Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

72results about How to "Balance security" patented technology

Firmware online upgrading method, embedded device, medium and product

PendingCN121879804ARapid self-healing and controllabilityFast self-healing faultsBootstrappingSoftware deploymentRandom access memoryComputer engineering
The invention provides a firmware online upgrading method, embedded equipment, a medium and a product, and relates to the technical field of intelligent terminals. The method comprises the following steps: after the embedded equipment is powered on, running a primary bootstrap program, and checking a first mark state: if the state is a state of updating a secondary bootstrap program, executing online updating of the program and resetting a system; and if the state is the default state, loading and running the secondary bootstrap program. Checking a second mark state; if the second mark state is an updating mirror image state, executing firmware mirror image online updating and resetting; and if the state is the default state, determining a target mirror image, copying the target mirror image from the nonvolatile memory to the random access memory, and skipping to run. And the equipment simultaneously monitors the running state of the target mirror image in real time, and executes successful confirmation or abnormal recovery operation according to the state. In this way, quick response of faults is achieved through running state feedback, the stability and reliability of firmware upgrading of the embedded device are effectively improved, and the risk of device paralysis in the upgrading process is reduced.
Owner:SUZHOU DEGA STORAGE TECH CO LTD

Secure cross-border data transmission method based on semantic analysis

The invention relates to the technical field of cross-border data secure transmission, and particularly discloses a semantic analysis-based cross-border data secure transmission method, which comprises the following steps of: dividing a sender credit investigation level through a multi-source credit investigation acquisition and semantic analysis model; the method comprises the following steps: preprocessing to-be-transmitted multi-modal data, and classifying the data through semantic alignment; matching transmission authority according to credit investigation levels and data types, separating transmittable data according to core / non-core data, and performing hierarchical encryption according to sensitive types of the data; data are transmitted through a cross-border private line of a TLS1.3 protocol, a sliding window and a retransmission mechanism are combined, and the integrity is verified by adopting a Hash algorithm. According to the invention, compliance dynamic adaptation is realized, protection precision and reliability are improved, and safety and efficiency are balanced.
Owner:GUILIN UNIVERSITY OF TECHNOLOGY

Flask with explosion-proof function

ActiveCN224086785UEasy to diffuse and dischargereduce impactFlasksStructural engineeringBottle neck
The utility model relates to the technical field of chemical reagent experiments, in particular to a flask with an explosion-proof function, which comprises a safety plug, the bottom end of the safety plug vertically penetrates through an opening at the top end of a thin bottle neck, a ball bottle body is arranged at the bottom end of the thin bottle neck, and a pressure relief through pipe is arranged on the outer wall of one side of the ball bottle body. And a pressure relief valve obliquely penetrates through the interior of the pressure relief through pipe, one side of the outer portion of the ball bottle body is sleeved with a first protective net sleeve, and one side of the first protective net sleeve is connected with a second protective net sleeve in an adsorption mode. According to the improved flask and the safety plug, automatic pressure adjustment is achieved, a controllable pressure relief channel is formed, the sealing performance and the safety are balanced, the relative positions of the pressure relief valve and the pressure relief hole are changed, high-pressure gas can be conveniently diffused and discharged in a fan shape through the pressure relief hole, the impact force and danger of gas injection are reduced, meanwhile, the pressure relief valve has a reset mechanism, and the safety performance is improved. The first protective net sleeve and the second protective net sleeve can effectively intercept large glass fragments generated when the bottle body is broken, and the large glass fragments are prevented from splashing to hurt people.
Owner:CHENGDU CHAOJIUBA BIOTECHNOLOGY CO LTD

Method, system, device and medium for security management of large model based on core particle architecture

PendingCN122263185AGuaranteed safe storageFast reasoningInternal/peripheral component protectionPlatform integrity maintainanceSimulationBus
The application provides a large model security management method, system, device and medium based on a core particle architecture, which can be applied to the technical field of semiconductor integrated circuits. The method comprises the following steps: setting a physically isolated special security core particle as a hardware trusted root in a heterogeneous integrated system, and connecting the special security core particle with at least one target core particle running a large model through a bus; deploying a lightweight security supervision model with a smaller parameter quantity than the large model in the special security core particle; collecting behavior characteristic data of the target core particle running the large model in real time; performing inference by using the lightweight security supervision model, calculating an abnormality metric between the current behavior of the target core particle and a preset normal behavior model; updating a dynamic trust state of the target core particle based on the abnormality metric; and performing a hardware-level security response operation by the special security core particle in response to the dynamic trust state reaching a predetermined threshold.
Owner:INST OF SEMICONDUCTORS - CHINESE ACAD OF SCI

A method and system for lightweight secure communication between in-vehicle network ECUs

ActiveCN121077828BIncrease communication delayImplement legality verificationKey distribution for secure communicationPublic key for secure communicationPlaintextCommunications security
The present application relates to the technical field of in-vehicle network communication, and discloses a lightweight and secure communication method and system between ECUs in an in-vehicle network. The communication method comprises an ECU identity authentication phase: each ECU interacts with a CAN gateway, and the CAN gateway performs batch identity authentication to verify the legality of all ECUs; a data classification phase: according to the data sensitivity, the data to be transmitted is classified as confidential data or non-confidential data; a data transmission phase: if the data to be transmitted is confidential data, the sender ECU uses a session key and an ASCON encryption algorithm to encrypt and authenticate the plaintext of the confidential data, generates ciphertext and authentication parameters, and sends a data packet containing the ciphertext and authentication parameters to the receiver ECU; if it is non-confidential data, the sender ECU uses a session key and an ASCON encryption algorithm to only sign but not encrypt the plaintext, generates an authentication tag, and sends a data packet containing the plaintext and the authentication tag to the receiver ECU. The present application takes into account the security and computational overhead of in-vehicle ECU communication.
Owner:HEFEI UNIV OF TECH

Pulmonary fibrosis organ-like model and construction method and application thereof

The invention relates to the technical field of organoid culture, in particular to a pulmonary fibrosis organoid model and a construction method and application thereof. The pulmonary fibrosis organ-like model is obtained by co-culturing lentivirus stably transfected alveolar epithelial cells, human embryonic lung fibroblasts MRC-5 and macrophages. According to the invention, macrophages are innovatively introduced, a ternary co-culture system of lentivirus stably transfected alveolar epithelial cells, human embryonic lung fibroblasts MRC-5 and macrophages is constructed, and a key'epithelial injury-immune infiltration-fibroblast activation 'pathological triangle in a pulmonary fibrosis pathogenesis process can be more comprehensively simulated; the finally obtained pulmonary fibrosis organ-like model provides an efficient tool for pulmonary fibrosis mechanism research and research, development and screening of anti-pulmonary fibrosis drugs.
Owner:SHANGHAI CELLIVER BIOTECHNOLOGY CO LTD +1

A data synchronization method and system based on front-end orchestration management

PendingCN122093407ASolving Conflict PuzzlesPrecision FusionElectric digital data processingSecuring communicationData synchronizationMessage queue
This invention discloses a data synchronization method and system based on front-end orchestration management, belonging to the field of data synchronization. The method includes the following steps: selecting the data table and field information to be monitored through the front-end interface, generating configuration information, and orchestrating the synchronization process logic according to business needs; storing the configuration information in real time to the configuration center to generate real-time monitoring rules; capturing changed data of the data table and field information, encapsulating it into standard data units and sending it to a message queue; preprocessing the standard data units in the message queue; the synchronization adaptation module matching the corresponding driver type according to the synchronization process logic to generate a synchronization instruction set, and executing data synchronization operations based on the preprocessing results; performing full-link monitoring of the synchronization process, and performing task lifecycle management based on the lifecycle rules configured on the front end. This invention improves synchronization efficiency through dynamic threshold verification, multi-source field fusion weighting, and dynamic encryption strategies, and the full-link monitoring further enhances front-end manageability.
Owner:SICHUAN ZHONGDIAN AOSTAR INFORMATION TECHNOLOGIES CO LTD

Multistage risk management and control digital safety monitoring management method

PendingCN121765765AImprove real-time defense capabilitiesReduce false alarm rateFinanceDigital data protectionRisk levelAttack
The invention discloses a multi-level risk management and control digital safety monitoring management method. The method comprises the following steps: firstly, collecting system and supervision index data and determining a risk level; secondly, extracting supervision historical data to form an operation sequence, converting the operation sequence into a dynamic directed graph, constructing a cause and effect graph model to output a baseline, and setting a threshold value; triggering deep temporary verification according to different levels of user super-operation times, detecting an artifact attack, and closing a session and performing early warning if an exception occurs; after verification is passed, behavior and supervision features are captured at the key business process node for secondary authority authentication; after the authentication is passed, performing short-time dynamic authorization and recording changes; according to the scheme, through acquisition of insurance data hierarchical management and control, a model is constructed in combination with historical operation to identify abnormity, attack is blocked by using a dynamic threshold value and deep verification, risks are prevented and controlled through secondary authentication of key nodes, short-time dynamic authorization gives consideration to flexibility and security, the real-time defense capability of a system for sensitive data leakage and other risks is improved, the false alarm rate is reduced, and the safety of the system is improved. And a full-life-cycle intelligent safety protection system is formed.
Owner:PICC HEALTH INSURANCE CO LTD

Blockchain-based ticket settlement verification method and system

PendingCN122656634AStrengthen compliance management and control capabilitiesBalance processing efficiencyTicketAlgorithm
The application discloses a blockchain-based ticket settlement verification method and system, relates to the technical field of financial transaction safety, and comprises the following steps: S1, receiving a cross-border order submitted by a buyer, verifying the order integrity and the authenticity of the buyer's identity by using a digital signature algorithm, analyzing and extracting the buyer's information, the HS code of the commodity, the payment amount and the currency, and completing the consistency comparison of the ticket basis information in combination with the corresponding tax payment price interval of the HS code; S2, calling an off-chain risk control engine to carry out multi-dimensional compliance verification in parallel, generating a comprehensive risk score and dividing a risk level; after the verification, a preset aggregation template is matched based on the risk level, a unique feature identifier of the order is generated by using a hash algorithm; the risk level is adaptively matched with batch aggregation parameters and on-chain priority, and differentiated dynamic scheduling of off-chain batch evidence is realized. The application realizes full-dimensional pre-checking to avoid false transaction risks, and builds a risk level adaptive adjustment mechanism to balance business processing efficiency and risk control safety.
Owner:SHANGHAI LINGXIA TECHNOLOGY CO LTD

An earthquake disaster simulation training method and system

This invention discloses an earthquake disaster simulation training method and system, aiming to solve the problems of low multi-system timing synchronization accuracy, insufficient immersion and training realism, fixed configuration, and high scene adaptation costs in existing earthquake simulation systems. This method initializes the system by loading a structured configuration file, establishing a globally unified time reference for all system control nodes; it uses real-time audio-visual timecodes to drive the calculation of the target magnitude, generating synchronization control commands with unified execution timestamps to achieve timing alignment of vibration, audio-visual, and environmental effects; it implements hierarchical safety control throughout the entire process, and completes system reset through a progressive termination sequence after the process ends. This invention significantly improves the synchronization accuracy and immersion of earthquake simulation, enhances system scalability, reduces scene adaptation costs, and ensures the safety of the training process.
Owner:ZHONGKE QINGYU (BEIJING) VISION TECHNOLOGY CO LTD

Vehicle fault-tolerant control method under abnormal condition of multivariable measurement sensor

The invention discloses a vehicle fault-tolerant control method under the abnormal condition of a multivariable measurement sensor, and belongs to the crossing field of electric digital data processing and intelligent driving vehicle control technologies. The method comprises the following steps: firstly, based on spatial-temporal correlation and physical consistency constraints of multi-source sensor data, carrying out redundancy modeling and credibility evaluation on a key state of a vehicle; then, when it is detected that the sensor is abnormal, real-time compensation and correction of failure observation are achieved through a state reconstruction model driven by redundant data; and further combining a rapid fault identification and virtual sensor switching mechanism to construct a fault-tolerant control strategy for the minimum function demand of the vehicle so as to ensure that the vehicle can still maintain basic driving and safety control capability under the condition that the functions of part of sensors are damaged. According to the invention, the real-time performance of the system is ensured, the safety and robustness of the intelligent driving vehicle in a complex environment and an abnormal condition are obviously improved, and the method is suitable for a multi-sensor fusion intelligent vehicle control system.
Owner:LIAONING UNIVERSITY

Safety data management system and method based on emergency rescue intelligent cabinet

The application relates to the field of intelligent cabinet management, in particular to a safety data management system and method based on an emergency rescue intelligent cabinet, which comprises a material grading module, a permission management module, a distribution planning module, a space supervision module and an emergency identification module, the material grading module is used for establishing a material grading system, the permission management module is used for determining the opening permission of a high-grade material storage compartment, the distribution planning module is used for constructing a gridding model and determining the optimal layout of the intelligent cabinet, the space supervision module is used for setting the positions of common cabinets and supervision points, and the emergency identification module is used for determining the core area of an emergency event; the application can reduce the setting cost of the intelligent cabinet, optimize emergency resource management, balance the convenience and safety of the intelligent cabinet, shorten the material deployment time, improve the emergency response speed, realize event detection and dynamic adjustment mechanism based on a material flow mode, and provide rapid and effective material guarantee for emergencies.
Owner:JIANGSU LIXIN INTELLIGENT TECHNOLOGY CO LTD

Metering task-oriented dual-core heterogeneous isolation anti-cheating system and implementation method

The invention discloses a dual-core heterogeneous isolation anti-cheating system oriented to a metering task and an implementation method. The system comprises a trusted processing core which is responsible for functions of hardware trust root management, program legality authentication, peripheral management and control, resource access authorization and the like and is completely isolated from a metering service core; all external interactions are carried out through the trusted processing core, so that the security is ensured; the metering service core focuses on executing specific tasks and efficiently processing data; the secure storage area is only accessed by the trusted processing core to protect the security of key information; the business storage area is used for storing an operation program and temporary data of the metering business core and supporting update after verification; the lightweight interaction mechanism ensures that the metering service core interacts with the trusted processing core through the trusted channel via the information carrying the specific identifier when the peripheral needs to be accessed or the interrupt needs to be processed. By implementing the method provided by the invention, not only can comprehensive management and control on peripherals, whole-process encryption on data and whole-process recording on operation behaviors be realized, but also the metering safety and the system efficiency can be effectively balanced.
Owner:ZHEJIANG MUSTARD SEMICON TECH CO LTD

A multi-factor dynamic authentication IoT network security access platform

This invention relates to the field of Internet of Things (IoT) technology, specifically to a multi-factor dynamic authentication IoT network security access platform. In this invention, a device behavior acquisition module acquires the real-time behavior characteristics of IoT devices requesting access; a behavior feature analysis and matching module performs feature transformation on the real-time behavior characteristics to generate behavior feature authentication factors, and calculates their matching degree with a pre-set legal behavior feature model for first-level authentication judgment; a multi-factor strategy dynamic decision-making module, based on this result, uses the matching degree as a dynamic weight adjustment parameter to adjust the verification strategy strength of other authentication factors in real time and generate a multi-factor authentication strategy; a comprehensive authentication and access control module performs comprehensive authentication based on this multi-factor authentication strategy and combines the behavior feature authentication factors for second-level authentication judgment, thereby controlling network access; this process achieves dynamic adjustment of authentication strategy strength and continuous verification of device behavior.
Owner:NETWORK SECURITY BASE (SHANDONG PROVINCE) SECURITY TECHNOLOGY SERVICES CO LTD

Sensitive data access method and device, electronic equipment and computer program product

The invention provides a sensitive data access method and system, electronic equipment and a computer program product, belongs to the technical field of computers, and aims to solve the problems of existing sensitive data in aspects of data protection, sharing and the like. The method is used for supporting a computing platform of a first execution mode and a second execution mode and comprises the following steps that trusted firmware is operated in the first execution mode, a user program is operated in the second execution mode, and a secure storage area where sensitive data are located is set to be inaccessible to the second execution mode through the trusted firmware; in response to a hardware exception triggered by an access instruction of the user program to the secure storage area, interrupting execution of the user program, entering an exception handling program in a first execution mode, and executing an access agent operation in the exception handling program through trusted firmware; and after the trusted firmware completes the proxy access operation, triggering an exception return instruction to recover the execution of the user program.
Owner:XINSHENG TECHNOLOGY CO LTD +2

Light-storage integrated electric energy storage regulation and control system and method

PendingCN121983963AOvercome the shortcomings of traditional single-dimensional forecastingOvercoming the shortcomings of single-dimensional forecastingData processing applicationsAc network load balancingControl systemControl engineering
The invention discloses a light-storage integrated electric energy storage regulation and control system and method, and particularly relates to the technical field of electric energy storage regulation and control. Based on multi-dimensional characteristic parameters of a photovoltaic side, an energy storage side, a load side and a power grid side, a rolling prediction logic is adopted, a power generation and load trend coefficient, an adjustment coefficient and a mapping rule are combined, a photovoltaic power generation rate and a load demand power prediction result are dynamically optimized, the defects of traditional single-dimensional prediction are overcome, and the prediction efficiency is improved. Coupling influence of assembly temperature, illumination intensity and the like is fully considered, prediction deviation is greatly reduced, and reliable data support is provided for accurate regulation and control.
Owner:TIANJIN LIGHT IND VOCATION TECHN COLLEGE

A method for quantifying heterogeneous risks of intelligent vehicle-human interaction conflicts and trajectory prediction

This invention discloses a method for risk quantification and trajectory prediction considering the heterogeneity of interactions between intelligent vehicles and humans, relating to the fields of intelligent transportation systems, autonomous driving, and vehicle-road cooperative technologies. It generates a dynamic risk heatmap and constructs a model representing the strength of pedestrian and vehicle decision-making indices. The initial risk features extracted from the dynamic risk heatmap are concatenated with the model representing the strength of pedestrian and vehicle decision-making indices to form a risk feature vector F. risk ; Depth trajectory feature vector F traj With risk feature vector F risk After feature fusion, each future T is predicted. pred The system predicts the trajectory at each time step and calculates the estimated risk value for each prediction point. By probabilistically transforming the potential field and using a dynamic index of the strength relationship between pedestrians and vehicles, it describes behavioral uncertainty and analyzes the risk game from a heterogeneous perspective, thereby improving the accuracy and safety of trajectory prediction.
Owner:HEFEI UNIV OF TECH

Crystal-Kyber algorithm parameter determination method, computer readable medium and electronic equipment

The invention belongs to the technical field of post quantum cryptography, and discloses a Crystal-Kyber algorithm parameter determination method, a computer readable medium and electronic equipment, and the method comprises the steps: obtaining scene features of a target scene, querying a mapping relation obtained in a Q table learning stage based on the scene features, and obtaining a parameter combination matched with the target scene. In the Q table learning stage, a parameter combination corresponding to each scene feature is trained by exploring expected long-term reward values under different parameter combinations. The dynamic decision-making capability of Q table learning is combined with the parameter characteristics of the Crystal-Kyber algorithm, and the parameter combination of the Crystal-Kyber algorithm is adaptively adjusted according to the attack intensity, hardware state, service type and other characteristics of the target scene, so that the parameter combination adaptive to the application scene can be effectively selected, and the service performance of the application scene is improved. The dynamic balance requirement of'safety-performance-resource 'in different application scenes is met, and the parameter combination determination process is objective and efficient.
Owner:ETHERCORE TECHNOLOGY (SHENZHEN) CO LTD

Perfluorinated modified and multifunctional peptide integrated bPEI derivative delivery carrier, carrier / pDNA compound and preparation method of carrier / pDNA compound

PendingCN121779576AImprove transmembrane transport efficiencyPromote specific uptakePolypeptide with localisation/targeting motifPeptide preparation methodsGeneCell biology
The invention provides a perfluorinated modified and integrated multifunctional peptide bPEI derivative delivery carrier, a carrier / pDNA compound and a preparation method thereof, and belongs to the technical field of gene delivery systems. The preparation method comprises the following steps: S1, dissolving bPEI in methanol, adding pentafluoropropionic anhydride, carrying out a first reaction, and dialyzing the obtained reaction liquid to obtain PF; s2, dissolving DBCO-ss-COOH in DMF (Dimethyl Formamide), adding EDC.HCl and NHS (N-Hydroxysuccinimide), and carrying out second reaction, so as to obtain a reaction solution after carboxyl activation; adding the carboxyl-activated reaction solution into a PF solution, carrying out a third reaction, and dialyzing the obtained reaction solution to obtain PF-DBCO; and S3, adding polypeptide RGD-NLS (N3)-TAT into the PF-DBCO solution, carrying out a fourth reaction, and dialyzing the obtained reaction solution to obtain the PF-RNT. Through double design of perfluorinated modification and RGD-TAT-NLS polypeptide functionalization, the problems of endosome retention, insufficient nuclear localization, relatively high toxicity and the like of traditional bPEI are solved in the continuous and efficient delivery process of transmembrane transport, nuclear localization and transcription expression, so that excellent balance is achieved between transfection efficiency and biological safety.
Owner:BEIJING QINGKE BIOTECHNOLOGY CO LTD

Whole-process simulation and blasting pressure prediction method for weak-rigidity core mold composite material shell

PendingCN121859660Aimprove accuracySolve the pain point of being unable to quantify stress inheritance throughout the entire processGeometric CADDesign optimisation/simulationElement modelProcess simulation
The invention discloses a full-process simulation and blasting pressure prediction method for a weak-rigidity core mold composite material shell, and belongs to the technical field of solid rocket engine integrated explosive forming shell design. The method comprises the following steps: designing an equal residual stress tension system based on a fiber winding layer stress theory; constructing a finite element model in the shell winding process, iteratively optimizing a tension system and determining a stress field and a strain field after winding; taking the stress field and the strain field as predefined fields, constructing a finite element model in the curing process, and calculating the stress field and the strain field after curing; and based on the stress field and the strain field after curing, progressive damage analysis is realized through a three-dimensional Hashin criterion, and the maximum blasting pressure of the shell with the powder is predicted. The problems that in the prior art, a tension system lacks collaborative optimization, simulation cannot cover the whole process, and blasting prediction deviation is large are solved, precise coupling prediction of the process and performance is achieved, and theoretical support is provided for optimization of the integrated forming process.
Owner:XI AN JIAOTONG UNIV

A browser kernel-based HTTPS data packet capturing method and system

The application discloses a kind of HTTPS data packet capture method and system based on browser kernel, it is related to network security technical field.The present application aims at solving the problem that user needs to manually install certificate and configure proxy in the existing HTTPS packet capture scheme, and cannot bypass HSTS preload, resulting in the problem of invalid packet capture for specific domain name.The application injects policy judgment logic at the HSTS decision core function of the browser kernel network stack, and realizes the interception and hierarchical decision of domain name request by setting multi-level bypass strategy (at least including aggressive mode and intelligent mode).In particular, in intelligent mode, it can distinguish between preloaded HSTS and dynamic HSTS, and only return the prohibition upgrade instruction for the domain name in the preloaded list, allowing it to downgrade to HTTP communication for packet capture.At the same time, the root certificate is automatically generated and installed when the browser starts, and the built-in local proxy is implemented to realize zero-configuration packet capture.The present application reduces the use threshold of packet capture tool, solves the problem of invalid packet capture caused by HSTS preload, and balances functionality, ease of use and security.
Owner:HANHUI INTELLIGENT (BEIJING) TECHNOLOGY DEVELOPMENT CO LTD

A collision detection and early warning method and system for underground trackless equipment

ActiveCN121784772BImprove robustnessSolve the problem of frequent false alarmsCollision detectionClassical mechanics
The application relates to the technical field of anti-collision detection, in particular to an anti-collision detection and early warning method and system for underground trackless equipment, which comprises the following steps: acquiring the hinged angle of the underground trackless equipment and the linear speeds of the left and right front wheels in real time; calculating the steering driving pressure difference, combining the hinged angle at each sampling time, and the difference between the theoretical linear speed difference and the actual linear speed difference of the left and right front wheels to construct the wheel speed slip deviation; calculating the echo radial speed of each scanning point; screening all obstacle candidate points based on the correlation degree of the steering driving pressure difference and the echo radial speed, and then obtaining the obstacle distance at the current sampling time; reducing the deceleration by using the wheel speed slip deviation, then calculating the minimum safe braking distance at the current sampling time, and comparing the minimum safe braking distance with the obstacle distance to determine whether to perform obstacle early warning. The above method improves the early warning accuracy of obstacles in narrow spaces and the braking safety on wet and slippery roads.
Owner:山金重工有限公司

A USB copy file digital watermark protection method based on multi-dimensional dynamic tracing

PendingCN122263070AImprove resistance to attackHigh precisionDigital data protectionProgram/content distribution protectionUSBFile copying
The application provides a USB copy file digital watermark protection method based on multi-dimensional dynamic tracing, and relates to the technical field of data security and copyright protection. Through the cross-system kernel level monitoring module, Windows / Linux / macOS is adapted, USB device plugging and file copying operations are listened to; through AI risk model prediction grading response, multi-class factor encryption watermark seed is dynamically extracted, file is embedded in different areas and USB device identification is bound; offline caching and network synchronization are supported, combined with privacy desensitization and three-level permission extraction system. The method realizes the whole process protection of pre-judgment, in-process controllability and post-tracing, breaks through the limitations of single system and passive tracing, improves the watermark anti-attack ability and tracing accuracy, balances safety and privacy compliance, and adapts to the needs of multiple scenes and multiple industries.
Owner:YANGTZE ECOLOGY & ENVIRONMENT CO LTD

A method for preventing covert communication in ARM platform caches based on noise loading injection

This invention discloses a method for defending against cached covert communication on an ARM platform based on noise loading injection. Due to the expanding attack surface of TEEs and the vulnerabilities of TrustZone technology in microarchitectural isolation, cached covert communication has become possible. This invention adds a defense mechanism against cached covert communication based on TrustZone technology, designing a cached covert communication defense architecture based on noise loading injection. Based on this architecture, a dynamic monitoring mechanism, a strategy optimization mechanism, and a noise injection mechanism are proposed. The dynamic monitoring mechanism monitors system security and system performance. The strategy optimization mechanism generates the optimal noise injection strategy and calculates the noise injection frequency and intensity in real time. The noise injection mechanism loads data to resist cached covert communication. This defense method improves the security of the original architecture and achieves low performance overhead, balancing system security and performance.
Owner:BEIJING UNIV OF TECH

Layered permission adaptive access control method and device based on student information system

PendingCN122087864Areduce the risk of abuseshort opening hoursResource allocationDigital data protectionPersonalizationResource utilization
The invention relates to the technical field of information system authority control and access management, and discloses a hierarchical authority adaptive access control method and device based on a student information system, and the method comprises the steps: analyzing a user access log, extracting a daily access record, carrying out the statistics of the number of times of access in each time period, and marking a high-frequency access interval; counting key peak intervals for the high-frequency access intervals to generate a time domain behavior set; comparing the role association data with the time domain behavior set, and determining a personalized behavior feature description set; extracting a time rule to generate a temporary permission rule list; according to the system resource occupation data, dynamically adjusting permission rules, and generating an optimized permission rule combination; sequencing according to a time rule to generate a permission allocation sequence; and updating the permission storage structure and automatically executing permission granting operation. According to the method, self-adaptive permission allocation based on the user behavior mode and the system load can be realized, and the system security and the resource utilization rate are improved.
Owner:SICHUAN VOCATIONAL & TECHN COLLEGE

Industrial gas cylinder life cycle traceability management system and operation and maintenance method

PendingCN122596656AKeep historical versions permanentlyAchieving auditability
The present application relates to the technical field of special equipment safety management, in particular to a life cycle traceability management system and operation and maintenance method for industrial gas cylinders, which sets six core modules to realize multi-source data credible packaging, event cause alignment, graphed time sequence storage, safety situation quantitative evaluation, scenario-based risk matching and closed-loop operation and maintenance optimization; the corresponding method constructs a full-link traceable and auditable gas cylinder management system through six core steps, realizes the collaborative balance of risk pre-warning and safety-gas supply, and is suitable for safety control and intelligent operation and maintenance of the whole process of industrial gas cylinder manufacturing, inspection, filling, use and scrapping.
Owner:GUANGZHOU YIZHONG INFORMATION TECHNOLOGY CO LTD

Self-adaptive quantum random number generation method based on real-time entropy estimation

PendingCN121887389Abalance securityBalanced generation efficiencyKey distribution for secure communicationStatistical analysisMinimum entropy
The invention relates to a self-adaptive quantum random number generation method based on real-time entropy estimation, and belongs to the technical field of quantum random number generation. According to an existing integrated quantum random number generator, due to the non-stationary characteristic of a physical entropy source, the entropy rate dynamically drifts, and after-processing parameters are fixed, randomness safety and generation efficiency are difficult to guarantee at the same time. According to the method, the state transition probability of the original random bit stream is counted in real time, the confidence interval correction is introduced to calculate the minimum entropy, the input bit width is dynamically adjusted accordingly, the Toeplitz matrix is reconstructed for random extraction, and self-adaptive adjustment of the compression ratio is achieved. According to the method, the compression ratio is increased to ensure the security of the output random number when the entropy source quality is reduced, and the compression ratio is reduced to improve the generation efficiency when the entropy source quality is improved, so that the dynamic balance between the randomness security and the generation efficiency is realized on the premise of keeping integration and low cost.
Owner:CHONGQING UNIV OF POSTS & TELECOMM +1

An immersive indoor three-dimensional design method supporting multi-person online collaboration

PendingCN122548829AAutomatically unlock permissionsBalanced operability
This invention relates to the field of interior 3D design technology, and particularly to an immersive interior 3D design method supporting multi-user online collaboration. For interior 3D design components, the method categorizes them hierarchically according to functional zones, individual components, and attributes to construct a spatial topology model containing spatial topological relationships and dependency constraints. Based on this model, it divides the system into region-level, component-level, and attribute-level minimum locking units. User behavior features collected by the interactive terminal are used to predict operational intentions, and a set of minimum locking units required for the target operation is generated. Mutually exclusive locking is executed using independent rules. By monitoring the idle time of locked units, permissions are released when a locked unit times out. The status and permissions of all locked units are synchronized to the collaborative terminal to achieve online collaborative design. This invention effectively avoids chain locking and operation blocking, ensuring the freedom of multi-user concurrent editing and the security of mutually exclusive operations.
Owner:EZHOU VOCATIONAL UNIV

A low-power operation adjusting method for a tire pressure monitoring system based on user driving habits

ActiveCN121947532BSolve power consumptionfix security issuesTyre measurementsMachine learning
The application relates to a low-power operation adjustment method for a tire pressure monitoring system based on user driving habits, which comprises the following steps: obtaining navigation planning information and real-time road condition information; determining an actual driving scene according to real-time vehicle speed and road traffic data, and generating conflict event information when a preset road type is inconsistent with the actual driving scene; obtaining a user driving habit image containing a conflict response habit sub-image; predicting a personalized behavior mode based on the conflict event information and the user habit image; and dynamically generating and executing a corresponding tire pressure monitoring power consumption adjustment strategy according to the predicted behavior mode. Through deep integration of scene conflict detection and user conflict response habits, the application solves the problem of strategy mismatch when a preset scene is inconsistent with an actual scene in the prior art, and realizes intelligent power consumption management according to roads and users.
Owner:SUZHOU SATE AUTO ELECTRONICS

Blockchain-based password authentication key exchange and authentication method resistant to quantum attacks

This invention discloses a quantum-attack-resistant blockchain-based password authentication key exchange and authentication method. The method involves inputting preset parameters, a trapdoor, a matrix, a noise vector, a password, and a public key into a computer system; executing a parameter generation algorithm to generate public parameters; executing a hash key generation algorithm to generate a hash key and a projected hash key generation algorithm to generate a projected hash key; generating a tag based on the identifiers of both communicating parties and the projected hash key, encrypting it to obtain ciphertext, and transmitting and receiving the projected hash key and ciphertext from the communicating party; verifying the validity of the communicating party's projected hash key, and generating a session key based on relevant parameters; and finally, the computer system processor executes a computer program and outputs the session key. This invention integrates a lattice-based smooth projected hash function with a trapdoor and a blockchain structure, possessing quantum attack resistance, general composable security characteristics, requiring only one round of communication, and is suitable for large-scale blockchain node scenarios.
Owner:GUIZHOU UNIV