Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

2644results about "Public key for secure communication" patented technology

Safety control method and system for remote control of Internet of Things

The invention relates to the technical field of management of the Internet of Things, and discloses a security control method and system for remote control of the Internet of Things, and the system comprises a security remote control platform, a zero-trust gateway, an authentication module, a security policy engine, edge proxy equipment and an encryption communication module. And the authentication module is used for performing identity authentication on the equipment and the user. The security policy engine dynamic access control table comprises access rule entries and associated signature information, and is issued to the edge proxy device through the zero-trust gateway. And the edge proxy device stores the dynamic access control table, verifies the signature information based on the platform public key, and performs matching and verification according to the access rule entry when receiving the control instruction. And the encryption communication module is used for performing encryption transmission on the access control table, the control instruction and the execution result. According to the invention, the whole process of remote control of the Internet of Things is dynamic, secure and credible, and the anti-attack capability and operation reliability of the system are effectively improved.
Owner:JINLANCHEN (BEIJING) TECHNOLOGY CO LTD

Network security analysis early warning system based on artificial intelligence

The invention discloses a network security analysis early warning system based on artificial intelligence, and the system comprises a data collection layer which captures full flow based on DPI, aggregates firewall logs, terminal behaviors and threat intelligence, and constructs a structured data pool; through TLS fingerprint identification of AI driving, the encrypted traffic is penetrated, and a sampling strategy is dynamically adjusted in combination with reinforcement learning. The intelligent analysis layer is used for carrying out cross validation on known threats and abnormal behaviors; the time sequence CNN extracts encrypted traffic features, and a novel threat detector is rapidly generated by using historical attack fragments in combination with a meta-learning framework; sHAP value driving dynamic feature selection and optimization feature vector input; the decision-making early warning layer is used for fusing multi-source features through a Bayesian network and generating 0-100 score risk scores; a self-adaptive threshold module is combined to adjust a score threshold in real time, and a high-risk event is pushed; the collaborative response layer is used for triggering a preset decision tree, deploying a GAN dynamic honeypot to trap an attacker and reversely tracing; the Neo4j visually restores the attack path, and blocking is executed after the threat is confirmed by a progressive response mechanism.
Owner:CHINA GEOLOGICAL SURVEY XINING NATURAL RESOURCES COMPREHENSIVE SURVEY CENT

Server BMC dynamic security authentication and firmware protection method and system based on hardware root of trust

The invention discloses a server BMC dynamic security authentication and firmware protection method and system based on a hardware root of trust, relates to the technical field of server remote management security, and discloses the server BMC dynamic security authentication and firmware protection method and system based on the hardware root of trust, which realize dynamic authentication by generating a device fingerprint through a security chip. According to the method, a multi-layer protection mechanism is constructed in combination with fragment encryption, differential hash check and memory integrity verification, and meanwhile, the data credibility is enhanced by using a block chain storage key hash value, so that the problems of static authentication risk, insufficient firmware tampering detection and missing of a trust chain in a traditional scheme are effectively solved, and the security protection capability of a BMC system can be improved.
Owner:SHENZHEN HUAKUN INFORMATION TECH CO LTD +1

Encryption-based power grid cross-domain operation and maintenance data secure transmission method and system

The invention relates to the technical field of data encryption and transmission, in particular to a power grid cross-domain operation and maintenance data secure transmission method and system based on encryption, and the method comprises the steps: pre-judging a current risk through a historical network security event, dividing a network environment into different risk intervals based on a risk level evaluation value, encryption strategies with different intensities are correspondingly matched, so that refined security management and control with higher risk and stronger protection are realized; a triple progressive identity authentication system of an equipment layer, a dynamic layer and a biological layer is constructed, a dynamic permission management and control mechanism driven by identity attributes and risk levels is constructed, a basic permission boundary is determined based on inherent identity attributes of an operation and maintenance terminal, and permission strength and validity period are dynamically adjusted in combination with a risk level evaluation value. And finally, generating an access control strategy only adapted to the current terminal, the current risk and the current access request, so as to perform data encryption and transmission through the target encryption strategy and the access control strategy, thereby ensuring the security of data transmission.
Owner:STATE GRID SIJI DIGITAL TECH (BEIJING) CO LTD +1

Secure communication method for edge node and terminal equipment based on dynamic key negotiation

The invention relates to a secure communication method for an edge node and terminal equipment based on dynamic key negotiation. The method comprises the following steps: the terminal equipment sends an initial signal when initiating a communication request; the edge node generates a scenarized first key negotiation parameter and feeds back the scenarized first key negotiation parameter after passing dual identity and state verification; after the terminal device decrypts the parameter, a dynamic entropy value is collected by combining a network adaptive sensor, and a second key negotiation parameter associated with the first parameter feature is generated; the two parties calculate session keys based on an ECDH algorithm, and the consistency of the keys is ensured through dynamic entropy verification and Hash comparison; and after the key negotiation succeeds, entering a hierarchical encrypted data transmission stage, and dynamically updating a session key based on a multi-dimensional trigger mechanism. According to the method, through hardware credibility verification, a scenarized key strategy, dynamic entropy enhancement and national secret algorithm adaptation, dynamic management of keys and adaptive matching of terminal resources are achieved, attacks such as equipment counterfeiting and parameter tampering are effectively resisted, and the high-security and compliance requirements in the fields of industrial control and the like are met.
Owner:BEIJING HUAKUN ZHENYU INTELLIGENT TECH CO LTD

Utilizing two-terminal resistive switching memory to store validation data of an integrated circuit device

An electronic device can be validated at a circuit-level or device-level to provide supply chain verification of an integrated circuit (IC) product. A modern integrated circuit package can comprise multiple dies, systems and circuitry built from a variety of device-level structures. Device-level verification disclosed herein can confirm that a device-level (sub-) component of an integrated circuit product is sourced by a known or otherwise valid manufacturer. This serves to mitigate or avoid a hacking attempt involving illicit replacement of a component of an IC product by an intermediate handler of the IC product within a supply chain.
Owner:CROSSBAR INC

System and Method for Direct, Structured, and Versioned Data Storage and Retrieval on a Blockchain Network

The present embodiment discloses a novel process and system for storing versioned data on the Bitcoin blockchain network. This process involves generating derived public keys linked to specific versions and data parts using a key tweaking method, and storing each data part on the blockchain using its associated derived public key. Information about versions and parts are stored in root transactions. An API is provided for managing the stored data, with options for encryption, checksums, data anchoring, timestamping, segmentation, and digital signatures. AIDIOS, a data protocol designed for direct storage and retrieval on the Bitcoin blockchain, is also included. This system allows for significant amounts of data to be stored directly on the blockchain.
Owner:DATAFAIR INC

Factory real-time digital monitoring method and system based on Internet of Things, and storage medium

The invention relates to the technical field of industrial monitoring, and discloses a factory real-time digital monitoring method and system based on the Internet of Things, and a storage medium. The method comprises the following steps: carrying out encryption access on heterogeneous Internet of Things equipment through dual identity authentication to obtain a security authentication equipment identifier pool; performing multi-dimensional data acquisition on the equipment identification pool based on Hash verification to obtain an encrypted time sequence data chain; performing dynamic identification on the factory visual image by adopting a confidence adaptive threshold to obtain a multi-task fusion feature code; performing heterogeneous fusion on the time sequence data chain and the feature code by using a sliding window weight distribution algorithm to obtain a factory digital state fingerprint; and performing knowledge graph reasoning on the state fingerprint through three-level early warning threshold judgment to obtain a real-time risk level early warning code. The technical problems that heterogeneous Internet of Things equipment cannot be uniformly accessed and authenticated, multi-source data lacks safety fusion processing, and the factory state cannot be intelligently reasoned and pre-warned are solved.
Owner:BEIJING TIANYUAN 3D TECH CO LTD

Configurable number-theory transformation parallel computing acceleration method and device for post quantum cryptography algorithm

The invention discloses a configurable number-theory transformation parallel computing acceleration method and device for a post quantum cryptographic algorithm, and relates to the technical field of cryptographic algorithms. The number theory transformation is a calculation bottleneck in lattice-based post-quantum cryptography and PQC; a hardware accelerator specially designed for number theory transformation (NTT) is an effective solution for improving the execution speed. At present, a mainstream design neglects the influence of the scale of a calculation array, so that the design of an NTT calculation circuit is poor in flexibility and low in memory utilization rate, and a two-dimensional reconfigurable number theory transformation acceleration circuit is provided; the method is applied to a key generation stage, an encryption stage and a decryption stage of the post-quantum cryptographic algorithm. The NTT reconfigurable computing circuit provided by the invention can keep the utilization rate of hardware resources, and is suitable for mobile terminal equipment with limited resources; the NTT circuit adopts a low-complexity memory mapping scheme, so that the address control logic is greatly simplified, and the hardware overhead is reduced.
Owner:BEIJING INST OF TECH +1

Ciphertext decryption method and related equipment

The application discloses a ciphertext decryption method and related equipment applied to ciphertext encrypted according to an RSA algorithm, and the method comprises the following steps: acquiring a large number in ciphertext and a public key of the ciphertext; selecting a number smaller than the large number as a base of a discrete logarithm problem, selecting 1 as a modulus power operation result corresponding to the base, and converting the base and the modulus power operation result into an initial quantum state; inputting the initial quantum state into a quantum computing module for solving the discrete logarithm problem to obtain a first target quantum state in which a solution result of the discrete logarithm problem is stored; extracting the solution result from the first target quantum state, and calculating a private key of the ciphertext based on the solution result; and decrypting the ciphertext based on the private key to obtain plaintext of the ciphertext. Through the technical scheme, the private key can be recovered according to the disclosed information in the case that the private key is not disclosed, and then the ciphertext is decrypted, so that the related technical blank is filled.
Owner:ORIGIN QUANTUM COMPUTING TECH (HEFEI) CO LTD

Government affair data dynamic authorization management method based on secure multi-party computing

The invention discloses a government affair data dynamic authorization management method based on secure multi-party computing, and relates to the field of government affair data security authorization management, and the method comprises the steps: distributing a unique identity identifier for each participant, generating an asymmetric key pair through employing a national secret SM2 algorithm, registering a public key and mechanism attribute information to an alliance chain smart contract, and generating an identity certificate package; and based on attribute information in the identity credential packet, the participants cooperatively generate anti-quantum dynamic attribute-based encryption key fragments through a secure multi-party computing protocol, and the anti-quantum dynamic attribute-based encryption key fragments are distributed to the participants by adopting a threshold secret sharing technology. Threshold decryption and token verification are achieved through an alliance chain verification intelligent contract, an authorization record is generated, an access control strategy of an edge computing node is configured according to the authorization record, an oblivious transmission protocol is adopted to respond to data query, and an audit node monitors an access log, dynamically adjusts attribute weight parameters and synchronizes the attribute weight parameters to a key fragment.
Owner:CHINA NAT INST OF STANDARDIZATION

Dynamic key threshold fragmentation privacy tracing method based on block chain collaborative verification

The invention discloses a dynamic key threshold fragmentation privacy tracing method based on block chain collaborative verification, and belongs to the field of information security. According to the method, a dynamic key is taken as a hub, decentralized identity, zero-knowledge verification, deep watermark and threshold collaborative decryption are deeply coupled, a temporary key generated by each conference is split into a plurality of fragments, the fragments are stored in a distributed manner by a block chain node and a tracing unit, only a hash fingerprint combined by the fragments is subjected to chaining and evidence storage, and the dynamic key is subjected to zero-knowledge verification and deep watermark and threshold collaborative decryption. A light evidence chain which cannot be tampered but has no privacy exposure is formed; participants are anonymously accessed through a verifiable certificate without leaking specific information, and truth of anonymous identity is ensured through signature of a trusted unit; when data leakage occurs, the tracing unit extracts a watermark, compares a zero knowledge proof, verifies the relevance between a leaked ciphertext and a chain fingerprint, triggers a multi-party threshold decryption recovery key, and finally accurately positions a person in charge in combination with the encrypted and stored DID mapping table without exposing irrelevant information in the whole process.
Owner:NANJING UNIV OF INFORMATION SCI & TECH +1

Modern agriculture digital authentication large model

The embodiment of the invention provides a modern agriculture digital authentication large model, and belongs to the field of agricultural big data and artificial intelligence, an agricultural data authentication method comprises the steps that data information of a target farm is acquired, and the data information comprises crop information, farm information and production information; according to the crop information, the farm information and the production information, a block chain is constructed, and the block chain comprises a main chain, a logistics sub-chain, a quality inspection sub-chain and a production sub-chain; block chain evidence storage is carried out on the block chain to obtain an authentication certificate of each crop in the target farm, and the block chain evidence storage comprises production data evidence storage, environmental data evidence storage, management data evidence storage, processing data evidence storage and tactile data evidence storage; and performing data tracking on the crops in the target farm according to the authentication certificate. According to the method, the agricultural yield and value are accurately estimated, and the agricultural planting scheme is optimized.
Owner:BEIJING OMEDIUM TECHNOLOGY CO LTD

Medical logistics data tracing method and system based on block chain

The invention belongs to the field of data protection, and provides a medical logistics data tracing method and system based on a block chain, and the method comprises the steps: carrying out the stage division of a circulation link of medical supplies; generating a plurality of verification tokens based on the block content of the stage after data writing is completed in each stage; executing state verification operation on all the verification tokens one by one, if all the verification tokens in the verification set pass verification, allowing the data of the current stage to be written into the block chain, and establishing a validity inheritance relationship with the previous stage; if the verification is not passed, stopping the data writing operation of the current stage and all subsequent stages; and marking the frozen subsequent stage block as a non-updatable state, constructing an auditing structure associated with the freezing mark, and performing on-chain auditing evidence storage on the state element and the verification failure reason of the frozen node. According to the invention, the reliability of medical logistics data traceability can be improved.
Owner:ZHONGJIAN YUNKANG (GUANGZHOU) LOGISTICS SUPPLY CHAIN CO LTD

Systems and methods for implementing a service identity platform with cloud-based Public Key Infrastructure (PKI)

Systems and methods for implementing a service identity platform with cloud-based Public Key Infrastructure (PKI) include providing security as a service via a cloud-based system for a plurality of tenants, wherein the cloud-based system includes a plurality of components communicatively coupled and adapted to communicate with one another based on mutual Transport Layer Security (mTLS) authentication; responsive to a new component requiring deployment within the cloud-based system, performing an enrollment process for the new component; and subsequent to the enrollment process, utilizing the new component within the cloud-based system for providing security as a service.
Owner:ZSCALER INC

Block chain-based blood full-process traceability tracking and safety management system and method

The invention discloses a block chain-based blood full-process traceability tracking and safety management system and method, and relates to the technical field of blood management, and the method comprises the steps: distributing an encrypted digital identifier with a timestamp for each blood unit; collecting physical characteristic data of the blood storage environment in real time; dynamically adjusting the state mark of the blood product based on a preset plasma quality evaluation model; a threshold signature technology is adopted to ensure that multiple medical institutions complete blood information verification and sharing on the premise of protecting privacy; when it is monitored that the blood environment parameters exceed a safety threshold value, graded early warning is generated, and an emergency processing flow is started; and establishing a blood circulation whole process auditing tracking system. The system has the advantages that the blood whole-process traceability system based on the block chain is constructed, transparent credible management of the whole life cycle of blood products from collection to use is achieved, the trust and privacy protection problem in multi-mechanism cooperation is solved, and the blood safety management level and the emergency processing efficiency are comprehensively improved.
Owner:苏州市卫生监督所

Key shard verification for key storage devices

In certain embodiments, verification operations are performed. A first device packaged with a second device may store a first key shard and a second key. The first key shard may be a same key shard as a corresponding key shard stored on the second device, where the second key is different from a corresponding key stored on the second device. Additionally, the first key shard and the corresponding key shard are associated with a user. In connection with a request from a web service, the first device or a computing device may generate a response to the request using the second key by identifying the second key using an identifier of the request. Furthermore, the first device or the computing device may send the response to the web service, where the web service confirms registration of the first key shard based on the response.
Owner:UNIT 410 LLC

Digital asset management method and device, equipment, storage medium and program product

The invention discloses a digital asset management method and device, equipment, a storage medium and a program product, and the method comprises the steps: carrying out the hash calculation of transaction data when a super SIM card receives a transaction request carrying transaction data sent by first equipment, and generating a transaction hash value; performing hierarchical signature on the transaction hash value through a preset signature algorithm, and triggering personal identification code authentication of the user so as to release signature data of the hierarchical signature after the personal identification code authentication is passed; and sending the verification abstract of the personal identification code and the signature data to a block chain network, so that the block chain network verifies the signature data, stores the signature data after verification is passed, and returns a transaction confirmation event to the first device. According to the embodiment of the invention, the super SIM card is used as a security carrier, and the transaction data hash calculation, the hierarchical signature and the personal identification code authentication are combined, so that the whole-process security protection of the digital asset transaction is realized, and the security of the digital asset transaction can be effectively improved.
Owner:CHINA MOBILE INTERNET CO LTD +1

Wide-area time traceability credible authentication method in electric power heterogeneous network environment

The invention discloses a wide-area time traceability credible authentication method in a power heterogeneous network environment, and belongs to the technical field of power system informatization and automation. Comprising the following steps: acquiring various high-precision time source information in a power heterogeneous network environment, and acquiring an initial time reference of the power system time synchronization device; generating uniform reference time, and embedding a digital watermark containing time source information and credibility thereof for each timestamp by using the digital watermark embedding module; controlling the power system time synchronization device to sequentially generate time transmission fingerprints at all levels of network nodes; constructing a unique time fingerprint chain covering the whole link; packaging the time fingerprint of each time transmission node and the traceability information thereof, and performing uplink storage; precise prediction and optimal control of time transmission errors are realized; if the overall cumulative time error exceeds a range of + / -10 [mu] s, the predictive correction is maintained until the error is controlled within + / -10 [mu] s.
Owner:INFORMATION & COMM CO OF STATE GRID SHAANXI ELECTRIC POWER CO LTD

SM2 collaborative signature, encryption and decryption system and method fusing anti-quantum characteristics

The invention discloses an SM2 collaborative signature and encryption and decryption system and method fusing anti-quantum characteristics, and relates to the field of cryptography and information security. According to the method, an anti-quantum cryptographic algorithm and a national cryptographic SM2 cooperative computing framework are deeply integrated, and a key security system is constructed: SM2 sub-private keys, anti-quantum key pairs and public keys are acquired and generated through an anti-quantum algorithm software and hardware enhancement module, and the private keys are encrypted and stored and are regularly alternated; on the basis of anti-quantum collaborative signature, encryption and decryption modules, an anti-quantum verification mechanism is embedded, and data is transmitted in combination with a national secret TLCP protocol, so that signature, encryption and decryption operations are completed; the equipment integration and dynamic security control unit monitors a security state, calculates a threat index to generate a protection strategy, and dynamically switches a security mode, so that the problems of insufficient security, vulnerability to attacks and data tampering of a traditional SM2 algorithm under the threat of quantum computing are effectively solved; and the long-term anti-attack capability and the operation reliability of the equipment in a high-security demand scene are remarkably improved.
Owner:ZHEJIANG ICINFO TECH

Controlling execution of machine learning models

In an example, an apparatus is described. The apparatus comprises processing circuitry comprising a control module. The control module determines whether a computing device communicatively coupled to the control module is in a specified state for executing a machine learning model controlled by a third party entity. In response to determining that the computing device is in the specified state, the control module is to send, to an attestation module in a data processing pipeline associated with the computing device, an indication that the computing device is in the specified state.
Owner:HEWLETT PACKARD DEVELOPMENT COMPANY LP

Super-threshold data set intersection method and system for security information processing

The invention belongs to the technical field of information security, and particularly relates to a super-threshold data set intersection method and system for security information processing. The method comprises the following steps: S1, carrying out casual key value pair storage OKVS encoding and decoding between each participant and other participants; s2, each participant constructs a hash table according to a decoding result and elements of the participant; and S3, sending the constructed hash table to a specified party, summarizing information in the hash tables of all participants by the specified party, and finally obtaining a super-threshold intersection result by using a secret sharing scheme. The method has the characteristics that the hardware and operation and maintenance cost can be reduced, the data security is enhanced, and the calculation efficiency is improved, so that the industrial control requirement of short-time response is met.
Owner:ZHEJIANG SCI-TECH UNIV

Asynchronous crypto asset transfer and social aggregating, fractionally efficient transfer guidance, conditional triggered transaction, datastructures, apparatuses, methods and systems

The Asynchronous Crypto Asset Transfer and Social Aggregating, Fractionally Efficient Transfer Guidance, Conditional Triggered Transaction, Datastructures, Apparatuses, Methods and Systems (“SOCOACT”) transforms transfer of assets (TOA) initiation request inputs via SOCOACT components into TOA confirmation outputs. A crypto asset transfer notification is sent to a first entity from a second entity. Account verification data generated by the second entity is determined. A set of account data stored by the first entity is retrieved and used to generate a hash. It is verified that the determined account verification data matches the generated hash. A requested asset is determined. An API call to generate a crypto token asset for the requested asset in a socially aggregated blockchain datastructure is made. An address of an aggregated crypto transaction trigger entry is determined. Oracle data that satisfies the crypto smart rule is provided.
Owner:FMR CORP

Autonomous computing system for cryptographic asset tokenization, digital currency operations, redemption, detokenization, and lifecycle management

The present invention provides an autonomous computing system for cryptographic asset tokenization, digital currency operations, redemption, detokenization, and full lifecycle management of tokenized assets. The system leverages formal cryptographic proofs, hybrid off-chain and on-chain ledger synchronization, and automated execution protocols to enhance regulatory compliance, asset-backed stability, and operational autonomy. Smart contracts, cryptographic hash-based commitments, and distributed validation mechanisms ensure secure, verifiable, and tamper-resistant transactions across decentralized, centralized, and hybrid environments. The system governs the entire token lifecycle by intrinsically linking asset state validation to both on-chain and off-chain records. Hardware-agnostic cryptographic processing enforces governance rules, validates asset-backed token states, and prevents over-issuance. Real-time integrity checks and automated reconciliation deliver a scalable, cryptographically secured framework for autonomous management of tokenized assets and digital currency transactions, minimizing reliance on intermediaries.
Owner:RADMAN JOHN

Multi-level Internet of Things equipment security management and access control method

The invention belongs to the technical field of Internet of Things security, and particularly relates to a multi-level Internet of Things equipment security management and access control method, which comprises the following steps of: performing bidirectional verification on a digital certificate and a hardware fingerprint through an edge node when equipment is accessed; calculating credibility in real time and dynamically dividing security levels by using a hybrid evaluation algorithm based on equipment operation context data; a fine-grained access strategy is generated in combination with equipment attributes and environmental risks, and cross-level collaboration is realized through a lightweight protocol; abnormal behaviors are detected in real time in the access process, and high-risk operation is blocked within milliseconds; and strategy conflict resolution and adaptive optimization are realized through formalized verification and deep reinforcement learning. According to the technical scheme, the identity authentication reliability, the authority dynamic adaptability, the strategy consistency and the threat response speed of the Internet of Things equipment are remarkably improved, and a systematic security guarantee is provided for large-scale Internet of Things applications with high security requirements.
Owner:XIANNING YUCHUANG TECHNOLOGY CO LTD

Unmanned aerial vehicle electronic identity card identification and management method based on 4G / 5G cloud control

The invention discloses an unmanned aerial vehicle electronic identity card identification and management method based on 4G / 5G cloud control, and belongs to the technical field of unmanned aerial vehicle traffic control systems, and the method comprises the steps: obtaining an initial connection request sent by an unmanned aerial vehicle, and building an initial communication link; an identity inquiry instruction is generated and sent to the unmanned aerial vehicle through the initial communication link and signed to generate a response signature; and calling a public key pre-bound with the identity identification code to decrypt and verify the response signature, generating an identity confirmation voucher to upgrade the attribute of the initial communication link into a high-credibility management channel, performing position credibility evaluation and comprehensive decision, and generating a remote management and control instruction to manage the unmanned aerial vehicle. According to the method, a mode of combining challenge response type dynamic identity authentication and multi-source position information cross comparison is adopted, a high-credibility management and control channel between the unmanned aerial vehicle and the cloud platform can be established, and the comprehensive credibility state of the unmanned aerial vehicle is evaluated in real time, so that the safety and reliability of traffic management and control of the unmanned aerial vehicle are improved.
Owner:SHANDONG RONGLING TECH GRP CO LTD

Data trusted sharing method based on block chain consensus mechanism

The invention discloses a trusted data sharing method based on a block chain consensus mechanism. The method comprises the following steps: S1, constructing an alliance chain network; s2, completing KZG polynomial commitment generation, ML-KEM algorithm encryption storage and pointer registration; s3, the data provider medical institution completes an evidence storage transaction of the FROST threshold signature; s4, the target medical institution completes the access request transaction; s5, the data provider medical institution sends a KZG unpacking proof and a data item, the target medical institution obtains a storage pointer and a commitment value, KZG verification check is executed, and after verification is passed, an ML-KEM algorithm is executed for depacking to obtain a session key; and S6, the target medical institution completes the audit transaction, and after the alliance chain network broadcast, the consensus node executes rule verification of the access control contract and the audit contract. The multi-node electronic medical record sharing and tamper-proof evidence storage method is high in performance and traceability, and is suitable for credible circulation of sensitive health data among multiple medical institutions.
Owner:HUNAN YUNHANG EDUCATION TECH CO LTD

Data access control method and system based on zero knowledge proof

The invention provides a data access control method and system based on zero-knowledge proof, and relates to the technical field of data access control. According to the method, a root key of a unique hardware identity is generated through a physical unclonable function of a data request equipment chip, and meanwhile, real-time running state data of equipment is collected; the two are subjected to cryptographic binding to form an equipment credible state voucher; secondly, detecting capacitance field disturbance when data holding equipment approaches through a capacitive proximity sensor array, and generating an interactive response mode; then, the equipment credible state certificate and the interactive response mode serve as private input to generate a composite zero-knowledge proof, and identity authenticity and physical proximity are proved to data holding equipment at the same time on the premise that sensitive information is not leaked; and after the data holding device passes verification, the data access permission is authorized immediately, and a temporary encryption communication channel is established, so that the reliability and instantaneity of security authentication between IoT devices can be improved.
Owner:NANJING YISHENG SAFETY TECH RES INST CO LTD +1

Data tamper-proofing method, system and device based on block chain evidence storage and storage medium

The invention discloses a data tamper-proofing method, system and device based on blockchain evidence storage, and a storage medium, relates to the field of data processing, and is used for solving the problems that multi-source heterogeneous data lacks a unified processing scheme and evidence storage verification is incomplete in existing property management. The method specifically comprises the following steps: multi-modal feature processing: extracting text and image data features respectively, and generating a unified feature vector by combining cross-modal attention mechanism weighted fusion; generating a hash value and a block chain evidence, generating the hash value by adopting an SHA-256 function, and generating a dynamic two-dimensional code in an association manner; and user verification: after scanning the two-dimensional code, locally reproducing feature processing and Hash calculation, and comparing a Hash value on a chain through an elliptic curve cryptography technology to complete verification. According to the method, full-process credible evidence storage of the property data is realized, the data tamper-proofing capability and verification convenience are improved, and property scene data management requirements are met.
Owner:SHANDONG LANGCHAO SMART CULTURAL TOURISM IND DEV CO LTD

Thermal power generating unit collaborative frequency modulation method and system based on block chain federated learning

The invention relates to the technical field of power system frequency modulation control, in particular to a thermal power generating unit collaborative frequency modulation method and system based on block chain federated learning. According to the method, a decentralized P2P network is constructed through a block chain technology, and model parameters are initialized based on a secret sharing mechanism; carrying out local training by adopting an adaptive federal near-end optimization algorithm, measuring data isomerism through KL divergence and dynamically adjusting a regular coefficient; carrying out noise addition on a sample by adopting differential privacy, and carrying out homomorphic encryption to realize parameter encrypted transmission; selecting representative nodes based on a block chain consensus mechanism to execute parameter aggregation in the encryption domain; and multi-unit collaborative frequency modulation is realized through model prediction control. According to the method, the problems of data privacy protection, heterogeneous data adaptation and decentralized cooperative training are solved, and the stability of power grid frequency regulation and control is improved.
Owner:STATE GRID JIANGXI ELECTRIC POWER CO LTD RES INST