User password protection method and device based on white-box algorithm, equipment and medium
By generating random white-box keys and salt values using white-box algorithms, and combining them with encryption and hashing algorithms to generate ciphertext for user passwords and verification credentials, a closed-loop protection is formed. This solves the problems of traditional encryption schemes being easily cracked and poor hardware compatibility, achieving high security and wide applicability of user passwords.
Patent Information
- Application Number
- CN202610100547.1
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2026-01-23
- Publication Date
- 2026-05-15
AI Technical Summary
Traditional symmetric encryption schemes rely on fixed keys, which are easily reverse-engineered, resulting in low password security for users. Furthermore, hardware protection schemes have poor compatibility and cannot meet the general needs of various types of terminal devices.
A white-box algorithm is used to generate random white-box keys and salt values. White-box encryption algorithms and obfuscation hash algorithms are used to generate user password ciphertext and verification credentials, forming a closed-loop protection. Password security is improved through the association encryption mechanism of salt value and user password.
It effectively defends against brute-force attacks, enhances user password security, adapts to various types of terminal devices, reduces the risk of key extraction and abuse, and achieves broad compatibility and lightweight operation and maintenance management.