Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

6301 results about "Access control" patented technology

In the fields of physical security and information security, access control (AC) is the selective restriction of access to a place or other resource while access management describes the process. The act of accessing may mean consuming, entering, or using. Permission to access a resource is called authorization.

Cloud desktop security access control method based on zero-trust architecture

The invention discloses a cloud desktop security access control method based on a zero-trust architecture, belongs to the technical field of network security, and is used for solving the problems of difficulty in hidden attack detection, cross-cloud attack chain breakage and conflict between security control and service continuity in a multi-cloud environment. Firstly, user identity attributes, session metadata and service call logs are aggregated, an identity-resource-behavior triple dynamic graph is constructed, cross-session association features are extracted, and a multi-dimensional behavior baseline is generated. And quantifying the access deviation degree based on the behavior baseline, triggering sensitive operation traceability analysis, constructing a time sequence risk propagation model, identifying latent attack features, predicting a penetration path and outputting a risk propagation coefficient. And finally, dynamically generating a process-level micro-isolation strategy according to a risk result, gradually adjusting the authority through a nonlinear authority attenuation function, inserting a secondary authentication node when unexpected resource jump is detected, reconstructing a communication white list, and realizing collaborative optimization of security protection and service continuity.
Owner:SHENZHEN HUITUO INFORMATION TECH CO LTD

AI dynamic secure transmission system based on SASE framework

The invention relates to the technical field of integration of artificial intelligence security and network security, and discloses an AI dynamic security transmission system based on an SASE framework, which realizes security access control based on AI dynamic identity verification through an SASE integration access module, acquires and predicts network performance change in real time by using a network state sensing module, and transmits the network performance change to a network server. Equipment, environment and data content are subjected to multi-dimensional analysis by means of a security risk assessment module, a quantitative risk score is generated, and a transmission protocol, parameters and encryption strength are dynamically adjusted according to a network state and the risk score by means of a dynamic transmission optimization module and a self-adaptive encryption module; the problem that safety protection and transmission efficiency are difficult to cooperate in a traditional architecture is effectively solved, low-delay and high-reliability data transmission service can be provided for AI application in a complex network environment, meanwhile, self-adaptive dynamic protection of the whole data transmission process is achieved, and data safety is comprehensively guaranteed.
Owner:BEIJING XINDA WANGAN INFORMATION TECH CO LTD

Safety control method and system for remote control of Internet of Things

The invention relates to the technical field of management of the Internet of Things, and discloses a security control method and system for remote control of the Internet of Things, and the system comprises a security remote control platform, a zero-trust gateway, an authentication module, a security policy engine, edge proxy equipment and an encryption communication module. And the authentication module is used for performing identity authentication on the equipment and the user. The security policy engine dynamic access control table comprises access rule entries and associated signature information, and is issued to the edge proxy device through the zero-trust gateway. And the edge proxy device stores the dynamic access control table, verifies the signature information based on the platform public key, and performs matching and verification according to the access rule entry when receiving the control instruction. And the encryption communication module is used for performing encryption transmission on the access control table, the control instruction and the execution result. According to the invention, the whole process of remote control of the Internet of Things is dynamic, secure and credible, and the anti-attack capability and operation reliability of the system are effectively improved.
Owner:JINLANCHEN (BEIJING) TECHNOLOGY CO LTD

Zero-trust network dynamic access control method based on AI behavior portrait

The invention discloses a zero-trust network dynamic access control method based on an AI behavior portrait, and the method comprises the following steps: 1, collecting multi-source real-time behavior data during an access request; 2, constructing an AI behavior portrait engine based on historical data, inputting the integrated multi-source behavior data, calculating a behavior deviation degree through the AI behavior portrait engine, and outputting a risk score; 3, dynamic strategy decision making, wherein a decision making engine executes hierarchical control according to the risk score; 4, continuous session monitoring and real-time adjustment are carried out; step 5, when risk upgrading is detected in the session, degrading the session authority, limiting high-risk operation, terminating the session, and retaining evidence obtaining data; step 6, audit event generation and portrait updating; and step 7, strategy optimization closed loop. According to the method, the risk score is calculated in real time based on the AI behavior portrait, transition from static authorization to dynamic permission adjustment is realized, and internal threats such as voucher stealing and the like are effectively blocked.
Owner:JINGDEZHEN SHANJIANG TECHNOLOGY CO LTD

Data security dynamic evaluation system and protection method

The invention discloses a data security dynamic evaluation system and a protection method, belongs to the technical field of information security, and is used for solving the problem of terminal equipment access control and behavior risk dynamic collaborative protection. The method comprises the following steps: generating fingerprints through terminal equipment features, verifying authorization, inputting access feature slices into a time sequence model by authorized terminal equipment, generating a trust score based on cosine similarity of a behavior sequence and a prediction sequence, and constructing a Markov model to dynamically select an authentication mode according to the trust score; calculating a risk index by combining network and geographic information, and distributing the risk index to a real or virtual environment; and the unauthorized terminal equipment distributes the virtual environment after registration. Differentiated monitoring is carried out, a time sequence library is established in the virtual environment, and doubt scores are generated through sequence matching; the state deviation of the real environment is calculated through a hidden Markov model, and the risk score is generated by fusing the multi-dimensional features. And based on the result management authority, the suspicion terminal equipment isolates and shrinks the authority, the compliance terminal equipment authenticates and migrates, and the access is regulated and controlled according to the minimum privilege principle and the time window mechanism.
Owner:TIBET YANRUI INFORMATION SECURITY TECHNOLOGY CO LTD

Trust-enabled artificial intelligence and non-human identity orchestrator framework

Described herein are techniques for secure orchestration and publication control among agents (e.g., distributed agents), such as non-human identities (NHI), using cryptographic certificates, trust rules, and / or an Information-Centric Networking (ICN) architecture. In an example, a framework establishes identity for human and non-human identities-such as AI agents, services, and autonomous workloads—via cryptographically signed publications and / or collections. Trust policies can be defined and enforced through signed, verifiable trust rules, enabling access control, provenance validation, and / or policy delegation across federated domains. The disclosed techniques can enable multi-agent systems (MAS), zero-trust enforcement, and / or secure cross-domain communication using ICN-named role-based certificates and programmable trust shims. The disclosed techniques can also enable decentralized validation and selective replication of data while maintaining traceability and fine-grained control of agent behavior.
Owner:OPERANT NETWORKS

Time Alignment of Layer 1 / Layer 2 Triggered Mobility

A wireless device receives, from a base station, a radio resource control (RRC) reconfiguration message comprising a layer 1 / layer 2 triggered mobility (LTM) configuration. The LTM configuration comprises an LTM candidate configuration of a candidate cell and a value of a time alignment timer for determining whether a timing advance (TA) value of the candidate cell is valid. The wireless device receives, from the base station, a downlink control information (DCI) indicating the candidate cell and to transmit a random access preamble for acquiring the TA value of the candidate cell. Based on the DCI, the wireless device transmits, via the candidate cell, the random access preamble for acquiring the TA value of the candidate cell. The wireless device receives, from the base station, a medium access control (MAC) control element (CE) indicating an identifier of the LTM candidate configuration of the candidate cell and the TA value.
Owner:OFINNO LLC

Trusted management and control network platform construction method and device, electronic equipment and storage medium

The invention belongs to the field of network security, and relates to a trusted management and control network platform construction method and device, electronic equipment and a storage medium, the method comprises the following steps: constructing a basic security architecture and a trusted base, the basic security architecture being used for providing a unified root of trust and a management core for collaborative operation of upper security components; based on the basic security architecture and the trusted base, implementing multi-dimensional trusted verification and dynamic access control; an intelligent boundary protection and depth detection system is deployed and is used for constructing an intelligent, three-dimensional and self-adaptive security defense line at the boundary of each region of the network, and various known and unknown threats can be identified and blocked; constructing a unified secure communication tunnel and a cross-domain transmission guarantee; defining and realizing a standardized security function interface and a collaboration protocol; and a continuous trust evaluation and automatic operation management and control closed loop is established. The overall security is enhanced, the secure transmission of data is ensured, the compatibility and collaboration of the system are improved, and the security operation intelligence is realized.
Owner:SHENZHEN Y& D ELECTRONICS CO LTD

Computer network security access control management method based on big data

The invention relates to the technical field of computer network security, and discloses a computer network security access control management method based on big data. The method comprises the following steps: constructing a network security situation knowledge graph, collecting a real-time access behavior sequence through a probe, and synchronizing the real-time access behavior sequence to the knowledge graph; simulating a network entity interaction state in the knowledge graph, and predicting a threat propagation path and a potential intrusion behavior; setting a dynamic access control strategy, constructing a multi-dimensional feature matrix in combination with a real-time access behavior sequence association influence degree and a strategy execution priority constraint condition, calculating a strategy conflict risk score by using a deep learning model, comparing with a preset threshold to judge whether a conflict exists or not, and if yes, reconstructing the strategy; and automatically executing access blocking, session termination and data encryption operations according to the reconstructed strategy, recording an execution log and security feedback data, and updating the knowledge graph in real time. According to the method, the dynamic property and the security of access control are improved, and security threats in a complex network environment can be effectively handled.
Owner:SHANXI ELECTRIC POWER CO POWER COMM CENT

Cross-platform education data privacy protection analysis system

The invention provides a cross-platform education data privacy protection analysis system, and relates to the technical field of data privacy protection. The cross-platform education data privacy protection analysis system comprises a multi-modal data acquisition unit, a dynamic privacy analysis engine, a federal learning processing core module, a block chain enhanced access control system, a privacy watermark traceability module and a compliance autonomy unit. Dynamic coupling of scene sensitivity and data protection intensity is realized through a dynamic privacy risk scoring equation and an adaptive differential privacy noise equation; the problems of privacy disclosure, compliance verification and traceability and responsibility investigation in cross-platform education data sharing are solved by combining federal learning, block chain evidence storage and privacy watermarking technologies. According to the method, the privacy risk assessment precision is remarkably improved, the model precision loss is reduced, full-life-cycle data security management and control are supported, and the method is suitable for multiple scenes such as K12 education and college educational administration.
Owner:JIUJIANG DIGITAL IND DEV CO LTD

Vehicle-mounted edge computing data recording system and method based on protocol adaptive analysis

The invention relates to the technical field of network communication, and discloses a vehicle-mounted edge computing data recording system and method based on protocol adaptive analysis, and the system comprises a multi-protocol network access controller which is used for capturing an original data frame and extracting a physical feature triple; the identification analysis engine is used for executing hash operation on the triple to generate a physical feature code and retrieving a physical logic address mapping table; the direct memory access controller is used for responding to a target memory address pointer hit by retrieval and directly writing a data load into an input buffer area of the functional operation module, and by constructing a direct addressing mechanism based on Hash mapping, thorough decoupling of vehicle-mounted heterogeneous network physical topology and edge computing logic is achieved.
Owner:SHANGHAI JUPO TECH CO LTD

Security protection method and apparatus for customer service management system

PCT designated stageWO2025222719A1Securing communicationData setData access
The present invention relates to the technical field of network security protection. Disclosed are a security protection method and apparatus for a customer service management system. The method comprises: acquiring an employee data set, and performing permission assignment, so as to generate an employee operation permission set; performing identity verification on an access user, and determining a data management operation permission range of the access user; acquiring a sensitive data set for encryption processing, and storing same in a customer service management system; accessing data of the customer service management system, implementing an access control policy, and performing risk assessment, so as to generate a system risk level; extracting detected anomalous data, synchronizing same to a security protection network, and outputting a protection control policy; and executing the protection control policy for security assessment, regularly updating the protection control policy, and performing intelligent security protection on the customer service management system. The present invention solves the technical problem in the prior art that customer service management systems have low security protection capacity, which leads to difficulty in preventing network attacks, thus achieving the technical effect of improving the security protection capacity of customer service management systems.
Owner:SHANGHAI HANDPAL INFORMATION TECHNOLOGY SERVICE CO LTD

Method and system for realizing USB flash disk equipment interaction based on flash memory encryption technology

The invention relates to the technical field of cores, and discloses a method and a system for realizing USB flash disk equipment interaction based on a flash memory encryption technology, which comprises the following steps of: dividing an encryptable data block of a flash memory controller, and determining a dynamic entropy weight of the encryptable data block by utilizing an equipment interaction instruction and a random noise characteristic signal; generating a self-adaptive key generation sequence capable of encrypting data blocks through an address allocation mode and a dynamic entropy weight of a flash memory controller; calculating a side channel leakage risk index of the flash memory controller, and setting a security level label of an encryptable data block in combination with a self-adaptive key generation sequence; the method comprises the following steps: setting a differentiated security protection mechanism of an encipherable data block by constructing an access control matrix of the encipherable data block and an encryption risk area of a flash memory controller; and generating a secure interaction scheme of the USB flash disk equipment based on the self-adaptive key generation sequence in combination with the differential security protection mechanism and the access control matrix. According to the invention, the interaction safety and reliability of the USB flash disk equipment can be improved.
Owner:SHENZHEN LINGCHUANG IND CO LTD

Encryption-based power grid cross-domain operation and maintenance data secure transmission method and system

The invention relates to the technical field of data encryption and transmission, in particular to a power grid cross-domain operation and maintenance data secure transmission method and system based on encryption, and the method comprises the steps: pre-judging a current risk through a historical network security event, dividing a network environment into different risk intervals based on a risk level evaluation value, encryption strategies with different intensities are correspondingly matched, so that refined security management and control with higher risk and stronger protection are realized; a triple progressive identity authentication system of an equipment layer, a dynamic layer and a biological layer is constructed, a dynamic permission management and control mechanism driven by identity attributes and risk levels is constructed, a basic permission boundary is determined based on inherent identity attributes of an operation and maintenance terminal, and permission strength and validity period are dynamically adjusted in combination with a risk level evaluation value. And finally, generating an access control strategy only adapted to the current terminal, the current risk and the current access request, so as to perform data encryption and transmission through the target encryption strategy and the access control strategy, thereby ensuring the security of data transmission.
Owner:STATE GRID SIJI DIGITAL TECH (BEIJING) CO LTD +1

Campus security management system based on deep learning

The invention relates to the technical field of security and protection management, in particular to a campus security and protection management system based on deep learning, which improves the accuracy and robustness of identity recognition by acquiring access control card numbers, face images or fingerprint features and generating standardized identity authentication data. And on the basis of a comparison result of the identity authentication data and the campus database, a behavior chain initialization identifier is generated, and accurate identity binding of the school entering personnel is realized. Furthermore, by collecting multi-camera image stream data, pedestrian re-identification and similarity calculation are executed by using a deep feature matching network, and a cross-camera continuous trajectory data set is generated. And matching the behavior track data set with the conventional path template to generate a behavior offset feature vector. And carrying out joint modeling on the behavior offset characteristics and the identity information through a graph neural network model containing an attention mechanism, and outputting a behavior purpose label and a risk grade score. And a graded security response instruction is generated based on the risk score, so that the missing report rate and the false report rate are effectively reduced.
Owner:GUANGDONG RENDA TECH CO LTD

Security authentication method, device and system of test platform, and storage medium

The embodiment of the invention provides a security authentication method, device and system for a test platform, and a storage medium, and relates to the technical field of network security. The method comprises the following steps: performing fingerprint acquisition on virtual and real equipment to generate a unique identifier, dynamically slicing based on a software defined network to form an isolated test environment, and injecting a zero-trust access strategy associated with the fingerprint; and based on the zero-trust access policy and the device fingerprint, allocating a minimum permission through an attribute-based access control model, continuously evaluating device behaviors to calculate a dynamic trust score, and adaptively updating the permission according to the trust score. By constructing a full-process security certification system and through multi-dimensional mechanism cooperation, dynamic risk perception and timely strategy adjustment, fine-grained control of virtual and real equipment access in an industrial control scene is realized, the dynamic adaptability and risk resistance of a test platform in a complex network environment are improved, and the test efficiency is improved. Equipment access safety, authority distribution minimization and behavior monitoring continuity are ensured, and the safety risk of the industrial control system is reduced.
Owner:STATE GRID SHANDONG ELECTRIC POWER CO +2

Layered agent-based space-air-ground caching and resource optimization method and system

The invention discloses an air-space-ground caching and resource optimization method and system based on a hierarchical intelligent agent, and aims to construct a deep reinforcement learning architecture in which a high-layer DQN and a low-layer DDPG are coordinated for high dynamics and information uncertainty of an air-space-ground integrated network. The high-level intelligent agent generates a period-level content cache and access control strategy based on global states including a cache state, a task request, a node resource and the like, and the low-level intelligent agent executes time slot-level resource allocation, task unloading rate control and UAV deployment optimization under the constraint of the high-level strategy. The system triggers low-level optimization through a double-stage reward mechanism and constraint verification, evaluates a strategy effect based on time slot income and full-period income, and combines state perception and experience playback technologies to realize collaborative optimization of high and low-level decisions. A simulation result shows that compared with a traditional method, the method has remarkable advantages in the aspects of reducing content acquisition delay, reducing return communication overhead, improving task processing success rate and the like, and the space-air-ground MEC network resource utilization rate and user experience are effectively improved.
Owner:XIAN UNIV OF POSTS & TELECOMM

Composite activity graph based access grant and revocation

PendingUS20250307361A1Digital data authenticationPathPingActivity diagram
A data management system establishes connections with access control systems which are delegated by a domain to control data access and maintain data access history associated with the domain. The system receives a group access permission of a set of data resources to a group of named entities and heterogeneous sets of metadata related to the data access history and generates graph objects. The graph objects include named entity nodes and resource nodes. The named entity node represents a named entity associated with an organization, and the resource node represents a data resource. The system traverses access paths that connect the named entity node and the resource node determines a utilization level of a set of access paths. Based on the utilization level, the system revokes the set of access paths, thereby revoking an access permission of the set of named entity in the group to the specific data resource.
Owner:OLERIA CORP

Data privacy protection management system based on artificial intelligence

The invention relates to the technical field of data privacy protection, in particular to a data privacy protection management system based on artificial intelligence, which is characterized in that a resource library building module is used for extracting privacy protection knowledge from multi-source data and building a structured resource library; and the privacy classification module classifies data privacy information and evaluates a sensitive level through intelligent identification and analysis, and provides a basis for a differential protection strategy. The privacy protection module fuses privacy types and sensitive levels, constructs a core policy engine, and comprises a privacy desensitization sub-engine, an access control sub-engine and a privacy risk prediction sub-engine, so as to realize automatic generation and dynamic adaptation of protection policies. And the privacy management module defines an execution sequence and a collaboration mechanism of each sub-engine according to a pre-configuration process, generates a privacy protection method covering the full life cycle of the data, ensures end-to-end collaboration management of links such as data acquisition, storage, use and sharing, and remarkably improves the compliance, efficiency and risk prevention and control capability of data privacy protection.
Owner:NANJING YITABLE AESTHETIC EDUCATION CULTURE TECH CO LTD

Property registration core data security protection method based on block chain technology

The invention relates to the technical field of data integrity protection, in particular to a property right registration core data security protection method based on a block chain technology, which comprises the following steps: acquiring an anchor point on an identity data generation chain, verifying a historical block to construct a topological structure, and matching a permission mapping field write-in path. And verifying the node permission and generating a data integrity verification report. According to the method, identity anchoring data is generated by binding a registrant identity credential with an address on a chain, structured identity mapping is realized, historical blocks form a logic closed loop through pointer and serial number verification, the integrity of data circulation is enhanced, a field access boundary is established by matching a field set with a node identifier through an authority level, and the accuracy of access control is enhanced. Field contents are written into nodes according to an addressing protocol and a distributed path index is generated, the flexibility and addressability of data positioning are improved, a verification link is fused with a certificate and an authority label to match and screen credible nodes, and integrated verification of path compliance and access security is realized.
Owner:MINXUN TECHNOLOGY (HAINAN) GROUP CO LTD +2

Data ownership verification and authorization control method based on zero knowledge proof

The invention discloses a data ownership verification and authorization control method based on zero knowledge proof. The method comprises the following steps: constructing a traceable Merk tree structure on a block chain or a distributed account book; a data owner calculates data fingerprints and packages the data fingerprints into declaration nodes to be inserted into the traceable Merk tree; storing the ownership zero knowledge proof and the traceable Merk tree root hash into a block chain together; the verification party executes the zero-knowledge verifier contract on the chain to complete ownership verification without reading original data or identity plaintext; access control is realized after on-chain verification of the service party; triggering local heavy hash to update the traceable Merk tree root hash, and broadcasting a revocation event on a chain; and confirming legality of evolution and authorization change of all nodes. According to the method, the historical traceability and structural consistency of the data ownership and authorization relationship are ensured, and efficient traceability and anomaly detection of the node evolution chain are also realized.
Owner:SHENZHEN ENAIDA TECHNOLOGY DEVELOPMENT CO LTD

Chunk traceability and user-based access control in horizontal retrieval augmented generation

In one implementation, a device may maintain access permissions that control whether a user is allowed to access a particular document. The device may match a plurality of document chunks from a retrieval augmented generation system to a prompt issued by the user for input to a language model. The device may form, based on the access permissions, a modified set of document chunks by excluding a particular document chunk from the plurality of document chunks based on the particular document chunk having a data lineage from the particular document. The device may augment the prompt using the modified set of document chunks prior to input to the language model.
Owner:CISCO TECHNOLOGY INC

Contextual orchestration and scoped memory protocol with decentralized memory wallet for adaptive artificial intelligence systems

The embodiments disclose a cryptographically governed system for contextual memory management in artificial intelligence including a Contextual Orchestration and Scoped Memory Protocol (COSMP) and a Decentralized Memory Wallet (DMW), which enforce secure, auditable, and policy-driven access to AI memory. Traditional token-based memory tracking is replaced by memory capsules secure data units with embedded access policies and tamper-evident logs 5400 organized via a distributed ledger. Access control is managed through decentralized identifiers (DIDs) and private cryptographic keys, ensuring that all memory interactions are signed, verifiable transactions. This architecture establishes a universal trust layer for AI, enabling post-hoc compliance checks and privacy-preserving audits. Applicable across domains such as national security, healthcare, and autonomous systems, the invention enforces rigorous behavioral constraints and access governance within AI memory and decision-making processes.
Owner:LEWIS SADEIL JAMES +1

Enterprise data security management system and method

The invention discloses an enterprise data security management system and method. The system comprises a data acquisition module which acquires a dynamic context signal of a user access request in real time; the risk calculation module receives the dynamic context signal and generates a real-time risk level signal through a preset risk evaluation model, and the risk evaluation model outputs a risk quantification result based on weighted calculation of a multi-dimensional context factor; the strategy execution module receives the real-time risk level signal and generates a dynamic access control signal; the unified strategy library module is respectively connected with the risk calculation module and the strategy execution module, and provides a strategy configuration signal of the risk assessment model for the risk calculation module; and the auditing tracking module is connected with the strategy execution module and the data acquisition module, receives the dynamic context signal and the dynamic access control signal, and generates an auditing log signal containing a risk decision chain. According to the enterprise data security management system and method, the problem of fine-grained access control failure caused by static strategy hysteresis can be solved.
Owner:GUANGZHOU DINGSHEN TECH DEV CO LTD

Clinical test file-oriented integrated information system and data processing method thereof

The invention relates to the technical field of computers, and discloses an integrated information system for clinical test archives and a data processing method thereof, and the method comprises the steps: constructing a standardized data model covering a whole process; multi-source data dynamic structured intake and integrity verification are carried out; performing multi-dimensional semantic association analysis based on a Bayesian network and a correlation coefficient; block chain type version tracing and difference comparison are carried out; performing role-sensitivity-operation-context four-dimensional access control; and task-driven collaborative sharing and auditing log records. The system comprises a unified modeling module, a data intake module, a semantic analysis module, a version tracing module, an access control module and a collaborative auditing module. The problems of data islands, semantic segmentation, poor dynamic adaptability, weak safety protection and the like in the prior art are solved, intelligent management, semantic interconnection, safety controllability and efficient collaboration of the whole life cycle of clinical test files are achieved, and data quality, audit compliance and multi-role collaboration efficiency are remarkably improved.
Owner:SHANGHAI DENXI MEDICAL TECH CO LTD

Access control policy optimization

Techniques include optimizing a base access control policy, resulting in a residual access control policy, which is then indexed. Upon receiving an access request, the system retrieves the residual access control policy from the index using the request's attributes. The access request is then evaluated against the residual policy to make an authorization decision, which is promptly returned. This streamlined process efficiently evaluates and determines authorization, enhancing the speed and accuracy of access control decisions.
Owner:AMAZON TECH INC

Multimodal transport trusted data space construction method based on privacy calculation and block chain

The invention belongs to the technical field of logistics information, and discloses a multimodal transport trusted data space construction method based on privacy calculation and a block chain. The method comprises the following steps: deploying a modular intelligent data gateway at a core node of a multimodal transport line, unifying the format of multi-source heterogeneous original data, and chaining a hash value; after the multi-source heterogeneous data is subjected to customization processing, key metadata attributes of all the data are registered and linked in real time; constructing a core ontology model, and establishing a cross-domain semantic interoperation capability; establishing a privacy calculation and block chain collaborative dual-channel architecture, and cooperatively training an ETA prediction model in a local data isolation environment by adopting transverse federal learning to ensure that original trajectory data is not out of a domain; constructing a dispute arbitration and credible verification system, and realizing an arbitration process of judicial verification when a transportation dispute occurs; data minimization disclosure and compliance sharing are achieved through dynamic access control. According to the method, multimodal transport data can be available and invisible, and the whole operation process can be audited.
Owner:NANJING UNIV OF SCI & TECH +1

Cross-subject power data security sharing and collaborative analysis method fusing block chain and privacy calculation

The invention relates to the technical field of power data security, and provides a cross-subject power data security sharing and collaborative analysis method fusing a block chain and privacy computing, and the method comprises the following steps: registering and authenticating the digital identity of each participant through the block chain; registering the hash abstract and the access control strategy of each main body data to a block chain through an intelligent contract; the analysis task initiator issues a collaborative analysis task on the chain; scheduling each data party to locally execute the privacy computing task according to the task content; the data security and privacy protection capability is strong: the data is not out of the domain, the original data is not transmitted, and the main body data security and the user privacy are ensured; a credible collaborative analysis mechanism: based on a blockchain contract mechanism and a data traceability function, the whole process can be verified and audited; the method supports a plurality of privacy computing modes, is compatible with a plurality of privacy protection computing frameworks such as federated learning, SMPC and TEE, and has good expansibility.
Owner:SUZHOU TONGHE SMART ENERGY CO LTD

Distributed data security storage and encryption system based on AI technology

The invention relates to a distributed data security storage and encryption system based on an AI technology. The system comprises a data acquisition and preprocessing layer used for acquiring original data and preprocessing the original data to obtain an identifiable data object; the AI identification and strategy decision layer is used for identifying data features of identifiable data objects based on an interpretable AI model to obtain an encrypted instruction packet; the encryption execution and distributed storage layer is used for performing encryption storage processing on the original data content according to an encryption instruction packet to obtain data access interface information; and the dynamic access control layer is used for obtaining user information in response to a data access request instruction of a user, recombining and decrypting the data by using the data distribution mapping index based on the access control strategy table, and returning a plaintext data fragment. By adopting the system, a high-strength, differentiated and multi-level security mechanism can be realized through the AI, intelligent encryption strategy decision is carried out, and the security requirements of multiple scenes and multiple types of data are met.
Owner:HEFEI CITY UNIV

Intelligent machine room multi-dimensional dynamic monitoring management method and system based on digital twinning

The invention provides an intelligent machine room multi-dimensional dynamic monitoring management method and system based on digital twinning, and relates to the technical field of machine room monitoring, and the method comprises the steps: collecting a three-dimensional point cloud set and an RGB image set of a machine room space, and building a space mapping table; mapping the access control event data to a corresponding position in a digital twin space, generating an access control event space positioning set, identifying access control abnormal events, and constructing an access control abnormal event space positioning set; performing abnormal behavior recognition, and constructing an abnormal event graph structure; reconstructing and visualizing an abnormal track based on the abnormal event graph structure; in combination with the access control abnormal event space positioning set, the abnormal behavior category prediction probability distribution and the track risk level, executing a grading early warning mechanism, and generating an access control abnormal event log; according to the invention, intelligent positioning, track visualization and risk grading early warning of access control abnormal events in the intelligent machine room are realized, and the method is suitable for digital operation and maintenance management systems such as the intelligent machine room.
Owner:JILIN MENGSHI TECH OPTOELECTRONICS CO LTD