Government affair data sharing, exchanging and tracing method and system based on data watermarking

By using data watermarking technology in government data sharing and exchange, the problem of lack of traceability in the data sharing process is solved, data traceability and secure sharing are realized, data sharing risks are reduced, and industry cooperation is promoted.

CN120197160AActive Publication Date: 2025-06-24INSPUR SOFTWARE TECH CO LTD
View PDF 4 Cites 0 Cited by

Patent Information

Application Number
CN202510669133.6
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-05-23
Publication Date
2025-06-24
Estimated Expiration
2045-05-23

AI Technical Summary

Technical Problem

The existing government data sharing and exchange methods lack the traceability method of data content, and the data source cannot be confirmed, resulting in the inability to determine the source of the leakage during data leakage and hold accountable.

Method used

The government data sharing and exchange traceability method based on data watermark is adopted, and the watermark data is generated through three steps: data application, data encryption and data traceability, and the data provider and user are traced through the watermark extraction algorithm.

Benefits of technology

It realizes data traceability, quickly locates risky people, ensures safe sharing of data, reduces data sharing risks, promotes mutual cooperation among industry departments, and provides security guarantees for the circulation and utilization of data.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120197160A_ABST
    Figure CN120197160A_ABST
Patent Text Reader

Abstract

The invention discloses a government affair data sharing, exchanging and tracing method and system based on data watermarks, belongs to the technical field of data sharing, and aims to solve the technical problem of how to realize data tracing and data security in a government affair data sharing and exchanging process. Comprising the following steps: a government affair data sharing platform performs data resource authorization according to a data user, a data provider and data resource information, and generates resource authorization information; based on the secret key, watermark information is embedded into the original data through a watermark embedding algorithm to generate watermark-containing data, the watermark-containing data is distributed to a data user target database, and a mapping relation among a watermark name, the secret key and resource authorization information is stored in a government affair data sharing platform; the key is extracted from the data containing the watermark through a watermark extraction algorithm, the corresponding resource authorization information is searched according to the mapping relation among the watermark name, the key and the resource authorization information, and the corresponding data provider and the corresponding data user are searched based on the resource authorization information.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the technical field of data sharing, and more specifically to a method and system for tracing the origin of government data sharing and exchange based on data watermarking. Background Art

[0002] Government data usually includes information in aspects such as government decision-making, administrative management, public services, economic regulation, market supervision, social management, and environmental protection. Data sharing among government departments realizes data exchange through a data sharing and exchange platform. The shared data usually includes data types such as library tables, interfaces, and files. Among them, library tables and interfaces are the main ways of relational data exchange. It is of great significance to add watermarks and trace the origin for the data in the form of library tables. Data watermarking is a technology that embeds specific digital signals into digital products to protect the copyright, integrity, anti-copying, or traceability of digital products.

[0003] The existing government data sharing and exchange methods focus on security measures such as data authorization and data transmission encryption, lacking a tracing method for data content. For the data during the sharing process, the source of the data cannot be confirmed. Once data leakage occurs after the data is shared with a cooperation party, the leakage source cannot be determined for accountability.

[0004] In the process of government data sharing and exchange, how to achieve data traceability and data security is a technical problem to be solved. Summary of the Invention

[0005] The technical task of the present invention is to address the above deficiencies and provide a method and system for tracing the origin of government data sharing and exchange based on data watermarking to solve the technical problems of how to achieve data traceability and data security in the process of government data sharing and exchange.

[0006] In a first aspect, a method for tracing the origin of government data sharing and exchange based on data watermarking according to the present invention includes the following steps: Data application: After the data provider reviews the data resource application submitted by the data user through the government data sharing platform, the government data sharing platform authorizes the data resources according to the data user, data provider, and data resource information, and generates resource authorization information; Data encryption: The government data sharing platform sets the watermark name with the authorized resource information as a parameter and generates a corresponding key. For the original data in the data provider's source database, the watermark information is embedded into the original data through a watermark embedding algorithm based on the key to generate watermarked data, and the watermarked data is distributed to the data user's target database. The mapping relationship among the watermark name, key, and resource authorization information is stored in the government data sharing platform; Data traceability: Extract the key from the watermarked data through the watermark extraction algorithm, find the corresponding resource authorization information according to the mapping relationship between the watermark name, the key, and the resource authorization information, and find the corresponding data provider and data user based on the resource authorization information.

[0007] Preferably, the application information in the data resource application includes data user information, data usage scenarios, application basis, and data call frequency.

[0008] Preferably, when generating watermarked data by embedding watermark information into the original data based on the key through the watermark embedding algorithm, for the original data in the data provider's source database, identify the data type and data format of each attribute of the original data, adapt the rules according to the sensitive type, and modify one or more rows that meet the sensitive type. The modified data maintains the same type and format as the original data.

[0009] Preferably, generating watermarked data by embedding watermark information into the original data based on the key through the watermark embedding algorithm includes the following steps: For the original data in the data provider's source database, identify the valid columns where watermarks can be added, identify the sensitive types of the valid columns, and locate the watermark positions. The positioning method is random extraction; For the located data, select a certain bit of data for modification, and the overall data remains consistent in basic characteristics after modification.

[0010] In a second aspect, a government data sharing and exchange traceability system based on data watermarking of the present invention includes a data application module, a data encryption module, and a data traceability module configured on the government data sharing platform; The data application module is used to perform the following: support the data user to submit a data resource application to the government data sharing platform, support the data provider to review the data resources submitted by the data user through the government data sharing platform, and authorize the data resources according to the data user, data provider, and data resource information through the government data sharing platform, and generate resource authorization information; The data encryption module is used to perform the following: set the watermark name with the authorized resource information as a parameter through the government data sharing platform and generate the corresponding key. For the original data in the data provider's source database, embed the watermark information into the original data based on the key through the watermark embedding algorithm to generate watermarked data, and distribute the watermarked data to the data user's target database. The mapping relationship between the watermark name, the key, and the resource authorization information is stored on the government data sharing platform; The data traceability module is used to perform the following: extract a key from the watermarked data through a watermark extraction algorithm, find the corresponding resource authorization information according to the mapping relationship between the watermark name, the key, and the resource authorization information, and find the corresponding data provider and data user based on the resource authorization information.

[0011] Preferably, the application information in the data resource application includes data user information, data usage scenarios, application basis, and data call frequency.

[0012] Preferably, when generating watermarked data by embedding watermark information into the original data through a watermark embedding algorithm based on the key, for the original data in the data provider's source database, the data encryption module is used to perform the following: identify the data type and data format of each attribute of the original data, adapt the rules according to the sensitive type, change one or more rows that meet the sensitive type, and the changed data maintains the same type and format as the original data.

[0013] Preferably, the data encryption module is used to perform the following to generate watermarked data by embedding watermark information into the original data through a watermark embedding algorithm based on the key: For the original data in the data provider's source database, identify the valid columns where watermarks can be added, identify the sensitive types of the valid columns, and perform watermark position localization, and the localization method is random extraction; For the located data, select a certain bit of data for modification, and the overall data remains consistent in basic characteristics after modification.

[0014] The government affairs data sharing and exchange traceability method and system based on data watermark of the present invention have the following advantages: 1. Data traceability, quickly locate the risker: There are great risks in the data flow process. When data leakage and theft occur, data watermarks can help users quickly locate the risker, find out who leaked the data, when it was leaked, and what was leaked, and ensure the secure sharing of data; 2. Reduce the risk of data sharing and promote data exchange and sharing cooperation: The application of data watermark traceability in sharing and exchange reduces the risks in the sharing of internal data in each industry department, promotes the mutual cooperation between industry departments, and provides security guarantees for the circulation and utilization of data. BRIEF DESCRIPTION OF THE DRAWINGS

[0015] In order to more clearly illustrate the technical solutions in the embodiments of the present invention, the following will briefly introduce the drawings required for use in the embodiments or the description of the prior art. Obviously, the following drawings are only some embodiments of the present invention. For those of ordinary skill in the art, other drawings can be obtained based on these drawings without creative efforts.

[0016] The present invention will be further described below in conjunction with the accompanying drawings.

[0017] Figure 1 It is a flowchart of a method for tracing the origin of government affairs data sharing and exchange based on data watermarking in Embodiment 1. Specific implementation manners

[0018] The present invention will be further described below in conjunction with the accompanying drawings and specific embodiments, so that those skilled in the art can better understand the present invention and be able to implement it. However, the embodiments cited do not limit the present invention. Without conflict, the embodiments of the present invention and the technical features in the embodiments can be combined with each other.

[0019] The embodiments of the present invention provide a method and system for tracing the origin of government affairs data sharing and exchange based on data watermarking, which are used to solve the technical problems of how to realize data tracing and data security in the process of government affairs data sharing and exchange.

[0020] Embodiment 1: A method for tracing the origin of government affairs data sharing and exchange based on data watermarking according to the present invention includes three steps: data application, data encryption, and data tracing.

[0021] Step S100 Data application: After the data provider reviews the data resource application submitted by the data user through the government affairs data sharing platform, the government affairs data sharing platform authorizes the data resources according to the data user, the data provider, and the data resource information, and generates resource authorization information.

[0022] The application information in the data resource application includes data user information, data usage scenarios, application basis, and data call frequency.

[0023] The data user selects the data resources to be applied for and fills in the application information, including data user information, usage scenarios, application basis, data call frequency and other information. After the data application is submitted, it is reviewed by the data provider. After the review is passed, the government affairs data sharing platform generates the resource authorization information appKey according to the data user, the data provider, and the data resource information. The resource authorization information appKey uniquely determines the data resources that the data user can call.

[0024] Step S200 Data encryption: The government affairs data sharing platform sets the watermark name with the authorized resource information as a parameter and generates the corresponding key. For the original data in the data provider's source database, the watermark information is embedded into the original data based on the key through the watermark embedding algorithm to generate watermarked data, and the watermarked data is distributed to the data user's target database. The mapping relationship between the watermark name, the key, and the resource authorization information is stored in the government affairs data sharing platform.

[0025] In this embodiment, when embedding watermark information into the original data based on a key through a watermark embedding algorithm to generate watermarked data, for the original data in the source database of the data provider, the data types and data formats of the attributes of the original data are identified, and rule adaptation is performed according to the sensitive type. One or more rows that conform to the sensitive type are modified, and the modified data maintains the same type and format as the original data. The specific steps are as follows: (1) For the original data in the source database of the data provider, identify the valid columns where watermarks can be added, identify the sensitive types of the valid columns, and perform watermark position positioning. The positioning method is random extraction; (2) For the located data, select a certain bit of data for modification, and the overall data maintains the same basic characteristics after modification.

[0026] In this embodiment, a watermark embedding function is added to the government affairs data sharing platform. The resource authorization information appKey is used as a parameter to set the watermark name. When the government affairs data sharing platform receives an instruction, it will automatically generate a key internally, and this key is invisible.

[0027] The generated key controls the source database of the data provider to hide the watermark information into the original data through the watermark embedding algorithm, and finally obtains the watermarked data. The watermark uses a pseudo-row watermark. The watermark embedding function first automatically identifies the data types and data formats of the attributes of the source data, performs rule adaptation according to its sensitive type, and then modifies one or more rows (the number of rows is randomly located) that conform to the sensitive type. The modified data still maintains the same type and format as the original data.

[0028] The specific method is as follows: First, identify the valid columns where watermarks can be added, identify their sensitive types, and then perform watermark position positioning. The positioning method is random extraction. For the located data, select a certain bit for modification, and the overall data maintains the consistency of basic features. For example, for an ID card, it can be automatically recognized that not all positions are suitable for modification. For the ID card, the corresponding modifiable bits are selected. After modification, it maintains the same format as the original data, and the check digit also remains accurate. This watermark is scattered and embedded, making it difficult to be discovered.

[0029] The watermarked data is exchanged and distributed through the government affairs data sharing platform, which can be distributed in the form of a file or distributed to the target database of the data user.

[0030] Step S300 Data Traceability: Extract the key from the watermarked data through the watermark extraction algorithm, find the corresponding resource authorization information according to the mapping relationship between the watermark name, the key, and the resource authorization information, and find the corresponding data provider and data user based on the resource authorization information.

[0031] In this embodiment, through the data watermark traceability management function, the corresponding key can be extracted from the data through the watermark extraction algorithm. The corresponding watermark name can be found through the corresponding key, and the authorization information appKey can be found based on the watermark name, so as to find the corresponding job and information such as the provider and user, and then trace back to determine the final leakage entity and hold them accountable.

[0032] In the method disclosed in this application, the watermark information is hidden in the data after the government affairs data sharing and exchange. It includes two parts: watermark embedding and watermark extraction. During the exchange process, the watermark is embedded in the currently exchanged data, and the watermark can be extracted from the exchanged data, realizing the embedding of different watermarks for the same data according to different users.

[0033] Embodiment 2: A government affairs data sharing and exchange traceability system based on data watermark of the present invention includes a data application module, a data encryption module, and a data traceability module configured on the government affairs data sharing platform.

[0034] The data application module is used to perform the following: support the data user to submit a data resource application to the government affairs data sharing platform, support the data provider to review the data resources submitted by the data user through the government affairs data sharing platform, and authorize the data resources according to the data user, data provider, and data resource information through the government affairs data sharing platform, and generate resource authorization information.

[0035] The application information in the data resource application includes data user information, data usage scenario, application basis, and data call frequency.

[0036] The data user selects the data resources to be applied for and fills in the application information, including data user information, usage scenario, application basis, data call frequency, etc. After the data application is submitted, it is reviewed by the data provider. After the review is passed, the government affairs data sharing platform generates the resource authorization information appKey according to the data user, data provider, and data resource information. The resource authorization information appKey uniquely determines the data resources that the data user can call.

[0037] The data encryption module is used to perform the following: set the watermark name with the authorized resource information as a parameter through the government affairs data sharing platform and generate the corresponding key. For the original data in the data provider's source database, the watermark information is embedded in the original data based on the key through the watermark embedding algorithm to generate watermarked data, and the watermarked data is distributed to the data user's target database. The mapping relationship between the watermark name, key, and resource authorization information is stored in the government affairs data sharing platform.

[0038] In this embodiment, when embedding watermark information into the original data based on a key through a watermark embedding algorithm to generate watermarked data, for the original data in the source database of the data provider, the data types and data formats of the attributes of the original data are identified, and rules are adapted according to the sensitive types. One or more rows that meet the sensitive types are modified, and the modified data maintains the same type and format as the original data. The specific steps are as follows: (1) For the original data in the source database of the data provider, identify the valid columns where watermarks can be added, identify the sensitive types of the valid columns, and locate the watermark positions. The positioning method is random sampling; (2) For the located data, select a certain bit of data for modification, and the overall data maintains the same basic characteristics after modification.

[0039] In this embodiment, a watermark embedding function is added to the government data sharing platform. The resource authorization information appKey is used as a parameter to set the watermark name. When the government data sharing platform receives an instruction, it will automatically generate a key internally, and this key is invisible.

[0040] The generated key controls the source database of the data provider to hide the watermark information into the original data through the watermark embedding algorithm, and finally obtains the watermarked data. The watermark uses a pseudo-row watermark. The watermark embedding function first automatically identifies the data types and data formats of the attributes of the source data, adapts the rules according to its sensitive types, and then modifies one or more rows (the row number positioning is random) that meet the sensitive types. The modified data still maintains the same type and format as the original data.

[0041] The specific method is as follows: First, identify the valid columns where watermarks can be added, identify their sensitive types, then locate the watermark positions. The positioning method is random sampling. For the located data, select a certain bit for modification, and the overall data maintains the consistency of basic features. As follows, for an ID card, it can be automatically identified that not all positions are suitable for modification. The modification of the ID card is to select the corresponding modifiable bits. After modification, it maintains the same format as the original data, and the check digit also remains accurate. This watermark is scattered and embedded, making it difficult to be discovered.

[0042] The watermarked data is exchanged and distributed through the government data sharing platform, which can be distributed in the form of files or distributed to the target database of the data users.

[0043] The data traceability module is used to perform the following: Extract the key from the watermarked data through the watermark extraction algorithm, find the corresponding resource authorization information according to the mapping relationship between the watermark name, the key, and the resource authorization information, and find the corresponding data provider and data user based on the resource authorization information.

[0044] In this embodiment, through the data watermark traceability management function, the corresponding key can be extracted from the data by using the watermark extraction algorithm. The corresponding watermark name can be found through the corresponding key, and the authorization information appKey can be found based on the watermark name, so as to find the corresponding job and information such as the provider and user, and then trace back to determine the final leakage entity and hold them accountable.

[0045] In the system disclosed in this application, the watermark information is hidden in the data after the government affairs data sharing and exchange. It includes two parts: watermark embedding and watermark extraction. During the exchange process, watermark embedding is performed on the currently exchanged data, and the watermark can be extracted from the exchanged data, realizing the embedding of different watermarks for the same data according to different users.

[0046] The above has introduced in detail the method and system for the traceability of government affairs data sharing and exchange based on data watermarks. Specific examples are used in this article to elaborate on the principle and implementation manner of the present invention. The description of the above embodiments is only used to help understand the method and its core idea of the present invention; at the same time, for those of ordinary skill in the art, according to the idea of the present invention, there will be changes in the specific implementation manner and application scope. In summary, the content of this specification should not be construed as a limitation to the present invention.

Claims

1. A method for tracing the origin of government data sharing and exchange based on data watermarking, characterized in that It includes the following steps: Data application: After the data provider reviews the data resource application submitted by the data user through the government affairs data sharing platform, the government affairs data sharing platform authorizes the data resources based on the data user, data provider, and data resource information, and generates resource authorization information; Data encryption: The government affairs data sharing platform uses the authorized resource information as a parameter to set the watermark name and generates the corresponding key. For the original data in the data provider's source database, the watermark information is embedded into the original data based on the key through the watermark embedding algorithm to generate watermarked data, and the watermarked data is distributed to the data user's target database. The mapping relationship between the watermark name, key, and resource authorization information is stored in the government affairs data sharing platform; Data traceability: The key is extracted from the watermarked data through the watermark extraction algorithm, the corresponding resource authorization information is found according to the mapping relationship between the watermark name, key, and resource authorization information, and the corresponding data provider and data user are found based on the resource authorization information.

2. The method for tracing the origin of government data sharing and exchange based on data watermark according to claim 1, characterized in that, The application information in the data resource application includes data user information, data usage scenarios, application basis, and data call frequency.

3. The method for tracing the origin of government data sharing and exchange based on data watermarking according to claim 1, wherein When the watermark information is embedded into the original data based on the key through the watermark embedding algorithm to generate watermarked data, for the original data in the data provider's source database, the data types and data formats of the various attributes of the original data are identified, the rules are adapted according to the sensitive types, and one or more rows that meet the sensitive types are modified. The modified data maintains the same type and format as the original data.

4. The method for tracing the origin of government data sharing and exchange based on data watermark according to claim 3, wherein Embedding the watermark information into the original data based on the key through the watermark embedding algorithm to generate watermarked data includes the following steps: For the original data in the data provider's source database, identify the valid columns where the watermark can be added, identify the sensitive types of the valid columns, and locate the watermark position. The positioning method is random extraction; For the located data, select a certain bit of data for modification, and the overall data remains consistent in basic characteristics after modification.

5. A government affairs data sharing and exchange traceability system based on data watermarking, characterized in that, It includes a data application module, a data encryption module, and a data traceability module configured on the government affairs data sharing platform; The data application module is used to perform the following: support the data user to submit a data resource application to the government affairs data sharing platform, support the data provider to review the data resources submitted by the data user through the government affairs data sharing platform, authorize the data resources by the government affairs data sharing platform according to the data user, data provider, and data resource information, and generate resource authorization information; The data encryption module is used to perform the following: use the authorized resource information as a parameter to set the watermark name through the government affairs data sharing platform and generate the corresponding key. For the original data in the data provider's source database, the watermark information is embedded into the original data based on the key through the watermark embedding algorithm to generate watermarked data, and the watermarked data is distributed to the data user's target database. The mapping relationship between the watermark name, key, and resource authorization information is stored in the government affairs data sharing platform; The data traceability module is used to perform the following: extract a key from the watermarked data through a watermark extraction algorithm, find the corresponding resource authorization information according to the mapping relationship between the watermark name, the key, and the resource authorization information, and find the corresponding data provider and data user based on the resource authorization information.

6. The government affairs data sharing and exchange traceability system based on data watermark according to claim 5, characterized in that, The application information in the data resource application includes data user information, data usage scenarios, application basis, and data call frequency.

7. The government affairs data sharing and exchange traceability system based on data watermark according to claim 5, characterized in that, When embedding watermark information into the original data through a watermark embedding algorithm based on the key to generate watermarked data, for the original data in the data provider's source database, the data encryption module is used to perform the following: identify the data type and data format of each attribute of the original data, adapt the rules according to the sensitive type, change one or more rows that meet the sensitive type, and the changed data maintains the same type and format as the original data.

8. The government affairs data sharing and exchange traceability system based on data watermark according to claim 7, characterized in that, The data encryption module is used to perform the following to generate watermarked data by embedding watermark information into the original data through a watermark embedding algorithm based on the key: For the original data in the data provider's source database, identify the valid columns where watermarks can be added, identify the sensitive types of the valid columns, and locate the watermark positions. The positioning method is random extraction; For the located data, select a certain bit of data for modification, and the overall data remains consistent in basic characteristics after modification.

Citation Information

Patent Citations

  • A cloud manufacturing user data management and control method based on labels

    CN103618693A

  • Previewable user side image watermarking method

    CN117114954A

  • File data circulation security system based on block chain technology

    CN119442321A

  • Digital watermarking without significant information loss in anonymized datasets

    US20200250338A1