Unified security agent method and system for large model agent based on zero trust architecture
By adopting a security proxy method based on zero-trust architecture, the problem of weak trust anchors and insufficient protection in MCP interactions of large model intelligent agents is solved, realizing dynamic security protection and access control across the entire link, and improving the security and protection capabilities of MCP interactions.
CN122160184AActive Publication Date: 2026-06-05ZHONGKE NANJING SOFTWARE TECH RES INST
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- ZHONGKE NANJING SOFTWARE TECH RES INST
- Filing Date
- 2026-05-07
- Publication Date
- 2026-06-05
Smart Images

Figure CN122160184A_ABST
Abstract
The application discloses a kind of unified security proxy methods and systems of big model intelligent agent based on zero trust architecture. The method comprises the following steps: MCP Server completes trusted access registration and hardware-level remote certification in trusted execution environment, and generates risk portrait through adversarial fuzz testing;In response to user session request, the security gateway uses a special large language model to analyze natural language intent, and dynamically generates a one-time limited token;Extract semantic skeleton before instruction execution and generate semantic fingerprint for integrity check;Real-time construction of dynamic behavior heterogeneous graph within the session cycle, call pre-training graph neural network for cross-tool behavior link anomaly detection;At the same time, the full-link audit log is stored after encryption and anchored by blockchain. The application solves the problem of security protection missing of existing MCP interaction full link, and significantly improves the overall security of big model intelligent agent system.
Need to check novelty before this filing date? Find Prior Art
Citation Information
Patent Citations
Cross-domain security data interaction method, device and system based on dynamic multi-channel and intelligent verification, and computer equipment
CN120200819A
Trusted monitoring and auditing system fusing TEE and block chain
CN120471723A
Cloud desktop security access control method based on zero-trust architecture
CN120750599A
Dynamic verification method for informatization system based on zero-trust architecture
CN121217403A
Large model dynamic protection method and system based on zero-trust architecture
CN121750274A