replacement of a component of an IC product by an intermediate handler of the IC product within a supply chain.
Owner:CROSSBAR INC

Certificate authorization access control system and method based on face encryption features, and camera holder

The invention relates to the technical field of human face encryption, and discloses a certificate authorization access control system and method based on human face encryption features and a camera shooting pan-tilt, and the method comprises the steps: carrying out the synchronous scanning of visible light and near-infrared light domains of a high-safety protection region through distributed multi-mode collection nodes; extracting a geometric boundary, a spectral texture and an ambient light drift parameter of the human face; performing elliptic domain homomorphic reversible encryption operation on the first face original data stream, and constructing a re-computable face encryption vector oriented to cross-terminal authentication in combination with a time sequence random salt value and a device side secure element key; calling a multi-dimensional confidence fusion network to predict the authenticity evolution trajectory of the current access session based on the identity composite identifier; defining the access request and the influence range corresponding to the abnormal trend vector as high-risk candidate segments; and performing intervention decision on the authorized evolution path based on the local access dependency graph. The method has the advantage of improving the access control capability in a high-security scene.
Owner:BEIJING PARKWAY TECH CO LTD

NTRU-based efficient and compact key packaging, encryption and decryption method

The invention discloses an efficient and compact key packaging, encryption and decryption method based on NTRU. The invention belongs to the technical field of lattice passwords, and particularly relates to an NTRU-based secret key packaging, encrypting and decrypting method with scalable ciphertext compression and balanced performance. According to the method, a public key compression and scaling ciphertext compression technology is provided for an NTRU password system, only one polynomial is needed in the encryption and decryption process, and the technology is also suitable for other password schemes based on NTRU. The method has the advantages of being shorter in ciphertext size, more flexible in parameter selection, capable of proving security under classical and quantum random oracle models, tighter in theoretical security protocol advantage, higher in known attack resistance, efficient in implementation, negligible in error rate and the like.
Owner:FUDAN UNIVERSITY

Communication authentication method and system of train on-board network, storage medium and equipment

The invention provides a communication authentication method and system for a train-mounted network, a storage medium and equipment, and the method only completes the key negotiation operation in the process of executing the communication authentication of the train-mounted network, enables the subsequent communication process to be executed based on a session key obtained through the negotiation of a first verification party and a second verification party, and improves the communication authentication efficiency. According to the method and the device, identity information of two communication parties is mutually verified, only a request carrying identity information of a verification party needs to be sent once in a primary communication process, only a session key generated by negotiation needs to be carried in a subsequent communication process, lightweight processing is performed on a communication authentication protocol, and the communication authentication protocol can be obtained by introducing a pairing-free password system based on an identity label. According to the method, a complex pairing process does not need to be executed, the number of calling times of Hash is reduced, the protocol calculation overhead is reduced, the communication efficiency is improved on the basis of ensuring the credible access authentication of a train-mounted network and the credible transmission of a control message, and the influence on the real-time performance of a train network monitoring management system is avoided.
Owner:NAT HIGH SPEED TRAIN QINGDAO TECH INNOVATION CENT

Networking intelligent key dynamic key management system supporting multi-device binding

The invention discloses a networking intelligent key dynamic key management system supporting multi-device binding, particularly relates to the technical field of Internet of Things security, and is used for solving the problem that a cryptographic attack path is exposed due to key residue of an existing dynamic key management system. According to the system, an instruction analysis module receives an equipment unbinding instruction and extracts an equipment identifier; the residual positioning module marks residual nodes based on the identification deep search key tree; the fragment confusion module divides the key fragments into length non-geometric progression fragments and generates confusion fragments through elliptic curve encryption; the pollution evaluation module calculates a mutual information value of the confusion fragments and a parent key, and determines a hierarchical pollution coefficient in combination with a key entropy attenuation curve; the path decision module segments or recombines a key path according to a pollution coefficient threshold; and the key updating module constructs a new key tree, distributes updated sub-keys to the binding equipment, clears key residual relevance and blocks generation of a cryptographic attack path.
Owner:LIAONING ZHIWEI ELECTRONIC TECHNOLOGY CO LTD

RFID electronic tag anti-collision processing system

The invention discloses an RFID electronic tag anti-collision processing system, which relates to the technical field of radio frequency identification and comprises an encryption module, a signal processing module and a real-time processing module. The encryption module is used for realizing label identity verification based on a hash function; the signal processing module adopts a mixed anti-collision mechanism combining a time slot ALOHA protocol and a binary tree search algorithm; the real-time processing module comprises a multi-channel parallel processing unit, and each channel is configured with an independent local frequency. According to the RFID electronic tag anti-collision system, the encryption module, the signal processing module and the real-time processing module are combined, the problem of multi-tag collision of the RFID technology in a high-density and dynamic application scene is effectively solved, the encryption module adopts a hash function and an elliptic curve encryption algorithm, safe and efficient verification of tag identities is achieved, and the security and reliability of the RFID electronic tag are improved. The innovative hybrid anti-collision mechanism of the signal processing module is the combination of a slot ALOHA protocol and a binary tree search algorithm.
Owner:SHANDONG HUAGUAN SMART CARD

Anti-counterfeiting traceability system and method based on Beidou satellite positioning and block chain

The invention discloses an anti-counterfeiting traceability system and method based on Beidou satellite positioning and a block chain. The method comprises the following steps: generating a current positioning data tuple; performing validity judgment on the satellite signal quality index; generating current event summary information, performing encryption calculation on the event summary information by using a private key embedded in a commodity and improving a verifiable random function, and outputting a random seed and a verification proof; constructing an event fingerprint and generating an event signature by using a private key; a challenge request is generated when the commodity request state is migrated, the commodity end device responds to the challenge request and collects new Beidou positioning information, and a challenge response data packet is constructed; and performing consistency verification on the challenge response data packet according to the virtual state resume smart contract, writing the verified data into a geographic sub-chain, recording an event abstract hash path by a main chain, and updating a commodity state transfer path. According to the invention, based on Beidou positioning and an improved verifiable random function, the credible verification of the commodity position and the traceable management of the state are realized.
Owner:DALIAN CHANGTAI BEIDOU SATELLITE TECH DEV CO LTD +1

File fragmentation encryption transmission method and device based on B / S (Browser / Server) architecture

The invention discloses a file fragment encryption transmission method and device based on a B / S architecture, and belongs to the field of information security. The problem of systematic contradiction among file transmission efficiency, safety and reliability is solved. The method comprises the following steps: determining a fragmentation threshold value, and carrying out self-adaptive fragmentation processing on an original file; respectively performing RSA public key encryption and AES random key secondary encryption on each fragment file to generate a double-encrypted file; writing the SHA-3 hash value of each fragment file and the timestamp information into a block chain network to generate a non-tampering meta-file; a multiplexing transmission channel is established, a meta-file and an encrypted file set are downloaded at the same time, and each fragment adopts an independent transmission thread; verifying the consistency of the Hash value of the downloaded file and the blockchain evidence, and executing an exponential backoff retransmission strategy on the fragments which fail in verification; and performing streaming decryption recombination on the verified fragments to generate a temporary file with a digital watermark. The method is mainly used in data transmission field.
Owner:BEIJING SENYI INTELLIGENT TECHNOLOGY CO LTD

Bank anti-money laundering data model construction method based on privacy calculation

The invention provides a bank anti-money laundering data model construction method based on privacy computing, and the method comprises the steps: recognizing node role diversity and topology mutation characteristics through an encryption topology framework, extracting transaction paths and a multi-layer nesting relation between nodes, analyzing the role distribution of a transaction main body, and obtaining a dynamic path mutation set; according to the dynamic path mutation set, accounts with short use cycles and accounts with frequently changed transaction subjects are screened out and marked as potential suspicious transaction subjects, and a preliminary suspicious transaction subject list is obtained; identifying transaction records of the preliminary suspicious transaction subject list, screening out high-risk transaction subjects with false registration information or key identity information missing, and obtaining a high-risk transaction subject subset; and counting a plurality of small transactions of the high-risk transaction subject subset, identifying distribution characteristics and multi-layer transfer paths of the small transactions, and extracting fund splitting modes and hidden flow direction characteristics to obtain a high-risk transaction path characteristic graph.
Owner:HENGFENG BANK CO LTD SHENZHEN BRANCH

System and Method for Direct, Structured, and Versioned Data Storage and Retrieval on a Blockchain Network

The present embodiment discloses a novel process and system for storing versioned data on the Bitcoin blockchain network. This process involves generating derived public keys linked to specific versions and data parts using a key tweaking method, and storing each data part on the blockchain using its associated derived public key. Information about versions and parts are stored in root transactions. An API is provided for managing the stored data, with options for encryption, checksums, data anchoring, timestamping, segmentation, and digital signatures. AIDIOS, a data protocol designed for direct storage and retrieval on the Bitcoin blockchain, is also included. This system allows for significant amounts of data to be stored directly on the blockchain.
Owner:DATAFAIR INC

Protecting tokenized structures using a protection architecture

Systems, methods, and computer-readable storage media to protect non-fungible tokens (NFTs) using a protection architecture. One method includes protecting the NFT including tracking, utilizing the overlay ledger, an association of NFT ownership of a plurality of NFTs and storing and protecting, utilizing a blockchain storage, the plurality of NFTs. The method further includes receiving an exchange request and exchanging the NFT on us including determining the customers have an NFT account with the overlay ledger and executing an on-us exchange based on updating the overlay ledger.
Owner:WELLS FARGO BANK NA