Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

23 results about "Disk encryption" patented technology

Disk encryption is a technology which protects information by converting it into unreadable code that cannot be deciphered easily by unauthorized people. Disk encryption uses disk encryption software or hardware to encrypt every bit of data that goes on a disk or disk volume. It is used to prevent unauthorized access to data storage.

Solid state disk data encryption method and solid state disk

The invention relates to the technical field of electric digital data processing security, and discloses a solid state disk data encryption method and a solid state disk. According to the method, a national cryptographic algorithm hardware encryption and decryption co-processing module is serially arranged on a data bus between a main control chip and a flash memory particle array, so that transparent encryption of write-in data and transparent decryption of read-out data are realized; the module performs encryption and decryption based on an SM4 algorithm and an XTS advanced encryption standard mode in combination with a logic address as an adjustment value, and securely injects a root key through an out-of-band interface to derive a data key. The system comprises a main control chip, a flash memory array and the co-processing module, wherein the co-processing module is integrated with a hardware encryption and decryption engine, a key management unit and data flow control logic. On the premise that a general main control chip is not changed, high-performance, high-compatibility and high-security national cryptographic hardware-level full-disk encryption is realized.
Owner:深圳市彦胜科技有限公司

Portable hard disk bridging encryption circuit and equipment based on quantum random number

The utility model discloses a portable hard disk bridging encryption circuit and equipment based on quantum random numbers, and belongs to the technical field of hard disk bridging encryption. According to the portable hard disk bridging encryption circuit based on the quantum random number, data of an upper computer reaches the SoC storage security chip through the upper computer interface, the SoC storage security chip obtains a secret key through the quantum random number generator and encrypts the data, and finally the encrypted data is written into a hard disk through the hard disk interface. All the data written into the hard disk can be completely encrypted, so that all the data written into the hard disk are ciphertexts, and the encryption safety of the mobile hard disk is improved. Besides, the circuit is in pluggable connection with the upper computer through the upper computer interface and in pluggable connection with the mobile hard disk through the hard disk interface, all the interfaces are connected when encryption is needed, the mobile hard disk skips the circuit to be directly connected with the upper computer when encryption is not needed, and the flexibility of hard disk encryption design is improved.
Owner:ANHUI CHENGFANG QUANTUM TECH CO LTD

SQLite database transparent encryption method, system and device based on national cryptographic algorithm and storage medium

The invention relates to the technical field of database security, in particular to an SQLite database transparent encryption method, system and device based on a national cryptographic algorithm and a storage medium, and the method comprises the following steps: S1, when an SQLite database is opened, loading and connecting a hardware cryptographic device to obtain an encryption master key and a corresponding key handle; s2, in response to the write-in operation, calling a national secret symmetric encryption algorithm through a key handle, encrypting a plaintext of a database page to generate a page, and writing the page into a database file; s3, reading the ciphertext page in response to the reading operation, decrypting the ciphertext page through a cryptographic symmetric decryption algorithm adjusted by a key handle after analysis, recovering a plaintext page and returning the plaintext page to the application; and S4, circularly executing encryption writing and decryption reading to process the continuous request, and releasing the key handle and disconnecting the hardware connection until the database connection is closed. According to the method, transparent full disk encryption, meeting the national secret standard, of the SQLite database is achieved, the secret key safety and the operation performance are guaranteed through hardware cryptographic equipment, and good application compatibility is kept.
Owner:SUPCON TECH CO LTD

Local data security storage method for non-networked vehicles

The invention discloses a local data security storage method for a non-networked vehicle, which comprises the following steps of: setting a vehicle-mounted MP5 (Mobile Pentium 5), and storing local data through the vehicle-mounted MP5; setting a three-level storage architecture for the vehicle-mounted MP5, and storing vehicle static information into a configuration data area; storing the operation parameters into a runtime data area according to a time sequence; storing the fault event into an event data area; implementing a hierarchical encryption strategy on data, performing full disk encryption on storage equipment, performing independent file encryption on sensitive data files, and implementing additional character encryption on key fields; an encryption key is derived based on a vehicle VIN code and a user PIN, a circular buffer management mechanism is established, and a secure data export interface is provided. According to the invention, the confidentiality, integrity and availability of vehicle local data can be improved, and the safety and reliability of vehicle data storage are improved.
Owner:ANHUI JIANGHUAI AUTOMOBILE GRP CORP LTD

Encryption method, software upgrading method and related device, equipment, medium and product

The embodiment of the invention provides an encryption method, a software upgrading method, a related device, equipment, a medium and a product. The USB flash disk encryption method comprises the following steps: acquiring bare data of a software upgrade package; establishing upgrading information of the software upgrading package, wherein the upgrading information comprises an identification number and a version number of the software upgrading package and a preset storage position of the software upgrading package in the target USB flash disk; and encrypting the upgrading information, and storing the encrypted upgrading information and the bare data into the target USB flash disk according to a preset storage rule, so that the target equipment obtains the bare data of the software upgrading package required by upgrading based on the encrypted upgrading information under the condition of accessing the target USB flash disk. According to the USB flash disk encryption method disclosed by the embodiment of the invention, the data in the USB flash disk is stored in a bare data form, so that the possibility that the data is identified is reduced, the upgrading information independent of the software upgrading package is established, the data is convenient to manage, the upgrading information is encrypted, and the data processing complexity is reduced; and the improvement of the data security is realized in a simple mode.
Owner:ROX MOTOR TECH CO LTD

Data protection device and method, electronic equipment and storage medium

The invention discloses a data protection device and method, electronic equipment and a storage medium, the device comprises a memory encryption virtual machine, the memory encryption virtual machine comprises a data management module, an application management module, an encryption memory and a full disk encryption module, the data management module and the application management module are arranged in a memory to encrypt an account-free mirror image of the virtual machine; the data management module is used for writing the encrypted data set and the data use control strategy into the full-quantity disk encryption module; loading the key to an encryption memory, decrypting the encrypted data set by using the key to obtain a data set, and injecting the data set into a white list application process; the application management module is used for receiving application package data; verifying the application package data based on the data use control strategy; under the condition that the verification is passed, creating a safe operation environment of the white list application process in the encrypted memory; and starting the data calculation task to obtain a data use result, and sending the data use result to the data use end. Therefore, the data security can be improved.
Owner:清雁科技(北京)有限公司

Hard disk encryption management method, device and equipment and readable storage medium

The invention discloses a hard disk encryption management method, device and equipment and a readable storage medium. The hard disk encryption management method comprises the steps that a hard disk receives a manufacturer custom command from a host; analyzing the manufacturer custom command to obtain an encrypted management command; when the encryption management command is a password setting command, if a first logic space of the hard disk is in an unencrypted state or an unlocked state, converting a first plaintext password into a first ciphertext password through an encryption algorithm; loading the first ciphertext password to an encryption engine of the hard disk, converting the first preset data into first encrypted data by the encryption engine by taking the first ciphertext password as a key, and storing the first encrypted data to a standby area corresponding to a first logic space of the hard disk; and after the first encrypted data is successfully stored, setting the first logic space of the hard disk to be in an encrypted and unlocked state, and replying a command execution result to the host. According to the method and the device, the applicability of a hard disk encryption function is greatly improved, and the password security is greatly improved.
Owner:MEMORIGHT (WUHAN) CO LTD

Implementation system and method for USB flash disk encryption

The invention relates to the technical field of data security, in particular to a USB flash disk encryption implementation system and method. The system comprises a data partition management module used for forming a common data partition and a hidden encryption partition; the transparent encryption and decryption module is realized based on a file system filter driver and is used for encrypting and decrypting the hidden encryption partition data in real time; the identity authentication module is used for verifying user identity information and dynamically mounting the hidden encryption partition after the user identity information passes the verification; and the security isolation module is used for establishing a security data transmission channel and monitoring an access state, and automatically unloading the hidden encryption partition when a condition is met. The method comprises the steps of partition creation, request interception, identity verification, dynamic mounting, real-time encryption and decryption and automatic unloading. According to the invention, security level-to-level management and transparent encryption and decryption of U disk data are realized, and the problems of poor compatibility and complex operation in the prior art are solved.
Owner:LIUZHOU NULON PORT DIGITAL TECHNOLOGY CO LTD

A mobile hard disk encryption method based on a touch screen and a mobile hard disk

The application relates to a mobile hard disk encryption method based on a touch screen and a mobile hard disk, and the mobile hard disk encryption method comprises the following steps: S1, generating encryption track data through a touch screen module; S2, converting the encryption track data into encryption instructions, and converting a register into a register in an encryption state according to the encryption instructions; and S3, triggering decryption instructions in the mobile hard disk in the encryption state, and updating the register in the encryption state into a decryption state according to the decryption instructions. In the prior art, the data security problem is that people with ulterior motives can easily steal the mobile hard disk or steal the data of the hard disk in a short time; the scheme can solve the problems that the password operation of the mobile hard disk is complicated and the state display is not intuitive while the safety and privacy are considered.
Owner:SHENZHEN SPEEDMOBILE TECH CO LTD

Method, system and equipment for automatically guiding encrypted disk in Linux system and medium

The invention relates to the technical field of software encryption protection, in particular to a method, a system and equipment for automatically guiding an encrypted disk in a Linux system and a medium. A fixed UUID is designated as a partition identifier, a plaintext is encrypted through a symmetric encryption and decryption algorithm, a secret key is obtained, and the plaintext is prevented from being leaked when process parameters are transmitted; a secret key and a secret key decryption algorithm are embedded in the GRUB, so that the GRUB has a plaintext restoration function; the method comprises the following steps: transmitting a key parameter when a kernel is under a GRUB guide boot partition, obtaining a plaintext by using a decryption algorithm when the parameter is obtained in the kernel, and writing the plaintext into an initrd memory fixed path file after decompressing initramfs (initrd); the system-cryptsetup is used for realizing that a cryptttb file reads a plaintext password file mounting partition, and the cryptttb file is used for reading a plaintext password file mounting partition; and finally, switching and guiding the root file system. According to the method, a user does not need to be informed of a plaintext password for a software final state, key binding, disk encryption and system boot management and control are achieved, and finally manual intervention is not needed.
Owner:CHENGDU DBAPP SECURITY

Mirror image file burning processing method capable of starting full-disk encryption

The invention relates to the field of intelligent equipment manufacturing, and discloses a burnt mirror image file processing method capable of starting full-disk encryption, which is used for processing a mirror image file before burning and solving the problem of long burning time of the mirror image file due to starting of a full-disk encryption technology. According to the scheme, firstly, storage partition information is obtained, then format recognition and screening are conducted on storage partitions, and a target partition containing a mountable file system is determined; then, an analysis tool matched with the format of the target partition is adopted, use state information of the target partition is extracted, and the use state information at least comprises position features of the free data blocks; positioning a storage area corresponding to the idle data block in the to-be-processed burning mirror image by combining the partition configuration information table and the position characteristics of the idle data block; and finally, carrying out data filling on an idle data block storage area positioned in the to-be-processed burning mirror image, and setting all bits in the area as logic high levels to obtain an optimized burning mirror image file.
Owner:SICHUAN CHANGHONG ELECTRIC CO LTD

Data protection implementation method and device, computer device and storage medium

The application provides a data protection method and device, computer equipment and a storage medium. The address information of selected partial hard disk files is added to an encryption file list created by the hard disk, and a self-encryption algorithm is started to encrypt the content of the partial hard disk files, thereby realizing local hard disk file encryption and improving the flexibility of data protection. Even if the hard disk password is forgotten, the unencrypted hard disk files can still be operated, application requirements are met, and compared with a software data protection mode, encrypted data is easily destroyed when the hard disk is formatted. In the application, the target file of the hard disk encryption can still be retained when the hard disk is formatted, and the security of the hard disk file is further improved.
Owner:LENOVO (BEIJING) LTD

USB key encryption communication method, system and device based on terminal identity authentication and medium

ActiveCN121309227AUser identity/authority verificationEncryptionDisk encryption
The invention discloses a USB key encryption communication method, system and device based on terminal identity authentication and a medium, and belongs to the technical field of encryption communication, and the method comprises the following steps: obtaining running process data of a terminal, and comparing the running process data with a security process baseline to obtain a process baseline deviation degree; acquiring network access data of the terminal based on the process baseline deviation degree, and performing network anomaly analysis on the network access data to obtain a network anomaly metric value; constructing a security risk matrix based on the process baseline deviation degree and the network anomaly metric value, and performing calculation according to the security risk matrix to obtain a terminal comprehensive security score; and formulating a USB key encryption communication strategy according to the terminal comprehensive security score. The method has the advantages that the process security state and the network security state are subjected to fusion calculation by constructing the security risk matrix, and comprehensive quantitative evaluation of multi-dimensional risks and accurate recognition of composite threats are achieved.
Owner:YUNNAN POWER GRID CO LTD

Solid state disk data encryption method and solid state disk

ActiveCN121327867BDigital dataData stream
The application relates to the technical field of electric digital data processing security, and discloses a solid state disk data encryption method and a solid state disk. The method realizes transparent encryption of written data and transparent decryption of read-out data by serially arranging a national secret algorithm hardware encryption and decryption coprocessing module on a data bus between a main control chip and a flash memory particle array; the module is based on an SM4 algorithm and an XTS advanced encryption standard mode, combines a logical address as an adjustment value to perform encryption and decryption, and injects a root key through an out-of-band interface to derive a data key. The system comprises a main control chip, a flash memory array and the coprocessing module, the latter integrates a hardware encryption and decryption engine, a key management unit and data flow control logic. The application realizes high-performance, high-compatibility, high-security national secret hardware-level full-disk encryption without changing a general main control chip.
Owner:深圳市彦胜科技有限公司

Hard disk fingerprint encryption system

The invention discloses a hard disk fingerprint encryption system, which relates to the technical field of hard disk encryption and comprises a storage module, a fingerprint verification module, a pressure sensing module, a control unit and a data transmission module for performing data transmission with external computing equipment, a timing unit is arranged in the control unit; a user can customize the minimum pressure value of the pressure sensing module and the minimum pressing time of the timing unit; when the data transmission module is connected with an external computing device, the fingerprint verification module is used for collecting and verifying user fingerprints; a first fingerprint is pre-stored in the fingerprint verification module, and when verification of the first fingerprint passes, the pressure sensing module detects that the pressure value of finger pressing is larger than or equal to the minimum pressure value, and meanwhile the pressing duration time detected by the timing unit reaches or exceeds the minimum pressing time, the control unit controls the storage module to be in a complete unlocking state. The difficulty that a stealer verifies and unlocks by using copied fingerprints is increased, and the safety is improved.
Owner:HUIJU ELECTRONICS (DONGGUAN) IND CO LTD

Enterprise terminal leakage prevention method and system based on kernel encryption and file redirection

The invention relates to the field of data encryption, and particularly discloses an enterprise terminal leakage prevention method and system based on kernel encryption and file redirection, and the method comprises the following steps: S1, deploying a security terminal on a terminal layer, carrying out the whole encryption of a C-Y disk of a terminal hard disk through employing a VeraCrypt kernel driver, and creating an isolated and unencrypted Z disk as an external network dedicated disk; s2, executing kernel-level authority control on the security terminal through a loaded MiniFilter file system filter driver, including intercepting and verifying a software installation and execution request, and only allowing software in a software white list issued by a strategy server to start; according to the method, a hard disk encryption and partition creation technology based on a VeraCrypt kernel driver is deployed at the enterprise terminal, so that the security of enterprise terminal data is greatly improved. The method comprises the following steps of: performing full disk encryption on partial partitions of a terminal hard disk, creating an isolated extranet special disk, and effectively isolating intranet sensitive data from a possible risk environment of an extranet;
Owner:厦门工学院

Hard disk encryption adapter for improving security of mobile data in various application scenarios

The invention relates to the technical field of data security and storage control, in particular to a hard disk encryption adapter for improving mobile data security in various application scenes. Comprising a security chip and an NFC communication module, the security chip is connected between a host and a hard disk and is used for realizing data ferry between the host and the hard disk, and the NFC communication module is connected between the security chip and a mobile phone APP and is used for establishing communication between the security chip and the mobile phone APP and realizing near-field off-network identity authentication and access control; the access control comprises group matching and secret sharing, trusted device group construction based on group matching, realization of data sharing and cross-domain access among trusted device groups, realization of hard disk secret key segmentation and synthesis based on secret sharing, realization of hard disk access authorization of different security levels, and realization of multi-level authorization management of sensitive hard disk data. According to the method, hierarchical authorization is achieved, storage security and password service are fused, and the security of mobile data under various application scenes is improved.
Owner:SHANDONG HUAYI MICRO ELECTRONICS +1

Dynamic monitoring method for stored data of intelligent encrypted USB flash disk

The invention discloses a dynamic monitoring method for storage data of an intelligent encrypted USB flash disk, which relates to the technical field of USB flash disk encrypted storage and comprises the following steps of: inputting identity information of a user for the intelligent encrypted USB flash disk; extracting information features in the identity information, and generating an exclusive identity encryption key for the identity information based on the information features; converting the identity information into an information code, performing encryption protection on the identity information through an identity encryption key, outputting an identity ciphertext, and keeping the identity information at the same time; decrypting the identity ciphertext, verifying whether the identity ciphertext can be restored into identity information, and completing monitoring whether an error occurs in the encryption process of the identity ciphertext; the method and the device are used for solving the problems that the existing USB flash disk encryption storage technology is insufficient in security protection of identity verification information and lacks verification of the accuracy of the identity verification information, so that the intelligent encryption USB flash disk has the risk of leakage and the risk of incapability of use.
Owner:SHENZHEN JIEXINZHI ELECTRONIC TECHNOLOGY CO LTD

U disk encryption communication method, system and device based on terminal identity authentication and medium

This invention discloses a U-shield encrypted communication method, system, device, and medium based on terminal identity authentication, belonging to the field of encrypted communication technology. The method includes: acquiring terminal running process data; comparing the running process data with a secure process baseline to obtain a process baseline deviation; acquiring the terminal's network access data based on the process baseline deviation; performing network anomaly analysis on the network access data to obtain a network anomaly metric; constructing a security risk matrix based on the process baseline deviation and the network anomaly metric; and calculating a comprehensive terminal security score based on the security risk matrix; and formulating a U-shield encrypted communication strategy based on the comprehensive terminal security score. The beneficial effect of this invention is that by constructing a security risk matrix to integrate and calculate process security status and network security status, it achieves a comprehensive quantitative assessment of multi-dimensional risks and accurate identification of complex threats.
Owner:YUNNAN POWER GRID CO LTD

Multi-level security management method for trusted data space

The application provides a multi-level security management method for a trusted data space, relates to the technical field of data security management, and comprises the following steps: performing subject access authentication and trust rating on a connection subject of the trusted data space, introducing a group isolation treaty based on a data scene; setting a multi-level security check checkpoint for the security management of the trusted data space, and performing node data disk encryption on a core data node of the trusted data space; obtaining a data interaction task, triggering the group isolation treaty for a sequence link node of a task cycle chain, implementing group isolation of a connection subject of a node data scene, and implementing security check of a checkpoint of the node data scene by matching the multi-level security check checkpoint. The application can achieve the technical target of dynamic security management based on task tracking and risk supervision, improve the real-time risk identification capability of the data interaction task, and thus ensure the safety and stability of the data interaction process.
Owner:LINGSHU TECH CO LTD

Full disk encryption Anti-malware scan

A computer device, system, and method are provided for leveraging the Full Disk Encryption (FDE) pre-boot environment to conduct anti-malware scans during computer startup, enhancing security by identifying and mitigating malware threats before the main operating system is loaded. To do so, a processor circuitry of the computer device identifies indicators for objects stored in a targeted memory to be scanned. The processor circuitry sends the indicators to a reputation service via a communication interface and receives feedback concerning whether the objects are malicious, suspicious, or benign.
Owner:CHECK POINT SOFTWARE TECH LTD

A hard disk encryption adapter for improving mobile data security in various application scenarios

The application relates to the technical field of data security and storage control, in particular to a hard disk encryption adapter for improving mobile data security in various application scenarios.The hard disk encryption adapter comprises a security chip and an NFC communication module, the security chip is connected between a host and a hard disk, and is used for realizing data transfer between the host and the hard disk; the NFC communication module is connected between the security chip and a mobile phone APP, and is used for establishing communication between the security chip and the mobile phone APP, realizing near-field off-network identity authentication and access control; the access control comprises group matching and secret sharing, a trusted device group is constructed based on the group matching, data sharing and cross-domain access between the trusted device group are realized, hard disk key segmentation and synthesis are realized based on the secret sharing, hard disk access authorization of different security levels is realized, and multi-level authorization management of sensitive hard disk data is achieved.The application has the functions of hierarchical authorization, and the storage security and the password service are integrated, so that the mobile data security in various application scenarios is improved.
Owner:SHANDONG HUAYI MICRO ELECTRONICS +1

Method and device for realizing centralized transaction communication and data storage security encryption based on domestic chip merchant algorithm, processor and medium

The application relates to a method for realizing centralized transaction communication and data storage security encryption based on a domestic chip merchant secret algorithm, which comprises a communication link security reinforcement step and a data storage encryption step, and the communication link security reinforcement step specifically comprises the following processing procedures: communication link encryption based on a safe endogenous SDK; and link security reinforcement based on a safe endogenous merchant secret gateway; the data storage encryption step specifically comprises the following processing procedures: application layer safe endogenous encryption; database transparent encryption; and data storage disk encryption. The method, device, processor and computer readable storage medium thereof for realizing centralized transaction communication and data storage security encryption based on the domestic chip merchant secret algorithm integrate the safe endogenous merchant secret algorithm in a CPU internal chip, and external application does not need to excessively care about the adaptation of the underlying hardware, so that the problems of high compatibility cost and high procurement cost of newly-added encryption cards in the current merchant secret application are solved.
Owner:GUOTAI JUNAN SECURITIES CO LTD