Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

489 results about "Cryptogram" patented technology

A cryptogram is a type of puzzle that consists of a short piece of encrypted text. Generally the cipher used to encrypt the text is simple enough that the cryptogram can be solved by hand. Frequently used are substitution ciphers where each letter is replaced by a different letter or number. To solve the puzzle, one must recover the original lettering. Though once used in more serious applications, they are now mainly printed for entertainment in newspapers and magazines.

Using cross workloads signals to remediate password spraying attacks

A method for detecting password spray attacks. The method includes obtaining information from an on-machine malware detection application for a particular machine indicating that a password spray tool is detected on the particular machine. Information is obtained indicating that the particular machine has performed failed sign in attempts. As a result, a determination is made that the particular machine is performing password spray attacks.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Power business anti-quantum cryptography migration progressive control method based on risk perception

The invention provides a power business anti-quantum cryptography migration progressive control method based on risk awareness, and belongs to the technical field of migration control, and the method comprises the steps: collecting key parameters of all to-be-migrated businesses in a power system, carrying out the standardization preprocessing of the collected key parameters, and constructing a business feature matrix; acquiring relevant parameters of quantum attacks in real time, and calculating a real-time quantum attack risk value of each service to be migrated; based on the service feature matrix and the real-time quantum attack risk value, constructing a dynamic migration rhythm adaptation model, and calculating a migration priority, a migration rate and a migration interval of each service to be migrated; and constructing a migration fault-tolerant and recovery model, monitoring the migration process in real time, calculating a fault influence range and recovery cost based on fault information, and executing corresponding adjustment operation. Accurate, dynamic and high-reliability control of anti-quantum password migration of the power business is realized, safe and stable operation of the power business in the migration process is guaranteed, and the migration efficiency and the anti-quantum attack capability are improved.
Owner:NANJING NANZI DIGITAL SECURITY TECH CO LTD +1

Passkey-based authentication for the 3-d secure protocol

Disclosed are various embodiments for integrating the use of passkeys in the 3-D SECURE authentication protocol for transactions. A user of a client device can be prompted to enter a secondary factor of authentication for a second transaction, wherein the prompt includes transaction information and merchant information. In response to a selection to enter the secondary factor of authentication, biometric authentication of the user of the client device can be performed. In response to successful biometric authentication of the second transaction, a challenge comprising the transaction information and the merchant information can be cryptographically signed with a private passkey. The cryptographic signature of the challenge can then be sent to the transaction authorization service.
Owner:AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC

One time voice passphrase to protect against man-in-the-middle attack

Embodiments described herein provide for automatically authenticating operation requests and end-users who submit operation requests during contact events. A server obtains an operation request for an operation originated at an end-user device. The server generates a voice-based one-time password (OTP) using contextual information associated with the requested operation. The server generates and transmits an OTP prompt having text representing the OTP for display at a user interface of the user device. The server receives a response including an audio signal that contains the recording of the user speaking the OTP text aloud. The server uses the audio signal to authenticate the user and the operation request based on the speaker's voice, the accuracy of the user speaking the OTP, and liveness or fraud detection features extracted from the audio signal or metadata from the user device.
Owner:PINDROP SECURITY INC

Method, user device, verifier device, server and system for authenticating user data while preserving user privacy

A method comprises:receiving, by a user device, from a verifier device, a request for user data;retrieving a first cryptogram and a decryption key;sending and, to a server, the first cryptogram;retrieving a random and a second cryptogram generated using reference user authentication data concatenated with the random;sending, to the verifier device, the second cryptogram and the random;storing the reference random;sending, to the user device, the second cryptogram;decrypting the second cryptogram using the decryption key;extracting the reference user authentication data and the random;providing, the user device, with user authentication data;verifying that it matches the reference user authentication data;providing, the verifier device, with the random;verifying that it matches the reference random; andauthenticating the user data.
Owner:THALES DIS CZECH REPUBLIC SRO +1

System and method for secure and performance-optimized management of blockchain-based token life cycle operations

The present invention relates to a system for secure and performance-optimized management of the entire token life cycle operations in decentralized investment ecosystems, especially applicable to blockchain platforms integrating immutable hardware-enforced parameters, trusted execution environments, multi-source price oracles, hybrid mint-and-buyback token allocation mechanisms, and compliance-gated vesting schedules to provide tamper-resistant, revenue-funded investor protection and resilience against network manipulation. The system enforces strict supply and governance safety bounds at the hardware level, preventing any software-based or governance-initiated override of critical operational parameters. The system integrates real-time, TEE-verified oracle feeds, MEV-resistant commit-reveal protocols, and cryptographically verifiable event logging to ensure data integrity, mitigate transaction ordering attacks, maintain compliance throughout the vesting period, and enable efficient off-chain auditing without requiring full-chain scans.
Owner:PITCHMATTER INC

Secure generation of one-time passcodes using a contactless card

Systems, methods, apparatuses, and computer-readable media for secure generation of one-time passcodes using a contactless card. In one example, an operating system (OS) of a device may receive a uniform resource locator (URL) and a cryptogram from a contactless card. The OS may launch an application associated with the URL. The application may transmit the cryptogram to an authentication server. The application may receive a decryption result from the authentication server indicating the authentication server decrypted the cryptogram. Based on the decryption result, the application may request an OTP. The processor may receive an OTP from an OTP generator. The application may receive an input value and compare the input value to a copy of the OTP. The application may determine that the comparison results in a match, and display, based on the determination that the comparison results in the match, one or more attributes of the account.
Owner:CAPITAL ONE SERVICES LLC

BIOS password retention system and method for replacing a motherboard

Systems and methods for providing a Basic Input / Output System (BIOS) password retention system that may be used for motherboard replacement are disclosed. According to one embodiment, an Information Handling System (IHS) includes computer-executable instructions to, when a replacement motherboard is booted on the HIS, obtain An encrypted BIOS password associated with a previous motherboard that has been removed from the IHS, configure the BIOS password on the replacement motherboard without providing a clear text version of the BIOS pw, and complete booting of the IHS into a normal mode of operation.
Owner:DELL PROD LP

Anti-quantum cryptography application method and device based on FIDO2.0 standard and related product

The invention provides an anti-quantum cryptography application method and device based on an FIDO 2.0 standard and a related product, and relates to the technical field of information security. According to the method, on the basis of an FIDO2.0 standard specification, two groups of keys, namely a traditional key and an anti-quantum key, are generated by using cryptographic algorithm key derivation through the same random number seed; the two groups of keys are tightly coupled to serve as a composite key for FIDO authentication to be used for a subsequent authentication signature process, so that the anti-quantum security is enhanced; when the composite signature is used, the anti-quantum signature covers the traditional password signature, so that a strong dependency chain of two password algorithms is formed, and the security authentication strength is enhanced; when the signature is verified, the composite public key is used for verifying the traditional signature and the anti-quantum signature, authentication can be passed only when the traditional signature and the anti-quantum signature pass, double security protection of the traditional password technology and the anti-quantum password technology is achieved, and the attack risk of the traditional password in quantum computing is effectively resisted.
Owner:CHINA FINANCIAL CERTIFICATION AUTHORITY

Method for Secure Access to Digital Data

The invention relates to a method for secure access to digital data, said digital data being encrypted with a given user's public encryption key and stored on a server. The method comprises the following steps:A. receiving at said server a request from said user to access said digital data;B. transmitting, via said server, via a secure communication interface, a request to a secure user device to release a password stored on said user device;C. obtaining said password via said secure communication interface, from said user device in response to a validated security test issued by said user device to a user; andD. retrieving, via said server, the user's encrypted private key, said user's private key being encrypted with said password, and decrypting said user's encrypted private key with said password to obtain that user's private key, and decrypting said encrypted digital data with said user's private key, and presenting said digital data to said user.Another method is provided for new users who do not yet have encryption keys, where the sender temporarily encrypts the digital data and, upon user enrollment, the server re-encrypts the data to the user's public encryption key before proceeding with the server-assisted decryption process.
Owner:MAILSPEC LLC

Tying access / redaction to authentication levels

A media is created. The media may be a document, an image, a video file, an audio file, a real-time communication session, an email, a chat session, and / or the like. The media is associated with a plurality of authentication levels. For example, the media may use a first authentication level that requires a username / password and a second authentication level that requires a fingerprint scan of a user. The media is created based on a security process according to the plurality of authentication levels. For example, the security process may be an encryption process and / or a tokenization process. The media is divided into a plurality of sections based on the plurality of authentication levels. The security process is applied to the plurality of sections based on the plurality of authentication levels.
Owner:MICRO FOCUS LLC

Multistage password protection and operation tracing system of intelligent electric actuating mechanism

The invention discloses a multistage password protection and operation tracing system of an intelligent electric actuating mechanism. The multistage password protection and operation tracing system comprises a multistage authority management module, a password security module, an operation recording module and an authority auditing module, the multi-level permission management module is provided with three levels of permissions and manages distribution, change and switching of the permissions; the password security module manages new establishment, modification, retrieval, storage, error locking and regular replacement of passwords; the operation recording module records all permission-related and equipment control operations; and the permission auditing module retrieves the operation record, generates an auditing report and identifies an abnormal operation behavior. According to the invention, through three-level authority level-to-level management, the operation range is finely divided, and low-authority users are prevented from executing high-risk operations; password cracking and violent attack are resisted through a high-level password security mechanism; through full-operation record coverage and tamper-proof design, operation traceability is realized, and responsibility ownership is clear; and an abnormal behavior analysis and audit report function is realized, and safety risks are actively identified.
Owner:JIANGSU JUSHI DIGITAL TECH CO LTD

Techniques for alternative data exchange mechanisms at terminal devices

Techniques are disclosed for determining data exchange options during a data exchange session. An application executing on a user device can initiate a data exchange session with a terminal device and determine a data exchange account associated with a third party service provider. The application can then obtain, from a server device, a data exchange option corresponding to the data exchange account and provided by the third party service provider. The application can receive an indication that the data exchange option was selected and, responsive to the indication, transmit to the server device a confirmation request associated with the data exchange option. The application can then receive a confirmation that the data exchange option is approved by the third party service provider and responsive to the confirmation, transmit, to the terminal device within the data exchange session, a data cryptogram comprising information usable to identify the data exchange account.
Owner:APPLE INC

Point of Sale Terminal of A Mobile Device

Disclosed are various embodiments for a point of sale application for a mobile device. In some embodiments, a system comprises a mobile device that is configured to initiate a transaction with a virtual terminal system and provide an identifier of the mobile device to the virtual terminal system. An activation command can be received from the service system. A user interface for the virtual terminal system can be presented for indicating a product for the transaction. The user interface is updated to receive a confirmation for an acceptance of the transaction. The mobile device is configured to generate a cryptogram transmit the cryptogram for the transaction to the service system.
Owner:AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC

Digital service authentication using a contactless card

A method, a system, a device, and a computer program product for executing authentication. A user login information associated with using at least one digital service in a plurality of digital services is authenticated. Authentication includes verifying the user login information with at least one digital service, and storing the verified user login information. A cryptogram including the verified user login information is generated. The generated cryptogram including the verified user login information is provided to a contactless card communicatively coupled to at least one processor, causing the generated cryptogram to be stored in a memory location of the contactless card. The generated cryptogram is configured to automatically authenticate the user login information for accessing at least one digital service using the contactless card.
Owner:CAPITAL ONE SERVICES LLC

Secure verification of medical status using a contactless card

Systems, methods, articles of manufacture, and computer-readable media for verification of medical status using a contactless card. An application may receive a request specifying a subject and a medical condition. The application may receive a cryptogram from a contactless card. The application may receive a decryption result from a server and determine that the server decrypted the cryptogram. The application may receive, from the contactless card, a medical attestation, a digital signature of the medical attestation, and a public key of the digital signature. The application may decrypt the digital signature based on the public key of the digital signature and verify the medical attestation based on the decrypted digital signature. The application may determine, based on the verification of the medical attestation, that the subject is immune to the medical condition. The application may output a result that the subject is immune to the medical condition.
Owner:CAPITAL ONE SERVICES LLC

Video front-end device authentication method and system based on SM9 algorithm

The application provides a video front-end device authentication method and system based on a national secret SM9 algorithm, which comprises the following steps: a front-end video device downloads an SM9 identification key; the front-end video device and a video encryption subsystem are authenticated bidirectionally based on an identification password algorithm; the front-end video device encrypts monitoring video data by using an SM4 algorithm, and transmits the encrypted monitoring video data to the video encryption subsystem; and the video encryption subsystem decrypts the encrypted monitoring video data and transmits the decrypted monitoring video data to a video user terminal. By using the national secret technology, the standardization degree can be effectively improved, and technical weaknesses can be reduced; the front-end video device and the video encryption subsystem are authenticated bidirectionally based on the SM9 algorithm, so that the authenticity of the access device is ensured, and the access of malicious devices and the illegal control of the front-end device are effectively prevented; the monitoring video data is encrypted based on the national secret algorithm and is transmitted in an encrypted mode, so that the risk of data leakage can be effectively avoided, and the problem of poor safety performance of the existing video monitoring system is solved.
Owner:CHINA UNICOM (GUANGDONG) IND INTERNET CO LTD

Digital-witness robotic insurance system and method

A robotic insurance platform is disclosed that transforms an autonomous service robot into a tamper-resistant “digital witness” capable of supplying legally probative evidence without human intervention. The robot is equipped with surround video cameras, a spatial microphone array, an on-board processor, a cryptographically isolated secure enclave, a wireless communication module, and a rolling-buffer memory that retains encrypted audio-video data for a configurable period such as forty days. A companion mobile application enables an insured user to register, perform know-your-customer identity verification, and pair the robot with an insurance policy stored on a cloud server that hosts an claim-decision engine and policy database. Following explicit verbal consent from the user, the robot records continuously while performing ordinary tasks. When an incident is detected—either by on-board heuristics or by a user-initiated claim request—the processor extracts a time window surrounding the event, computes a cryptographic hash of the clip inside the secure enclave, and commits that hash as an immutable anchor to a permissioned or public blockchain ledger. Only after blockchain confirmation is the encrypted clip transmitted to the insurance server, where the claim-decision engine verifies integrity, applies machine-learning analytics to determine causation, and issues a coverage determination. Approved claims trigger repair dispatch, replacement shipment, or direct monetary reimbursement, while unclaimed data exceeding the retention interval are securely erased. The platform delivers objective, bias-free evidence, virtually eliminates false claims, and reduces end-to-end settlement time from weeks to minutes, thereby lowering operational costs for insurers and increasing transparency for policyholders.
Owner:ALDAHWI SAMARA

A website weak password detection method, system, storage medium and intelligent terminal

The application relates to a website weak password detection method and system, a storage medium and an intelligent terminal, relates to the field of electronic information security technology, and comprises the following steps: acquiring login website information, user information and password information; determining website importance information; determining possible protection awareness strength information; determining theoretical dictionary level information; matching weak passwords contained in the dictionary corresponding to the theoretical dictionary level information and the password information; if the matching is successful, outputting weak password information; and if the matching is unsuccessful, outputting normal password information. The application improves the problem that if very basic passwords are still simulated to log in during the exhaustive process, unnecessary scanning is caused, and the efficiency is low. The application has the effects of determining the possibility of weak password use of a user by understanding the protection awareness of the user and the importance of the website to the user, reducing the operation strength of the system, and improving the weak password detection efficiency.
Owner:SHANXI SAIDUN NETWORK SECURITY EVALUATION TECH CO LTD

Information handling system secure keyboard health state tracking for enhanced reuse and recycling

PendingUS20260179057A1InstrumentsKey pressingPassword
A key input counter stored in non-transitory memory coupled to a keyboard membrane and executing on a processing resource of the keyboard membrane stores a number of key presses detected at the membrane to track health of the keyboard for reuse. Key input values are queued in batches of sufficient size so that communication to non-transitory memory hides inputs made by an end user, such as a password input. In some embodiments, the batches are copied to non-transient memory when a sufficient multiple of a password exists to mask the password value, or when a sufficient amount of time passes to break up any end user key input sequences. In one embodiment, key values are tracked for less than all the keys to prevent malicious reading of key inputs while still tracking particular values for end of life numbers of key inputs.
Owner:DELL PROD LP

A password matching method based on equality test

PendingCN122372195ASecret sharePassword
This invention discloses a password matching method based on equality testing. Each matching server obtains a login password secret share; the difference between the pre-held registration password secret share and the login password secret share is obtained to get a difference secret share; the first equality test problem between the registration password secret share and the login password secret share is transformed into a second equality test problem between the difference secret share and 0; based on addition, multiplication, and inner product calculations under replicated secret sharing, the second equality problem is subjected to ring dimensionality reduction to obtain a third equality test problem; the third equality test problem is solved based on Fermat's Little Theorem to obtain the equality test result, thereby obtaining the password matching result.
Owner:CSG EHV POWER TRANSMISSION

A mimicry system account password dynamic management method

The application provides a mimic system account password dynamic management method, which comprises the following steps: in an initial state, the same user account has different passwords on different mimic components and executors; a password cracking detector is arranged on the executor or mimic component of the mimic system to detect whether the executor or mimic component is subjected to a password cracking attack in real time; when it is detected that the executor or mimic component is subjected to a password cracking attack, the current user account is locked, the executor or mimic component is informed to enable a traffic filtering rule to block the network attack cracking, and a password regeneration request message is sent to a password manager to change the password of the current user account; wherein the password cracking attack detection step comprises the following steps: detecting whether the number of login requests in a certain time range exceeds a preset threshold value, and if yes, and the return result of each login request is failure, it is considered that a password cracking attack occurs.
Owner:HENAN XINDA WANGYU TECH CO LTD +1

Password loss processing method and device

The embodiment of the invention provides a password loss processing method and device, which are applied to the technical field of computer networks, and the method comprises the following steps: receiving a password loss processing request for a target DHCP (Dynamic Host Configuration Protocol) client; in response to the password loss processing request, acquiring password related information of the target DHCP client, and setting the password related information in an optional option field of a DHCP Offer message; the DHCP Offer message is sent to the target DHCP client side, and the DHCP Offer message is sent to the target DHCP client The target DHCP client is used for extracting the password related information from the selectable option field and applying the password related information. Through the embodiment of the invention, when the account password of the network equipment is lost, the account password is set in a mode of issuing the Offer message through the DHCP server, so that the equipment login is recovered, the response speed is improved, the processing duration is reduced, the risks of configuration loss and the like are avoided, the equipment does not need to be restarted, the influence range is narrowed, and the risk of manual operation is avoided.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Method of authentication between electronic devices

This disclosure relates to a first electronic device, a remote electronic device, a method of authentication between electronic devices. The method is applicable in a mutual dynamic authentication, and the method includes: initiating, by a first electronic device, registration with a remote electronic device for registering an identity belonging to the first electronic device with the remote electronic device, by: calculating a second cryptographic authentication code; and securing first information and second information from being tampered with by a middleman; wherein the first information is sent by the first electronic device to the remote electronic device, and includes a first public key and a second public key of the first electronic device; and wherein the second information is received from the remote electronic device, and the second information includes a first public key and a second public key of the remote electronic device.
Owner:FU JIAN FA BA WANG INFORMATION TECH CO LTD

File processing method and device, electronic equipment and storage medium

Embodiments of the present application disclose a file processing method and device, electronic equipment and a storage medium. The method comprises: when a file access request is received, obtaining a hand vein feature corresponding to a target subject; if the hand vein feature is consistent with a stored vein feature associated with a target vehicle, calling a to-be-matched icon password corresponding to the stored vein feature; if a to-be-verified icon password corresponding to a trigger operation is consistent with the to-be-matched icon password, determining that decryption of a target file corresponding to the file access request is successful, and displaying the target file. The present application solves the problem in the prior art that data is encrypted and decrypted based on a single finger vein feature, and the data is easily leaked due to a low encryption coefficient, thereby improving the difficulty coefficient of data decryption and achieving the effect of ensuring data security.
Owner:CHINA FAW CO LTD

Method and system for displaying hidden content on graphical user interface

The invention relates to the related field of document security management, and discloses a method and a system for displaying hidden contents on a graphical user interface, which are used for realizing full-content hiding and unauthenticated display interaction of important files and objects by performing triggering and execution control on a preset scene guide program by adopting an image encryption recognition mode. Compared with a page type password or biological encryption authentication mode adopted in the prior art, the method has the advantages that the effect of completely hiding the object file can be achieved, and a specific authentication access interface does not need to be reserved for user operation and use, so that existence of the hidden file is not easily found by third-party personnel, and the file protection effect is more excellent.
Owner:班浩泽

A large language model privacy inference method and system capable of verifying log-free behavior and output integrity

The application relates to the technical field of artificial intelligence and password security, and discloses a large language model privacy reasoning method and system capable of verifying no-log behavior and output integrity; the method first sends an encrypted question to the server by the client; the server loads a pre-compiled no-log reasoning program in a trusted execution environment, decrypts and reasons; the reasoning is completed, and zero is cleared; a joint hash value is obtained, a custom data field of a remote proof report is embedded, and a program integrity measurement value is obtained; finally, the response and the proof report are returned to the user. The user client compares the local joint hash value with the custom data in the proof, and verifies the program measurement value, so that it can be confirmed that the log function is not enabled in this reasoning, and the received model response is generated by the specified model for the question, and is not tampered with. The application first realizes double-verified guarantee of privacy and output credibility in large model services, and significantly improves the trust degree of the user for the AI system.
Owner:KOAL SOFTWARE CO LTD

Smart password key

1. The name of the design product: intelligent password key. 2. The use of the design product: for realizing data encryption and decryption, digital signature and verification, identity recognition, file storage and other functions. 3. The design points of the design product: in shape. 4. The picture or photo that best indicates the design points: perspective view 1.
Owner:GUANGZHOU WANXIETONG INFORMATION TECH CO LTD

A PCFG password strength evaluation method fusing pinyin mode

PendingCN122339663AAlgorithmPassword
This invention discloses a PCFG password strength evaluation method incorporating Pinyin patterns. The steps include: 1) extracting Pinyin patterns from a benchmark dataset and generating corresponding rule sets; 2) sequentially selecting rules from the rule set according to probability and generating corresponding passwords based on the probability of the terminal symbols in the patterns contained in the rules; 3) determining whether the currently generated password matches the corresponding user's password. If not, proceeding to step 2) changing the terminal symbols corresponding to the pattern and generating the password again. If all terminal symbols in the patterns contained in the rule have been exhausted, changing the rule and continuing to generate passwords; 4) when the password matches the corresponding user's password, determining the password strength of the corresponding user's password based on the number of rule changes. This invention significantly improves the effectiveness of password strength evaluation for passwords containing Pinyin, providing a more scientific evaluation method for user password security.
Owner:INSTITUTE OF INFORMATION ENGINEERING CHINESE ACADEMY OF SCIENCES