A file encryption / decryption system and method

By designing a file encryption and decryption system, the problems of low management efficiency and poor confidentiality in existing technologies are solved, achieving high efficiency and security in file management. The system employs an XOR encryption and decryption algorithm and an identity authentication module to ensure file security and management efficiency.

CN121118077BActive Publication Date: 2026-05-26SHANGHAI MAGIC DIGITAL TECH CO LTD
View PDF 1 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
SHANGHAI MAGIC DIGITAL TECH CO LTD
Filing Date
2025-07-25
Publication Date
2026-05-26

AI Technical Summary

Technical Problem

In the current technology, the management of the company's video, animation and image databases relies on manual memory and outdated methods, resulting in low management efficiency and poor confidentiality.

Method used

A file encryption and decryption system was designed, including a control center, a storage module, an encryption and decryption module, a file input/output module, an identity authentication module, an access control module, and a watermarking module. The system realizes file encryption, decryption, and watermarking through identity authentication and access control, and uses an XOR encryption and decryption algorithm to ensure file security and management efficiency.

Benefits of technology

It achieves high efficiency and confidentiality in file management, avoids the impact of long-term encryption and decryption of large files, prevents data leakage, determines permissions through identity information, quickly finds and outputs files, and reduces workload.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN121118077B_ABST
    Figure CN121118077B_ABST
Patent Text Reader

Abstract

This invention discloses a file encryption / decryption system and method, belonging to the field of asset management technology. It includes a control center connected to a storage module, an encryption / decryption module, a file output module, a file input module, an identity input module, an access control module, a matching module, and an access control granting module. The access control granting module is connected to the identity control module and the identity input module. The invention employs an XOR encryption / decryption algorithm to avoid lengthy encryption / decryption times for large files, thus minimizing disruption to the user experience. Furthermore, watermarking the files prevents data leakage after being captured by mobile devices. Additionally, the system uses the applicant's identity information to determine whether to grant access, aiding in file management. Finally, the system accurately and quickly locates output files by compiling lists and filtering directories, reducing workload and facilitating rapid retrieval.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This invention relates to the field of asset management technology, specifically to a file encryption / decryption system and method. Background Technology

[0002] With the emergence of numerous excellent domestic animation works in recent years, the industry has continued to expand. Over its long development process, it has accumulated a vast amount of digital entertainment content, forming a massive library of video, animation, and image materials.

[0003] Currently, the company uses a stacked tape management system to manage its video, animation, and image resource library. Management engineers or suppliers rely solely on their memory and outdated methods to extract materials. This wastes a significant amount of work for both management engineers and suppliers, and also results in poor confidentiality.

[0004] Based on this, the present invention designs a file encryption and decryption system and method to solve the above problems. Summary of the Invention

[0005] In view of the above-mentioned shortcomings of the existing technology, the present invention provides a file encryption and decryption system and method.

[0006] To achieve the above objectives, the present invention provides the following technical solution:

[0007] A file encryption / decryption system, including a control center;

[0008] The control center is connected to a storage module, an encryption / decryption module, a file output module, a file input module, an identity input module, an access control module, a matching module, and an access control issuance module.

[0009] The permission granting module is connected to the identity verification module and the identity input module;

[0010] Identity Input Module: Used to input the applicant's identity information and document extraction information; used to receive termination extraction instructions and disallow watermark removal instructions from the permission granting module; used to filter directories.

[0011] Identity verification module: Based on the applicant's identity information, determine whether they have the right to extract the file. If the determination is correct, send the identity information and file extraction information to the control center. If the determination is incorrect, send the identity information and file extraction information to the permission granting module.

[0012] Permission granting module: Receives identity information and determines whether to grant extraction permission. If the determination is yes, it sends the identity information and file extraction information to the control center. If the determination is no, it issues a termination extraction command. Receives watermark removal permission application and determines whether to grant watermark removal permission. If the determination is yes, it sends the watermark removal permission command to the control center. If the determination is no, it sends the watermark removal permission command to the identity input module.

[0013] Matching module: Based on identity information and file extraction information, it traverses the file names in the statistical list within the storage module and summarizes related file names to form a filtering directory;

[0014] Encryption module: encrypts watermarked files and decrypts output files.

[0015] Storage module: Used to store encrypted files and statistical lists;

[0016] File output module: Outputs files with or without watermarks.

[0017] Furthermore, access permissions are granted only when the management engineer is currently employed or the supplier is under contract.

[0018] Furthermore, the control center is also connected to a watermarking module;

[0019] Watermark module: Used to add watermarks to files input by the file input module and to remove watermarks from files that can be watermarked.

[0020] Furthermore, the file input module is used for file input, file naming, and then filling the statistical list with the named file names.

[0021] Furthermore, the document name includes the date, version number, name of the managing engineer, name of the supplier, and name of the event.

[0022] Furthermore, the statistical lists are divided into management engineer statistical lists and supplier statistical lists;

[0023] The management engineer statistic list is a statistical list of all the file names that management engineers have participated in creating;

[0024] The supplier statistics list is a statistical list of all the file names of the suppliers.

[0025] The following is a method for using a file encryption / decryption system:

[0026] Step 1: Input the file into the file input module. The file input module names the file and then fills the statistical list with the renamed file name. The control center receives the renamed file and the statistical list.

[0027] Step 2: The control center sends the renamed file to the watermark module for watermarking;

[0028] Step 3: Send the watermarked file to the encryption / decryption module for encryption processing;

[0029] Step 4: Send the encrypted files and statistical lists to the storage module for storage.

[0030] Furthermore, including;

[0031] Step 5: The applicant enters their identity information and document retrieval information through the identity input module. The control center receives the identity information and document retrieval information and sends the identity information to the identity verification module.

[0032] Step 6: The identity verification module determines whether the user has the right to extract information based on the identity information. If the determination is yes, proceed to step 7; otherwise, proceed to step 8.

[0033] Step 7: The identity verification module sends the identity information and file extraction information to the matching module. The matching module searches through the file names in the statistical list in the storage module according to the identity information and file extraction information, summarizes the related file names to form a filtering directory, and sends the filtering directory to the control center. The control center then sends the filtering directory to the identity input module. The identity input module selects the file name to be extracted. The control center extracts the output file from the storage module according to the file name to be extracted, and then executes step 9.

[0034] Step 8: Send the identity information to the permission granting module. The permission granting module determines whether to grant extraction permission. If it does, then execute step 7. If it does not, send a termination extraction command to the identity input module.

[0035] Step 9: If it is determined whether watermark removal is needed, generate a watermark removal permission request and then execute Step 10. If it is determined that the watermark needs to be removed, output the output file through the file output module.

[0036] Step 10: Send a watermark removal permission request to the permission granting module. The permission granting module determines whether to grant watermark removal permission. If the determination is yes, it generates a watermark removal permission instruction and executes step 11. If the determination is no, it sends a watermark removal permission disallow instruction to the identity input module and outputs the output file through the file output module.

[0037] Step 11: The control center receives the watermark removal instruction, the watermark module removes the watermark from the output file, and the watermark-removed output file is output through the file output module.

[0038] Furthermore, step 7 includes:

[0039] Step 71: The identity verification module sends the identity information and file extraction information to the matching module. The matching module determines whether the applicant is a management engineer based on the identity information. If the determination is yes, proceed to step 72; if the determination is no, proceed to step 74.

[0040] Step 72: Retrieve the list of management engineers within the storage module based on their names;

[0041] Step 73: Based on the keywords in the event name, compile a list of traversal management engineers, summarize the file names containing the keywords in the event name to obtain the second directory, and then proceed to step 75;

[0042] Step 74: Retrieve the supplier name statistics list in the storage module based on the supplier name; traverse the supplier name statistics list based on the keywords in the event name, summarize the file names containing the keywords in the event name to obtain the second directory, and then execute step 75;

[0043] Step 75: Send the second directory as the filtering directory to the identity input module. The identity input module selects the file name to be extracted. The control center extracts the output file from the storage module according to the file name to be extracted, and then executes step 9.

[0044] Beneficial effects: The XOR encryption / decryption algorithm of this invention avoids long encryption / decryption times for large files, thus minimizing the impact on the user experience for creators; at the same time, watermarking the files prevents data leakage after being photographed by mobile phones or other devices; furthermore, judging based on the applicant's identity information to determine whether to grant extraction permissions is helpful for file management; finally, statistical lists and filtered directories can accurately and quickly locate output files, facilitating rapid retrieval and reducing workload. Attached Figure Description

[0045] To more clearly illustrate the technical solutions in the embodiments of the present invention or the prior art, the accompanying drawings used in the description of the embodiments or the prior art will be briefly introduced below. Obviously, the drawings described below are merely some embodiments of the present invention. For those skilled in the art, other drawings can be obtained based on these drawings without any creative effort.

[0046] Figure 1 This is a block diagram of a file encryption / decryption system according to the present invention. Detailed Implementation

[0047] To make the objectives, technical solutions, and advantages of the embodiments of the present invention clearer, the technical solutions of the embodiments of the present invention will be clearly and completely described below with reference to the accompanying drawings. Obviously, the described embodiments are only some, not all, of the embodiments of the present invention. All other embodiments obtained by those skilled in the art based on the embodiments of the present invention without creative effort are within the scope of protection of the present invention.

[0048] The present invention will be further described below with reference to embodiments.

[0049] Example 1: Please refer to Figure 1 A file encryption / decryption system, including a control center;

[0050] The control center is connected to a storage module, an encryption / decryption module, a file output module, a file input module, an identity input module, an access control module, a matching module, and an access control issuance module.

[0051] The permission granting module is connected to the identity verification module and the identity input module;

[0052] Identity Input Module: Used to input the applicant's identity information and document extraction information; used to receive termination extraction instructions and disallow watermark removal instructions from the permission granting module; used to filter directories.

[0053] The applicant is a management engineer or a supplier;

[0054] Identity verification module: Based on the applicant's identity information, determine whether they have the right to extract the file. If the determination is correct, send the identity information and file extraction information to the control center. If the determination is incorrect, send the identity information and file extraction information to the permission granting module.

[0055] Permission granting module: Receives identity information and determines whether to grant extraction permission. If the determination is yes, it sends the identity information and file extraction information to the control center. If the determination is no, it issues a termination extraction command. Receives watermark removal permission application and determines whether to grant watermark removal permission. If the determination is yes, it sends the watermark removal permission command to the control center. If the determination is no, it sends the watermark removal permission command to the identity input module.

[0056] The permission granting module is controlled by the enterprise management, and the decision on whether to grant retrieval permissions is made by the enterprise management.

[0057] Matching module: Based on identity information and file extraction information, it traverses the file names in the statistical list within the storage module and summarizes related file names to form a filtering directory;

[0058] Encryption module: encrypts watermarked files and decrypts output files.

[0059] The encryption / decryption module uses the XOR encryption / decryption algorithm;

[0060] Storage module: Used to store encrypted files and statistical lists;

[0061] File output module: Outputs files with or without watermarks.

[0062] This invention's XOR encryption / decryption algorithm avoids lengthy encryption / decryption times for large files, minimizing disruption to the user experience. Furthermore, watermarking the files prevents data leakage after being captured by mobile phones or other devices. Additionally, the application of the applicant's identity information helps determine whether to grant extraction permissions, aiding in file management. Finally, the statistical list and filtered directory enable accurate and rapid location of output files, facilitating quick retrieval.

[0063] Access permissions are granted when the management engineer is currently employed or the supplier is within the contract period.

[0064] Management engineers who are not currently employed or suppliers who are not under contract are not authorized to withdraw funds.

[0065] The control center is also connected to a watermarking module;

[0066] Watermark module: Used to add watermarks to files input by the file input module and to remove watermarks from files that can be watermarked.

[0067] File input module: used for file input, file naming, and then filling the statistical list with the named file names.

[0068] The document name includes the date, version number, name of the managing engineer, name of the supplier, and name of the event.

[0069] The event name is the summary name of the file content;

[0070] For example: The file name is: 2025.05.11 + Third Edition + Wang + Li + Shanghai Photography Company + Animation of the Fifth Level of a Game;

[0071] May 11, 2025 + Third Edition + Wang + Zhang + A photography company in Shanghai + Video of the fifth level of a game;

[0072] May 11, 2025 + Third Edition + Mr. Wang + A photography company in Shanghai + Image from the fifth level of a game.

[0073] The statistical lists are divided into management engineer statistical lists and supplier statistical lists;

[0074] The management engineer statistic list is a statistical list of all the file names that management engineers have participated in creating;

[0075] The supplier statistics list is a statistical list of all the file names of the suppliers.

[0076] Example 2: A method for using a file encryption / decryption system, the specific operation is as follows:

[0077] Step 1: Input the file into the file input module. The file input module names the file and then fills the statistical list with the renamed file name. The control center receives the renamed file and the statistical list.

[0078] Step 2: The control center sends the renamed file to the watermark module for watermarking;

[0079] Step 3: Send the watermarked file to the encryption / decryption module for encryption processing;

[0080] Step 4: Send the encrypted files and statistical lists to the storage module for storage.

[0081] It facilitates encrypted storage;

[0082] Step 5: The applicant enters their identity information and document retrieval information through the identity input module. The control center receives the identity information and document retrieval information and sends the identity information to the identity verification module.

[0083] Step 6: The identity verification module determines whether the user has the right to extract information based on the identity information. If the determination is yes, proceed to step 7; otherwise, proceed to step 8.

[0084] To prevent unauthorized personnel or suppliers from directly extracting data, the extraction authority must be confirmed by the management engineer or supplier.

[0085] Step 7: The identity verification module sends the identity information and file extraction information to the matching module. The matching module searches through the file names in the statistical list in the storage module according to the identity information and file extraction information, summarizes the related file names to form a filtering directory, and sends the filtering directory to the control center. The control center then sends the filtering directory to the identity input module. The identity input module selects the file name to be extracted. The control center extracts the output file from the storage module according to the file name to be extracted, and then executes step 9.

[0086] Applicants with extraction privileges can retrieve the output files;

[0087] Step 8: Send the identity information to the permission granting module. The permission granting module determines whether to grant extraction permission. If it does, then execute step 7. If it does not, send a termination extraction command to the identity input module.

[0088] Verify with the management engineer or supplier who does not have extraction authority to determine whether to grant extraction authority.

[0089] Step 9: If it is determined whether watermark removal is needed, generate a watermark removal permission request and then execute Step 10. If it is determined that the watermark needs to be removed, output the output file through the file output module.

[0090] Step 10: Send a watermark removal permission request to the permission granting module. The permission granting module determines whether to grant watermark removal permission. If the determination is yes, it generates a watermark removal permission instruction and executes step 11. If the determination is no, it sends a watermark removal permission disallow instruction to the identity input module and outputs the output file through the file output module.

[0091] Step 11: The control center receives the watermark removal instruction, the watermark module removes the watermark from the output file, and the watermark-removed output file is output through the file output module.

[0092] Step 7 includes:

[0093] Step 71: The identity verification module sends the identity information and file extraction information to the matching module. The matching module determines whether the applicant is a management engineer based on the identity information. If the determination is yes, proceed to step 72; if the determination is no, proceed to step 74.

[0094] Step 72: Retrieve the list of management engineers within the storage module based on their names;

[0095] Step 73: Based on the keywords in the event name, compile a list of traversal management engineers, summarize the file names containing the keywords in the event name to obtain the second directory, and then proceed to step 75;

[0096] Step 74: Retrieve the supplier name statistics list in the storage module based on the supplier name; traverse the supplier name statistics list based on the keywords in the event name, summarize the file names containing the keywords in the event name to obtain the second directory, and then execute step 75;

[0097] Step 75: Send the second directory as the filtering directory to the identity input module. The identity input module selects the file name to be extracted. The control center extracts the output file from the storage module according to the file name to be extracted, and then executes step 9.

[0098] Enables quick location of extracted file names.

[0099] The above embodiments are only used to illustrate the technical solutions of the present invention, and are not intended to limit it. Although the present invention has been described in detail with reference to the foregoing embodiments, those skilled in the art should understand that modifications can still be made to the technical solutions described in the foregoing embodiments, or equivalent substitutions can be made to some of the technical features. Such modifications or substitutions will not cause the essence of the corresponding technical solutions to deviate from the spirit and scope of the technical solutions of the embodiments of the present invention.

Claims

1. A file encryption / decryption system, comprising a control center, characterized in that: The control center is connected to a storage module, an encryption / decryption module, a file output module, a file input module, an identity input module, an access control module, a matching module, and an access control issuance module. The permission granting module is connected to the identity verification module and the identity input module; Identity Input Module: Used to input the applicant's identity information and file extraction information; used to receive termination extraction instructions and disallow watermark removal instructions from the permission granting module; used to receive the filter directory and select the file name to be extracted. Identity verification module: Based on the applicant's identity information, determine whether they have the right to extract the file. If the determination is correct, send the identity information and file extraction information to the control center. If the determination is incorrect, send the identity information and file extraction information to the permission granting module. Permission granting module: Receives identity information and determines whether to grant extraction permission. If the determination is yes, it sends the identity information and file extraction information to the control center. If the determination is no, it issues a termination extraction command. Receives watermark removal permission application and determines whether to grant watermark removal permission. If the determination is yes, it sends the watermark removal permission command to the control center. If the determination is no, it sends the watermark removal permission command to the identity input module. Matching module: Based on identity information and file extraction information, it traverses the file names in the statistical list within the storage module and summarizes related file names to form a filtering directory; Encryption module: encrypts watermarked files and decrypts output files; Storage module: Used to store encrypted files and statistical lists; File output module: Outputs files with or without watermarks; Access is granted only when the management engineer is currently employed and the supplier is within the contract period. The control center is also connected to a watermarking module; Watermark module: Used to add watermarks to files input by the file input module and to remove watermarks from files that have been previously watermarked; File input module: used for file input, file naming, and then filling the statistical list with the named file names; The document name includes the date, version number, name of the managing engineer, name of the supplier, and name of the event. The statistical lists are divided into management engineer statistical lists and supplier statistical lists; The management engineer statistic list is a statistical list of all the file names that management engineers have participated in creating; The supplier statistics list is a statistical list of all the file names of the suppliers.

2. A method of using the file encryption / decryption system according to claim 1, characterized in that: The specific steps are as follows: Step 1: Input the file into the file input module. The file input module names the file and then fills the statistical list with the renamed file name. The control center receives the renamed file and the statistical list. Step 2: The control center sends the renamed file to the watermark module for watermarking; Step 3: Send the watermarked file to the encryption / decryption module for encryption processing; Step 4: Send the encrypted files and statistical lists to the storage module for storage.

3. The method of use according to claim 2, characterized in that, include; Step 5: The applicant enters their identity information and document retrieval information through the identity input module. The control center receives the identity information and document retrieval information and sends the identity information to the identity verification module. Step 6: The identity verification module determines whether the user has the right to extract information based on the identity information. If the determination is yes, proceed to step 7; otherwise, proceed to step 8. Step 7: The identity verification module sends the identity information and file extraction information to the matching module. The matching module searches through the file names in the statistical list in the storage module according to the identity information and file extraction information, summarizes the related file names to form a filtering directory, and sends the filtering directory to the control center. The control center then sends the filtering directory to the identity input module. The identity input module selects the file name to be extracted. The control center extracts the output file from the storage module according to the file name to be extracted, and then executes step 9. Step 8: Send the identity information to the permission granting module. The permission granting module determines whether to grant extraction permission. If it does, then execute step 7. If it does not, send a termination extraction command to the identity input module. Step 9: If it is determined whether watermark removal is needed, generate a watermark removal permission request and then execute Step 10. If it is determined that the watermark needs to be removed, output the output file through the file output module. Step 10: Send a watermark removal permission request to the permission granting module. The permission granting module determines whether to grant watermark removal permission. If the determination is yes, it generates a watermark removal permission instruction and executes step 11. If the determination is no, it sends a watermark removal permission disallow instruction to the identity input module and outputs the output file through the file output module. Step 11: The control center receives the watermark removal instruction, the watermark module removes the watermark from the output file, and the watermark-removed output file is output through the file output module.

4. The method of use according to claim 3, characterized in that, Step 7 includes: Step 71: The identity verification module sends the identity information and file extraction information to the matching module. The matching module determines whether the applicant is a management engineer based on the identity information. If the determination is yes, proceed to step 72; if the determination is no, proceed to step 74. Step 72: Retrieve the list of management engineers within the storage module based on their names; Step 73: Based on the keywords in the event name, compile a list of traversal management engineers, summarize the file names containing the keywords in the event name to obtain the second directory, and then proceed to step 75; Step 74: Retrieve the supplier name statistics list in the storage module based on the supplier name; traverse the supplier name statistics list based on the keywords in the event name, summarize the file names containing the keywords in the event name to obtain the second directory, and then execute step 75; Step 75: Send the second directory as the filtering directory to the identity input module. The identity input module selects the file name to be extracted. The control center extracts the output file from the storage module according to the file name to be extracted, and then executes step 9.