Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

44results about How to "Improve defense" patented technology

A blockchain-based trusted distributed hybrid expert model edge computing system

ActiveCN121168529Bvalid recordeffective trackingResource allocationKnowledge representationEdge computingAttack
This invention relates to the fields of machine learning and edge computing technology, specifically to a blockchain-based trusted distributed hybrid expert model edge computing system. The system includes a task publisher for publishing learning tasks, which may be training or inference tasks; a blockchain network for receiving learning tasks and evaluating expert weights to obtain sparse activation expert index results; a blockchain network for receiving learning task processing results from the edge layer and achieving consensus; a gating network deployed within the blockchain network; an edge layer for downloading the corresponding expert model from the storage layer based on the sparse activation expert index results to process the learning tasks and uploading the processing results to the blockchain network; and a storage layer for storing all expert networks, each with a CID. This invention significantly improves the defense capability of the distributed MoE network against malicious edge node data tampering attacks, thereby ensuring the learning performance of the MoE system.
Owner:NANJING UNIV OF SCI & TECH

A digital human intelligent wake-up interaction device and method integrating voiceprint recognition and facial recognition

This invention belongs to the field of human-computer interaction and discloses a digital human intelligent wake-up interaction device and method that integrates voiceprint recognition and facial recognition. The method includes: responding to a wake-up trigger signal by simultaneously acquiring a user's video stream and audio stream; extracting the temporal trajectory of facial key points during the user's speech from the video stream and encoding the temporal trajectory of the facial key points into a dynamic behavior feature vector; extracting the user's static facial structure feature vector from the video stream and extracting the user's voiceprint feature vector from the audio stream; inputting the dynamic behavior feature vector, the static facial structure feature vector, and the voiceprint feature vector into a pre-trained multimodal fusion model to calculate a comprehensive matching degree; and generating a wake-up command and outputting it to the digital human interaction module when the comprehensive matching degree is greater than or equal to a preset threshold. This invention significantly improves the robustness and reliability of identity verification.
Owner:CHINA UNICOM ONLINE INFORMATION TECHNOLOGY CO LTD +1

Secure transmission method, device, equipment, medium and product

The invention discloses a secure transmission method and device, equipment, a medium and a product, and the method comprises the steps: obtaining an access request of a client and a current randomized tag pre-distributed to a web application in a server, and triggering the updating of the current randomized tag through a network attack association feature; scheduling a pre-trained target detection model based on the access request, and determining a security detection result of the access request; if the security detection result is secure, sending the access request to a server, and receiving a response result fed back by the server; and performing behavior analysis on the response result according to the current randomized tag, determining security feedback content and feeding back the security feedback content to the client. By dynamically updating the current randomized tag, the randomness of the defense form is enhanced, the method does not depend on the attack mode of an attacker, novel attacks or attack variants can be dealt with in real time, double attack detection of security detection and behavior analysis is carried out on the access request, and the detection capability and defense capability of the attacks are improved.
Owner:PURPLE MOUNTAIN LAB

Method of defending against attacks and smart card

PendingCN122741020AImprove defenseimprove security
Embodiments of the present application provide a method for defending against attacks and a smart card, and relate to the technical field of finance or information security. The method is applied to a smart card, and the method comprises: obtaining to-be-processed data; performing dynamic interference in the process of encrypting or decrypting the to-be-processed data; wherein the smart card generates first energy in the process of encryption or decryption, and the dynamic interference generates dynamically changing energy, so that the energy consumption law of the superimposed energy is irrelevant to the energy consumption law of the first energy, and the superimposed energy is the superposition of the first energy and the energy of the dynamic interference. The method of the present application improves the defense effect of the smart card against side-channel attacks.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Rodent and termite resistant fire resistant light weight power cable

ActiveCN224595274Uprevent invasionReduce the possibility of breaking through the inner layer
The utility model discloses a kind of fireproof light power cable of rat and termite prevention, including conductor, the outside of the conductor is equipped with shielding layer, the outside of the shielding layer is equipped with insulating layer, the outside of the insulating layer is equipped with inner protective layer, the outside of the inner protective layer is equipped with physical protection layer, the outside of the physical protection layer is equipped with protective net layer, in the utility model, the power cable, by inner protective layer inner layer elastic memory resistance layer hardens and releases chlorpyrifos when receiving ≥5N bite pressure, outer layer honeycomb metal-ceramic composite layer improves bite resistance strength;Physical protection layer forms barrier with material hardness;Protective net layer can release medicament, and the defense capability of rat and termite bite is improved compared with traditional cable by multilayer protection;And insulating layer uses high-temperature resistant material to guarantee fireproof basis;Inner protective layer outer layer honeycomb metal-ceramic composite layer can form fireproof barrier when meeting fire.These structures cooperate and improve the fire resistance in fire situation compared with traditional cable.
Owner:ANHUI DUJIANG CABLE GROUP

Acne-removing composition containing natural plant components and preparation method of acne-removing composition

PendingCN121845987AImprove defensereduce hypersecretionCosmetic preparationsAntipyreticBiotechnologyGlobularia cordifolia
The invention relates to an acne-removing composition containing natural plant components and a preparation method of the acne-removing composition, and belongs to the technical field of cosmetics. The invention provides an acne-removing composition containing natural plant components. The acne-removing composition is prepared from rhodomyrtus tomentosa fruit extract, hydrolyzed red algae extract, hydrangea crassifolia leaf extract, Lagopsis supina extract and ceramide. Wherein the antibacterial and anti-inflammatory effects of the rhodomyrtus tomentosa fruit extract and the anti-inflammatory and soothing effects of the Lagopsis supina extract directly resist the core etiology and symptoms of acne; the hyperactivity of sebum is reduced by the hydrangea crassifolia leaf extract; the hydrolyzed red algae extract can buffer potential stimulation and maintain skin hydration; ceramide can strengthen the self-defense capability of the skin and prevent relapse during treatment; the five components supplement each other and have a good acne removing effect.
Owner:MCGILL (SHENYANG) PHARMACEUTICAL CO LTD

Time synchronization information security identification method and system based on self-attention mechanism

The invention discloses a time synchronization information security identification method and system based on a self-attention mechanism, and relates to a time synchronization and high-precision clock technology, and the system comprises a data collection and processing module which is used for receiving, caching and processing original time information data, converting the original time information data into variable input of a self-attention matrix calculation module, and outputting the variable input of the self-attention matrix calculation module; the variable input is a preprocessed clock error sequence; the self-attention matrix calculation module is used for receiving the preprocessed clock error sequence, calculating context correlation of clock error data and outputting a probability matrix; the security identification decision module is used for averaging all time points represented by the sequence so as to aggregate and obtain global features; global features are mapped into abnormal probabilities through weights and offsets, and sequence judgment results are divided into normal results and abnormal results through binary decision. According to the invention, illegal information embedded in a complex modulation mode can be effectively identified, and the perception and defense capability of the system to hidden attacks is significantly improved.
Owner:NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP

Baiting and immunizing dual-effect premix containing yeast extract and preparation method thereof

PendingCN122623758AImprove the level ofEnhance immune functionBiotechnologyCamellia oleifera
The present application relates to the technical field of feed premix, especially to a baiting and immunity double-effect premix containing yeast extract and a preparation method thereof, which comprises the following raw materials: yeast extract, compound plant extract, garlic extract, compound vitamin and compound trace element; the yeast extract is prepared by secondary enzymolysis, concentration and spray drying; the compound plant extract is prepared by reflux extraction and spray drying with camellia sinensis shell, Chinese chervil, kaffir lily and dark plum pulp as raw materials; the yeast extract is compounded with the camellia sinensis shell, Chinese chervil and kaffir lily in the compound plant extract, so that the prepared premix has excellent immunity effect; in addition, the yeast extract, dark plum pulp and garlic extract are used to synergistically significantly improve the baiting effect of the feed on aquatic animals and accelerate the feeding speed and feeding amount of the aquatic animals.
Owner:FOSHAN XINTUN BIOLOGICAL SCI & TECH

Adversarial Defense Method and System for Voiceprint Recognition Based on F-ratio Adaptive Masking

ActiveCN117219085BImprove defenseReduce resource consumption
This invention discloses an adversarial defense method for a speaker recognition system based on F-ratio adaptive masking. The method first extracts features from the input speech to obtain an amplitude spectrogram; then, it denoises the amplitude spectrogram to obtain a denoised amplitude spectrogram; F-ratio is used to statistically analyze the high-relevance and low-relevance frequency band sets in the denoised amplitude spectrogram to distinguish the speaker; next, masking thresholds for the high-relevance and low-relevance frequency bands are calculated separately; the amplitude spectrogram is then masked to obtain a reconstructed amplitude spectrogram; the reconstructed amplitude spectrogram is transformed using librosa.griffinlim to obtain the corresponding waveform signal as the reconstructed speech; finally, a batch of clean samples is used for speech reconstruction, and the reconstructed speech is used for SRS fine-tuning training to ensure the classification performance of SRS. This invention exhibits significant defensive advantages, and the average defense capability demonstrates the versatility of this scheme against different attacks. Furthermore, because this invention does not involve additional data and training, it possesses low cost.
Owner:WUHAN UNIV

Methods and systems for accessing the trusted space of inland waterway shipping data under zero trust

ActiveCN122093198AAccurate traceabilityAccurate and trustworthy evidence storage
This invention relates to a method and system for accessing the trusted space of inland waterway shipping data under zero-trust conditions. It includes defining the shipping trust status and transformation rules of participating entities, constructing a risk scoring model to calculate the risk score of shipping behavior, introducing federated learning to improve the accuracy of the shipping behavior risk score, constructing a trust calculation function to calculate dynamic trust values ​​in real time, designing hierarchical access decision rules for hierarchical authorization to achieve access control, and submitting the hash value of logs to the blockchain to drive the update of shipping trust status, forming a closed loop of credit update and access control. This invention provides a systematic solution for the Jianghuai inland waterway shipping industry that balances strict security, business efficiency, and compliance requirements, achieving the coordinated evolution and proactive improvement of the security defense capabilities of the entire Jianghuai inland waterway shipping ecosystem.
Owner:ANHUI UNIV +1

A double-masked aggregation method supporting fine-grained control and resistant to poisoning attacks

PendingCN122741076AGuarantee quality and safetyGuarantee system security
The application discloses a double-mask aggregation method supporting fine-grained control and resisting poisoning attacks, and belongs to the field of federal learning data privacy protection. The method constructs a system model comprising an aggregation server, a trusted audit server, a client set and a trusted authority. The client realizes gradient self-checking based on local training results, adopts norm clipping and validation set evaluation. The audit server randomly checks and compares uploaded results, identifies and isolates malicious nodes, and dynamically maintains a trusted list. The aggregation server adopts revocable attribute-based encryption to encrypt and distribute the global model, and controls the access rights of the client in a fine-grained manner. Meanwhile, the client constructs double masks to protect the uploaded gradient without adding noise, preventing the server from peeping the real data. The method realizes double protection against poisoning attacks and privacy leakage, improves the adaptability and overall security of the system in a dynamic environment, and is suitable for multi-party collaborative computing scenes with high security requirements such as medical treatment and finance.
Owner:SICHUAN HANAN DIGITAL INTELLIGENCE TECHNOLOGY CO LTD

Method and apparatus for authenticating an image

ActiveCN115775401BImprove defenseAvoid the problem of poor detection performanceCharacter and pattern recognitionNeural learning methods
The application discloses a method and device for verifying images, and relates to the technical field of computers. The method comprises the following steps: acquiring a to-be-verified image, and identifying first local features of a plurality of local regions of the to-be-verified image by using a plurality of target local feature recognition models; acquiring a reference image, and identifying second local features of a plurality of local regions of the reference image by using the plurality of target local feature recognition models; for each of the plurality of target local feature recognition models, acquiring a feature similarity between the first local features identified by using the target local feature recognition model and the second local features identified by using the target local feature recognition model; and determining whether the to-be-verified image passes the verification according to the plurality of acquired feature similarities. The method can improve the defense performance of the system against adversarial samples and improve the accuracy of the verified images.
Owner:JD DIGITS HAIYI INFORMATION TECHNOLOGY CO LTD

Pedestrian detection method and device with defense capability, equipment, storage medium and program product

PendingCN121982744AAffect test resultsImprove defenseBiological modelsBiometric pattern recognitionEngineeringRegion detection
The invention relates to a pedestrian detection method and device with confrontation and defense capabilities, equipment, a storage medium and a program product. The method comprises the following steps: converting a target image into a grey-scale map; adversarial region detection is carried out on the grey-scale map in a frequency domain, adversarial region mask maps of multiple groups of n-level frequency bands in the frequency domain are obtained, and the adversarial region mask maps of any group of any-level frequency bands are used for indicating the adversarial region of the grey-scale map under the level frequency band of the frequency domain; fusing the confrontation area mask graphs of the same group of n-level frequency bands in the plurality of groups of n-level frequency bands to obtain a plurality of target mask graphs, and based on each target mask graph, performing fuzzy processing on the confrontation area in the target image to obtain a plurality of preprocessed images; and respectively carrying out pedestrian detection on the plurality of preprocessed images through a pedestrian detection model, and carrying out non-maximum suppression fusion on a detection result to obtain a target detection result. Therefore, various adversarial attacks can be effectively defended, so that the adversarial defense capability of pedestrian detection is improved.
Owner:TSINGHUA UNIVERSITY

ACLY-targeting oligopeptide and application thereof in bacterial infection

ActiveCN121974978APromote activationImprove defenseAntibacterial agentsPeptide/protein ingredientsDiseaseVirtual screening
The invention discloses an ACLY-targeting oligopeptide and application thereof in bacterial infection, and belongs to the technical field of biological medicines. Three candidate peptides are obtained through molecular docking, virtual screening and the like, and it is found through experiments that the candidate peptide PVP can destroy ACLY-NLRP3 interaction and promote NLRP3 inflammasome activation, and the defense capacity of a host to bacterial infection is enhanced. The invention discloses a self-limiting loop of immune-metabolism cross dialogue, the ACLY-NLRP3 axis is positioned as a new therapeutic target of inflammasome driven diseases, and meanwhile, a new short peptide is provided for treating bacterial infection.
Owner:SHANDONG UNIV

A text deep learning adversarial training method and system based on malicious disturbance

ActiveCN117829260BImprove robustnessImproved ability to resist malicious disturbance attacksNetwork modelNeural network nn
The application belongs to the technical field of security of deep learning neural network model, and in particular to a text deep learning adversarial training method and system based on malicious disturbance. The method constructs a malicious disturbance sample set based on original samples for training a deep learning neural network model, then randomly selects a malicious disturbance sample from the malicious disturbance sample set as a training input, replaces the original sample, and introduces a tiny benign disturbance sample into an embedding layer of the deep learning neural network model to generate a final adversarial instance containing the malicious disturbance sample and the benign disturbance sample, thereby improving the robustness of the deep learning neural network model, greatly improving the ability of the deep learning neural network model to resist malicious disturbance attacks, and reducing the risk of the model being misled by the adversarial instance. In addition, the method maintains the original task performance of the deep learning neural network model and maintains or even improves the performance of the model on the original task.
Owner:NORTH CHINA ELECTRIC POWER UNIV

Text processing method, text processing device, and electronic device

ActiveCN115168572BImprove performance on adversarial examplesImprove defense
This invention provides a text processing method, a text processing device, and an electronic device, relating to the field of artificial intelligence technology. The method includes: acquiring multiple original samples, the original samples including text and labels; generating adversarial samples for each of the original samples; determining positive and negative samples for each of the original samples based on the adversarial samples; performing supervised contrastive learning and adversarial training based on the positive and negative samples to obtain a text classification model; and using the text classification model to classify the text to be processed. This invention improves the robustness of the text classification model.
Owner:INST OF AUTOMATION CHINESE ACAD OF SCI

Anti-riot shield

ActiveCN224230850UWillingness to reduce frontal impactReduce the risk of close combatShieldsStructural engineeringMechanical engineering
The utility model discloses an anti-riot shield, which is suitable for the technical field of defense equipment, and comprises a shield main body for providing protection for resisting explosion, impact, violent confrontation and the like and a protruding area assembly arranged on the outer side surface of the shield main body, and the protruding area assembly comprises a protruding fixing part and a protruding body. Psychological deterrence is formed for violence and terrorism molecules through the protrusions on the surface of the shield, the intention of front impact of the violence and terrorism molecules is reduced, the defense effect is improved, the violence and terrorism molecules are forced to keep a distance, direct collision is avoided, and the near-body bucket winding risk is reduced; the state that the protruding bodies are completely embedded in the surface of the shield body and the state that the protruding bodies stretch out of the surface of the shield body can be switched, the shield is suitable for different scenes, the use range is expanded, and the flexibility of combat is improved.
Owner:ENG UNIV OF THE CHINESE PEOPLES ARMED POLICE FORCE

An unmanned ship cluster designated time position decision method and device based on game theory

The application discloses a kind of unmanned ship cluster specified time position decision-making method and device based on game theory, by converting unmanned ship cluster seeking optimal confrontation position problem into non-cooperative game problem, constructs water unmanned ship cluster game model, and designs distributed nash equilibrium solution algorithm under specified time;The method can solve the nash equilibrium of non-cooperative game problem in any specified time, quickly solve the optimal confrontation position problem of unmanned ship cluster seeking, enhance the attack and defense capability of our unmanned ship, improve the efficiency of decision-making;In addition, the initial time-varying gain item can be zero by using TBG function, which avoids the problem of excessive input at the initial time. Since the design and calculation of time-varying gain θ (t) are relatively simple, the application is relatively simple in structure and easy to implement.
Owner:SOUTHEAST UNIV

A method, system, storage medium, and terminal for generating adversarial examples

This invention discloses an adversarial example generation method, system, storage medium, and terminal, belonging to the field of adversarial attack technology. The method includes: determining the context region of a target object and dividing it into multiple sub-regions; performing importance analysis on each sub-region; mapping the influence of each sub-region on the detection results of the target detection model to the context region, generating a context attribution graph; selecting one or more influential sub-regions exceeding an influence threshold; and fine-tuning the influential sub-regions under a total loss function (including a loss function and a perceptual loss function) to generate adversarial examples. This invention accurately guides the attack direction through the context attribution graph and introduces a dual loss function, suppressing position, direction, and confidence prediction while ensuring the visual imperceptibility of adversarial perturbations, thus preserving the integrity of the target object and enhancing the stealth of the attack. Attacking only some influential sub-regions improves attack efficiency.
Owner:UNIV OF ELECTRONICS SCI & TECH OF CHINA

Multifunctional lactobacillus paracasei strain for promoting growth and development and application of multifunctional lactobacillus paracasei strain

PendingCN121950598ABreak through the limitation of single functionovercome inherent flawsNervous disorderBacteriaBiotechnologyMicroorganism
The invention relates to the technical field of microorganisms, in particular to a multifunctional lactobacillus paracasei strain capable of promoting growth and development and application of the multifunctional lactobacillus paracasei strain. The Latin name of the multifunctional Lactobacillus paracasei strain is Lacticaseibacillus paracasei ZG1, the preservation number of the multifunctional Lactobacillus paracasei strain is CGMCC No.36863, the preservation date of the multifunctional Lactobacillus paracasei strain is December 5, 2025, and the preservation unit of the multifunctional Lactobacillus paracasei strain is China General Microbiological Culture Collection Center. Experiments prove that the multifunctional lactobacillus paracasei strain has the functions of promoting neurocognitive development, immune system maturation and bone growth, and can be added into an infant probiotic preparation to play a role in promoting growth and development. Compared with existing probiotics, the lactobacillus paracasei ZG1 has a multi-target and multi-system synergistic promotion function on growth and development, is expected to replace a traditional mixed probiotic scheme, and fundamentally solves the core problems of single function, mixed antagonism and the like of most of existing probiotics.
Owner:HEBEI YIRAN BIOLOGICAL TECH CO LTD

A steganographic detection and attack method based on data format deviation

PendingCN122241744Aachieve interferenceachieve blockingDigital data protection
This invention discloses a steganography detection and attack method based on data format deviation, specifically including: acquiring a BinaryPlist file to be detected and reading the file as a binary byte stream; parsing the file header of the BinaryPlist file to determine whether the file conforms to a preset BinaryPlist file identifier format; parsing the offset table information in the BinaryPlist file to obtain the file offset address corresponding to each object in the object table; based on the offset address, parsing each object in the object table one by one to obtain the object type, object length, and object content; determining whether the offset relationship, object boundary, and object content of the object deviate from the format specification of the BinaryPlist file; if a format deviation is detected, determining the position of the corresponding steganography data block; and performing an attack operation on the steganography data block, including steganography data replacement or steganography data erasure, to destroy or block the steganography information.
Owner:XIAMEN MEIYABAIKE INFORMATION SECURITY RES INST CO LTD

A method for neural network model encryption and function fine-grained authorization

The application discloses a kind of neural network model encryption and function fine-grained authorization method, based on initial training dataset, corresponding automatic trigger key generator or artificial trigger key dataset is constructed;Initial training dataset is mixed with the trigger key dataset or artificial trigger key dataset generated respectively, and mixed training dataset is obtained by construction: the mode is encrypted using the way of mixed training dataset training neural network model, so that no effective license can use model, more safe and reliable;On the basis of the encryption method, the application proposes a deep neural network dual verification method, which perfectly avoids existing adversarial attacks;In addition, the application also provides a fine-grained authorization method for using neural network function, according to the different functions of neural network, the corresponding trigger key is bound to realize the fine-grained authorization use of neural network, with the characteristics of only permitting users to use part of the function of the model.
Owner:SOUTHEAST UNIV

Virus defense method, system and device and computer readable storage medium

The invention discloses a virus defense method, system and device and a computer readable storage medium, relates to the technical field of information security and storage protection, and is applied to defense software to detect whether a target host is attacked by a virus or not. In response to the fact that the target host is attacked by the virus, generating a hardware-level blocking signal; the hardware-level blocking signal is sent to a preset hardware device, so that the hardware device modifies firmware area parameters of the target host hard disk after responding to the hardware-level blocking signal, and then the target host hard disk refuses write-in operation on the physical level; wherein the communication link between the defense software and the hardware device is a link independent of the operating system of the target host, and the communication link between the hardware device and the hard disk of the target host is a link independent of the operating system of the target host. According to the method, independent defense which is not influenced by the authority of the operating system can be realized, the defense mechanism can still run normally even if the system is crashed or controlled, the defense capability of the hard disk to viruses is improved, and the security of the hard disk is ensured.
Owner:STATE GRID CHONGQING ELECTRIC POWER CO ELECTRIC POWER RES INST

Intelligent alarm method and system for baton

ActiveCN117711151Bimprove intelligenceImprove defense
The application provides a kind of smart alarm method and system for baton, comprising: respectively collecting the current use state corresponding to each preset baton, respectively matching the management scheme corresponding to each of the preset baton, detecting the current action of the user using the corresponding preset baton according to the management scheme, establishing the action points of the user, establishing the use risk degree of the user according to the action points, when the use risk degree is greater than the preset degree threshold, positioning the current use position of the user and obtaining the monitoring video stream within the preset range of the current use position, analyzing the monitoring video stream to generate remote alarm help information, transmitting the remote alarm help information to the preset remote terminal for display and alarm, when the user uses the baton, the risk degree of the user when using the baton can be judged according to the action of the user, and when the risk degree is too high, it can reflect that the user is defending an emergency event, and remote alarm help is performed at this time.
Owner:YUNLU COMPOSITE MATERIALS (SHANGHAI) CO LTD

Face living body detection method, device and equipment based on artificial intelligence, and medium

ActiveCN116311552BReduce the risk of fraudImprove defenseSpoof detectionNeural learning methodsFeature extractionMachine learning
The application provides a face living body detection method and device based on artificial intelligence, an electronic device and a storage medium. The face living body detection method based on artificial intelligence comprises the following steps: adding multiple filter colors to a collected face image to obtain a face test image set; performing feature extraction on images in the face test image set to obtain face test features; constructing a living body detection loss function based on the face test image set and the face test features; training a neural network based on the face test image set and the living body detection loss function to obtain a face living body detection model; and detecting a face image to be detected based on the face living body detection model to obtain a face living body detection result. The application trains the neural network in all directions by constructing multiple loss functions, so that the defense capability of the obtained face living body detection model against filter color attacks is improved, and the face fraud risk is reduced.
Owner:PING AN TECH (SHENZHEN) CO LTD

Confrontation sample defense method, system and device and storage medium

The invention discloses an adversarial sample defense method, system and device and a storage medium, and the method comprises the steps: matching an input sample of a target model with each adversarial sample stored on a block chain, and obtaining a sample matching result; determining a risk type of the input sample based on the sample matching result; based on the risk type of the input sample, an execution strategy about the input sample is determined for the target model, and the execution strategy includes indicating the target model to perform normal reasoning or defense processing by using the input sample. By means of the mode, the accuracy and generalization ability of target model confrontation sample recognition can be improved, and therefore the response speed and the defense effect of a model defense system are improved.
Owner:ZHEJIANG DAHUA TECH CO LTD

Automatic driving lane changing method fusing intention risk field and state machine decision reversal mechanism

PendingCN121990001Aremove geometric distortionImproved geometric accuracyDriving riskSimulation
The invention discloses an automatic driving behavior decision-making method based on an intention-driven risk field. The method comprises the following steps: 1, eliminating geometric distortion by constructing a generalized bounding box; 2, introducing a momentum correction and intention coupling mechanism, and dynamically remodeling a risk field topology to simulate defensive driving psychology; and 3, scoring by using a space-time most disable principle, carrying out decision by combining with a dual risk threshold state machine, and introducing a decision reversal mechanism to break deadlock. According to the method, the problem of driving behavior decision oscillation is effectively solved, and the traffic efficiency and safety in a complex interaction scene are remarkably improved.
Owner:HEFEI UNIV OF TECH

Image data processing method and image processing apparatus

PendingCN122657534AImprove output accuracyImprove reliabilityImaging processingImage manipulation
The application discloses an image data processing method and an image processing device, and belongs to the technical field of image processing. The image data processing method comprises the following steps: receiving a global model sent by a server end; training the global model based on local training images and actual labels corresponding to the local training images, so as to obtain a new local model, and the new local model is used for outputting a predicted label corresponding to the local training image and a loss value corresponding to a target loss function being not greater than a loss threshold; the target loss function is a loss function with an added regularization term; and the new local model is sent to the server end, and the new local model is used for being aggregated by the server end to generate a new global model, and the new global model is used for being sent to a client end. The image processing method improves output accuracy, reduces the dependence of the client end on the defense mechanism of the server end, improves the defense effect, and thus improves the reliability and safety of the model.
Owner:QINDAO HAIER REFRIGERATOR CO LTD +1

Method for mitigating drift in a time-series data adversarial framework in cyber security situation awareness

PendingCN122741122AAvoid training lagimprove accuracy
The present application relates to a kind of network security situation awareness in time series data countermeasure framework's offset mitigation method, belong to network security situation awareness technical field.The method extracts causal weight by time series causal structure learning based on PC algorithm, combined with double discriminator collaborative training mechanism, avoid " misjudgment normal business as attack, miss judgment disguised attack", improve the accuracy of situation identification;Through the shift predictor and closed-loop correction mechanism, solve the training lag caused by label delay, so that the model can adapt to network situation change in advance, and the threat response time can be shortened by more than 30% through public data set verification.
Owner:BEIJING INST OF COMP TECH & APPL

A backdoor defense method based on generative adversarial purification immune system

PendingCN122661751AImprove defenseBlock backdoor attacksAttack modelPrior information
The application discloses a backdoor defense method based on a generative adversarial purification immune system, and belongs to the technical field of wireless communication and network security. In view of the problem that a deep reinforcement learning positioning model is vulnerable to data poisoning backdoor attacks, a generative adversarial purification immune system (GANPIS) defense framework is constructed. Firstly, the attacked model is taken as a discriminator to play a game with a generator, and a backdoor trigger feature is reversely reconstructed. Secondly, a positioning anomaly index is constructed based on the backdoor feature, and the poisoning samples in the training data are accurately detected and removed. Finally, a hybrid adversarial training strategy is adopted, and a dynamic trigger penalty term and a composite loss function are combined to purify and retrain the model. The method does not require attack prior information, effectively blocks the backdoor attack, significantly reduces the attack success rate, and completely maintains the high positioning accuracy of the model in the normal scene, and can be used in safety-sensitive scenes such as indoor navigation and intelligent security.
Owner:XIAN UNIV OF POSTS & TELECOMM