Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

20 results about "Advanced Encryption Standard" patented technology

The Advanced Encryption Standard (AES), also known by its original name Rijndael ([ˈrɛindaːl]), is a specification for the encryption of electronic data established by the U.S. National Institute of Standards and Technology (NIST) in 2001.

Solid state disk data encryption method and solid state disk

The invention relates to the technical field of electric digital data processing security, and discloses a solid state disk data encryption method and a solid state disk. According to the method, a national cryptographic algorithm hardware encryption and decryption co-processing module is serially arranged on a data bus between a main control chip and a flash memory particle array, so that transparent encryption of write-in data and transparent decryption of read-out data are realized; the module performs encryption and decryption based on an SM4 algorithm and an XTS advanced encryption standard mode in combination with a logic address as an adjustment value, and securely injects a root key through an out-of-band interface to derive a data key. The system comprises a main control chip, a flash memory array and the co-processing module, wherein the co-processing module is integrated with a hardware encryption and decryption engine, a key management unit and data flow control logic. On the premise that a general main control chip is not changed, high-performance, high-compatibility and high-security national cryptographic hardware-level full-disk encryption is realized.
Owner:深圳市彦胜科技有限公司

Method of operating a memory controller, a memory controller and a memory system

The present disclosure provides a method of operating a memory controller, a memory controller, and a memory system, and relates to the technical field of memories. The memory controller includes an Advanced Encryption Standard (AES) engine, a processor, and a first interface, and the memory controller is communicatively connected with a first memory through the first interface. The method includes: in response to the memory controller being powered on, obtaining, by the processor, firmware from the first memory through the first interface, wherein the firmware includes a configuration information ciphertext of a first trusted computing group (TCG); and decrypting, by the AES engine, the configuration information ciphertext of the first TCG based on a first key and a preset decryption algorithm, to obtain a configuration information plaintext of the TCG.
Owner:YANGTZE MEMORY TECH CO LTD

Using a single AES key to encrypt PKCS #7 files

Cryptographic systems and methods are provided. A method, according to one implementation, includes a step of generating a plurality of key pairs in response to receiving a request from a client for one or more digital certificates. The key pairs are associated respectively with the one or more digital certificates. Also, each key pair includes a public key and a private key. The method further includes a step of utilizing at least the plurality of key pairs to generate the one or more digital certificates. Also, the method includes a step of encrypting the one or more digital certificates and respective private keys using a single Advanced Encryption Standard (AES) key. The method also includes a step of sending the encrypted one or more digital certificates and private keys back to the client.
Owner:DIGICERT INC

Advanced encryption standard with frequent s-box update and fusion function application

A method and system for implementing Advanced Encryption Standard (AES) with frequent S-box update and fusion function application is proposed. Initially, a first fusion function input is obtained based on an XOR of an input plaintext and a first cryptographic key. Thereafter, a set of encryption rounds is executed for generating a state output. This includes applying a fusion function on a fusion function input for generating a fusion function output and performing an XOR on the fusion function output and a second cryptographic key for obtaining an encryption output. The first fusion function input is the fusion function input for a first encryption round, the encryption output is the fusion function input for a following encryption round, and the encryption output obtained after last encryption round is the state output. Finally, a final round of AES encryption is executed based on the state output to obtain a ciphertext.
Owner:PANTHERUN TECH PTE LTD

Secure sharing mechanism for storing medical data under distributed chain based on block chain

The invention relates to the technical field of data security and block chains, and provides a medical data security sharing method based on a block chain and an interstellar file system (IPFS). The method comprises five stages of system initialization, user registration, data uploading, data sharing and verification. The system adopts a block chain to record a hash index and an access log of a medical file, and uses an IPFS to store the encrypted medical file, so that an on-chain and off-chain mixed data storage structure is realized. File encryption and key derivation are realized through elliptic curve key agreement (ECDH) in combination with an advanced encryption standard (AES-256-GCM) algorithm, and data privacy is ensured. Forward and backward security is realized through a temporary key mechanism, replay attacks are defended through a timestamp, a random number and a block height mechanism, and an intelligent contract is introduced to perform identity verification and access authorization control. According to the system, data integrity is guaranteed through content addressing and hash binding, safe, efficient and traceable sharing of medical data is achieved, and trust and safety of multi-mechanism cooperation are improved.
Owner:CHONGQING UNIV OF POSTS & TELECOMM

Method and system for fast searching and automatic networking of large AES network equipment

The invention discloses a method and a system for quickly searching and automatically networking large AES (advanced encryption standard) network equipment, belongs to the technical field of audio network communication, and aims to solve the technical problems of low network configuration efficiency and high error rate caused by incapability of automatically identifying physical position attribution of the equipment during deployment of the existing large audio system. According to the technical scheme, clock synchronization is carried out on whole-network audio equipment based on a PTP protocol; when a transient acoustic event is detected, absolute timestamps and spectrum features are extracted and uploaded to a control system; screening time-related candidate equipment through time domain clustering analysis, eliminating partition wall interference equipment in combination with correlation verification of acoustic signal spectrum characteristics, and determining an equipment list in the same physical sound field; and the control system automatically generates VLAN division, IP distribution, audio stream subscription and other network configuration parameters for the list, and issues and executes the network configuration parameters. The method has the advantages of high deployment efficiency and high partition wall interference resistance, and full-automatic closed loop from physical perception to logic configuration is realized.
Owner:HANGZHOU ELITE DIGITAL TECH CO LTD

Encryption method and decryption method of Internet of Vehicles data

The invention relates to the technical field of information security, in particular to an Internet of Vehicles data encryption method and decryption method.The encryption method comprises the steps that an image of Internet of Vehicles data is obtained, and a sensitive area of the image is determined; randomly generating a special chaotic sequence parameter and an AES (Advanced Encryption Standard) key of the two-dimensional Logistic chaotic encryptor; encrypting the sensitive area based on the chaotic sequence parameters of the specialized two-dimensional Logistic chaotic encryptor to obtain an encrypted image; based on the AES key, encrypting the chaotic sequence parameter to obtain an encrypted chaotic parameter; obtaining signature data based on the sensitive area and the AES key; based on the encrypted chaos parameter and the signature data, obtaining embedded data; dynamically embedding the embedded data into the encrypted image to realize the encryption of the Internet of Vehicles data; the AES secret key is fragmented by adopting a Shamir secret key distribution method and is distributed to main bodies of vehicle enterprises, traffic management departments and insurance companies, so that data encryption strength and secure transmission are realized, and secure circulation and value release of data elements of the Internet of Vehicles are promoted.
Owner:HUBEI UNIV

Efficient and secure data handling using domain-oriented masking

This document discloses techniques, apparatuses, and systems for efficient and secure data handling using domain-oriented masking. In aspects, efficient and secure data handling using domain-oriented masking enables circuit resources (e.g., flip flops, data) to be shared between portions of an integrated circuit (IC). Specifically, an input register of a Galois-Field (GF) multiplier and a pipeline register within a stage of an Advanced Encryption Standard Substitution-Box (S-Box) may be implemented as sharing a single flip flop. Some ICs may utilize multiple S-Boxes, including multiple GF multipliers that are provided randomness each time the input is updated. In this case, an output from a previous stage of a first S-box may be provided as randomness to a subsequent stage of a second S-Box to limit the need for entropy generation circuitry. In this way, efficient and secure data handling using domain-oriented masking may decrease circuit cost and circuit area without impacting security.
Owner:GOOGLE LLC

Security routing system and method based on trust management in social internet of things

The invention relates to a secure routing system based on trust management in a social internet of things. The secure routing system comprises a trust measurement module, a Merkle tree access control module, an encryption module and a secure forwarding module, the trust measurement module is used for collecting behavior history, social relations and interaction records of network nodes and calculating trust scores; the Merkle tree access control module is used for constructing a Merkle tree; the Merkle tree is used for verifying data integrity and executing authority management; the encryption module adopts a Diffie-Hellman key exchange algorithm to generate a shared key, and performs symmetric encryption and decryption based on an advanced encryption standard on a message through the shared key; and the secure forwarding module is used for executing access control verification and forwarding on the receiving node when the network node forwards the message, and decrypting the message until the message reaches the destination node. The invention further relates to a method using the secure routing system based on trust management in the social Internet of Things. According to the invention, the routing security and efficiency in the network environment are improved.
Owner:HUBEI UNIV

Solid state disk data encryption method and solid state disk

ActiveCN121327867BDigital dataData stream
The application relates to the technical field of electric digital data processing security, and discloses a solid state disk data encryption method and a solid state disk. The method realizes transparent encryption of written data and transparent decryption of read-out data by serially arranging a national secret algorithm hardware encryption and decryption coprocessing module on a data bus between a main control chip and a flash memory particle array; the module is based on an SM4 algorithm and an XTS advanced encryption standard mode, combines a logical address as an adjustment value to perform encryption and decryption, and injects a root key through an out-of-band interface to derive a data key. The system comprises a main control chip, a flash memory array and the coprocessing module, the latter integrates a hardware encryption and decryption engine, a key management unit and data flow control logic. The application realizes high-performance, high-compatibility, high-security national secret hardware-level full-disk encryption without changing a general main control chip.
Owner:深圳市彦胜科技有限公司

A message encryption authentication method based on a Wayland protocol

ActiveCN120956525BEncryption apparatus with shift registers/memoriesUnixPermission system
The application provides a message encryption authentication method based on a Wayland protocol and belongs to the technical field of message encryption authentication. The method comprises the following steps: based on a Wayland library, extending a connection module, and according to an advanced encryption standard encryption and decryption process, overloading communication write data and read data function interfaces to obtain overloaded communication write and read data function interfaces; through adding judgment logic of a key and judgment logic of an encryption algorithm, obtaining an overloaded client connection request function interface and an overloaded server communication channel creation function interface; defining a working mode and judging, and communicating through a Unix Socket channel to complete message encryption authentication. The application solves the problem that in the case that an existing message transmission is destroyed in a permission system, an attacker can hijack and monitor transmission data, and simultaneously realizes a client whitelist function, so that an illegal application not in the whitelist cannot initiate a connection request.
Owner:成都菁蓉联创科技有限公司

An adaptive, hybrid, and lightweight cryptography system for optimized IoT security and performance.

ActiveDE202025106725U1Securing communicationLightweight cryptographyKey exchange
An adaptive, hybrid, and resource-efficient crypto system for optimized IoT security and performance, consisting of: a variety of IoT devices; The IoT gateway is communicatively connected to the multitude of IoT devices; a trust assessment module configured to calculate trust scores for each IoT device in real time based on anomaly detection results, historical security events, energy consumption patterns, and network activity patterns; a modified Advanced Encryption Standard (M-AES) encryption module configured to perform encryption operations using an XOR triplet diffusion mechanism consisting of four XOR operations that combine different bytes of state data to achieve diffusion; an Elliptic Curve Cryptography (ECC) module configured to perform Elliptic Curve Diffie-Hellman key exchange operations for secure key generation; A Reinforcement Learning Security Agent (RLSA) module configured to: monitor a multidimensional state space encompassing the power level, network load, trust level, and key age of IoT devices; select actions from an action space that includes maintaining current encryption keys, initiating key rotation, and changing encryption strength; optimize security configurations using the Q-Learning algorithm with a reward function that balances security benefits and energy consumption; a key management module configured to perform dynamic key rotation based on trust values ​​and energy thresholds determined by the reinforcement learning security agent; and a communication interface configured to enable encrypted data transmission between IoT devices and the IoT gateway using the hybrid cryptographic operations M-AES and ECC.
Owner:GHARAT NEHA MUMBAI +1

Cryptographic key update system for updating 256-bit cryptographic keys

Methods for updating 256-bit cryptographic keys by a cryptographic key update system include transmitting a first transmission, a second transmission, and a third transmission. The second transmission is a symmetric key encryption under a key encryption key of a concatenation of a plurality of parameters and a new cryptographic key. The sender derives the key encryption key by transforming an authentication key and a bit string of constant values based on a one-way compression function that is one of the following: a modification detection code 2 (MDC-2) cryptographic hash function with a 128-bit advanced encryption standard (AES-128) as the underlying block cipher, a modification detection code 4 (MDC-4) cryptographic hash function with the 128-bit advanced encryption standard (AES-128) as the underlying block cipher, the Hirose compression function with the 256-bit advanced encryption standard (AES-256) as the underlying block cipher, and a 256-bit hash function.
Owner:GM GLOBAL TECHNOLOGY OPERATIONS LLC

Encryption method of random IV and HEX codes based on AES (Advanced Encryption Standard)

The invention relates to an encryption method of random IV and HEX codes based on AES. The method comprises the following steps: acquiring original plaintext data; a Web Crypto API is adopted to generate a random IV, and through the random IV and a predetermined AES key, an AES encryption algorithm is adopted to encrypt the original plaintext data to obtain a ciphertext; and encoding the ciphertext according to a dynamic HEX-Base64 hybrid encoding method, so as to obtain final encoded data. According to the method, the random IV and AES encryption are combined with the dynamic HEX-Base64 hybrid coding, so that WAF interception is effectively avoided, the false alarm rate is reduced, and the data transmission security and the service continuity are guaranteed.
Owner:SI-TECH INFORMATION TECH CO LTD

Memory encryption

A memory controller includes encryption circuits for encrypting write data to be written to an address in a RAM memory. A tweak value is provided based at least on the address. The tweak value is encrypted with Advanced Encryption Standard (AES) encryption using a first key. A first block write data is encrypted by manipulating it based on the encrypted tweak value, AES encrypting with a second key, and then manipulating the result based on the encrypted tweak value again. For subsequent blocks of write data, the encrypted tweak value is modified, and a similar operation is performed.
Owner:ADVANCED MICRO DEVICES INC

AES (Advanced Encryption Standard) encryption method for side channel attack resistance of low-orbit satellite constellation

The invention belongs to the field of satellite communication and password engineering, and particularly relates to an AES (Advanced Encryption Standard) encryption method for side channel attack resistance of a low-orbit satellite constellation, which comprises the following steps of: receiving plaintext data by a sending end, grouping the plaintext data to obtain a plurality of groups, sequentially carrying out AES encryption processing based on pipeline encryption design on each group to obtain encrypted data, and sending the encrypted data to the sending end; sending the encrypted data to a receiving end; the AES encryption processing based on the assembly line encryption design comprises N levels of reference assembly lines which are sequentially connected in series, and F levels of additional assembly lines are inserted behind the N levels of reference assembly lines; each stage of assembly line executes a conversion operation of a corresponding round of AES encryption; the F-level additional pipeline is controlled and activated by a first pseudo-random number generator PRNG1; according to the method, time domain and amplitude domain double-randomization AES encryption processing is adopted, so that key power consumption leakage is randomized on the time scale and the amplitude scale, and high-safety, high-performance and low-overhead comprehensive optimization is realized.
Owner:CHONGQING UNIV OF POSTS & TELECOMM

A car sentry mode video security transmission system and method

The application discloses a kind of car sentry mode video safety transmission systems and methods, it is related to safety transmission field, the system includes: vehicle terminal, cloud server and user terminal;Vehicle terminal is used to determine session key based on user end public key and car end temporary private key, according to session key, using 128-bit advanced encryption standard counter mode to the video file of sentry mode collection is encrypted, obtains encrypted video file, and generates metadata file;Cloud server is used to store encrypted video file and metadata file, and according to the request of user terminal metadata file and encrypted video file are sent to user terminal;User terminal is used to determine session key according to user end private key and car end temporary public key in metadata file, and according to session key, using 128-bit advanced encryption standard counter mode to encrypted video file is decrypted.The application can safely protect sentry mode video, and improve the experience of user.
Owner:BEIJING RENXINZHENG TECH CO LTD

SM4 fast software implementation method based on AES-NI instruction set

The application discloses a kind of SM4 fast software implementation methods based on AES- NI instruction set, this method includes: based on AVX2 (Advanced Vector Extensions) instruction set and AES- NI (Advanced Encryption Standard New Instructions) instruction set, SM4 algorithm is optimized, realizes 8 groups of plaintext parallel encryption, by finding the isomorphism between finite field, S box in SM4 algorithm is mapped to the S box of AES algorithm, and the S box operation of SM4 algorithm is completed using AES- NI extension instruction;In algorithm implementation, the shuffle instruction in AVX2 instruction set is used to improve the matrix operation efficiency in round function.
Owner:BEIHANG UNIV

Latency-controlled integrity and data encryption (IDE)

Technologies for providing integrity and data encryption (IDE) with zero latency are described. One receiving device with a cryptographic circuit having an Advanced Encryption Standard (AES) engine with a fixed epoch size and a fixed latency for IDE can send a delay parameter to a transmitting device. The delay parameter represents a number of clock cycles corresponding to the fixed latency. The cryptographic circuit can pre-determine, using the AES engine, AES data for a first epoch before first input data of the first epoch is received from the transmitting device. After the number of clock cycles, the cryptographic circuit can receive the first input data from the transmitting device. The cryptographic circuit can determine first output data for the first epoch using the AES data and the first input data without storing the AES data in a buffer.
Owner:RAMBUS INC

System and method for object recognition and privacy preservation

Systems and methods are provided for detecting an object region in an image and encrypting / decrypting a detected object region. The system comprises three main components: a database server, a data analytics system and a standard dashboard. The database server may further comprise a distributed database server and a key store database server. The data analytics system is executed by a computer processor configured to apply a multi-head self-supervised learning-based classifier to detect object information captured by the image. The data analytics system further comprise a privacy processing component that is configured to selectively encrypt the detected object using an encryption key following the advanced encryption standard with cipher block chaining mode (AES-CBC).
Owner:FRACTAL ANALYTICS PTE LTD