Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

54 results about "Cryptosystem" patented technology

In cryptography, a cryptosystem is a suite of cryptographic algorithms needed to implement a particular security service, most commonly for achieving confidentiality (encryption). Typically, a cryptosystem consists of three algorithms: one for key generation, one for encryption, and one for decryption. The term cipher (sometimes cypher) is often used to refer to a pair of algorithms, one for encryption and one for decryption. Therefore, the term cryptosystem is most often used when the key generation algorithm is important. For this reason, the term cryptosystem is commonly used to refer to public key techniques; however both "cipher" and "cryptosystem" are used for symmetric key techniques.

Communication authentication method and system of train on-board network, storage medium and equipment

The invention provides a communication authentication method and system for a train-mounted network, a storage medium and equipment, and the method only completes the key negotiation operation in the process of executing the communication authentication of the train-mounted network, enables the subsequent communication process to be executed based on a session key obtained through the negotiation of a first verification party and a second verification party, and improves the communication authentication efficiency. According to the method and the device, identity information of two communication parties is mutually verified, only a request carrying identity information of a verification party needs to be sent once in a primary communication process, only a session key generated by negotiation needs to be carried in a subsequent communication process, lightweight processing is performed on a communication authentication protocol, and the communication authentication protocol can be obtained by introducing a pairing-free password system based on an identity label. According to the method, a complex pairing process does not need to be executed, the number of calling times of Hash is reduced, the protocol calculation overhead is reduced, the communication efficiency is improved on the basis of ensuring the credible access authentication of a train-mounted network and the credible transmission of a control message, and the influence on the real-time performance of a train network monitoring management system is avoided.
Owner:NAT HIGH SPEED TRAIN QINGDAO TECH INNOVATION CENT

Novel ARE cryptosystem of infinite dimension key space for resisting ADC attack on finite dimension cryptosystem

Due to the appearance of dynamic structured mathematics responded by a global coupling structure, a great threat is generated to a traditional password system represented by AES-256 and information security. Most of current mainstream symmetric cryptographic systems such as AES and post-quantum encryption candidate schemes are based on discrete key space and structure modeling operation, the security of the current mainstream symmetric cryptographic systems depends on exhaustion infeasibility or mathematical difficulty complexity, and the current mainstream symmetric cryptographic systems and post-quantum encryption candidate schemes are difficult to resist attacks of adaptive dynamic coupling such as ADC. Therefore, the invention provides a novel ARE encryption system which is constructed by taking'non-modeling property 'as a core principle. A system key is generated by a non-numerable dimension perturbation function, has unique attributes of no structure, non-derivation, non-periodicity and the like, and is combined with an encryption method of a key function which cannot be covered, physical noise perturbation and a quantum random source to construct a new generation of ARE password architecture; the method has the capability of being incapable of being deduced, reduced in order, incapable of being converged to a key space and extremely high in structural modeling attack resistance, any analyzable optimization path can be blocked from the source, and it is ensured that ADC evolution attacks are completely resisted.
Owner:李海全

Intelligent marketing terminal electric power data communication security protection method and system

The invention discloses an intelligent marketing terminal power data communication security protection method and system, and belongs to the field of power data security, and the method comprises the steps: collecting electromagnetic noise spectrum data through a built-in environment electromagnetic sensing module of a terminal, extracting electromagnetic characteristic factors, and constructing a correlation model of the electromagnetic characteristic factors and the complexity of an elliptic curve cryptosystem; building a terminal twinborn mirror image, predicting a communication instruction sequence and calculating a deviation coefficient in combination with a long-short-term memory neural network; classifying and screening the power data collected by the terminal, desensitizing privacy data, and then fusing the privacy data into the hash fragment of the unique identifier of the terminal equipment to generate a desensitized power data packet containing the terminal identity identifier; a data abstract is generated according to encryption parameters determined by the association model, the access authority is verified, a data acquisition timestamp is converted into a binary coding sequence, the data abstract is embedded, and an encrypted data packet with a time sequence traceability watermark is generated and uploaded to the block chain for evidence storage; according to the invention, full-process security management and control of power data are realized, and the communication security and the data credibility are improved.
Owner:JIANGSU ELECTRIC POWER INFORMATION TECH

Quantum circuit system based on AES cryptosystem and encryption method

The invention provides a quantum circuit system based on an AES cryptosystem and an encryption method. The quantum circuit system based on the AES cryptosystem comprises a byte replacement module which adopts a pre-optimized S-box query circuit to realize non-linear byte replacement; the row shift module completes in-row byte cyclic shift through quantum bit exchange operation; the column confusion module realizes a matrix multiplication circuit based on finite field operation, and a quantum circuit of the column confusion module is generated by a depth-first matrix decomposition algorithm; and the round key adding module realizes XOR operation of a round key and a state by using a CNOT gate array, and a key required by the round key adding module is dynamically generated through a key expansion circuit. And a compact Z-shaped architecture is adopted to optimize time sequence scheduling and resource allocation of each module. On the premise of keeping the quantum bit resource usage amount equivalent to that of an original Z-shaped architecture, the quantum circuit depth is remarkably reduced, and higher fidelity and shorter execution time can be realized on NISQ equipment.
Owner:JINAN UNIVERSITY

Certificateless signature generation method and system based on SM9

The application is suitable for the field of information security technology, and provides a certificateless signature generation method and system based on SM9, which comprises the following steps: step S100, system initialization, selecting a master private key from the system, and calculating a master public key according to the master private key; step S200, extracting a partial private key, extracting the partial private key as a partial private key of a signer through the master private key; step S300, setting a secret value, selecting a signer secret value; and step S400, setting a public key. The application is based on the SM9 signature structure, then the certificateless cryptography, and an improved certificateless signature of SM9 is proposed. Compared with the traditional public key cryptography system, the application effectively guarantees the integrity and authenticity of data in the transmission process, fills the gap of the domestic identity cryptography system, and lays a solid underlying cryptography foundation for the application level security.
Owner:SHANGHAI MATRIXELEMENTS TECH CO LTD +1

A power plant data security processing method

PendingCN122457232AKey (cryptography)Ciphertext
The application provides a power plant data security processing method, and belongs to the technical field of power Internet of Things security and privacy computing, which can at least partially solve the problems of complex certificate management of power plant monitoring system, large data aggregation calculation overhead and privacy leakage risk of cloud analysis in the prior art. The application comprises: generating a double-factor private key based on a certificateless public key cryptography system; serializing and encoding multi-dimensional operation data into a single integer using the Chinese remainder theorem; performing homomorphic encryption and signature on the encoded data using the double-factor private key, verifying the signature in batches on the edge side and aggregating in the ciphertext state; loading a neural network model adapted to homomorphic encryption on the cloud to perform ciphertext domain reasoning on the aggregated ciphertext; and decrypting the operation state analysis result on the authorized side. The application realizes ciphertext availability of power plant core data while ensuring data transmission integrity and confidentiality, and reduces communication and calculation overhead.
Owner:XIAN THERMAL POWER RES INST CO LTD

Calculation accelerator adapted to carry out calculations according to several cryptosystems

The invention relates to a calculation accelerator (10) adapted to carry out calculations according to a first cryptosystem and a second cryptosystem, the first cryptosystem being a lattice-based cryptosystem and the second cryptosystem being a code-based cryptosystem, the calculation accelerator (10) comprising several calculation modules, each calculation module applying an operation on input signals to obtain an output signal, namely: - a first calculation module (M1) configurable to implement modular addition or carryless addition, - a second calculation module (M2) configurable to implement identity with relation to one of the input signals, modular subtraction, modular addition and carryless addition, - a third calculation module (M3) configurable to implement integer multiplication and carryless multiplication, and - a fourth calculation module (M4) configurable to implement identity with relation to one of the input signals; modular subtraction, modular addition and carryless addition.
Owner:COMMISSARIAT A LENERGIE ATOMIQUE ET AUX ENERGIES ALTERNATIVES +1

Heterogeneous high-performance distributed key agreement algorithm supporting malicious participant resistance in block chain

The invention discloses a heterogeneous high-performance distributed key agreement algorithm for supporting and resisting malicious participants in a block chain. The method is characterized in that a group negotiation intermediate message is generated under a heterogeneous cryptosystem between a certificate-based public key cryptosystem and a certificateless cryptosystem, and a cryptosystem conversion process is not needed, so that the performance overhead is reduced. All intermediate messages may be signed to verify integrity and used to identify, audit and defend malicious disruption and collusion attacks by participants. After key negotiation is completed, any encryptor can dynamically establish a session, customize a receiver group and generate a session key, and only a specified receiver can decrypt. According to the scheme, specific cryptographic operation and conversion rules are designed according to unique system composition and interaction processes in the heterogeneous system, and provable security of the heterogeneous cryptographic system is achieved.
Owner:UNIV OF ELECTRONICS SCI & TECH OF CHINA

Encryption apparatus, decryption apparatus, decryption-possible verification apparatus, cryptosystem, encryption method, and computer readable medium

An encryption unit (403) that an encryption apparatus (400) includes, when a user secret key SKΓ is generated using a secret key MSK of attribute based encryption and a set of attributes Γ corresponding to a decryption-possible condition L, generates a key K and a ciphertext P corresponding to the key K by encrypting the decryption-possible condition L using, as an encryption key of the attribute based encryption, a key PK consisting of a public key MPK corresponding to the secret key MSK and a public key PQCPK of post quantum cryptography, regards a part of the ciphertext P where the decryption-possible condition L is encrypted based on a secret value as P-D, regards a part of the ciphertext P where the secret value that is shared is encrypted as P-SS, and generates K′ and P′-D by randomizing each of the key K and the P-D using a random number R, and generates a ciphertext C by encrypting data consisting of the P-D and the random number R using the public key PQCPK. Here, the P-SS, the P′-D, and the K′ are decryption-possible verification parameters corresponding to the user secret key SKΓ.
Owner:MITSUBISHI ELECTRIC CORP

A secure homomorphic k-means clustering method based on paillier cryptosystem

The present application relates to a kind of based on Paillier cryptosystem's security homomorphism k-means clustering method, the system including cloud server, computing service provider, several user terminals, each user terminal is registered on cloud server, and with communication connection, cloud server is connected with computing service provider;The method includes data preprocessing process, security K-means clustering process, iteration update process, result decryption process.The present application provides a kind of practical privacy protection data clustering solution, and promotes the development of privacy protection data mining technology.
Owner:HAINAN UNIV

Cryptographic system involving masked inversion of polynomial ring elements

A method of performing a cryptographic operation is described, the method comprising performing masking inversion on a ring element f belonging to Rq, where Rq is an exchange ring, and the ring element f is represented by a plurality of shares. A masking inversion is calculated by performing a number-theoretical transformation on a plurality of shares to generate a corresponding plurality of shares of a polynomial function a, with each coefficient; i belongs to [n]; determining a set of coefficients, the set of coefficients corresponding to a product of the n coefficients of the plurality of shares; determining inverse elements of a set of coefficients corresponding to a product of the n coefficients of the plurality of shares; generating a set of coefficients ci of a plurality of shares corresponding to inverse elements of the polynomial function a; wherein an i-th coefficient of the plurality of shares is calculated by multiplying a value derived from an inverse of a product of n coefficients of the plurality of shares by values derived from other coefficients of the plurality of shares; and performing an inverse number theory transform on the plurality of shares corresponding to the inverse element of the polynomial function a to generate a plurality of shares corresponding to the inverse element of the ring element f. By applying the NTT transform to the masked ring elements and then determining inverse elements of a set of coefficients corresponding to the product of the masked transform coefficients, the processing cost of inversion of the masked ring elements can be reduced.
Owner:PQSHIELD LTD

Proxy re-signature-based cross-heterogeneous domain authentication method applied to industrial Internet of Things

The invention discloses a cross-heterogeneous domain authentication method based on proxy re-signature applied to industrial Internet of Things, which comprises the following steps: Internet of Things equipment generates an anonymous identity, and the anonymous identity is verified and stored by an authentication center; in the cross-domain authentication stage, the equipment performs cross-domain authentication through an anonymous identity, and an edge server performs proxy re-signature; and in the batch cross-domain authentication stage, the cross-domain authentication problem of multiple devices is solved, and the efficiency of the production process is improved. According to the method, the certificateless cryptosystem is adopted to generate the anonymous identity, a dynamic anonymous identity updating mechanism is introduced to ensure security identity verification and privacy protection of the equipment, a batch authentication strategy is used for reducing communication overhead and improving authentication efficiency, and formalized verification further proves the correctness of security certification. According to the method, privacy, non-linkability, non-repudiation and external aggression resistance are ensured, and more functions are provided under the condition of keeping similar overhead.
Owner:ANHUI UNIV

A dual-objective optimization task allocation method for privacy protection in mobile crowd sensing

The application discloses a double-target optimization task allocation method for privacy protection in mobile crowd sensing, and the method is that a task requester creates a sensing task containing a task position and a task budget, and sends the sensing task to a sensing platform SP, then a server calculates a task utility of each task participant according to the sensing task and a position of the task participant, and selects a suitable task participant to participate in the task in combination with the task budget, so that social welfare and income of the task requester are maximized, and finally, the task participant of the sensing task moves to the task position to execute the sensing task. The application proposes a secure Manhattan distance calculation protocol SMD and a secure division protocol SDIV based on a Paillier TD cryptosystem, and the privacy data of the task participant and the task requester are protected, and bilateral privacy protection is realized. A privacy protection dynamic programming algorithm is designed based on the two protocols, and the target of maximizing social welfare and task requester benefit is realized.
Owner:XIDIAN UNIV +2

A method for detecting resistance of aradi cryptosystem to impossible statistical fault analysis

The application relates to a method for detecting that ARADI password resists impossible statistical fault analysis, first, generating a plaintext to be processed at random, taking the plaintext as an input of an ARADI algorithm, introducing a random 4-bit fault in the second last round, and outputting a fault ciphertext. By enumerating subkeys of the last three rounds and impossible relationship analysis, false candidate key bits are excluded in advance, and an intermediate state is calculated. By using a statistical method, the hamming weight of the intermediate state is calculated, and the correct value of corresponding subkey bits is obtained. The fault introduction and analysis process are repeated, and finally all bit positions of the correct subkey of the last three rounds can be deduced, and the correct master key is deduced according to a key arrangement scheme of the algorithm. The method provided by the application is easy to implement, fast and high in accuracy, and provides an important analysis basis for security research on the ARADI password algorithm.
Owner:DONGHUA UNIV

Biometric credentials revocation or cancellable biometrics

Methods and systems are provided that allow a user to access a cryptosystem configured to revoke or cancel biometric credentials associated with the user. The cryptosystem may use randomized seeds and projections to identify elements unique to the user and generate a cancellable cryptographic key set used to verify the identity of the user.
Owner:AWARE INC

Encryption method and apparatus and decryption method and apparatus integrated with post-quantum cryptography

The present application belongs to the field of post-quantum information security. Specifically disclosed are an encryption method and apparatus and decryption method and apparatus integrated with post-quantum cryptography. By means of the present application, a conventional block algorithm SM4 is integrated with the post-quantum cryptography algorithm Streamlined NTRU Prime, the block cipher algorithm is used to encrypt plaintext data, and the post-quantum cryptography algorithm is used to encrypt a secret key of the block cipher algorithm, so as to enhance the security of conventional block encryption and enable resistance against quantum computer attacks, thereby achieving the aim of improving encryption performance. Compared with conventional post-quantum encryption solutions, the present invention has characteristics such as fast encryption and decryption speeds and low hardware resource consumption. Using hardware to implement a cryptosystem provides relatively high parallelism, and existing hardware resources can be fully utilized to implement, in parallel, operations that can be executed in parallel in an operation process, thereby improving the computational efficiency, and providing unique advantages in terms of resource consumption, security, power consumption and speed.
Owner:709TH RESEARCH INSTITUTE CHINA STATE SHIPBUILDING CORP LTD

Data integrity validation via degenerate keys

Systems and methods for developing a novel public / private key pair having unique properties are disclosed, whereby standard data security operations in existing data security infrastructures return a data integrity validation result—but do not provide the intended data security of such infrastructures. These novel keys are referred to as degenerate keys and may be used to replace the public and private keys in existing public / private key cryptosystems. Because degenerate key data integrity validation may leverage existing data security infrastructures that are already widely-implemented, such examples may be applied immediately and configured to seamlessly transition from integrity only modes back to secure modes. In some instances, the degenerate key examples described herein may be employed during a software testing and / or factory validation stage of product development to allow for data integrity validation before burning in a developer's active (i.e., non-degenerate) key to the product, thereby pairing the software to the hardware.
Owner:TEXAS INSTRUMENTS INC

Attribute-aware dynamic encryption access control method

The invention relates to an attribute-aware dynamic encryption access control method, and belongs to the technical field of communication security. According to the technical scheme, the method comprises the steps that a multi-channel social attribute tensor is constructed by collecting a static social relation, a dynamic behavior relation, a bidirectional interaction relation and a deep social relation of a user, and a social attribute vector is obtained through vector embedding; a linear secret sharing structure access matrix is generated based on the vector, an access strategy is adjusted in real time according to a behavior deviation score and a neighborhood consistency index, a ring learning error lattice password is adopted to generate a user private key bound with a social state, and attribute-based encryption is performed according to an access structure to generate a ciphertext; during decryption, verifying social attribute satisfaction and then recovering a plaintext, and realizing verifiable revocation and social state tracking by using a Merkle tree and a fingerprint chain; according to the invention, the dynamic adaptability and security of access control can be obviously improved.
Owner:CHONGQING UNIV OF POSTS & TELECOMM

An adaptive, hybrid, and lightweight cryptography system for optimized IoT security and performance.

ActiveDE202025106725U1Securing communicationLightweight cryptographyKey exchange
An adaptive, hybrid, and resource-efficient crypto system for optimized IoT security and performance, consisting of: a variety of IoT devices; The IoT gateway is communicatively connected to the multitude of IoT devices; a trust assessment module configured to calculate trust scores for each IoT device in real time based on anomaly detection results, historical security events, energy consumption patterns, and network activity patterns; a modified Advanced Encryption Standard (M-AES) encryption module configured to perform encryption operations using an XOR triplet diffusion mechanism consisting of four XOR operations that combine different bytes of state data to achieve diffusion; an Elliptic Curve Cryptography (ECC) module configured to perform Elliptic Curve Diffie-Hellman key exchange operations for secure key generation; A Reinforcement Learning Security Agent (RLSA) module configured to: monitor a multidimensional state space encompassing the power level, network load, trust level, and key age of IoT devices; select actions from an action space that includes maintaining current encryption keys, initiating key rotation, and changing encryption strength; optimize security configurations using the Q-Learning algorithm with a reward function that balances security benefits and energy consumption; a key management module configured to perform dynamic key rotation based on trust values ​​and energy thresholds determined by the reinforcement learning security agent; and a communication interface configured to enable encrypted data transmission between IoT devices and the IoT gateway using the hybrid cryptographic operations M-AES and ECC.
Owner:GHARAT NEHA MUMBAI +1

Quantum circuit system and encryption method based on AES cipher system

The application provides a quantum circuit system and encryption method based on AES encryption system, which comprises a byte substitution module, a row shift module and a column confusion module; the byte substitution module uses a pre-optimized S-box query circuit to realize nonlinear byte substitution; the row shift module completes the cyclic shift of the bytes in the row through a quantum bit exchange operation; the column confusion module realizes a matrix multiplication circuit based on finite field operation, wherein the quantum circuit of the column confusion module is generated by a depth-first matrix decomposition algorithm; the round key addition module uses a CNOT gate array to realize the XOR operation of the round key and the state, and the required key of the round key addition module is dynamically generated through a key expansion circuit. The timing scheduling and resource allocation of each module are optimized by using a compact Z-shaped architecture. Under the premise of keeping the quantum bit resource usage equivalent to the original Z-shaped architecture, the quantum circuit depth is significantly reduced, and higher fidelity and shorter execution time can be realized on NISQ devices.
Owner:JINAN UNIVERSITY

ECDH-based offline dynamic password authentication method

The invention relates to the technical field of information security, and particularly discloses an ECDH-based offline dynamic password authentication method, which comprises the following steps that: an authentication server pre-stores an elliptic curve public key of a user; the authentication server generates a temporary key pair for each time of authentication, performs ECDH calculation on the temporary key pair and a user public key to obtain a shared secret, and immediately destroys a temporary private key after generating an expected dynamic password OTP; the authentication server encodes the temporary public key, the challenge data and the OTP digit parameter into a two-dimensional code for display; the user equipment scans the two-dimensional code, performs ECDH calculation by using a local private key, and generates the same dynamic password OTP'in an off-line manner; and the user inputs the dynamic password OTP'to complete authentication. According to the invention, an asymmetric cryptosystem is adopted, and the server only stores the public key of the user, so that the single-point fault risk of large-scale key leakage at the server side is eliminated. Different temporary key pairs are used for authentication each time and are destroyed immediately after being used, and even if the system is attacked, key information of historical authentication sessions cannot be recovered.
Owner:NANJING THIRD POLE BLOCKCHAIN TECH CO LTD

A method for modulus decomposition of an RSA variant cryptographic system

The application discloses a modulus decomposition method of an RSA variant cryptosystem, and classifies and discusses a public-private key pair of the RSA variant cryptosystem. 2 <ed<N 3 When the public-private key pair satisfies N 3 <ed<N 4 , the modulus N of the RSA is decomposed by using an enumeration method to continuously test a candidate value, finding a suitable k value to calculate a key equation, and by using a lattice theory analysis skill, an LLL algorithm to find a short vector in a lattice, a variant of a Coppersmith method and a direct application of an approximate integer common factor of a Howgrave-Graham algorithm to transform a modulus equation solving problem into a short vector solving problem in a lattice, and the modulus N of the RSA is decomposed. 12 The time complexity of the method for decomposing a polynomial is O(2log N). The application enriches the application of lattice cryptography on the RSA algorithm and improves the security of the variant RSA algorithm.
Owner:NANJING UNIV OF POSTS & TELECOMM

Efficient lightweight ntt multiplier circuit based on lattice cryptography

The application discloses an efficient lightweight NTT multiplier circuit based on a lattice cryptosystem, comprising an NTT control unit, a dual-port RAM and two parallel NTT butterfly calculation units; wherein the NTT butterfly calculation unit mode is switchable, the NTT control unit is connected with the dual-port RAM, and the dual-port RAM is connected with the two parallel NTT butterfly calculation units respectively; data is input into the NTT butterfly calculation unit through the dual-port RAM, different NTT butterfly calculation unit modes are selected through a mode control signal of the NTT control unit, the NTT butterfly calculation unit processes data, the calculation result is reduced through a Barrett reduction unit, and the result is written back into the dual-port RAM in accordance with a specific sequence of the NTT algorithm. The application reduces the calculation complexity and hardware resource consumption, and improves the operation speed of the modular multiplication unit.
Owner:NANJING UNIV OF AERONAUTICS & ASTRONAUTICS

Smart grid terminal group secure communication method and device based on certificateless public key cryptography

The invention relates to the technical field of network security and cryptography, and discloses an intelligent power grid terminal group security communication method and device based on certificateless public key cryptography, comprising three stages of system initialization and registration, key negotiation and communication, and fault self-healing. A key generation center constructs certificateless public key cryptosystem parameters of elliptic curve cryptography, a security gateway carries out offline registration, an intelligent terminal carries out broadcast registration and is arbitrated and taken over by an intra-group gateway, and encryption communication of a management-gateway layer, a gateway terminal layer and a group broadcast layer is realized by adopting a layered key negotiation architecture. A gateway fault self-healing mechanism of heartbeat detection and arbitration takeover is designed, and meanwhile, a device for realizing the method is matched. Certificate management and key escrow risks are eliminated, the lightweight operation requirement of the terminal is adapted, terminal dynamic registration and gateway fault self-recovery are realized, the broadcast communication efficiency is improved, high communication security, high availability and high efficiency are considered, and the method is suitable for a large-scale smart grid terminal group security communication scene.
Owner:ELECTRIC POWER RESEARCH INSTITUTE OF STATE GRID SHANDONG ELECTRIC POWER COMPANY +1

An ultra-high-speed post-quantum cryptosystem security communication method for on-orbit intelligent agents

This invention discloses an ultra-high-speed post-quantum cryptographic secure communication method for on-orbit intelligent agents, belonging to the field of communication technology. The method includes: generating an encryption key pair based on a post-quantum cryptographic algorithm and a signature key pair based on a quantum-resistant digital signature algorithm for each on-orbit intelligent agent node; recording the two public key information in a blockchain ledger through consensus; obtaining the receiver's public key information from the blockchain ledger, generating a session seed using a post-quantum key encapsulation method and encapsulating it into ciphertext, digitally signing the ciphertext-containing information using a quantum-resistant signature private key, and then sending it; upon receiving the information, the receiver verifies the signature, confirms the identity's legitimacy, and decrypts to obtain the session seed; based on the session seed, both communicating parties generate a one-time session key and transmit business data with symmetric encryption; after communication ends, a communication audit log is generated based on the transmitted information. This invention improves the security of on-orbit intelligent agent communication using the above method.
Owner:SHANGHAI UNI SENTRY INTELLIGENT TECH CO LTD

Cryptosystem, encryption device, decryption device, and key generation device

The cryptographic system (1) performs a cryptographic process in which a Richelot homology sequence which starts from an Abelian surface A0 and ends at an Abelian surface A s is set as a secret key, and the Abelian surface A s is set as a public key. The encryption device (20) generates a Richelot homology sequence which moves the Abelian surface A s as the public key by encoding a plaintext m, and calculates the Abelian surface A m as a ciphertext. The decryption device (30) calculates a Richelot homology sequence which starts from the Abelian surface A m as the public key and ends at the Abelian surface A s as the ciphertext, based on the Richelot homology sequence as the secret key. The decryption device (30) decrypts the ciphertext by moving the Abelian surface A m as the ciphertext by the Richelot homology sequence as the secret key.
Owner:MITSUBISHI ELECTRIC CORP

Method for managing a group sharing a secret key

The invention relates to a method for managing a group comprising a plurality of members (U1…Un), each member (Ui) holding or being able to hold a group secret key (SKj,k,p). The method uses an asymmetric cryptosystem and a ledger (B) in which a smart contract (SC) is deployed. A data structure such as a binary tree or a linked list (A) is used to order the group members. The method includes a member addition procedure for integrating a candidate wishing to join the group, during which, through operations similar to the Diffie-Hellman protocol and with the aid of the smart contract, the new member is added to the group, and a new group secret key is calculated and shared by each of the group members, including the new member. Figure 1 illustrates this in the abstract.
Owner:COMMISSARIAT A LENERGIE ATOMIQUE ET AUX ENERGIES ALTERNATIVES

Efficient FHE-based private machine learning

PCT designated stageWO2026148286A1AlgorithmCiphertext
Methods and systems for performing efficient privacy-preserving machine learning (or other computationally intensive private computing operations) based on homomorphic encryption are disclosed. Two computer systems can collectively perform these methods on behalf of a client computer using threshold leveled homomorphic encryption (LHE) or fully homomorphic encryption (FHE), e.g., using the Cheon-Kim-Kim-Song cryptosystem. For example, two computer systems could privately evaluate a client's encrypted inputs using a machine learning model and return an encrypted output to the client, preserving the privacy of the client's data. Methods according to embodiments include efficient bootstrapping methods, ciphertext packing methods, encryption parameter optimization methods, and methods for privately fine-tuning machine learning models using low rank adaptation (LoRA). Embodiments improve the speed and efficiency of private HE-based computation, which are often several orders of magnitude slower than non-private computation.
Owner:VISA INTERNATIONAL SERVICE ASSOCIATION

Intelligent marketing terminal power data communication security protection method and system

The application discloses a smart marketing terminal power data communication security protection method and system, and belongs to the field of power data security, which comprises the following steps: collecting electromagnetic noise spectrum data through a terminal built-in environment electromagnetic sensing module, extracting electromagnetic characteristic factors and constructing an associated model of the electromagnetic characteristic factors and the complexity of elliptic curve cryptography; then building a terminal twin image, combining a long short-term memory neural network to predict a communication instruction sequence and calculate a deviation coefficient; classifying and screening the power data collected by the terminal, integrating the desensitized privacy data into a hash segment of the unique identification of the terminal device, and generating a desensitized power data packet containing the terminal identity identification; generating a data digest according to the encryption parameters determined by the associated model and verifying the access authority, converting the data collection timestamp into a binary coding sequence and embedding the data digest, generating an encrypted data packet with time sequence traceability watermark, and uploading the block chain for notarization; the application realizes the whole-process safety control of power data, and improves the communication security and data credibility.
Owner:JIANGSU ELECTRIC POWER INFORMATION TECH