Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

1191 results about "Confidentiality" patented technology

Confidentiality involves a set of rules or a promise usually executed through confidentiality agreements that limits access or places restrictions on certain types of information.

Physics-enhanced federated distributed computational graph architecture for biological system engineering and analysis

A federated distributed computational system enables secure collaboration across multiple institutions for biological data analysis. The system consists of interconnected computational nodes managed by a centralized or decentralized federation manager, depending on the deployment model. Each node contains specialized components that work together to process biological data while preserving privacy. These components include a local computational engine that handles data processing, a privacy preservation module that protects sensitive information, a knowledge integration component that manages biological data relationships by connecting various data sources, and a communication interface that enables secure information exchange between nodes. The federation manager coordinates all computational activities across the network while ensuring data privacy is maintained throughout the process. This architecture allows research institutions to collaborate on complex biological analysis tasks without compromising their sensitive data, enabling breakthrough discoveries through shared computational resources and expertise while maintaining the security, compliance, and confidentiality required in biological research.
Owner:QOMPLX INC

Physics-enhanced federated distributed computational graph architecture for multi-species biological system engineering and analysis

A federated distributed computational system enables secure collaboration across multiple institutions for multi-species biological data analysis. The system consists of interconnected computational nodes managed by a central federation manager. Each node contains specialized components that work together to process multi-species biological data while preserving privacy. These components include a local computational engine that handles data processing, a physics-information integration subsystem that combines physical state calculations with information-theoretic optimization, a privacy preservation module that protects sensitive information, a knowledge integration component that manages biological data relationships, and a communication interface that enables secure information exchange between nodes. The federation manager coordinates all computational activities and manages resource allocations across the network while ensuring data privacy is maintained throughout the process. This architecture allows research institutions to collaboratively analyze complex, multi-species biological systems through integrated physics-based modeling and information-theoretic approaches while maintaining security and confidentiality.
Owner:QOMPLX INC

Multi-feature information hidden document integrity verification and tampering positioning method

The invention provides a multi-feature information hidden document integrity verification and tampering positioning method, and relates to the field of network security and digital document protection. The multi-feature information hidden document integrity verification and tampering positioning method comprises the following steps: S1, document multi-dimensional feature extraction and encryption: based on an original Word document, adopting an SHA-3 algorithm to calculate a full-text hash value as a content feature, and extracting document object model features such as paragraph hierarchy, table structure and the like through a DOM tree analyzer; after the two types of features are combined into a feature matrix, a dynamic secret key is generated through Logistic chaotic mapping for XOR encryption, and an encrypted document feature matrix is generated. A dynamic key is generated by combining Logistic chaotic mapping encryption through a multi-dimensional extraction technology fusing document content hash values and structural features, so that the anti-cracking capability of a feature matrix is remarkably improved, the confidentiality of document features in open network transmission is ensured, the block information retention rate is simulated and predicted by adopting Monte Carlo, and the watermark embedding weight is dynamically allocated.
Owner:SOUTHWEST UNIV

Federated distributed computational graph architecture for biological system engineering and analysis

A federated distributed computational system enables secure collaboration across institutions for unified biological and multiomics data analysis. It comprises interconnected computational nodes managed by a central federation manager. Each node includes specialized components: a local computational engine for biological data processing, a privacy-preservation system, a knowledge integration component leveraging dynamic knowledge graphs, and a secure communication interface. The federation manager coordinates computational activities while ensuring security, privacy, legality, and contractual adherence. This architecture allows institutions, citizen scientists, and patients to collaborate on complex biological analyses without compromising sensitive data. By enabling shared computational resources and expertise, the system facilitates breakthrough discoveries while maintaining confidentiality. Additionally, it supports pro-rata or contractually defined participation in resultant benefits or knowledge, ensuring equitable collaboration.
Owner:QOMPLX INC

System and method for secure ai-based financial technology governance and risk management

The present invention discloses a system and method for secure artificial intelligence-based financial technology governance and risk management, designed to provide real-time, autonomous, and verifiable compliance assurance within digital financial ecosystems. The invention integrates a secure artificial intelligence processing unit, a governance control processor, a cryptographically anchored storage unit, a federated learning coordination processor, and a quantum-resistant communication interface enclosed within a tamper-proof hardware structure. The system performs encrypted machine learning computations on financial transaction data using homomorphic encryption and trusted execution environments to preserve confidentiality during analysis. It computes a governance risk index based on probabilistic inference and anomaly detection to identify regulatory deviations, applies adaptive compliance reasoning across multi-jurisdictional frameworks, and automatically enforces governance actions through secure decision logic.
Owner:MAHESHKAR JAYKUMAR AMBADAS

Distributed node unified identity authentication method and system based on QUIC protocol

The invention relates to a QUIC protocol-based distributed node unified identity authentication method and system, belongs to the technical field of network security, is applied to a client, and comprises the following steps: registering a client domain name identity through a certificate authority, obtaining a client certificate, and pre-storing a server certificate chain; generating a QUIC initial data packet according to the target server domain name identifier and the client certificate, and sending the QUIC initial data packet to the server; receiving a QUIC handshake data packet returned by the server; verifying the legality of the server certificate based on the server certificate chain, and if the server certificate is legal, calculating a pre-master key according to the client DH private key and the server DH public key; deriving a 1-RTT session key based on the pre-master key; generating a signature verification message, and sending the client certificate and the signature verification message to a server; and synchronously using the 1-RTT session key to encrypt the application layer data with the server, and transmitting the data to the server in the 1-RTT encryption space of the QUIC protocol. According to the invention, the reliability of node identities and the confidentiality of data are ensured.
Owner:BEIJING LIUJINSUIYUE TECH CO LTD

Data security transmission method and system for hemodialysis equipment

The invention discloses a data security transmission method and system for hemodialysis equipment, and belongs to the technical field of data transmission. The method solves the problems that an existing method lacks fine management on data sensitivity, high-sensitivity data is prone to being leaked in the data transmission process, and the data transmission efficiency is affected, sensitivity classification standards are established, and the weight and the weight value of each class of standards are defined in multiple dimensions according to privacy, importance and the influence degree; the data is divided into high-sensitivity data, medium-sensitivity data and low-sensitivity data by performing scoring and sensitivity score calculation on various types of data. Various data are encrypted in different modes according to different sensitivity levels, and data transmission is carried out through different transmission channels and security protocols; the safety and confidentiality of the hemodialysis data in the transmission process can be effectively improved, and high-sensitivity data leakage is prevented; meanwhile, the transmission efficiency of the hemodialysis data is improved, and the flexibility of data transmission is enhanced.
Owner:CHINESE PEOPLES LIBERATION ARMY GENERAL HOSPITAL HAINAN HOSPITAL

User travel data security management system and method based on cloud computing

The invention provides a user travel data safety management system and method based on cloud computing, and the system comprises a multi-source data collection and adaption module which is used for collecting user travel data from various types of travel equipment; the hybrid encryption transmission channel module is used for establishing a safe transmission link between the data acquisition terminal and the cloud computing platform; the privacy screening and desensitization module is used for identifying and processing privacy sensitive contents in the data received by the cloud computing platform; the distributed storage architecture module is used for reliably storing user travel data on the cloud computing platform; the authority control and auditing module is used for controlling the calling authority of the external main body to the user travel data and auditing the data access condition; the data backup and recovery scheduling module recovers data when data risks exist; and the data visualization and analysis auxiliary module is used for presenting the data in a visualization mode. According to the invention, confidentiality, integrity and availability of travel data transmission and transparency and traceability of data access are ensured.
Owner:BEIJING TRAVEL INT TOURISM TECH CO LTD +1

Safety management method for financial data synchronization

The invention relates to the technical field of data management, in particular to a safety management method for financial data synchronization, which comprises the following steps: acquiring an original financial data stream, and performing data fragmentation processing on the original financial data stream to obtain fragmented data packets and data fingerprints; performing storage node mapping on the redundant coded data packet according to the storage network to obtain a storage node address chain; and performing abnormal access behavior identification on the storage node address chain according to the security threshold model to obtain a security policy instruction, and deploying the financial scheduling model to a cloud edge collaboration platform to realize security management of financial data synchronization. According to the method, data fragmentation processing, encryption and identity binding are performed on the original financial data, so that the confidentiality of the data can be effectively protected, the data is prevented from being accessed or tampered by an unauthorized third party in a transmission process, and the encrypted data packet ensures secure transmission of the data.
Owner:SHANDONG VOCATIONAL COLLEGE OF ECONOMICS & TRADE +1

Government affair information management method based on cloud

The invention relates to the technical field of government affair information management, in particular to a cloud-based government affair information management method, which comprises the following steps of: S1, adding a sensitivity label for each piece of government affair data in a cloud storage layer; s2, extracting data from the government affair database and generating a dynamic data view with an authority mark; s3, establishing a mapping relation table between routing keys and data source addresses; s4, acquiring a requester department function code, a business scene code and a target data identifier; s5, matching a target data source, and based on the authority mark in the dynamic data view, executing a desensitization operation on the sensitive field; and S6, if the genetic marker bit of the original data is true, superposing the data security classification in the original tag and the current security classification to form a new tag. According to the method, by constructing the sensitivity label and the dynamic authority control mechanism, safe inheritance and accurate access of government affair data in cross-department circulation are achieved, and the safety and compliance of data management are remarkably improved.
Owner:DEEP THINKING COMPUTER (QINGDAO) CO LTD

Data security protection method for power transaction

The invention relates to the field of power transaction security, in particular to a data security protection method for power transaction. Comprising the following steps: a registration authentication stage: completing identity registration through triple authentication of a physical token, biological feature recognition and a dynamic password and GPS positioning white list verification; in the key initialization stage, an SM2 asymmetric key pair and an SM4 symmetric communication key are dynamically generated according to a transaction time window and main body attributes, and are issued through a point-to-point encryption channel and updated in time; in the data encryption and binding stage, a transaction instruction is encrypted, signed and subjected to double-layer integrity verification; a matching and on-chain registration stage: executing matching after verifying the signature, encrypting a result, writing the result into the block chain, and generating a zero-knowledge proof; and in the settlement and supervision stage, settlement or alarm responsibility investigation is started after decryption verification. According to the invention, the problems of single identity authentication, static key, easy data tampering and the like in the prior art are solved, full-flow security protection of power transaction is realized, and data confidentiality, integrity and traceability are improved.
Owner:SHANDONG ENERGY POWER SALES CO LTD

Data management method and device, electronic equipment and medium

The invention discloses a data management method and device, electronic equipment and a medium, and the method comprises the steps: responding to obtained transmission data of first equipment, extracting the transmission data, and obtaining a check code and equipment information; when it is confirmed that the transmission data is qualified according to the check code, desensitizing the transmission data, and determining an encryption confidentiality level mode corresponding to the transmission data according to the equipment type indicated by the equipment information; according to an encryption method corresponding to the confidentiality level, encrypting the desensitized transmission data by adopting an encryption mode to obtain encrypted data; performing desensitization processing and identification processing on the encrypted data to obtain encrypted identification data after desensitization processing; and storing the encrypted data identification data after the desensitization processing to a target storage area. The method can be applied to the business fields of financial science and technology, medical health, old-age care and the like, the overall data safety is improved, privacy protection of sensitive information is increased, meanwhile, the data management and tracing capacity is improved, and balance between safety and performance is achieved.
Owner:CHINA PING AN LIFE INSURANCE CO LTD

Data encryption method for multilevel key stream control in industrial gateway

The invention discloses a data encryption method for multilevel key stream control in an industrial gateway, and particularly relates to the technical field of data encryption and network security. The method comprises the steps of obtaining a session identification code and communication context information; generating a first-level basic key based on the session identification code, and generating a multi-level key stream control matrix in combination with communication context information and a multi-source dynamic random factor; according to the hierarchical relationship of the matrix, key stream sequences of corresponding levels are distributed to data packets of different priorities, and the key stream sequences are switched or combined in real time according to data packet types, transmission paths and security policies in the encryption process, and time fragmentation processing and disturbance coding are executed; the encrypted data packet is sent through a multi-protocol forwarding module of the industrial gateway, and the receiving end carries out decryption by using the key stream control matrix; according to the invention, dynamic generation, hierarchical calling and safe switching of the key stream can be realized, and the data confidentiality, integrity and anti-attack capability of the industrial gateway in a complex network environment are remarkably improved.
Owner:NORTHWESTERN POLYTECHNICAL UNIV

Wireless transmission anchor rod multipoint stress sensor system

The invention discloses a wireless transmission anchor rod multipoint stress sensor system, which relates to the technical field of intelligent monitoring of geotechnical engineering and comprises a data sensing and acquisition module, a data processing and transmission module, a data receiving and storage module, a data analysis and decision module and a user interaction and management module. The technical key points are as follows: multi-protocol adaptive communication and quantum encryption are carried out, a multi-protocol adaptive communication stack is based on an improved near-end strategy optimization algorithm, intelligent switching of communication protocols can be completed in an extremely short time according to an actual environment, and the intelligent switching of the communication protocols can be completed in scenes such as mountainous area tunnels with complex and changeable signals. The problem that transmission of a traditional single protocol is prone to being interrupted is effectively avoided, continuity of data transmission is guaranteed, meanwhile, the integrated quantum key distribution unit adopts a BB84 protocol and is combined with a two-factor encryption system, data transmission safety is remarkably improved, quantum attacks can be effectively resisted in a monitoring scene with the extremely high requirement for data safety in confidential work, and the security of data transmission is improved. And the data leakage risk is avoided.
Owner:李涛

File secure transmission system and method based on virtual printer

The invention relates to the technical field of data transmission security, in particular to a file security transmission system and method based on a virtual printer. The method comprises the following steps: acquiring a key constraint parameter set, and generating a preselected key pool according to the key constraint parameter set; acquiring virtual printing task information, analyzing the virtual printing task information, and generating a document data block set; based on the preselected key pool, performing encryption-write separated transmission on each data block in the document data block set to generate local encryption cache information; and determining a decryption key set according to the local encryption cache information and the preselected key pool, performing decryption-reading separated transmission on each data block in the local encryption cache information according to the decryption key set, and generating and outputting virtual printing content. According to the method and the device, the whole-process encryption and separated processing of the data are realized in the printing data transmission process, and the security and confidentiality of the document content are effectively guaranteed.
Owner:BEIJING ZHUONENG XINAN TECHNOLOGY CO LTD

Cloud edge collaborative multi-factor identity authentication method and system for ubiquitous network

The invention relates to the technical field of security authentication and ubiquitous networks, and discloses a ubiquitous-network-oriented cloud-side collaborative multi-factor identity authentication method and system, and the method comprises the steps: issuing an identity certificate based on an elliptic curve and a PUF challenge-response library of a parameter initialization edge node through a cloud, and achieving the cloud-side bidirectional authentication; when the terminal is accessed, multi-factor authentication combining PUF challenge and a dynamic threshold value is adopted, so that the capability of resisting counterfeiting and replay attacks is improved; after the authentication is passed, the edge node generates a group public key locally and constructs a binary tree group key structure with a preset depth, and post-quantum safe and efficient group signature management is supported; when a newly added terminal joins, generating a secret key based on an elliptic curve algorithm and distributing a group signature private key share to realize lightweight member management; the integrity, confidentiality and traceability are realized while the transmission efficiency is guaranteed, and safe communication and dynamic revocation in an edge resource limited environment are effectively supported.
Owner:CHANGCHUN UNIV OF SCI & TECH

Safety communication method and device for upper computer and ECU, storage medium and program product

The invention provides a secure communication method and device for an upper computer and an ECU (Electronic Control Unit), a storage medium and a program product, which are respectively applied to an upper computer end and an ECU end, and the method comprises the following steps: the upper computer obtains an encryption public key of the ECU and a decryption private key of the upper computer, generates a session key for data encryption and decryption, and sends the session key to the ECU; and the session key is subjected to double encryption by sequentially using an encryption public key of the ECU and a decryption private key of the ECU, and a communication ciphertext is generated and sent to the ECU end. And after receiving the communication ciphertext, the ECU end performs dual decryption by using the encryption public key of the upper computer and the decryption private key of the ECU end in sequence, so that the session key is recovered. And after the key negotiation is completed, the two parties encrypt and decrypt communication data through a symmetric encryption mode based on the session key. According to the invention, a hybrid encryption communication mechanism taking the public key infrastructure as the root of trust is constructed, confidentiality and integrity protection of communication data is realized, and the authentication capability of the identity of the communication entity is remarkably enhanced.
Owner:SHANGHAI GEOMETRICAL PERCEPTION & LEARNING CO LTD

Severe care data management system based on block chain

The invention relates to the technical field of medical care, in particular to an intensive care data management system based on a block chain, and the system comprises an access behavior analysis module, a data encryption module, a sensitivity monitoring module, a health abnormality monitoring module and a node monitoring module. According to the invention, intensive care data is finely managed by using the block chain technology, the medical process is optimized, the access behavior and response time difference is collected and analyzed, the operation efficiency of medical personnel and medical equipment is effectively monitored, the operation delay and the process bottleneck are identified in real time, the response speed is optimized, and the quality of medical services is improved. Through encryption processing and data classification, the confidentiality of information is guaranteed, the data security is also improved, the data leakage risk is reduced, and due to accurate monitoring and real-time abnormal monitoring of sensitivity, key medical data is particularly protected, and the service quality of patient data management is enhanced.
Owner:NANTONG MATERNAL & CHILD HEALTH CARE HOSPITAL

Safe communication method and system for V2G charging pile and energy storage system, and storage medium

The invention provides a safe communication method and system for a V2G charging pile and an energy storage system and a storage medium. The system comprises an energy management system EMS, a charging pile EVSE, a vehicle battery management system BMS and an energy storage battery management system BMS. A session key is established through certificate bidirectional authentication and ECDH negotiation, encryption and anti-replay are realized based on AES / SM4-GCM and additional authentication data, and digital signature verification and REST / TLS transmission are performed on a cross-domain instruction; and when the cloud is unreachable, the EVSE locally executes cooperative control and virtual droop voltage stabilization, or the EMS adopts model prediction control to issue an optimal charging and discharging track. According to the protocol, the confidentiality, integrity and availability of V2G communication and control and the stability of the micro-grid are improved.
Owner:SHENZHEN JIMU ENERGY CO LTD

Power real-time data dynamic encryption transmission method and system based on national secret algorithm

The invention discloses an electric power real-time data dynamic encryption transmission method and system based on a national secret algorithm. According to the method, the real-time updating of the session key is realized by fusing the SM3 Hash algorithm and the multi-dimensional dynamic factor, and the anti-attack capability of data transmission of the power system is improved. A timestamp and data counter double-trigger mechanism is introduced in the key generation process, so that the key is automatically alternated under a fixed time interval or a data volume threshold value, a key exposure window is shortened, and the security risk caused by using the same key for a long time is reduced. Key synchronization is carried out in combination with an SM2 bidirectional authentication channel, the confidentiality of key distribution is ensured, access of unauthorized equipment is avoided through an identity authentication mechanism, full-closed-loop security protection from key generation to transmission is formed, the high-security requirement of the power industry for key data transmission is met, and the security of key data transmission is improved. Through deep combination of a cryptographic algorithm system and a dynamic adaptation mechanism, the high efficiency and compliance of power real-time data transmission are considered while the security is ensured.
Owner:GUIZHOU WUJIANG HYDROPOWER DEV

Data sharing method, device and system

The present application relates to the technical field of computers, and provides a data sharing method, a device, and a system. Shared data and a data protocol set by a data owner are bound for encryption protection, ciphertext structured data and retrieval metadata are integrally digitally signed, an encapsulation signature and a signature public key certificate are bound on the ciphertext structured data and the retrieval metadata, so that the data authenticity can be verified during circulation and sharing of encapsulated data, and confidentiality and integrity protection of the shared data and the data protocol during circulation and sharing are realized. In addition, the encapsulated data is generated by a trusted device trusted by the data owner, a shared agent is trusted by a plurality of participants participating in data sharing, and data is transmitted between the trusted device and the shared agent through a secure transmission channel, so that the security, confidentiality and integrity protection of the shared data and the data protocol during exporting are realized.
Owner:HUAWEI TECH CO LTD

Data security communication system of Internet of Things

The invention discloses a data security communication system of the Internet of Things, which relates to the technical field of data security communication of the Internet of Things, and comprises the steps of equipment identity authentication, adoption of a Hash encryption and challenge response mechanism, dynamic key negotiation and combination with a Diffie-Hellman algorithm and an equipment operation state to generate a session key; the data encryption transmission uses AES-256 encryption and is transmitted through a TLS1.3 protocol, and abnormal traffic detection and prediction are carried out through DBSCAN clustering and an LSTM model; the data integrity is ensured through double verification of the receiving end; flexible access authority control is realized based on attributes in combination with fuzzy logic; recording an operation log and intelligently analyzing to complete safety audit; secret key updating is triggered according to a period or threat, and a new secret key is protected by a digital signature. According to the method, illegal access is prevented through multiple authentication, confidentiality is enhanced through a dynamic key, threats are intelligently detected, authority is flexibly controlled, logs are effectively audited, the key is updated in time, vulnerabilities are repaired, data leakage and attack loss are reduced, and a safety barrier is built for application of the Internet of Things.
Owner:NANJING TAOTANG INFORMATION TECH CO LTD

System and method to securely distribute authenticated and trusted data streams to ai systems

PCT designated stage expiredWO2025159775A2Securing communicationData streamConfidentiality
The method provides for securely harvesting and distributing trusted metadata from devices to artificial intelligence (Al) systems. It enables use of cryptographic hashes and signatures on data for supply chain provenance. It is an agentless method to enhance application security by design, and data protection with data authenticity and confidentiality in device to upstream services communications and data sharing. It helps securely harvest, filter, and forward device metadata to webhooks for AI / ML driven data analytics.
Owner:SYMMERA INC

Intelligent Cognitive AI Based Secure Protocol Channel to Create and Deploy Projects on Demand in Real Time Leveraging Unikernels

ActiveUS20250310352A1Securing communicationConfidentialityUnikernel
This invention introduces a sophisticated system for deploying projects on cloud platforms, combining Unikernels, Cyber Security Mesh Architecture (CSMA), MQTT protocol with SHA256 encryption, an Unikernel Orchestration Rules Engine (UORE), generative AI, and an innovative caching mechanism. Unikernels offer a secure, isolated environment for applications, reducing overhead and boosting performance. CSMA provides extensive security through analytics, identity management, and policy enforcement. The MQTT protocol, secured with SHA256, ensures the integrity and confidentiality of communications. UORE automates deployment, integrating a TLS terminator and data management for streamlined operation. Generative AI proactively resolves deployment challenges, particularly for complex applications, while the caching mechanism enhances performance and efficiency by minimizing latency. This integrated approach automates and secures the deployment process, enabling scalable, efficient, and real-time project creation and deployment in the cloud, thereby addressing the key challenges of cloud application hosting.
Owner:BANK OF AMERICA CORP

Universal Identity Verification for Video Conferencing

Systems, methods, and apparatuses are described for verifying a user identity in a video conference. A computing device may receive user data and a plurality of security parameters associated with accessing a video conference based on a confidentiality level of the video conference. The computing device may generate a security code that is encoded with user data. The computing device might cause the security code to be displayed on the mobile device for a predetermined time period. The computing device may receive an indication that the first device scanned the security code by using a camera. To verify the identity of a user, the computing device may decode the security code, compare the decoded user data of the decoded security code and expected user data associated with the video conference. The computing device may determine the authenticity of a user video and allow access to the video conference.
Owner:CAPITAL ONE SERVICES LLC

Cost-efficient solid state disk based on host end resource borrowing and host

The invention discloses a cost-effective solid state disk based on host end resource borrowing and a host. The hard disk comprises a nonvolatile memory, a memory resource, a CXL TSP characteristic module, a CXL driven communication module, a load detection module and a firmware binary code. The firmware binary code is stored in a nonvolatile memory and is used for executing a solid state disk management function by borrowing computing resources of a host after being uploaded to an enclave of the host; the communication module driven by the CXL is responsible for performing communication interaction with an SGX enclave in a host end; the CXL TSP characteristic module is used for ensuring confidentiality and integrity of communication interaction; the load detection module is used for monitoring the load of the I / O request, and when the load is higher than a threshold value, a daemon thread located at a host end is notified to load a firmware binary code to a host and start the host; the nonvolatile memory is used for storing data. According to the invention, efficient and safe host end resource use can be realized.
Owner:PEKING UNIV

Quantum resistance data encryption system and method based on biological characteristics

The invention discloses a quantum resistance data encryption system and method based on biological characteristics, and the method comprises the steps: a data collection module obtains various biological characteristics and environment data of a user in real time, carries out the filtering of a preprocessing module, achieves the optimal fusion of multi-dimensional biological information through a multi-modal fusion module, and carries out the encryption of the multi-dimensional biological information; and the feature extraction module dynamically adjusts an extraction strategy to generate a biological feature template. And the key generation module generates a dynamic key in real time according to the template, and performs quantum resistance encryption fragmentation on the original data through the data encryption module. And the fragment recombination module completes data restoration after verifying the consistency of the biological characteristics and the secret key. According to the method, multi-source biological and environmental information is fully fused, highly personalized and dynamic data encryption and secure recombination are realized, the data confidentiality and the anti-attack ability under the background of quantum computing are effectively improved, and the method is suitable for a data protection scene with a high security requirement.
Owner:ENLOG (WUHAN) SEMICONDUCTOR DESIGN CO LTD

Medical triage method and system based on multi-modal model

The invention provides a medical triage method and system based on a multi-modal model, and relates to the field of intelligent medicine.The medical triage method and system based on the multi-modal model are based on a large language model base, the RAG technology is adopted to retrieve a local knowledge base, access of different large models such as DeepSeek or local off-line deployment of the large language model can be supported, the safety and confidentiality of data are guaranteed, and the method and system are suitable for large-scale popularization and application. And the knowledge base can be updated and expanded according to the types of the cases and the update of the doctor knowledge. Multi-modal model analysis is combined with priori knowledge of a hospital, a cue word system and a data document are flexibly adjusted, and the accuracy of triage and hospital guidance is improved.
Owner:HUAGONG TECHNOLOGY CO LTD +1

Discrete variable quantum key distribution data coordination method

The invention belongs to the technical field of quantum communication, and particularly relates to a discrete variable quantum key distribution data coordination method and system based on a code rate adaptive multi-system LDPC code. Aiming at the defect of performance bottleneck of an existing discrete variable quantum key distribution system adopting a binary low-density parity check code in a long-distance and high-noise environment, the invention provides a discrete variable quantum key distribution data coordination method. The method comprises the following steps: preparing and transmitting a quantum state; screening data; error rate estimation and eavesdropping detection; data coordination based on symbol-level code rate adaptation and / or bit-level code rate adaptation; and confidentiality enhancement. According to the method disclosed by the invention, the construction and storage pressure of the system on error correction codes with different code rates is obviously reduced, the robustness of the system under a complex channel condition is enhanced, and efficient and unconditionally safe key distribution is ensured; the eavesdropping attack can be effectively resisted, and the communication security is ensured.
Owner:ELECTRIC POWER RES INST OF STATE GRID ZHEJIANG ELECTRIC POWER COMAPNY +3

Block chain data security storage method based on verifiable secret sharing

The invention discloses a blockchain data security storage method based on verifiable secret sharing. The method comprises the following steps executed by computer hardware: receiving to-be-stored data, performing encryption processing on the to-be-stored data to obtain a ciphertext, storing the ciphertext to a distributed file system, obtaining a storage address, and calculating a hash value of the ciphertext; dividing the encryption key into a plurality of sub-key fragments according to set parameters, and calculating a hash value of each sub-key fragment; packaging the sub-key fragment, the sub-key fragment hash value and the ciphertext hash value into a transaction unit, and writing the transaction unit into the block chain; receiving a decryption request, and reconstructing an encryption key when the number of submitted effective sub-key fragments reaches a threshold value; and acquiring the ciphertext from the distributed file system, verifying the hash value of the ciphertext, and decrypting by using the reconstructed encryption key to obtain the plaintext. According to the invention, the security management and control of the full life cycle of the data are realized, the integrity, confidentiality and authenticability of the data and the secret key are ensured, and the security of the data in the processes of storage, transmission, secret key management and the like is ensured.
Owner:GUIZHOU UNIV