Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

9 results about "Client-side encryption" patented technology

Client-side encryption is the cryptographic technique of encrypting data on the sender's side, before it is transmitted to a server such as a cloud storage service. Client-side encryption features an encryption key that is not available to the service provider, making it difficult or impossible for service providers to decrypt hosted data. Client-side encryption allows for the creation of applications whose providers cannot access the data its users have stored, thus offering a high level of privacy. Those applications are sometimes marketed under the misleading term "zero-knowledge".

Cryptographic mediation of communication channels for software applications

A method applies secure cryptographic communication between legacy applications and corresponding external services. A user device has one or more processors and memory, and runs a legacy application. The application receives input (e.g., from a user). In response to the input, the application initiates communication over a secure communication protocol to an external service not running on the user device. A client crypto-service encapsulates the communication and provides a secure encrypted tunnel to a server crypto-service, at a server system, in communication with the external service. The server system has one or more processors and memory. The server system receives the encapsulated communication at the server crypto-service and sends the communication to the external service. The server system then receives a response to the communication from the external service and returns the response, through the secure encrypted tunnel, to the user device.
Owner:SB TECH INC

Cloud sharing multi-terminal real-time online document encryption device based on national secret

The application discloses a cloud sharing multi-terminal real-time online document encryption device based on a national secret, belongs to the technical field of cloud sharing and encryption, and aims to solve the technical problem of how to realize real-time collaborative editing of user sensitive data and avoid content leakage in a document editing process. The technical scheme is that the device comprises a server and a client, the client comprises an application terminal and a password module, the server comprises a key distribution service unit and a collaborative service unit, the key distribution service unit comprises a key management service module and a key distribution service module, the collaborative service unit comprises a service module and a collaborative processing service module, the key distribution service unit is used for key distribution and key management, the collaborative service unit completes key distribution by calling the key distribution service module, and the client-encrypted document is converted and stored in ciphertext through collaborative operation, and the ciphertext is retransmitted to other clients.
Owner:INSPUR QILU SOFTWARE IND

Stateless session recovery method, apparatus and device for tlcp protocol

ActiveCN121462217BImplementing a stateless session recovery methodImprove access speedUser identity/authority verificationProtocol for Carrying Authentication for Network AccessDistributed computing
This application provides a stateless session recovery method, apparatus, and device for the TLCP protocol. The method includes: determining a second client signature hash value based on a client signature certificate; determining a second client encryption hash value based on a client encryption certificate; determining a second server signature hash value based on a server signature certificate; determining a second server encryption hash value based on a server encryption certificate; if the first client signature hash value is the same as the second client signature hash value, the first client encryption hash value is the same as the second client encryption hash value, the first server signature hash value is the same as the second server signature hash value, and the first server encryption hash value is the same as the second server encryption hash value, then the client's session is recovered, and a TLCP connection is established with the client. The technical solution of this application can save network bandwidth resources, reduce the computing resource consumption of business servers, and significantly shorten the connection establishment time.
Owner:HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO LTD

Client-side encryption with low-cost integrity check

An apparatus in an illustrative embodiment comprises a client device configured for communication with a storage system, with the client device comprising a processor coupled to a memory. The client device is further configured to generate a data encryption key for a data item by computing a function of at least the data item, to encrypt the data item using the data encryption key for the data item, to encrypt the data encryption key using a secret key of the client device, and to send the encrypted data item and the encrypted data encryption key to the storage system for storage in the storage system. The client device is still further configured to retrieve the encrypted data item and the encrypted data encryption key from the storage system, and to perform an integrity check on the retrieved encrypted data item using a result of decrypting the retrieved encrypted data encryption key.
Owner:DELL PROD LP

User interface

Systems and methods for interacting with smart documents are disclosed. The system includes a document user interface that receives access requests, communicates with the smart document, and displays the content of the document. Features include rendering layouts tailored to user roles and devices, authentication mechanisms, and security measures such as screenshot prevention and client-side encryption, among a variety of others. The interface may support multi-panel displays, dynamic configurations, and other functionality like scheduling reports, marketing actions, and due diligence processes. Various other methods, systems, and features are also disclosed.
Owner:FACTIFY TECHNOLOGIES INC

Information encryption and decryption device, information encryption method, and information decryption method

The application discloses an information encryption and decryption device, an information encryption method and an information decryption method. The device comprises an adaptation unit, a client encryption unit and a server decryption unit. The adaptation unit is used for determining a target encryption mode and informing the target encryption mode to the client encryption unit. The client encryption unit is used for encrypting to-be-transmitted information according to the target encryption mode to obtain information ciphertext, and sending the information ciphertext to the server decryption unit. The server decryption unit is used for receiving the information ciphertext sent by the client encryption unit, and decrypting the information ciphertext to obtain the to-be-transmitted information. The technical scheme of the embodiment of the application provides an information encryption and decryption device with rich encryption strategies, has strong portability, is isolated from business logic and page layout, well adapts to various application system platforms, and greatly reduces introduction cost.
Owner:AGRICULTURAL BANK OF CHINA

Stateless session recovery method, apparatus and device for TLCP protocol

The invention provides a stateless session recovery method, device and equipment for a TLCP protocol, and the method comprises the steps: determining a second client signature hash value based on a client signature certificate, and determining a second client encryption hash value based on a client encryption certificate; determining a second server-side signature hash value based on the server-side signature certificate, and determining a second server-side encryption hash value based on the server-side encryption certificate; if the signature hash value of the first client is the same as the signature hash value of the second client, the encrypted hash value of the first client is the same as the encrypted hash value of the second client, the signature hash value of the first server is the same as the signature hash value of the second server, and the encrypted hash value of the first server is the same as the encrypted hash value of the second server; and if not, recovering the session of the client, and establishing the TLCP connection with the client. According to the technical scheme, network bandwidth resources can be saved, computing resource consumption of the service server can be reduced, and connection establishment time is remarkably shortened.
Owner:HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO LTD

Hardware encryption-based large model cloud security inference chip architecture, cloud security inference method and application

The application discloses a large model cloud end security reasoning chip architecture based on hardware encryption, which comprises a client encryption terminal, a cloud end security reasoning chip and a key management service.The client encryption terminal is integrated with a hardware encryption module, adopts a hybrid encryption strategy, encrypts user input data through a symmetric encryption algorithm, and realizes the safe distribution of session keys through an asymmetric encryption algorithm.The cloud end security reasoning chip is a special ASIC chip, adopts a multi-stage pipeline architecture, and comprises a ciphertext input processing unit, a secure calculation area, a ciphertext output processing unit and a security control and root of trust.The secure calculation area is a physically isolated chip area, and the decrypted input data, model weights and intermediate calculation results are circulated between the secure on-chip cache and the calculation unit in the area.The security control and root of trust are integrated with a physically unclonable function to realize hardware identity authentication.The key management service is a distributed key management system based on a PKI system, and supports key rotation, revocation and update operations.
Owner:SHANGHAI QUSU CHAOWEI TECHNOLOGY CO LTD

User interface

Systems and methods for interacting with smart documents are disclosed. The system includes a document user interface that receives access requests, communicates with the smart document, and displays the content of the document. Features include rendering layouts tailored to user roles and devices, authentication mechanisms, and security measures such as screenshot prevention and client-side encryption, among a variety of others. The interface may support multi-panel displays, dynamic configurations, and other functionality like scheduling reports, marketing actions, and due diligence processes. Various other methods, systems, and features are also disclosed.
Owner:FACTIFY TECHNOLOGIES INC