Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

45 results about "Database encryption" patented technology

Database encryption can generally be defined as a process that uses an algorithm to transform data stored in a database into "cipher text" that is incomprehensible without first being decrypted. It can therefore be said that the purpose of database encryption is to protect the data stored in a database from being accessed by individuals with potentially "malicious" intentions. The act of encrypting a database also reduces the incentive for individuals to hack the aforementioned database as "meaningless" encrypted data is of little to no use for hackers. There are multiple techniques and technologies available for database encryption, the most important of which will be detailed in this article.

Access management and database recovery for encrypted indexes

Methods for database recovery for encrypted indexes are performed by systems and devices. A query with a decryption key is received from a client device, where the query modifies an encrypted index of a database using a secure enclave. When events requiring remedial actions for the database occur during the querying, some transactions of the query and later queries are deferred, and a remedial action is initiated that includes restarting the database. A determination of the remedial action being unsuccessful in recovering the encrypted index causes the action to be re-performed until another query having the decryption key is received whereupon the action is performed again to recover the encrypted index utilizing the decryption key. Deferred transactions are then performed with the decryption key. When a database restarts for access without secure enclaves, the encrypted index for the database is invalidated, and the remedial actions are otherwise completed or discarded.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Searchable encryption management method and device, storage medium and electronic equipment

The invention provides a searchable encryption management method and device, a storage medium and electronic equipment, and relates to the technical field of database encryption access. Determining a database operation required by the proxy server and target data required to be operated based on the target data request; the target equipment is any one of a cloud server and user equipment; executing a data operation corresponding to the database operation on the target data based on the keyword of the target data; wherein the database operation comprises any one of the following operations: data initialization operation, data query operation, data addition operation, data deletion operation and data updating operation. The searchable encryption management method and device, the storage medium and the electronic equipment provided by the invention are used for improving the calculation performance, the security and the access efficiency of searchable encryption.
Owner:BEIJING HAITAI FANGYUAN HIGH TECH

A micro-service-based database encryption control method and system

The application discloses a database encryption control method and system based on micro services, and relates to the technical field of distributed database security; a password device distribution service, a certificate key management service and a dynamic load balancing service are created according to a micro service architecture; the password device distribution service distributes password devices when the password devices are applied to be used by the outside world, and provides a calling interface; the certificate key management service uniformly manages certificates and keys in the password devices, and can migrate the certificates and the keys between the password devices; and the dynamic load balancing service dynamically distributes the password devices to nodes according to usage information of the nodes on the password devices.
Owner:上海沄熹科技有限公司

Key management method and device, equipment, storage medium and program product

The invention relates to a key management method and device, equipment, a storage medium and a program product. The method is applied to an intermediate layer in a database encryption system, the database encryption system comprises a database kernel, the intermediate layer and at least one key management system, the database kernel interacts with the key management system through the intermediate layer, and the method comprises the following steps: receiving a key decryption request sent by the database kernel, the key decryption request carries identification information of the first target key; acquiring the first target key from the first key management system according to the identification information of the first target key and the first mapping relationship; sending the first target key to a database kernel; the first target key is used for the database kernel to decrypt the ciphertext of the second target key according to the first target key to obtain the second target key, and the second target key is used for encrypting or decrypting the to-be-processed data in the database kernel. By adopting the method, the stability of the data kernel can be improved.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Method and system for calling encryption and decryption between micro-service and database

The invention discloses an encryption and decryption calling method and system between a micro-service and a database, relates to the technical field of network security transmission, and solves the problem that the encryption evaluation rectification efficiency of dynamic data encryption and decryption is too low when a third-party application interacts with the database. The encryption and decryption calling method comprises the steps that in a distributed network environment, a database encryption and decryption management platform inputs third-party application information; configuring a database encryption and decryption configuration file according to the third-party application information; analyzing all tables and fields to be encrypted and decrypted of the third-party application, and judging the stock data state of the tables and the fields; processing the field to be encrypted and decrypted, and configuring loading dependency of a database encryption and decryption component; generating authentication information, and configuring a database encryption and decryption gateway; starting a database encryption and decryption component, calling a gateway interface to verify the identity permission, obtaining a database encryption and decryption configuration file, caching the database encryption and decryption configuration file to a memory, and enhancing a calling function of a data source; and when the normal business calls the database to run, the database encryption and decryption gateway encrypts and decrypts.
Owner:HENAN INFORMATIZATION GRP CO LTD

A three-dimensional simulation training system and method for lightweight modeling and real-time rendering

This invention belongs to the field of 3D simulation training technology and provides a lightweight modeling and real-time rendering 3D simulation training system. It includes a lightweight modeling module that optimizes 3D models to generate a lightweight model library that supports dynamic adjustment of detail levels; a real-time rendering and interaction module that uses a Unity3D or WebGL engine and dynamically adjusts the model detail levels based on LOD technology according to view distance; a multimodal training and assessment module that integrates question bank management, dynamic question loading, and automatic scoring functions; and a permission management and data security module that implements role-based permission isolation and uses the AES-128 algorithm to encrypt and protect data. This invention effectively eliminates the risk of unauthorized operations and data leakage in a single-machine environment through local role-based permission verification and multi-level database encryption mechanisms, ensuring system security in offline training scenarios. Compared to the plaintext storage and weak permission control of existing technologies, this invention significantly enhances the system's security capabilities.
Owner:AIR FORCE COMM SERGEANT SCHOOL OF PLA

A multi-key graph database encryption method and system supporting single-keyword retrieval

This invention utilizes homomorphic encryption to propose a multi-key graph database encryption method and system that supports single-keyword retrieval. It enables full-text retrieval of symmetric encrypted ciphertext data under multiple keys using a single keyword. By employing this invention, secure partitioned encryption of graph databases can be achieved, reducing the risk of data leakage from single-key encrypted data. It also effectively leverages the data structure characteristics of graph databases, proposing a multi-key symmetric encryption solution with enhanced security. After completing multi-key encryption, to ensure the full-text retrieval capability of the graph database, a single-keyword full-text encrypted retrieval solution is proposed, improving the memory and communication overhead of encrypted retrieval.
Owner:BEIJING XINSHU TECH CO LTD

Database encryption and decryption method and device, computing equipment and storage medium

The invention provides a database encryption and decryption method and device, computing equipment and a storage medium. According to the method, under the condition that the data processing request is received, the target data page serving as the operation object of the transaction engine is determined based on the to-be-processed data corresponding to the received data processing request; and generating the target key based on the address information of the target data page, the data located at the target position in the target data page and the initialization key, so that when the target data page is processed by the transaction engine based on the data processing request, the target key is generated. And performing encryption operation and / or decryption operation on the target data page by using the target key so as to automatically realize encryption and decryption operation of the data page in the operation process of the transaction engine, thereby realizing guarantee on the security of the database.
Owner:TSINGHUA UNIVERSITY

Database encryption methods, devices, and systems based on large-scale multi-agent collaboration

This application provides a database encryption method, device, and system based on large-scale model multi-agent collaboration. By setting up a data request control agent and an encryption / decryption execution agent, the data request control agent, upon receiving a database operation request, determines the operation request type and the operation request object. If it determines that the operation request object has an encryption strategy, it sends an encryption / decryption processing request for the operation request object to the encryption / decryption execution agent based on the operation request type. The encryption / decryption execution agent, based on a reinforcement learning algorithm, determines the optimal resource scheduling scheme from multiple candidate resource scheduling schemes and performs encryption / decryption processing on the operation request object according to the determined optimal resource scheduling scheme. By dynamically scheduling encryption resources based on real-time monitored performance indicators of various types of encryption resources, resource utilization is improved, and the real-time performance of encryption / decryption processing is enhanced.
Owner:HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO LTD

Database encryption method combined with application system

The invention discloses a database encryption method combined with an application system. The database encryption method specifically comprises the following steps: S1, setting a security container and a basic container (namely a data container) in a database system service cache; s2, adding a password service strategy component among the database system, the application system and the encryption service system; s3, adding a cryptographic operation service component to the database system; s4, a safety information service layer is added to the whole data system, and a data query access function of an external system.The method has the advantages that the important data encryption requirement of the application system is met, other function experience of the application system is not affected, the database still stores the ciphertext of the important data, and the safety of the application system is improved. The data security, the system robustness, the service response performance and the like are superior to those of the existing database encryption technology, the data confidentiality is ensured, meanwhile, all function services provided by the existing database system are not influenced, and the effects of data security and confidentiality and non-perception experience are achieved.
Owner:林绵雄

Database encryption method, device and system based on large-model multi-agent cooperation

The invention provides a database encryption method, device and system based on large-model multi-agent cooperation, and the method comprises the steps: setting a data request control agent and an encryption and decryption execution agent, enabling the data request control agent to determine an operation request type and an operation request object under the condition that the data request control agent receives a database operation request, and carrying out the encryption and decryption of the operation request; under the condition of determining that the operation request object has the encryption strategy, sending an encryption / decryption processing request for the operation request object to the encryption / decryption execution agent according to the operation request type; and the encryption and decryption execution agent determines an optimal resource scheduling scheme from a plurality of current candidate resource scheduling schemes based on a reinforcement learning algorithm, performs encryption / decryption processing on the operation request object according to the determined optimal resource scheduling scheme, and performs encryption / decryption processing on the operation request object according to performance indexes of various types of encryption resources monitored in real time. And encryption resources are dynamically scheduled, so that the resource utilization rate is improved, and the real-time performance of encryption and decryption processing can be improved.
Owner:HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO LTD

Database encryption control method and system based on micro service

The invention discloses a micro-service-based database encryption control method and system, and relates to the technical field of distributed database security. Creating a cryptographic device distribution service, a certificate key management service and a dynamic load balancing service according to the micro-service architecture, distributing the cryptographic device by the cryptographic device distribution service when the cryptographic device is applied to use in the outside world, and providing a calling interface; the certificate and secret key management service uniformly manages certificates and secret keys in the password devices and can migrate the certificates and the passwords between the password devices; and the dynamic load balancing service is used for dynamically distributing the password equipment to the nodes according to the use information of the nodes on the password equipment.
Owner:上海沄熹科技有限公司

Plug-in database encryption control method and device

The invention relates to the technical field of database security, and particularly provides a plug-in database encryption control method and device, and the method comprises the following steps: S1, deploying an encryption plug-in on a database server; s2, configuring an encryption control strategy on the database server; s3, executing the SQL statement by the user; and S4, in the database system service operation process, the administrator user modifies the encryption control strategy. Compared with the prior art, safer and more reliable database access and operation can be realized, and the integrity and confidentiality of data are guaranteed.
Owner:上海沄熹科技有限公司

Post-quantum distributed relational database encryption system and method

The invention provides a post-quantum distributed relational database encryption system and method, and relates to the technical field of network security. The query module supports efficient equivalent query and JOIN operation on the premise of post-quantum encryption, and the performance bottleneck and security risk caused by full-amount decryption are avoided; the hybrid cryptography transition module realizes smooth transition from a basic cryptography algorithm to a post-quantum cryptography algorithm, and ensures the compatibility and future security of the system; the post-quantum security calculation push-down framework can directly execute aggregation calculation on encrypted data, so that the security and efficiency of data processing are greatly improved; and the post quantum key management module automatically manages the key life cycle, so that the complexity and security challenge of key management in a large-scale distributed environment are solved. Through systematic design and multi-module cooperative work, quantum computing threats can be effectively coped with, and the safety and availability of data in the whole life cycle are guaranteed.
Owner:GUANGDONG CERTIFICATE AUTHORITY

Encryption method of in-memory database, database system and electronic device

Embodiments of the present application provide a memory database encryption method, a database system and an electronic device. The method comprises: in response to an encryption function start request, encrypting a memory database and writing the encrypted memory database into a first persistent file, and encrypting real-time commands for the memory database and writing the encrypted real-time commands into a second persistent file; deleting a third persistent file to determine the first persistent file as a backup file of the memory database, and deleting a fourth persistent file, the third persistent file being a backup file that is not encrypted before the encryption function is started, and the fourth persistent file being a command log that is not encrypted before the encryption function is started, thereby achieving transparent encryption of the memory database and improving data security.
Owner:ALIBABA CLOUD COMPUTING CO LTD

A method, system, and electronic device for encryption of a multi-modal database

The application relates to a multi-modal database encryption method, system and electronic equipment, wherein the multi-modal database encryption method comprises the following steps: acquiring a to-be-processed data block, screening sensitive data in the to-be-processed data block, and taking the sensitive data as a to-be-encrypted data block; compressing the to-be-encrypted data block through a compressor to obtain binary stream data; and encrypting the binary stream data, and writing the encrypted binary stream into a disk to realize encryption of the to-be-encrypted data block. Through the application, the problem of low data encryption efficiency in a DolphinDB system is solved.
Owner:DOLPHINDB INC (CN)

Quantum confidential query method and device, equipment, medium and product

The invention relates to the technical field of quantum, and particularly provides a quantum confidential query method, device and equipment, a medium and a product. In the disclosure, an original generated key is acquired, the original generated key is related to a measurement base of a second user, and the original generated key comprises a plurality of bits; generating a sparse key based on the parity check value corresponding to the original generated key; performing replacement processing on the sparse key to obtain an intermediate key; performing shift processing on the intermediate key to obtain a final key; and querying in database encryption information from the second user by using the final key to obtain target data. The original generated key is obtained through the bit with the random length, so that the first user can obtain the bit number with the random length through one-time query, the communication complexity is reduced, and the efficiency is improved. Moreover, error correction detection is completed on the original generated key by generating the sparse key, errors caused by channel noise are avoided, and thus channel loss can be tolerated. Therefore, the accuracy of quantum confidential query can be improved.
Owner:CHINA MOBILE (SUZHOU) SOFTWARE TECH CO LTD +1

A multi-breeding-variety-oriented lightweight intelligent production management system and method

PendingCN122347483AData streamTimestamp
The present application relates to the field of intelligent agriculture technology, and provides a lightweight intelligent production management system for multiple breeding varieties, which comprises a three-layer lightweight architecture using a hardware acquisition end, an edge operation end and a local interaction end. Each end cooperates to realize local data acquisition, analysis, operation, storage and interaction without cloud dependence. The system is based on the core data flow logic of real-time sharing of environmental monitoring data and precise feeding data linkage, feeding and weighing data and inventory accounting data, and integrally realizes intelligent regulation and control of breeding environment, precise feeding management, full-dimension production data acquisition, inventory digital accounting, equipment state monitoring and remote visualized supervision. By accurately implementing the hash value evidence mechanism into specific breeding business scenarios such as feed weight, weighing at slaughter, and feed into warehouse, and combining with multiple technical means such as device unique identification, timestamp, database encryption storage and write protection, the data is prevented from being tampered with throughout the whole process, and the authenticity and traceability of the data are guaranteed.
Owner:SHANXI GUANGYU DIGITAL INTELLIGENCE TECHNOLOGY DEVELOPMENT CO LTD

Multi-client sequence uncovering encryption method and system based on block optimization

The invention relates to the technical field of database encryption, and provides a multi-client sequence uncovering encryption method and system based on block optimization, and the method comprises the steps: carrying out the encryption of a queried message and a query message through employing an expansion Hash calculation algorithm, and obtaining a ciphertext and a token; according to the expanded Hash calculation algorithm, a Hash component is added on the basis of a deterministic attribute maintaining Hash protocol, so that equal judgment and continuous judgment are supported; for the ciphertext and the token, verifying whether the block hash is equal; if all the block Hash are equal, the queried message is equal to the query message; if the block Hash is not equal, bit comparison is carried out, and the size of the queried message and the size of the query message are judged. Two types of judgments can be completed through one verification operation, so that the overall performance can be remarkably improved in a high-concurrency scene.
Owner:SHANDONG UNIV

A system and method for fine-grained permission management of a drilling and completion database

The application discloses a kind of drilling and completion database fine-grained authority management system and method.The system includes: client and server;The client includes;Main program, local database encryption and decryption module, client user authentication module, database connection module, behavior authority management module, user interface module, client update module.The method includes: S1, setting main program and each module in client;S2, encrypting local database;S3, decoupling client user from database account;S4, accessing network database and local database by database connection module;S5, only allowing user to access data in database through user interface module;S6, managing user behavior by behavior authority management module;S7, responsible for changing by server.The beneficial effects of the application are: provided with local database encryption and decryption module and behavior authority management module, realize the fine control of data access authority.
Owner:CNOOC ENERGY TECHNOLOGY & SERVICES LTD

Database encryption protection method of security operation and maintenance auditing system

The invention relates to the technical field of database encryption, in particular to a database encryption protection method of a security operation and maintenance auditing system, and the method comprises the following steps: aiming at a data table in a database, extracting table structure metadata of the data table, including attributes, corresponding data types and foreign key constraint information; executing different association analysis strategies through a combination form of data types corresponding to any two attributes to obtain an association degree of any two attributes; extracting an SQL (Structured Query Language) statement of the data table from an operation log of the database, and determining instruction frequent weights of any two attributes to obtain grouping priorities of any two attributes; dividing all attributes into a plurality of encryption attribute groups; and according to the attribute proportion of foreign key constraint information contained in the encryption attribute group, selecting encryption strategies with different intensities for the encryption attribute group to carry out encryption protection. According to the method and the device, the decryption delay of multi-table associated query can be remarkably reduced while the security of the relational data is ensured.
Owner:HANGZHOU FEIZHIYUN INFORMATION TECH CO LTD

A method for database encryption using an encrypted string

The application relates to a method for database encryption using an encrypted string, belonging to the technical field of information security, which comprises the following steps: a parameter for password calculation is stored in multiple different positions, when a database field needs to be accessed, the parameter is combined by using an algorithm to obtain a correct decryption key. An administrator needs to set a parameter, which is not in the form of a password, but in the form of a space coordinate position. Three space coordinates are provided by the administrator, a hardware identification code is obtained, and a fourth space coordinate is formed. An algorithm is used to generate an identification code authKey, which aims to replace the traditional administrator password setting by human subjective setting, and the coordinates are replaced by strings, and the algorithm is used to ensure the password complexity and security.
Owner:SHANDONG HENGYUN INFORMATION TECH CO LTD

A method and system for anti-counterfeiting based on micro-disturbance of dot matrix code

PendingCN122347165AImage extractionDot matrix
The application discloses a kind of based on dot matrix code micro perturbation anti-fake method and system, it is related to information coding field, comprising: by gathering anti-fake object information to generate binary dot matrix image, extract initial seed and store in database after SM4 algorithm encryption and associate object identification;Original image is enlarged and divided into checkerboard, to generate random perturbation parameter with encryption seed, the dot matrix in specified grid is controlled in direction, amplitude and is adjusted with grey scale, and generates the anti-fake dot matrix containing secret micro perturbation;According to material, select corresponding process coding and solidification, extract the code in image and micro perturbation characteristics when verifying, compare with database encryption record.This application has the advantages that: based on dot matrix code micro perturbation anti-fake method adapts to a variety of materials and scene, generates unique micro perturbation seed by SM4 encryption, realizes hidden difficult-to-copy perturbation characteristics, combined with core coding and micro perturbation characteristics double check, realize accurate anti-fake and whole-process closed loop, practicality and security are outstanding.
Owner:SICHUAN TIGER SHRIMP NETWORK TECH CO LTD

Database encryption method and device, equipment, storage medium and program product

The embodiment of the invention provides a database encryption method and device, equipment, a storage medium and a program product, and relates to the field of distribution. The method comprises the following steps: determining a database type of a to-be-encrypted database, and determining a target encryption algorithm corresponding to data in the database according to the database type; and when an encryption instruction sent based on the to-be-encrypted database is received, performing encryption processing on data in the database according to first identity information carried by the encryption instruction and the target encryption algorithm to obtain an encrypted target database. According to the method, the database is encrypted through the identity information and the encryption algorithm, the purpose of preventing original data in the database from being leaked is achieved, tracing can be conducted according to the identity information even if data leakage occurs in the encrypted database, and the effect of improving data security is achieved.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Multi-table join method supporting Boolean query in encrypted database

This invention belongs to the research field of data privacy protection and efficient secret computation in secret databases, particularly relational secret databases. Specifically, it relates to a multi-table join method supporting Boolean queries in secret databases. The method comprises the following steps: Step 1: The client executes a secret database initialization protocol (including four modules: plaintext data parsing, Boolean attribute orthogonalization, index construction, and database encryption); Step 2: The client and server interact to implement a search protocol (including the client generating a "query message" and sending it to the server, and the server generating a "response message" and sending it to the client); Step 3: The client decrypts the response and obtains matching results for plaintext row identifiers that meet the query criteria.
Owner:NANDA SHUAN (TIANJIN) TECHNOLOGY CO LTD

Handling of database encryption key revocation

Systems and methods include storage of a plurality of encrypted data pages of a row store database table in a persistent storage system, determination of a first encryption key associated with one of the plurality of encrypted data pages based on a header of the one of the plurality of encrypted data pages, determination of whether the first encryption key has been revoked, and, if it is determined that the first encryption key has been revoked, adding of a portion of volatile memory allocated to the one of the plurality of data pages to a free list.
Owner:SAP SE

Intelligent alarm information management method and system

The present invention relates to the field of intelligent security information processing technology, and discloses an intelligent alarm information management method and system. The system comprises: an alarm information management device and a control device, wherein the alarm information management device comprises an alarm information storage database, an encryption module, a decryption module, and a management module. The encryption module obtains and encrypts the security alarm information of a bank to be managed from the alarm information storage database. The encrypted security alarm information of the bank to be managed is transmitted by the encryption module to the management module, which is connected to the decryption module and manages the security alarm information of the bank to be managed. The control device comprises a collection unit, a judgment unit, a processing unit, and a classification unit, and is used to control the alarm information management device to manage the alarm information. The present invention can achieve accurate assessment and classification of alarm information, thereby ensuring a rapid response to urgent and important alarm information.
Owner:BEIJING TIANHE DIYUAN SAFETY TECH SERVICE CO LTD

Database encryption method, terminal and system suitable for cloud environment

The present invention discloses a database encryption method, terminal, and system suitable for cloud environments, belonging to the field of cloud database technology. The method comprises: completing identity authentication with the key management platform to which it belongs based on a pre-filled key obtained from the key management platform; generating a working key ciphertext based on key application information and the key obtained from the key management platform; receiving a working key application sent by the service node and the client, and issuing the corresponding working key to the service node and the client, so that the client and the service node can parse the working key ciphertext, obtain the working key, and store it; and the service node receives and stores the encrypted data sent by the client. The data encryption mechanism between the cloud database client and the server proposed in the present invention is based on a symmetric cryptographic system, which realizes real-time working key distribution between the cloud database client and the cloud server, and improves security compared to the traditional public-private key method.
Owner:CHINA TELECOM QUANTUM TECH CO LTD

Method for encrypting database by using encrypted character string

A method for encrypting a database by using an encrypted character string relates to the technical field of information security, and acquires a correct decryption key by dispersedly storing parameters of password calculation to a plurality of different positions and combining the parameters by using an algorithm when a database field needs to be accessed. According to parameters needing to be set by an administrator, a password password mode is not used any more, a space coordinate position mode is adopted, and the administrator provides three space coordinates, obtains a hardware identification code and forms a fourth space coordinate. The purpose of generating the identification code authKey through the algorithm is to replace a traditional situation that an administrator subjectively sets a password manually, a character string is replaced with coordinates, and the complexity and the safety of the password are guaranteed through the algorithm.
Owner:SHANDONG HENGYUN INFORMATION TECH CO LTD

Dynamic update database encryption method based on AI

The invention relates to the technical field of vehicle annual inspection data management systems and database encryption, discloses an AI-based dynamic update database encryption method, and is mainly suitable for an encryption scene of a dynamic update database in a vehicle annual inspection data management system. According to the method, through cooperative work of a data acquisition module, an AI dynamic encryption module, a key management module and a database storage module, the problems that an existing static encryption method cannot adapt to data dynamic updating, key management is complex, and encryption efficiency and safety are difficult to balance are solved. The AI dynamic encryption module dynamically adjusts an encryption strategy based on a machine learning algorithm, and the key management module adopts a distributed technology to simplify key management, so that efficient and safe dynamic encryption is realized, the high-frequency data updating requirement is met, the encryption flexibility is improved, and the key leakage risk is reduced.
Owner:SHENZHEN ANCHE TECH