Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

64 results about "Data theft" patented technology

Data theft is a growing phenomenon primarily caused by system administrators and office workers with access to technology such as database servers, desktop computers and a growing list of hand-held devices capable of storing digital information, such as USB flash drives, iPods and even digital cameras. Since employees often spend a considerable amount of time developing contacts and confidential and copyrighted information for the company they work for, they may feel they have some right to the information and are inclined to copy and/or delete part of it when they leave the company, or misuse it while they are still in employment. They can be sold and bought and then used by criminals and criminal organizations. Alternatively, an employee may choose to deliberately abuse trusted access to information for the purpose of exposing misconduct by the employer; From the perspective of the society such an act of whistleblowing can be seen as positive and is in certain situations protected by law in some jurisdictions, such as the USA.

AI intelligent communication data processing method and system based on edge computing

The invention relates to the technical field of communication data processing, and discloses an AI intelligent communication data processing method based on edge computing, which comprises the following steps: dividing a communication region into three regions, deploying an edge computing node in each region, actually collecting signal data, environmental data and historical signal data of the region by the edge computing node, and transmitting the signal data, the environmental data and the historical signal data to a server; analyzing the preprocessed signal data to generate a regional fluctuation index, extracting multi-dimensional features such as behavior entropy and physical offset from the signal data, generating the regional fluctuation index in combination with a dual-core dynamic baseline and environment data, and performing two-dimensional analysis, radio frequency authentication and other processes to obtain the regional fluctuation index. The method can accurately identify the disguised Wi-Fi signal similar to the normal signal, dynamically judges based on the cooperative verification coefficient, blocks and defends according to the regional security level, effectively prevents the disguised signal from permeating, prevents data from being stolen, and guarantees the security and processing efficiency of campus communication data.
Owner:XIAMEN OCEAN VOCATIONAL & TECH COLLEGE

Multi-factor digital transmission screening

Various embodiments are directed to apparatuses, methods, computer program products, and systems related to multi-factor digital transmission screening. In some embodiments, an outbound digital transmission originating from a monitored enterprise management system may be detected. One or more data elements associated with the outbound digital transmission may be applied to one or more anomalous transmission prediction models to generate a prediction associated with the outbound digital transmission. The one or more anomalous transmission prediction models may comprise at least a contextual analytical model configured to generate the prediction associated with the outbound digital transmission based at least in part on historical digital transmission activity data based on a plurality of past digital transmissions originating from the monitored enterprise management system. Responsive to the prediction corresponding to an anomalous transmission prediction, performance of one or more data exfiltration mitigation actions to mitigate risk of data theft may be initiated.
Owner:US BANK NATIONAL ASSOCIATION

Mail security detection method and system based on frequency domain and semantic analysis, electronic equipment and computer readable storage medium

The invention belongs to the technical field of office automation, and discloses a mail security detection method and system based on frequency domain and semantic analysis, electronic equipment and a computer readable storage medium. The method comprises the following steps: obtaining a to-be-detected mail, and carrying out preprocessing operation on an image in an attachment of the to-be-detected mail; performing block operation on the preprocessed image, and then performing DCT (Discrete Cosine Transformation) on each block to generate a corresponding DCT coefficient matrix; according to the DCT coefficient matrix, respectively calculating a high-frequency component entropy # imgabs0 # corresponding to each block; determining a steganography suspicion detection result of the mail according to the # imgabs 1 # value; based on the steganography suspicion detection result, SMTP flow semantic analysis of the mail is triggered, and a comprehensive risk score # imgabs2 is obtained; and based on the comprehensive risk score # imgabs3 #, triggering a linkage mechanism of multi-level alarm. According to the invention, a data stealing protection effect with high detection rate, low delay and strong adaptability on the mail is realized, and a reliable technical guarantee is provided for enterprise-level network security.
Owner:XIAMEN MEIYA YIAN INFORMATION TECH CO LTD +1

A photovoltaic multi-functional remote control terminal and photovoltaic power station

ActiveCN224289384USolve the problem of single communication functionPhotovoltaic monitoringCircuit arrangementsPower gridData transmission
This utility model discloses a photovoltaic multifunctional remote control terminal and a photovoltaic power station, relating to the photovoltaic field, and solves the problem of the limited communication function of communication gateways used in photovoltaic power generation systems. This application utilizes a 5G module and an antenna module to transmit the operation data of the photovoltaic power station to the power grid control system in real time and at high speed, providing strong support for remote monitoring and management. A vertical encryption module ensures data security during transmission, preventing data theft or tampering. The design of RS485 and RS232 modules allows the photovoltaic multifunctional remote control terminal to connect with external devices supporting different communication protocols, improving system compatibility and scalability. The antenna module design considers ease of installation, enabling the photovoltaic multifunctional remote control terminal to be easily installed in various environments and facilitating subsequent maintenance and upgrades. The photovoltaic multifunctional remote control terminal provides strong technical support for the operation and maintenance management of photovoltaic power stations.
Owner:STATE GRID CHONGQING ELECTRIC POWER CO ELECTRIC POWER RES INST

Intelligent lock monitoring method and device of power grid metering box, electronic equipment and medium

The invention discloses an intelligent lock monitoring method and device for a power grid metering box, electronic equipment and a medium, and belongs to the technical field of power grid safety. The method comprises the steps of matching role information of a user according to identity authentication information of the user; allocating an unlocking permission range to the user according to the role information; wherein different unlocking permission ranges correspond to opening permissions of metering boxes in different areas; and under the condition that the unlocking permission range corresponds to the opening permission of the current metering box, opening an intelligent lock of the current metering box, and collecting an operation record of a user. According to the method, the authority is dynamically allocated to different role users, centralized management and control of the unlocking authority are realized, the safety risk that the metering box is maliciously tampered or data is stolen and the like is reduced, the user operation record is acquired after the user opens the metering box, the operation data can be accurately acquired, the complexity of manual recording is omitted, the data acquisition efficiency is improved, and the user experience is improved. When a problem occurs, a responsibility subject can be traced, and the standardization and the safety of the operation of the power grid metering box are enhanced.
Owner:CHINA GRIDCOM

Terminal equipment access safety management and control system and method of power grid Internet of Things platform

The invention discloses a power grid Internet of Things platform terminal equipment access safety management and control system and method, and relates to the field of terminal equipment access safety management and control, and the method comprises the steps: building a power grid Internet of Things terminal equipment management platform based on the Internet of Things technology; according to the access data of the new biological networking terminal equipment, setting a change parameter of the utilization rate of a system CPU, and finely feeding back the use condition of the system CPU; based on historical data, establishing a power grid system risk assessment model, and comprehensively assessing whether the system has a behavior of occupying the system CPU utilization rate; and optimizing and correcting a moving average parameter in the power grid system risk assessment model based on a # imgabs0 # algorithm model according to the historical use condition of the CPU utilization rate of the system. The method has the advantages that through the occupation condition of the CPU utilization rate of the system, the risk perception of the power grid Internet of Things platform on the access of the terminal equipment is effectively improved, and data stealing and system occupation conditions are found in time.
Owner:GUANGDONG POWER GRID CO LTD +1

Multi-factor digital transmission screening

Various embodiments are directed to apparatuses, methods, computer program products, and systems related to multi-factor digital transmission screening. In some embodiments, an outbound digital transmission originating from a monitored enterprise management system may be detected. One or more data elements associated with the outbound digital transmission may be applied to one or more anomalous transmission prediction models to generate a prediction associated with the outbound digital transmission. The one or more anomalous transmission prediction models may comprise at least a contextual analytical model configured to generate the prediction associated with the outbound digital transmission based at least in part on historical digital transmission activity data based on a plurality of past digital transmissions originating from the monitored enterprise management system. Responsive to the prediction corresponding to an anomalous transmission prediction, performance of one or more data exfiltration mitigation actions to mitigate risk of data theft may be initiated.
Owner:US BANK NATIONAL ASSOCIATION

Data secure transmission method, device, equipment and medium

The present disclosure provides a data security transmission method, which relates to the field of information security. The method used for the local client includes: receiving encrypted information sent by the browser, the encrypted information is sent to the browser by the server in response to the client's operation of opening a specific web page, and the specific web page includes a web page that allows the client to perform input operations; obtaining encrypted transmission data based on the client's input data on the specific web page and the encrypted information; sending the encrypted transmission data to the server, wherein the server is configured to decrypt the encrypted transmission data to obtain the input data. The method can utilize the interaction of the local client, browser and server to realize encryption protection of customer data during the transmission process, prevent data theft attacks and man-in-the-middle hijacking and tampering attacks, and enhance the security attack and defense capabilities of sensitive data.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

A Bluetooth transmission rate control method and a storage medium

The present invention discloses a Bluetooth transmission rate control method and a storage medium, relating to the technical field of Bluetooth, specifically including: a Bluetooth transmitting end; a Bluetooth receiving end; a storage module; an overwrite module; a secret key module; a control module; S1, chip stack; S2, transmission rate control; S3, data transmission; S4, data backup; S5, data loss recovery; and S6, data overwrite. For this Bluetooth transmission rate control method and storage medium, the data to be sent is first backed up and stored by the storage module and then sent through the Bluetooth transmitting end, which helps to avoid the situation of incomplete content loss after data transmission, facilitating subsequent recovery and retransmission. Moreover, the secret key module can encrypt the data in the storage module to prevent malicious data theft. Additionally, the function of the overwrite module is that when the storage module runs out of memory, new data automatically overwrites the bottommost data inside the storage module, preventing the storage module from running out of memory.
Owner:SHENZHEN JITING ERA TECHNOLOGY CO LTD

Automatic Right Adjustment and Visualization System in Comprehensive Land Consolidation at the Whole Region

The present invention proposes a system for automatic adjustment and visualization of land ownership rights in comprehensive land consolidation across the region. The system includes a land ownership image data query module, a visualized land ownership image acquisition module, and a visualized land ownership image download module. The data output end of the land ownership image data query module is connected to the data input end of the visualized land ownership image acquisition module, and the data output end of the visualized land ownership image acquisition module is connected to the data input end of the visualized land ownership image download module. The present invention can ensure the security of the visualized land ownership images stored on the land ownership rights platform for comprehensive land consolidation across the region and prevent data theft.
Owner:CHONGQING HUADI RESOURCES ENVIRONMENT TECH CO LTD

A method for generating industrial control honeypot telemetry mimic data using power IED equipment

The present invention discloses a method for generating telemetry mimic data of an industrial control honeypot using an electric power IED device, comprising deploying an industrial control honeypot function on a communication board or a function board of the electric power IED device, and performing mimic data generation according to the complexity of the network environment in which the electric power IED device is located and the destructive attacks and data theft by the attacker simultaneously. When the network state vector of the operating environment of the electric power IED device is calculated based on a Markov chain and the attacker communicates with the power protocol running in the honeypot and implements theft, highly credible mimic data is generated according to the network state vector of the electric power IED device and the telemetry basic data based on the power specification. The present invention obtains relatively reasonable telemetry mimic data by estimating the network state and operating condition of the IED device. Even without increasing the investment in a separate honeypot device, the highly interactive telemetry data mimicry function of the honeypot is realized by using the existing IED device board.
Owner:GUODIAN NANJING AUTOMATION

Method to prevent data theft from a storage device

A method for assessing a data access request to a data storage device (DSD) by a computer program, the method comprising: assigning a plurality of queues to a plurality of computer programs, wherein each computer program is configured to authentically access one partition of a plurality of partitions of a non-volatile storage medium of the DSD using one queue of the plurality of queues assigned to that computer program and corresponding to that one partition; receiving, from the computer program, a data access request to access a first partition of the plurality of partitions using a first queue of the plurality of queues; and assessing the data access request by: determining whether the one queue of the plurality of queues corresponding to the first partition is the first queue; and in response to determining the one queue of the plurality of queues corresponding to the first partition is the first queue, determining the first queue is authentic to assess the first partition.
Owner:SANDISK TECHNOLOGIES LLC

An MPO adapter with a lockable dustproof structure

This invention discloses a lockable dustproof structure for an MPO adapter. The MPO adapter's spring arm has a limiting hook, and the insertion part of the MPO lockable dustproof cover has a limiting groove. When the lock cylinder of the MPO lockable dustproof cover pushes the spring arm of the MPO adapter, the limiting hook on the spring arm engages with the limiting groove on the insertion part, locking the MPO adapter and the MPO lockable dustproof cover. Without the pull rod, the lock cylinder of the MPO lockable dustproof cover cannot be pulled, meaning the MPO adapter and the MPO lockable dustproof cover cannot be unlocked. The MPO lockable dustproof cover effectively prevents dust from entering the MPO adapter and affecting network data performance, and also protects the MPO adapter from being arbitrarily inserted by other connectors, preventing data theft. Therefore, the MPO adapter lockable dustproof structure of this invention has the advantages of good security and excellent dustproof effect.
Owner:SHANGHAI TIANCHENG COMM TECH

Method to prevent data theft from a storage device

A method for assessing a data access request to a data storage device (DSD) by a computer program, the method comprising: assigning a plurality of queues to a plurality of computer programs, wherein each computer program is configured to authentically access one partition of a plurality of partitions of a non-volatile storage medium of the DSD using one queue of the plurality of queues assigned to that computer program and corresponding to that one partition; receiving, from the computer program, a data access request to access a first partition of the plurality of partitions using a first queue of the plurality of queues; and assessing the data access request by: determining whether the one queue of the plurality of queues corresponding to the first partition is the first queue; and in response to determining the one queue of the plurality of queues corresponding to the first partition is the first queue, determining the first queue is authentic to assess the first partition.
Owner:SANDISK TECHNOLOGIES LLC

An environmental management system based on secure isolated communication

ActiveCN115766242Bwon't stealTo achieve the effect of environmental protectionSecuring communicationTransmission protocolTransmission channel
This invention discloses an environmental management system based on secure isolated communication, relating to the field of data environmental protection technology. It solves the technical problem that, during management, data is not encrypted, making it easy for external personnel to find the designated transmission channel via the HTTP protocol, leading to data theft. The system divides the transmitted data into several micro-segment data streams, marks these streams using a marking unit, and generates logical terminals. Different micro-segment data streams and logical terminals are transmitted in batches to a second isolated communication terminal. By segmenting the data and simultaneously hiding and replacing the memory index, the system ensures that the transmitted data cannot be stolen by external personnel, providing comprehensive protection for the transmitted data. This protection method effectively safeguards the data environment and achieves an overall environmentally friendly data processing effect.
Owner:YANTAI POWER PLANT OF HUANENG SHANDONG POWER GENERATION CO LTD

Autonomous ownership adjustment and visualization system in global land comprehensive renovation

The invention provides an ownership automatic adjustment and visualization system in global land comprehensive improvement. The system comprises a land ownership image data query module, a visual land ownership image acquisition module and a visual land ownership image downloading module. The data output end of the local ownership image data query module is connected with the data input end of the visual local ownership image acquisition module, and the data output end of the visual local ownership image acquisition module is connected with the data input end of the visual local ownership image downloading module. According to the method, the security of the visual land ownership image stored on the global land comprehensive improvement ownership platform can be guaranteed, and data stealing is prevented.
Owner:CHONGQING HUADI RESOURCES ENVIRONMENT TECH CO LTD

Systems and methods for multi-layer binding and authentication for a mobile device

Use of an application on a mobile device is prone to user identity fraud and data theft. Systems and methods for multi-layer binding and authentication using an application on mobile device are provided. Within a session initiated by the application, a user account is data bound to a phone number of the mobile device using a session ID of the session: the phone number is data bound to a subscriber identity module (SIM) using a silent network authentication: a passkey is data bound to the user of the application using a biometric authentication executed by the mobile device; and the passkey is data bound to the phone number by associating the public key with the phone number.
Owner:4AUTH LTD

A payment system based on intelligent security detection

The application relates to the technical field of mobile security payment, in particular to a payment system based on intelligent security detection, a data acquisition module is used to acquire data of a receiving platform when a payment request is received; a data processing module is used to determine the receiving platform according to the data information acquired by the data acquisition module; and a data storage module is used to store the receiving platform determined by the data processing module to make payment. When the payment request is received, the data acquisition module acquires environmental information of the receiving platform and outputs the environmental information to the data processing module, the data processing module determines the current receiving platform data environment parameter according to the data environment information of the receiving platform acquired by the data processing module through the data acquisition module, and preliminarily determines the type of the receiving platform, so that information leakage caused by dangerous disguising of the receiving platform in payment can be effectively avoided, and data theft can be further avoided.
Owner:BEIJING YUANXIN HUIBAO TECH CO LTD

Accounting data anti-theft device

The invention provides accounting data anti-theft equipment, and belongs to the technical field of data anti-theft. The accounting data anti-theft equipment comprises an anti-theft box body, a box door is arranged on the front side of the anti-theft box body, a partition plate is fixedly arranged in the anti-theft box body, an anti-theft mechanism is arranged on the anti-theft box body, and the anti-theft mechanism comprises a clamping block and a first bevel gear. By arranging the anti-theft mechanism, when the host needs to be taken out, a first bevel gear is reversely rotated, a clamping rod can be separated from a clamping groove, when a user inputs a wrong password, the user rotates a crank at the moment, then a fourth bevel gear rotates, and therefore a resonance board is driven to make a sound, and nearby personnel are reminded. The unlocking box door and the alarm device share one driving source, and if a user damages the driving source of the alarm device, namely, the driving source of the unlocking box door is damaged at the same time, the safety of the host stored with the accounting data is greatly improved.
Owner:CHENGDU UNIV

Inter-slice attack and user equipment data theft prevention

Methods are disclosed for validating that an NF consumer (NFc) is authorized to access User Equipment (UE) information and for detecting a compromised NFc that is attempting to gain unauthorized access to UE information. An NF provider (NFp) can receive a service request that includes an access token and then if the service request and token are valid, the NFp can determine whether there is an intersection between one or more Single Network Slice Selection Assistance Information (S-NSSAIs) that the NFc is allowed to access (as indicated by the NFp's NSSAIs in the access token presented by the NFc) and at least one of the network slice(s) that the UE has access to (e.g., allowed S-NSSAIs or subscribed S-NSSAIs). If there is a match, then the NFp can provide the UE information to the NFc, but if there is no match, the NFp can reject the service request.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Zero-trust remote attestation service deployment system based on confidential virtual machine

A zero-trust remote attestation service deployment system based on a confidential virtual machine (CVM) includes a trusted execution environment (TEE), a key management component, and an application service virtual machine. Leveraging the TEE technology, both application execution and storage are protected in a zero-trust state. The key management component runs in the TEE, while a service application runs in the CVM. Encryption keys of the CVM are securely stored and efficiently accessed through the TEE technology and the proposed key management component, as well as operational methods. This system enables a zero-trust service and effectively mitigates the risk of sensitive data theft caused by malicious software through memory scraping or code operation logic tampering.
Owner:NANHU LAB

Computer interface safety device capable of preventing computer data from being stolen

The utility model discloses a computer interface safety device capable of preventing computer data from being stolen, and relates to the field of computer data protection, the computer interface safety device comprises a mounting rack, the top end of the mounting rack is provided with a mounting block through a connection block, and the bottom end of the interior of the mounting block is provided with a sliding cavity. According to the computer interface protection device, the arranged protection cover can be arranged outside the computer interface in a covering mode, effective safety protection is conducted on the computer interface, the protection cover is independently designed, compared with a traditional overall locking design, daily use is not affected through the design, operation is convenient, meanwhile, the rotating shaft connected with the protection cover is magnetically attracted and limited through the electromagnetic block, and the protection cover is convenient to use. According to the computer interface safety protection device, the protection cover cannot be opened, the problem that data are stolen is avoided, meanwhile, fingerprints of allowed operators can be input through the arranged question verification module, an electromagnetic block is powered off through the fingerprints, then corresponding operation is conducted, and in the computer interface safety protection process, the flexibility is improved, and the safety is also improved.
Owner:HENAN NORMAL UNIV

Internet of vehicles data security communication method based on SM4 algorithm

The invention relates to the technical field of intelligent traffic systems, in particular to an Internet of Vehicles data security communication method based on an SM4 algorithm, which comprises the following steps that: a trust center issues a certificate and distributes a key to a service center and a vehicle-mounted unit to establish a communication basis; the service center encrypts the plaintext data by using an SM4 algorithm and generates a digital signature; after receiving the encrypted data packet, the road side unit filters an abnormal data packet, and dynamically selects an optimal path to forward data according to a network state; the vehicle-mounted unit carries out signature verification and decryption on the received data, and verifies the data integrity through a message authentication code, the SM4 algorithm is used, the characteristics of the Internet of Vehicles are combined, safe and efficient communication is achieved, compared with the prior art, the protocol is more adaptive to the low-computing-power characteristic of the OBU, and the communication efficiency is improved. The real-time communication security between the service center and the vehicle is effectively ensured, the risk of data stealing and tampering can be reduced, and the security and stability of the vehicle networking system are effectively improved.
Owner:GUILIN UNIVERSITY OF TECHNOLOGY +1

A process security defense method, product, device, and medium

This invention discloses a process security defense method, product, device, and medium, relating to the field of network security technology. At the hardware level, a secure memory controller is added, located between the system bus and the memory controller. It employs a combined hardware and software control approach, requiring any access to physical memory to be verified by the secure memory controller. Each secure process is recorded in a secure memory control table and associated with a specific memory address range. Only after verification as a secure process can it access the corresponding memory area, preventing data theft and tampering by other unsecured processes during program execution. This effectively prevents malicious software or other unauthorized processes from accessing sensitive memory areas, thereby improving the overall security and stability of the system.
Owner:INSPUR (BEIJING) ELECTRONICS INFORMATION IND CO LTD

Data theft detection method and apparatus

The present application belongs to the technical field of information security. Disclosed are a data theft detection method and apparatus. The method comprises: acquiring IO operation information of a plurality of IO requests, wherein the plurality of IO requests are IO requests for accessing a file system, and the IO operation information comprises operation information of an IO operation that is requested by each of the plurality of IO requests for execution; and on the basis of the IO operation information of the plurality of IO requests, detecting whether a target IO request is present among the plurality of IO requests, wherein the target IO request is an IO request for stealing data from the file system. In the method, a plurality of IO requests for accessing a file system are detected at one time, such that the purpose of using the relationship (or the degree of association) between the plurality of IO requests as reference information for detecting / identifying a data theft behavior can be achieved, thereby enhancing the capability of detecting data theft behaviors, improving the accuracy and reliability of detecting data theft behaviors, and reducing the false detection rate and the missed detection rate for when data theft behaviors are detected.
Owner:HUAWEI TECH CO LTD

Screening algorithm optimization and defense method and device of power internet of things defense strategy

The invention discloses a screening algorithm optimization and defense method and device for a power internet of things defense strategy, and belongs to the field of network security, the method comprises the following steps: obtaining log processing data, each log processing data being obtained when different honeypot processing technologies for screening the power internet of things defense strategy are used for defense; preprocessing the log of the defense process to obtain data; using the log processing data to reconstruct a real-time attack restoration graph of the network attack, and determining an attack evaluation value based on the real-time attack restoration graph; and performing optimization processing on a preset screening algorithm according to the attack evaluation value. According to the method, the algorithm is optimized through the real-time log processed by the honeypot technology, so that the optimized algorithm can fit the real-time condition of honeypot processing, the screening deviation is reduced, the algorithm screening precision is improved, the defense effect of the screened honeypot technology is improved, and the risk that data is stolen or tampered is reduced.
Owner:ELECTRIC POWER RES INST OF GUANGDONG POWER GRID CO LTD

Email security detection method and system based on frequency domain and semantic analysis, electronic device, and computer-readable storage medium

The present invention belongs to the field of office automation technology and discloses an email security detection method and system based on frequency domain and semantic analysis, an electronic device, and a computer-readable storage medium. The method comprises obtaining an email to be detected and preprocessing images in its attachments; performing a block operation on the preprocessed image, then performing a DCT transform on each block to generate a corresponding DCT coefficient matrix; calculating the high-frequency component entropy value #imgabs0# corresponding to each block based on the DCT coefficient matrix; determining the steganographic suspicion detection result of the email based on the #imgabs1# value; triggering SMTP traffic semantic analysis of the email based on the steganographic suspicion detection result to obtain a comprehensive risk score #imgabs2#; and triggering a multi-level alarm linkage mechanism based on the comprehensive risk score #imgabs3#. The present invention achieves a high detection rate, low latency, and highly adaptable data theft protection for emails, providing reliable technical support for enterprise-level network security.
Owner:XIAMEN MEIYA YIAN INFORMATION TECH CO LTD +1

Public data authorization operation trusted environment architecture design method and device

The embodiment of the invention relates to a public data authorization operation trusted environment architecture design method and device, and the method comprises the steps: a calculation element generates calculation element registration information according to the attribute information of the calculation element, and uploads the calculation element registration information to a supervision server for registration; the supervision server issues a calculation element certificate to each calculation element according to the calculation element registration information; the supervision server receives an identity certificate signature request sent by the computing node, carries out authentication according to the identity certificate signature request, and sends an identity certificate to the computing node; and based on request information of multi-party computing, authenticating the plurality of computing nodes according to the identity certificates of the computing nodes, and combining to establish the trusted computing architecture. According to the technical scheme provided by the embodiment of the invention, mutual identity recognition among the computing nodes is realized based on the identity certificate, so that the multiple computing nodes are combined into the trusted computing architecture to carry out multi-party computing, the problems of external attacks, data stealing and the like are effectively prevented, and the security of the multi-party computing process is improved.
Owner:HANGZHOU NUOWEI INFORMATION TECHNOLOGY CO LTD

Power grid internet of things platform terminal equipment access security management and control system and method

The application discloses a kind of power grid Internet of Things platform terminal equipment access security control system and method, it is related to terminal equipment access security control field, including: based on Internet of Things technology, establish power grid Internet of Things terminal equipment management platform;According to new biological Internet of Things terminal equipment access data, set the change parameter of system CPU usage rate, refine the use of system CPU and feedback;Based on historical data, establish power grid system risk assessment model, whether there is system CPU usage rate to be occupied behavior in comprehensive evaluation system;According to the historical use of system CPU usage rate, based on algorithm model, the sliding average parameter in power grid system risk assessment model is optimized and corrected.The application has the advantages that: through the occupation of system CPU usage rate, effectively improve the risk perception of power grid Internet of Things platform to terminal equipment access, and data theft and system occupation are discovered in time.
Owner:GUANGDONG POWER GRID CO LTD +1

A communication system and device applied in network security

The present invention discloses a communication system and device applied in network security, including a terminal device, a network relay device, a communication optical cable, and a server; the terminal device is a host computer, and a firewall and an intrusion prevention system are provided on the terminal device; the network relay device includes a switch and a router, and the switch and the router are used for forwarding electrical (optical) signals; the present invention relates to the technical field of communication systems. Adopting a highly integrated structure, in addition to setting a firewall and an intrusion prevention system on the terminal device and the server, an optical cable data protection unit is integrated on the server side. The optical cable data protection unit is used to remotely monitor the optical cable to avoid data theft. For the current optical cable data theft means, relying on the on / off status of the optical cable and the attenuation of the optical fiber signal to detect whether the optical cable data is stolen, and then protecting the optical cable data through a protection structure, thereby improving network security.
Owner:SHENYANG XINXIN JINGZHI COMPUTER SECURITY DETECTION TECH CO LTD