Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

26 results about "Database encryption" patented technology

Database encryption can generally be defined as a process that uses an algorithm to transform data stored in a database into "cipher text" that is incomprehensible without first being decrypted. It can therefore be said that the purpose of database encryption is to protect the data stored in a database from being accessed by individuals with potentially "malicious" intentions. The act of encrypting a database also reduces the incentive for individuals to hack the aforementioned database as "meaningless" encrypted data is of little to no use for hackers. There are multiple techniques and technologies available for database encryption, the most important of which will be detailed in this article.

Key management method and device, equipment, storage medium and program product

The invention relates to a key management method and device, equipment, a storage medium and a program product. The method is applied to an intermediate layer in a database encryption system, the database encryption system comprises a database kernel, the intermediate layer and at least one key management system, the database kernel interacts with the key management system through the intermediate layer, and the method comprises the following steps: receiving a key decryption request sent by the database kernel, the key decryption request carries identification information of the first target key; acquiring the first target key from the first key management system according to the identification information of the first target key and the first mapping relationship; sending the first target key to a database kernel; the first target key is used for the database kernel to decrypt the ciphertext of the second target key according to the first target key to obtain the second target key, and the second target key is used for encrypting or decrypting the to-be-processed data in the database kernel. By adopting the method, the stability of the data kernel can be improved.
Owner:CHINA TELECOM CLOUD TECH CO LTD

A three-dimensional simulation training system and method for lightweight modeling and real-time rendering

This invention belongs to the field of 3D simulation training technology and provides a lightweight modeling and real-time rendering 3D simulation training system. It includes a lightweight modeling module that optimizes 3D models to generate a lightweight model library that supports dynamic adjustment of detail levels; a real-time rendering and interaction module that uses a Unity3D or WebGL engine and dynamically adjusts the model detail levels based on LOD technology according to view distance; a multimodal training and assessment module that integrates question bank management, dynamic question loading, and automatic scoring functions; and a permission management and data security module that implements role-based permission isolation and uses the AES-128 algorithm to encrypt and protect data. This invention effectively eliminates the risk of unauthorized operations and data leakage in a single-machine environment through local role-based permission verification and multi-level database encryption mechanisms, ensuring system security in offline training scenarios. Compared to the plaintext storage and weak permission control of existing technologies, this invention significantly enhances the system's security capabilities.
Owner:AIR FORCE COMM SERGEANT SCHOOL OF PLA

Database encryption methods, devices, and systems based on large-scale multi-agent collaboration

This application provides a database encryption method, device, and system based on large-scale model multi-agent collaboration. By setting up a data request control agent and an encryption / decryption execution agent, the data request control agent, upon receiving a database operation request, determines the operation request type and the operation request object. If it determines that the operation request object has an encryption strategy, it sends an encryption / decryption processing request for the operation request object to the encryption / decryption execution agent based on the operation request type. The encryption / decryption execution agent, based on a reinforcement learning algorithm, determines the optimal resource scheduling scheme from multiple candidate resource scheduling schemes and performs encryption / decryption processing on the operation request object according to the determined optimal resource scheduling scheme. By dynamically scheduling encryption resources based on real-time monitored performance indicators of various types of encryption resources, resource utilization is improved, and the real-time performance of encryption / decryption processing is enhanced.
Owner:HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO LTD

Database encryption method combined with application system

The invention discloses a database encryption method combined with an application system. The database encryption method specifically comprises the following steps: S1, setting a security container and a basic container (namely a data container) in a database system service cache; s2, adding a password service strategy component among the database system, the application system and the encryption service system; s3, adding a cryptographic operation service component to the database system; s4, a safety information service layer is added to the whole data system, and a data query access function of an external system.The method has the advantages that the important data encryption requirement of the application system is met, other function experience of the application system is not affected, the database still stores the ciphertext of the important data, and the safety of the application system is improved. The data security, the system robustness, the service response performance and the like are superior to those of the existing database encryption technology, the data confidentiality is ensured, meanwhile, all function services provided by the existing database system are not influenced, and the effects of data security and confidentiality and non-perception experience are achieved.
Owner:林绵雄

Database encryption method, device and system based on large-model multi-agent cooperation

The invention provides a database encryption method, device and system based on large-model multi-agent cooperation, and the method comprises the steps: setting a data request control agent and an encryption and decryption execution agent, enabling the data request control agent to determine an operation request type and an operation request object under the condition that the data request control agent receives a database operation request, and carrying out the encryption and decryption of the operation request; under the condition of determining that the operation request object has the encryption strategy, sending an encryption / decryption processing request for the operation request object to the encryption / decryption execution agent according to the operation request type; and the encryption and decryption execution agent determines an optimal resource scheduling scheme from a plurality of current candidate resource scheduling schemes based on a reinforcement learning algorithm, performs encryption / decryption processing on the operation request object according to the determined optimal resource scheduling scheme, and performs encryption / decryption processing on the operation request object according to performance indexes of various types of encryption resources monitored in real time. And encryption resources are dynamically scheduled, so that the resource utilization rate is improved, and the real-time performance of encryption and decryption processing can be improved.
Owner:HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO LTD

Post-quantum distributed relational database encryption system and method

The invention provides a post-quantum distributed relational database encryption system and method, and relates to the technical field of network security. The query module supports efficient equivalent query and JOIN operation on the premise of post-quantum encryption, and the performance bottleneck and security risk caused by full-amount decryption are avoided; the hybrid cryptography transition module realizes smooth transition from a basic cryptography algorithm to a post-quantum cryptography algorithm, and ensures the compatibility and future security of the system; the post-quantum security calculation push-down framework can directly execute aggregation calculation on encrypted data, so that the security and efficiency of data processing are greatly improved; and the post quantum key management module automatically manages the key life cycle, so that the complexity and security challenge of key management in a large-scale distributed environment are solved. Through systematic design and multi-module cooperative work, quantum computing threats can be effectively coped with, and the safety and availability of data in the whole life cycle are guaranteed.
Owner:GUANGDONG CERTIFICATE AUTHORITY

Encryption method of in-memory database, database system and electronic device

Embodiments of the present application provide a memory database encryption method, a database system and an electronic device. The method comprises: in response to an encryption function start request, encrypting a memory database and writing the encrypted memory database into a first persistent file, and encrypting real-time commands for the memory database and writing the encrypted real-time commands into a second persistent file; deleting a third persistent file to determine the first persistent file as a backup file of the memory database, and deleting a fourth persistent file, the third persistent file being a backup file that is not encrypted before the encryption function is started, and the fourth persistent file being a command log that is not encrypted before the encryption function is started, thereby achieving transparent encryption of the memory database and improving data security.
Owner:ALIBABA CLOUD COMPUTING CO LTD

Quantum confidential query method and device, equipment, medium and product

The invention relates to the technical field of quantum, and particularly provides a quantum confidential query method, device and equipment, a medium and a product. In the disclosure, an original generated key is acquired, the original generated key is related to a measurement base of a second user, and the original generated key comprises a plurality of bits; generating a sparse key based on the parity check value corresponding to the original generated key; performing replacement processing on the sparse key to obtain an intermediate key; performing shift processing on the intermediate key to obtain a final key; and querying in database encryption information from the second user by using the final key to obtain target data. The original generated key is obtained through the bit with the random length, so that the first user can obtain the bit number with the random length through one-time query, the communication complexity is reduced, and the efficiency is improved. Moreover, error correction detection is completed on the original generated key by generating the sparse key, errors caused by channel noise are avoided, and thus channel loss can be tolerated. Therefore, the accuracy of quantum confidential query can be improved.
Owner:CHINA MOBILE (SUZHOU) SOFTWARE TECH CO LTD +1

A multi-breeding-variety-oriented lightweight intelligent production management system and method

PendingCN122347483AData streamTimestamp
The present application relates to the field of intelligent agriculture technology, and provides a lightweight intelligent production management system for multiple breeding varieties, which comprises a three-layer lightweight architecture using a hardware acquisition end, an edge operation end and a local interaction end. Each end cooperates to realize local data acquisition, analysis, operation, storage and interaction without cloud dependence. The system is based on the core data flow logic of real-time sharing of environmental monitoring data and precise feeding data linkage, feeding and weighing data and inventory accounting data, and integrally realizes intelligent regulation and control of breeding environment, precise feeding management, full-dimension production data acquisition, inventory digital accounting, equipment state monitoring and remote visualized supervision. By accurately implementing the hash value evidence mechanism into specific breeding business scenarios such as feed weight, weighing at slaughter, and feed into warehouse, and combining with multiple technical means such as device unique identification, timestamp, database encryption storage and write protection, the data is prevented from being tampered with throughout the whole process, and the authenticity and traceability of the data are guaranteed.
Owner:SHANXI GUANGYU DIGITAL INTELLIGENCE TECHNOLOGY DEVELOPMENT CO LTD

Multi-client sequence uncovering encryption method and system based on block optimization

The invention relates to the technical field of database encryption, and provides a multi-client sequence uncovering encryption method and system based on block optimization, and the method comprises the steps: carrying out the encryption of a queried message and a query message through employing an expansion Hash calculation algorithm, and obtaining a ciphertext and a token; according to the expanded Hash calculation algorithm, a Hash component is added on the basis of a deterministic attribute maintaining Hash protocol, so that equal judgment and continuous judgment are supported; for the ciphertext and the token, verifying whether the block hash is equal; if all the block Hash are equal, the queried message is equal to the query message; if the block Hash is not equal, bit comparison is carried out, and the size of the queried message and the size of the query message are judged. Two types of judgments can be completed through one verification operation, so that the overall performance can be remarkably improved in a high-concurrency scene.
Owner:SHANDONG UNIV

A system and method for fine-grained permission management of a drilling and completion database

The application discloses a kind of drilling and completion database fine-grained authority management system and method.The system includes: client and server;The client includes;Main program, local database encryption and decryption module, client user authentication module, database connection module, behavior authority management module, user interface module, client update module.The method includes: S1, setting main program and each module in client;S2, encrypting local database;S3, decoupling client user from database account;S4, accessing network database and local database by database connection module;S5, only allowing user to access data in database through user interface module;S6, managing user behavior by behavior authority management module;S7, responsible for changing by server.The beneficial effects of the application are: provided with local database encryption and decryption module and behavior authority management module, realize the fine control of data access authority.
Owner:CNOOC ENERGY TECHNOLOGY & SERVICES LTD

Database encryption protection method of security operation and maintenance auditing system

The invention relates to the technical field of database encryption, in particular to a database encryption protection method of a security operation and maintenance auditing system, and the method comprises the following steps: aiming at a data table in a database, extracting table structure metadata of the data table, including attributes, corresponding data types and foreign key constraint information; executing different association analysis strategies through a combination form of data types corresponding to any two attributes to obtain an association degree of any two attributes; extracting an SQL (Structured Query Language) statement of the data table from an operation log of the database, and determining instruction frequent weights of any two attributes to obtain grouping priorities of any two attributes; dividing all attributes into a plurality of encryption attribute groups; and according to the attribute proportion of foreign key constraint information contained in the encryption attribute group, selecting encryption strategies with different intensities for the encryption attribute group to carry out encryption protection. According to the method and the device, the decryption delay of multi-table associated query can be remarkably reduced while the security of the relational data is ensured.
Owner:HANGZHOU FEIZHIYUN INFORMATION TECH CO LTD

A method for database encryption using an encrypted string

The application relates to a method for database encryption using an encrypted string, belonging to the technical field of information security, which comprises the following steps: a parameter for password calculation is stored in multiple different positions, when a database field needs to be accessed, the parameter is combined by using an algorithm to obtain a correct decryption key. An administrator needs to set a parameter, which is not in the form of a password, but in the form of a space coordinate position. Three space coordinates are provided by the administrator, a hardware identification code is obtained, and a fourth space coordinate is formed. An algorithm is used to generate an identification code authKey, which aims to replace the traditional administrator password setting by human subjective setting, and the coordinates are replaced by strings, and the algorithm is used to ensure the password complexity and security.
Owner:SHANDONG HENGYUN INFORMATION TECH CO LTD

A method and system for anti-counterfeiting based on micro-disturbance of dot matrix code

PendingCN122347165AImage extractionDot matrix
The application discloses a kind of based on dot matrix code micro perturbation anti-fake method and system, it is related to information coding field, comprising: by gathering anti-fake object information to generate binary dot matrix image, extract initial seed and store in database after SM4 algorithm encryption and associate object identification;Original image is enlarged and divided into checkerboard, to generate random perturbation parameter with encryption seed, the dot matrix in specified grid is controlled in direction, amplitude and is adjusted with grey scale, and generates the anti-fake dot matrix containing secret micro perturbation;According to material, select corresponding process coding and solidification, extract the code in image and micro perturbation characteristics when verifying, compare with database encryption record.This application has the advantages that: based on dot matrix code micro perturbation anti-fake method adapts to a variety of materials and scene, generates unique micro perturbation seed by SM4 encryption, realizes hidden difficult-to-copy perturbation characteristics, combined with core coding and micro perturbation characteristics double check, realize accurate anti-fake and whole-process closed loop, practicality and security are outstanding.
Owner:SICHUAN TIGER SHRIMP NETWORK TECH CO LTD

Handling of database encryption key revocation

Systems and methods include storage of a plurality of encrypted data pages of a row store database table in a persistent storage system, determination of a first encryption key associated with one of the plurality of encrypted data pages based on a header of the one of the plurality of encrypted data pages, determination of whether the first encryption key has been revoked, and, if it is determined that the first encryption key has been revoked, adding of a portion of volatile memory allocated to the one of the plurality of data pages to a free list.
Owner:SAP SE

Method for encrypting database by using encrypted character string

A method for encrypting a database by using an encrypted character string relates to the technical field of information security, and acquires a correct decryption key by dispersedly storing parameters of password calculation to a plurality of different positions and combining the parameters by using an algorithm when a database field needs to be accessed. According to parameters needing to be set by an administrator, a password password mode is not used any more, a space coordinate position mode is adopted, and the administrator provides three space coordinates, obtains a hardware identification code and forms a fourth space coordinate. The purpose of generating the identification code authKey through the algorithm is to replace a traditional situation that an administrator subjectively sets a password manually, a character string is replaced with coordinates, and the complexity and the safety of the password are guaranteed through the algorithm.
Owner:SHANDONG HENGYUN INFORMATION TECH CO LTD

Dynamic update database encryption method based on AI

The invention relates to the technical field of vehicle annual inspection data management systems and database encryption, discloses an AI-based dynamic update database encryption method, and is mainly suitable for an encryption scene of a dynamic update database in a vehicle annual inspection data management system. According to the method, through cooperative work of a data acquisition module, an AI dynamic encryption module, a key management module and a database storage module, the problems that an existing static encryption method cannot adapt to data dynamic updating, key management is complex, and encryption efficiency and safety are difficult to balance are solved. The AI dynamic encryption module dynamically adjusts an encryption strategy based on a machine learning algorithm, and the key management module adopts a distributed technology to simplify key management, so that efficient and safe dynamic encryption is realized, the high-frequency data updating requirement is met, the encryption flexibility is improved, and the key leakage risk is reduced.
Owner:SHENZHEN ANCHE TECH

Diversified top-k equivalent connection query method supporting cloud privacy protection

The invention relates to a diversity top-k equivalent connection query method supporting cloud privacy protection, and belongs to the technical field of cloud computing data security. The method comprises the following steps: mapping an original relational database to a large prime field through a unified mapping function, generating addition secret shared shares, and respectively distributing the shares to two cloud servers to realize the encryption of the relational database; the client parses a query statement containing an equivalent connection condition and diversity constraints into a plurality of vectors, converts the vectors into additive secret shared shares and distributes the shares to the two cloud servers, so as to realize query statement encryption; and after the relational database and the query statement are encrypted, the two cloud servers sequentially perform column positioning, bit decomposition and security comparison, security sorting and diversity filtering in a secret sharing domain, calculate first k results meeting diversity constraints, and return the first k results to the client for decryption. The technical problem that data privacy and complex query functionality cannot be considered at the same time in a cloud environment in the prior art is solved.
Owner:KUNMING UNIV OF SCI & TECH

Database encryption method and electronic equipment

The invention provides a database encryption method and electronic equipment, and the method comprises the steps: obtaining a predefined global security parameter set which comprises an identifier of an encryption algorithm required by each layer of encryption and a data storage strategy; generating a data encryption key corresponding to each field type in a target data table in the database; according to the global security parameter set and the data encryption key corresponding to each field type, performing hierarchical encryption on the to-be-encrypted data field to obtain encrypted data; and according to the global security parameter set, storing the encrypted data in a database to improve the quantum aggression resistance of the database.
Owner:中电信量子信息科技集团有限公司

Verifiable and traceable quantum key database security system and implementation method thereof

The invention provides a verifiable and traceable quantum key database security system and an implementation method thereof, and the system comprises a quantum key and key management module which is used for generating a biophysical high-entropy key; the zero-knowledge verifiable authentication module is used for realizing zero-knowledge verification of an access subject identity and a strategy; the database encryption and access control module is used for performing database table-level, column-level and row-level encryption and access strategy execution, and realizing minimum authorization in combination with dynamic secret state distribution; the trusted execution and log account book module is used for constructing a tamper-proof event chain by using a Hash commitment chain and an evolution signature to realize a verifiable anti-counterfeiting account book VAL; and the cross-domain auditing and anchoring module is used for providing an independent verification and external time anchoring mechanism and realizing cross-organization traceable auditing. According to the method, a quantum key mechanism, zero-knowledge proof and a security log technology are fused, so that quantum security of access authentication and encrypted communication can be guaranteed, and verifiability, traceability and non-repudiation of database access behaviors can be realized.
Owner:STATE GRID ANHUI ELECTRIC POWER CO LTD +1

A database encryption protection method of a safe operation and maintenance audit system

ActiveCN122065331BTable (database)Datasheet
The application relates to the technical field of database encryption, in particular to a database encryption protection method of a safe operation and maintenance audit system. The method comprises the following steps: for a data table in a database, extracting table structure metadata of the data table, including attributes and corresponding data types and foreign key constraint information; executing different correlation analysis strategies through the combination form of data types of any two attributes to obtain the correlation degree of any two attributes; extracting SQL statements of the data table from operation logs of the database to determine the instruction frequent weight of any two attributes and obtain the grouping priority of any two attributes; dividing all the attributes into multiple encrypted attribute groups; and selecting different strength encryption strategies for the encrypted attribute groups according to the proportion of attributes containing foreign key constraint information in the encrypted attribute groups to perform encryption protection. The application can ensure the safety of relational data while significantly reducing the decryption delay of multi-table association query.
Owner:HANGZHOU FEIZHIYUN INFORMATION TECH CO LTD

A database encryption configuration method and device, electronic equipment and storage medium

ActiveCN116680715BAlgorithmParallel computing
The application provides a database encryption configuration method and device, electronic equipment and a storage medium. The method comprises the following steps: obtaining a target configuration requirement of a database; calling a target configuration file of the database according to a target encryption algorithm represented by the target configuration requirement; modifying encryption attribute parameters of the database according to target encryption algorithm parameter information represented by the target configuration file; and configuring global encryption parameters of the database according to a modification result of the encryption attribute parameters of the database, so that the database performs data encryption and decryption based on the target encryption algorithm. The method provided by the above scheme performs corresponding encryption configuration on the database on the server according to the target configuration requirement of the database, so that the database supports user-defined encryption requirements without changing the original function of the database, and the client does not need to modify any code, thereby reducing the development cost of the database.
Owner:JINAN INSPUR DATA TECH CO LTD

Searchable encryption management method and device, storage medium and electronic equipment

The application provides a searchable encryption management method and device, a storage medium and an electronic device, and relates to the technical field of database encryption access. The method comprises the following steps: receiving a target data request sent by a target device, and determining a database operation required by a proxy server and target data required to be operated based on the target data request; the target device is any one of a cloud server and a user device; performing a data operation corresponding to the database operation on the target data based on the keyword of the target data; wherein the database operation comprises any one of the following: a data initialization operation, a data query operation, a data addition operation, a data deletion operation and a data update operation. The searchable encryption management method and device, the storage medium and the electronic device provided by the application are used for improving the calculation performance, security and access efficiency of searchable encryption.
Owner:BEIJING HAITAI FANGYUAN HIGH TECH

A database encryption and decryption method, device and equipment based on user-defined functions and a medium

This application discloses a database encryption / decryption method, apparatus, device, and medium based on user-defined functions (UDFs), relating to the field of computer technology. It includes: acquiring an initial SQL statement sent by a client and parsing the initial SQL statement to extract database information, table information, and field information; using a preset strategy matching engine to perform encryption strategy matching based on the field information; if the field information matches successfully, modifying the initial SQL statement using a preset UDF function according to the matching result and the type of the initial SQL statement; sending the modified SQL statement to the database, so that the database can call the preset UDF function based on the modified SQL statement to perform corresponding encryption / decryption operations on the target data, and returning the execution result to the client. This improves the encryption coverage during database encryption, avoids data security blind spots, and reduces performance overhead.
Owner:CETC CYBERSPACE SECURITY TECH CO LTD

Lightweight fully homomorphic encryption method suitable for database encryption

The invention relates to a lightweight fully homomorphic encryption method suitable for database encryption, which comprises the following steps of: 1, generating a fully homomorphic encryption algorithm key: inputting security parameters to generate a large prime number and a corresponding timestamp which meet a calculation standard requirement, and generating a required public and private key pair according to a corresponding algorithm; 2, encryption and decryption of a fully homomorphic encryption algorithm: encrypting and decrypting keyword fields of the SQL statement of the user through a fully homomorphic data encryption module and a fully homomorphic data decryption module respectively; and 3, homomorphic calculation of ciphertext data: processing addition calculation, multiplication calculation and size comparison requests proposed by a user through an addition homomorphic module, a multiplication homomorphic module and a size comparison module. The method has the advantages of being small in calculation overhead, high in calculation speed and easy to implement, and is a new strategy for conducting data security control from the perspective of the encrypted database in the open network environment.
Owner:GUIZHOU DATABAO NETWORK TECH CO LTD

Database encryption method and system in the whole life cycle of information system

ActiveCN115828282Bimplement encryptionreduce exposureDigital data protectionPasswordEngineering
The application discloses a database encryption method and system in the whole life cycle of an information system, and the method comprises the following steps: obtaining an application submitted by a terminal user of an application, wherein the application is a work order application for creating a database account and a password; according to the application, an encryption platform of a server provides different encryption modes according to different use scenarios; according to the selected encryption mode, a configuration center creates an account and a password for a specified database cluster, and pushes the account and the password to an application program; and the application program connects a database according to the account and the password. The application combines a configuration management platform and a decryption plug-in of the server, pushes the encrypted password to the configuration management platform, and further performs desensitization encryption on the configuration management platform; and the application can only be decrypted by the decryption plug-in in the terminal, and cannot obtain the plaintext password, so that the security of the database account and the password is better guaranteed, and data leakage is avoided.
Owner:SICHUAN XW BANK CO LTD