User password protection method and device based on white-box algorithm, equipment and medium

By generating random white-box keys and salt values ​​using white-box algorithms, and combining them with encryption and hashing algorithms to generate ciphertext for user passwords and verification credentials, a closed-loop protection is formed. This solves the problems of traditional encryption schemes being easily cracked and poor hardware compatibility, achieving high security and wide applicability of user passwords.

CN122053045APending Publication Date: 2026-05-15CHINA UNIONPAY
0 Cites 0 Cited by

Patent Information

Application Number
CN202610100547.1
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2026-01-23
Publication Date
2026-05-15

AI Technical Summary

Technical Problem

Traditional symmetric encryption schemes rely on fixed keys, which are easily reverse-engineered, resulting in low password security for users. Furthermore, hardware protection schemes have poor compatibility and cannot meet the general needs of various types of terminal devices.

Method used

A white-box algorithm is used to generate random white-box keys and salt values. White-box encryption algorithms and obfuscation hash algorithms are used to generate user password ciphertext and verification credentials, forming a closed-loop protection. Password security is improved through the association encryption mechanism of salt value and user password.

Benefits of technology

It effectively defends against brute-force attacks, enhances user password security, adapts to various types of terminal devices, reduces the risk of key extraction and abuse, and achieves broad compatibility and lightweight operation and maintenance management.

✦ Generated by Eureka AI based on patent content.
Patent Text Reader

Abstract

The invention discloses a user password protection method and device based on a white-box algorithm, equipment and a medium, and belongs to the field of data processing. The method comprises the following steps: randomly generating a white box key and a salt value; according to a white-box encryption algorithm, encrypting the salt value by using the white-box key to obtain a salt value ciphertext; and based on the salt value ciphertext, the user password and the salt value, generating a user password ciphertext and a password verification voucher by using a confusion algorithm and a hash algorithm, and storing the user password ciphertext, the password verification voucher and the white-box key, the password verification voucher being used for verifying the to-be-verified password input by the user and the user password. According to the embodiment of the invention, the security of the user password can be improved.
Need to check novelty before this filing date? Find Prior Art