Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

50 results about "Distributed key generation" patented technology

Distributed key generation (DKG) is a cryptographic process in which multiple parties contribute to the calculation of a shared public and private key set. Unlike most public key encryption models, distributed key generation does not rely on Trusted Third Parties. Instead, the participation of a threshold of honest parties determines whether a key pair can be computed successfully. Distributed key generation prevents single parties from having access to a private key. The involvement of many parties requires Distributed key generation to ensure secrecy in the presence of malicious contributions to the key calculation.

Methods and Systems for Privacy-Preserving Location Verification

A computer-implemented method and system for privacy-preserving location verification in distributed networks comprises initializing a multi-modal biometric authentication system on a user device, generating cryptographic keys using a distributed key generation protocol, binding the cryptographic keys to biometric templates using a fuzzy vault scheme, constructing and broadcasting encrypted location beacons, and generating zero-knowledge proofs of location claims. The system includes user devices equipped with biometric sensors and verifier devices configured to validate location claims and maintain consensus in a blockchain network. The method implements real-time liveness detection for multiple biometric input types, executes fault-tolerant consensus algorithms with privacy preservation, and maintains a dual-scoring mechanism comprising device trust scores and user reputation scores. The system enables secure location verification while preserving user privacy through cryptographic protocols and biometric authentication in decentralized environments.
Owner:ABDELSAMIE MAHER A

Distributed key generation method based on SM2 algorithm

The invention discloses a distributed key generation method and device based on an SM2 algorithm, a medium and equipment. The method comprises the following steps: determining a class group encryption key, a class group decryption key and a corresponding first zero knowledge proof through public parameters generated based on the SM2 distributed key; each participant shares respective secret share based on the class group encryption key, the class group decryption key and the first zero-knowledge proof, and creates a second zero-knowledge proof indicating that sharing is correct; each parameter party collects honest distribution shares and decryption shares based on the second zero knowledge proof, calculates a part of private keys and a part of public keys according to the decrypted secret shares, and creates a third zero knowledge proof indicating correct decryption; according to the third zero knowledge proof, partial public keys of participants correctly executing decryption operation are determined to reconstruct a global public key, the secret is shared by using a polynomial, each participant can contribute a part of shares, and a distributed secret key is generated without any credible setting.
Owner:XIDIAN UNIV

Conditional private key share rotation with distributed key generation

Systems and methods are disclosed for security through multi-party computation (MPC). In some examples, a system generates, at a first device and using a first private key share (of a plurality of private key shares). The plurality of private key shares each correspond to different devices. The system receives, from one or more additional devices, one or more additional partial signatures that are generated using one or more additional private key shares (of the plurality of private key shares). The system identifies that a total amount of partial signatures associated with the transaction is meets or exceeds a minimum threshold amount of partial signatures. The system aggregates the first partial signature and the one or more additional partial signatures to generate a signature, and facilitates processing of a transaction using the signature and a distributed ledger.
Owner:BLOCK INC

Traffic flow federal safety prediction method based on distributed homomorphic encryption

The invention belongs to the technical field of intelligent traffic system data privacy protection, and discloses a traffic flow federated security prediction method based on distributed homomorphic encryption, and the method comprises the steps: constructing a vehicle-road cloud integrated network architecture, constructing a local model and a global model based on LSTM, and forming a federated model; cooperatively generating a distributed key based on a road infrastructure node and a cloud platform node, and performing homomorphic encryption and training on the federated model; and traffic flow prediction is carried out based on the trained federal model. According to the method, the confidentiality of the model training process is higher, the confidentiality of shared model parameters can be ensured through the distributed key generation and homomorphic encryption computing technology, and inference attack threats based on model parameter analysis are avoided. According to the invention, the defect of data privacy in an existing traffic flow prediction system can be overcome, and an effective support technology is provided for intelligent traffic management.
Owner:NANJING UNIV OF POSTS & TELECOMM

Unified key management method and device for distributed cryptographic service component

The invention discloses a unified key management method and device for a distributed password service component, and aims to solve the problems of single-point failure, consistency deficiency and insufficient life cycle management and control of existing key management. According to the method, based on a distributed key generation protocol, Shamir secret sharing, PBFT consensus and Lagrange interpolation, key generation, distributed storage, safe distribution and dynamic rotation whole-process management and control are achieved. The device is composed of n nodes including a processor, a memory and a communication and key processing module, and supports encrypted storage, secure communication and consensus collaboration. Security is guaranteed through a threshold mechanism, hash verification and a hash chain technology, availability is improved through SDN optimization and failover, and nodes and parameters can be flexibly adapted and expanded. The method is applied to scenes such as a power grid, gives consideration to safety, availability and compliance, and is suitable for unified key management of distributed system password services.
Owner:GUANGXI POWER GRID CORP

Relay cross-chain method and system applied to block chain cross-chain

The invention discloses a relay cross-chain method and system applied to block chain cross-chain, and belongs to the technical field of block chain interoperation. The method comprises the following steps that: in an anonymous committee election stage, a candidate node performs anonymous drawing by using an anonymous verifiable random function combined with a weight and a temporary identity key; in the key generation stage, an asynchronous distributed key generation protocol is adopted, a reliable broadcast protocol is combined, and a threshold signature private key share is generated on the premise that a complete private key does not need to be reconstructed; in a cross-chain consensus stage, a committee member generates a threshold signature share containing an identity bit vector, an aggregation node encrypts the bit vector by using an accountability public key and generates a zero-knowledge proof, and a binding relationship between an identity ciphertext and an aggregation signature is constructed. According to the invention, identity privacy protection of a whole cross-chain verification process is realized, and the problem of key generation deadlock in an asynchronous network environment is solved.
Owner:ANHUI UNIV

Methods for implementing distributed key generation in blockchain, systems, and nodes

A method for implementing distributed key generation in a blockchain by a blockchain node includes: generating n secret shares, retaining a share and respectively encrypting a remaining n−1 secret shares by using keys of receivers, generating a public verification parameter corresponding to a secret share of the blockchain node, generating a zero-knowledge proof indicating that the secret share of the blockchain node and the public verification parameter match, sending the secret share, the public verification parameter, and the zero-knowledge proof to an on-chain contract by using a transaction, verifying, by the on-chain contract based on the zero-knowledge proof, that the encrypted secret share and the public verification parameter match, obtaining, from contract information, a verified secret share corresponding to the blockchain node, performing decryption by using a key of the blockchain node, and calculating a private key share of the blockchain node based on a local secret share.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

An SM2 threshold signature system based on dynamic secret sharing

The present invention discloses an SM2 threshold signature system based on dynamic secret sharing, which relates to the field of information security technology. The system includes: an initialization module, a distributed key generation module, a signature module and a verification module; the initialization module is used to initialize public parameters; the distributed key generation module is connected to the initialization module, and is used to generate a secret share based on the initialized public parameters; the signature module is connected to the distributed key generation module, and is used to generate a signature pair based on the public parameters and the secret share; the verification module is connected to the signature module, and is used to verify the signature pair. In view of the fact that the existing SM2 threshold signature algorithm cannot use the original signature private key to ensure that the external signature public key remains unchanged when the number of participating users needs to change or the threshold value changes, the present invention uses a distributed key generation module to generate a secret share, which can dynamically add or delete the threshold value and the number of participating users under the premise of ensuring that the original signature private key remains unchanged.
Owner:HANGZHOU INNOVATION RES INST OF BEIJING UNIV OF AERONAUTICS & ASTRONAUTICS

Bls traceable secure threshold signature method and system based on distributed key generation

The present application belongs to the technical field of information security, and particularly relates to a BLS traceable security threshold signature method and system based on distributed key generation. The method comprises the following steps: S1, generating a bilinear pairing environment, and initializing public security parameters; S2, determining a group mapping relationship based on a symmetric balanced incomplete block design, each participant interacting in a group to generate respective key shares and a system global public key; S3, a signer performing partial signature and zero-knowledge proof corresponding to the partial signature on a message according to the corresponding key share; S4, an aggregator collecting and verifying the partial signature, screening out an effective signature set, aggregating to generate a final signature, and generating a commitment ciphertext; S5, a verifier verifying the final signature, and confirming the signature as valid if the verification is passed; S6, when the verification is not passed, a tracing mechanism is activated, and a tracer traces the signature group; and S7, according to the group mapping relationship, regularly performing active refreshing of the key shares.
Owner:ZHEJIANG SCI-TECH UNIV +1

MPC threshold signature method and system suitable for HSM

The invention discloses an MPC threshold signature method and system suitable for HSM, and relates to the technical field of information security and cryptography, and the method comprises the steps: a management module manages a plurality of hardware security modules HSM, coordinates a key generation module of each HSM to execute a distributed key generation protocol DKG, and enables a private key fragment to be directly generated in each HSM and to be encrypted and stored; the MPC threshold signature module receives a to-be-signed message of an application APP and user certificate information, calls the management module to perform identity verification on the user certificate information, and obtains a target HSM node list associated with a user passing verification; the MPC threshold signature module schedules a threshold signature module with at least a threshold value of t HSM nodes according to the target HSM node list, and MPC threshold signature operation is executed in each HSM based on private key fragments; and the MPC threshold signature module receives partial signatures returned by each HSM, and aggregates the partial signatures into a standard digital signature for realizing efficient, compliant and single-point fault resistant digital signature operation on the premise of ensuring absolute security of the private key.
Owner:山东三未信安信息科技有限公司 +1

Block chain right confirmation and responsibility investigation method based on dual-path verifiable threshold signature

The invention discloses a double-path verifiable threshold signature-based block chain right confirmation and responsibility investigation method, which comprises the following steps of: S1, receiving right confirmation data, processing the data to obtain normalized data, and calculating a data abstract of the normalized data; submitting the data abstract and the associated information thereof to a block chain for evidence storage to form a right confirmation request record; s2, in response to the right confirmation request record, selecting a committee member set from candidate nodes based on a preset strategy, and cooperatively generating a global public key and a private key share corresponding to each committee member by the committee member set through a distributed key generation protocol; and S3, each committee member generates a partial signature for the data abstract by using the private key share of the committee member, and generates a verifiable proof for proving the correctness of the calculation process of the partial signature of the committee member at the same time. According to the invention, independent verification and accurate responsibility tracing of individual signature behaviors of committee members can be realized.
Owner:GUANGZHOU UNIVERSITY

Asynchronous distributed key generation method and device

The invention discloses an asynchronous distributed key generation method and device. The method comprises a sharing stage, a negotiation stage, a random extraction stage and a key derivation stage which are executed in sequence. In the sharing stage, an asynchronous complete secret sharing protocol is adopted, and secret share distribution is achieved through the steps of sending, confirmation, preparation and amplification; in the negotiation stage, consensus screening is carried out on terminated secret sharing instances based on a multi-valued verification Byzantine negotiation protocol; in the random extraction stage, a negotiation result is operated by using an ultra-reversible matrix to generate an intermediate parameter; and in the key derivation stage, a key related result is finally output through an online error correction algorithm and Lagrange interpolation calculation. The method gets rid of dependence on public key infrastructure and credible setting, relieves the contradiction between throughput and delay, improves the security, reliability and anti-review performance of the system, and is suitable for a large-scale distributed system or a resource limited environment.
Owner:BEIJING UNIV OF POSTS & TELECOMM

A method, system and node for implementing distributed key generation on a blockchain

A method for realizing distributed key generation on a blockchain, comprising: S1: each node generates n secret shares, retains one share itself, and encrypts the remaining n-1 secret shares with a receiver key; each node generates a public verification parameter corresponding to its own secret share; each node generates a third zero-knowledge proof that its own secret share matches the corresponding public verification parameter; S2: each node sends the secret share, the public verification parameter, and the third zero-knowledge proof generated by itself to an on-chain contract through the same transaction or different transactions; S3: the on-chain contract verifies that the encrypted secret share and the corresponding public verification parameter match through the third zero-knowledge proof; and S4: each node obtains the verified secret share with the receiver being itself from the contract information, decrypts the secret share with its own key, and calculates its own private key share in combination with the local secret share.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

A blockchain-based dynamic guardian secret sharing method and system

The application provides a kind of dynamic guardian secret sharing method and system based on blockchain, belong to encryption field, method includes: based on distributed key generation method, group public-private key pair is generated according to system parameter, threshold key pair and public-private key pair of each member in guardian committee;Threshold key share of each member is encrypted to obtain chain share;Based on the joining application initiated by new member, member private key is used to decrypt chain share and calculate Lagrange factor;Determine the first decryption share based on Lagrange factor;Based on the decryption application initiated by new member, Lagrange interpolation method threshold reconstruction is carried out according to threshold key share and chain share, to determine the second decryption share;Determine the threshold key pair of new member according to the first decryption share, the second decryption share and system parameter.The application can ensure that new member reconstructs own secret sharing share without knowing the content of key and the share of remaining members.
Owner:BEIHANG UNIV

Vehicle-mounted CAN bus safety communication method based on attribute grouping

The invention discloses a vehicle-mounted CAN (Controller Area Network) bus safety communication method based on attribute grouping. The method comprises the following steps: firstly, selecting a master key, a public key, a hash function and related parameters; the electronic control unit ECU registers with a gateway electronic control unit GECU; in the key generation stage, the GECU groups the ECUs and distributes key generation parameters to the ECUs in the groups, and the ECUs in the groups calculate group keys according to the key generation parameters; the ECUs in the group communicate with each other by using the group key; and in the key updating and ECU re-joining stage, the ECU can update the key without interaction. Through constructing a group key generation mechanism based on an access structure tree, group communication based on ECU function attributes is realized. And a key self-authentication mechanism is introduced, so that the interaction turns between the ECUs are reduced, and the communication load is reduced. The method is suitable for a vehicle-mounted network dynamic scene, and effectively resists attacks such as counterfeiting and replaying.
Owner:ANHUI UNIV

Traceable multi-signature method supporting distributed aggregator and lightweight setting

The invention discloses a traceable multi-signature method supporting a distributed aggregator and lightweight setting, which is characterized in that a decentralized signature generation mechanism is realized by adopting a cryptographic method comprising bilinear pairing, a linear homomorphic time lock, a cryptographic hash function and a BLS signature; the method specifically comprises the steps of system initialization, key generation, authorization generation and aggregation, prompt generation, partial signature and verification, authorization verification, signature aggregation, authorization revocation, signature verification and the like. Compared with the prior art, the method has a decentralized key generation mechanism, a distributed aggregator mechanism and a signature accountability function, so that high communication overhead caused by the use of a distributed key generation protocol and a single-point fault possibly caused by excessive dependence on a single aggregator are avoided; and meanwhile, a strong association mechanism between the signer and the final multiple signatures is established, and the signer is responsible for the signature behavior of the signer, so that the problems of low efficiency and high centralization of aggregators caused by dependence on a DKG protocol are effectively solved.
Owner:EAST CHINA NORMAL UNIV

SM9-based distributed key generation method, device and system

The invention discloses a distributed secret key generation method, device and system based on SM9, and belongs to the technical field of cryptography, firstly, the distributed secret key generation method combines identity password characteristics of an SM9 algorithm and a distributed cooperation mechanism to improve the safety and decentration degree of a secret key generation process. Secondly, a distributed key generation system architecture with multi-node cooperative participation realizes common generation, distribution and reconstruction of keys, and avoids central trust risks. Then, a tamper-resistant and share verification mechanism is introduced, the resistance of the system to malicious nodes is enhanced, and the correctness and confidentiality of the key generation process are guaranteed; and finally, the method also supports a transverse expansion capability, has good expandability and platform independence, and is suitable for construction of various distributed security infrastructures. Therefore, the method can meet the application requirements of high concurrency, low delay and high security of the block chain system.
Owner:HUAZHONG UNIV OF SCI & TECH

Distributed key generation system and key generation method

A distributed key generation system and a key generation method are provided. The distributed key generation system includes a plurality of electronic devices and a server device. Each electronic device sends a data fragment. The server device synthesizes the key according to the data fragments. In this way, the key is not generated in advance, which can reduce the risk of key leakage.
Owner:BLOCK CHAIN SECURITY CORP

Encryption aggregation method and system for household micro-grid

The invention discloses an encryption aggregation method and system for a household micro-grid, and is applied to the technical field of micro-grid group operation control, and the method comprises the steps: obtaining adjustable data of a plurality of household micro-grids; classifying the adjustable data of the plurality of household microgrids to obtain a plurality of to-be-adjusted data groups; and inputting the plurality of to-be-adjustable data groups into a micro-grid group system at least comprising a plurality of household micro-grids for processing to obtain to-be-aggregated ciphertext data, and performing threshold decryption processing on the homomorphic aggregated ciphertext by using a distributed key generation technology to obtain an aggregation result of the micro-grid group system. According to the method provided by the invention, the technical problems of privacy leakage and data security caused by plaintext uploading and user side sensitive operation data transmission in an existing household micro-grid aggregation mode can be solved, so that privacy protection of the original sensitive data of the household micro-grid is realized.
Owner:STATE GRID ZHEJIANG ELECTRIC POWER CO LTD HANGZHOU POWER SUPPLY CO

Trust-driven blockchain consensus method for internet of vehicles

This invention belongs to the field of vehicle-to-everything (V2X) secure communication and blockchain consensus technology, specifically disclosing a trust-driven V2X blockchain consensus method. This method achieves decentralized management of the master key through a distributed key generation protocol, eliminating the traditional Root-TA single-point trust problem. Combining a dynamic trust evaluation mechanism based on Beta distribution with incentive contract design based on a delegate-agent game model, it constructs a trust-driven dynamic PoW consensus mechanism, achieving two-layer dynamic control of global security state and individual reputation level. This invention significantly improves the decentralization, consensus fairness, and operational efficiency of V2X systems while ensuring security and privacy.
Owner:ANHUI UNIV

A traffic flow federated secure prediction method based on distributed homomorphic encryption

The application belongs to the technical field of intelligent transportation system data privacy protection, and discloses a traffic flow federal security prediction method based on distributed homomorphic encryption, which forms a federal model by constructing a vehicle-road cloud integrated network architecture, constructing a local model and a global model based on LSTM; the distributed key is generated based on the cooperation of the road infrastructure node and the cloud platform node, the federal model is homomorphically encrypted and trained; and the trained federal model is used for traffic flow prediction. The method has stronger confidentiality in the model training process, can guarantee the confidentiality of the shared model parameters through distributed key generation and homomorphic encryption calculation technology, and can avoid the threat of inference attack based on model parameter analysis. The application can solve the deficiency of data privacy in the existing traffic flow prediction system and provide effective support technology for intelligent transportation management.
Owner:NANJING UNIV OF POSTS & TELECOMM

Cryptographic system, encryption method, and program recording medium

To allow an outsourcer not to need to manage a private key in proxy re-encryption, etc.SOLUTION: A cryptographic system includes a delegation source device that acquires first biometric information and generates a first biometric-based shared key, a delegation source destination device that receives the first biometric-based shared key from the delegation source device and stores it in a memory unit, and a key distribution generation device that acquires second biometric information, generates a second biometric-based shared key, and transmits it to the delegation source destination device, and the delegation source destination device generates a key-based shared key from the difference between the first biometric-based shared key and the second biometric-based shared key using the delegation source's public key and transmits it to the key distribution generation device, and the key distribution generation device generates a re-encryption key from the key-based shared key.SELECTED DRAWING: Figure 5
Owner:NEC CORP

Smart campus data sharing method based on block chain

The invention relates to the technical field of block chains, in particular to a smart campus data sharing method based on a block chain, which comprises a data fragment optimization module, a privacy protection module and a subnet cooperation module. High-association data concentrated storage is realized through a data association analysis model, the security of sensitive data is guaranteed by combining distributed key generation and attribute-based encryption technologies, and a subnet establishment mechanism based on a consensus protocol is designed to support a multi-dimensional data sharing requirement. According to the method, the cross-fragment query complexity can be effectively reduced, the data sharing efficiency and safety are improved, the differentiated sharing requirements of teaching, scientific research and management data in an intelligent campus scene are met, and the practical value is high.
Owner:GUANGZHOU QIKUAN INFORMATION TECHNOLOGY CO LTD

A Blockchain-Based Distributed Threshold Digital Identity Authentication Management Method

This application provides a blockchain-based distributed threshold digital identity authentication management method. Applied to the field of blockchain technology, this method selects a predetermined number of verification nodes from the blockchain network to form a distributed key generation group; generates a random polynomial function for each node in the distributed key generation group; determines the node's commitment value based on the polynomial coefficients of the random polynomial function, and verifies the node's key fragments during the key fragmentation exchange phase based on the commitment value; if the node passes verification, calculates the node's long-term private key fragments, and determines the joint public key based on the node's initial commitment value; the node generates a partial signature for the message using the private key fragments, verifies the generated partial signatures, and combines the verified partial signatures into a complete digital signature; the complete digital signature is verified using the joint public key to obtain the identity authentication result, thus improving the security and reliability of digital identity authentication management.
Owner:CHONGQING UNIV OF POSTS & TELECOMM

Distributed key generation method

The invention discloses a distributed key generation method, device and equipment, belongs to the technical field of distributed key storage and key management, and aims to solve the problems of leakage and loss of a private key of a block chain and insufficient security of a traditional management scheme. The method comprises the following steps: generating a public and private key pair in a chain relation when a secret key is initialized, performing distributed storage on a private key, a public key and an associated random number in the form of a secret share, and disclosing a commitment value; during transaction, selecting a preset number of nodes, converting a private key share into an additive share, cooperatively finishing threshold signature, and ensuring that the private key is not recovered to be complete; if the private key is leaked, a previous generation of private key share update is generated after verification of the preorder node; and if the share is lost, selecting nodes for joint sharing recovery. According to the method, a third-party authority is not needed, safety can be proved in a Random Oracle mode, and safety and availability are effectively balanced.
Owner:NORTHWESTERN POLYTECHNICAL UNIV

Distributed identity-based encryption against key leakage

The application discloses a kind of anti-key leakage distributed identity-based encryption method, by system initialization, key generation, key update, encryption, decryption step composition.In the key generation step, for the key escrow problem in identity-based encryption mechanism, the decryption key is calculated for user by distributed key generation technology, the privacy of user key is guaranteed, the problem that the right of key generation center is too large in traditional identity-based encryption is solved.In the key update step, by re-randomizing to the original key of user, the entropy loss of key caused by information leakage is filled, and the security and practicability of the scheme under continuous leakage attack are guaranteed.In the encryption step, by introducing the legality verification element of ciphertext, the ciphertext is not extensible, so that the scheme has the security of resisting selected ciphertext.The method of the application adopts anti-leakage cryptography mechanism and distributed key generation technology, and proposes a practical identity-based encryption scheme, which can be used in the field of access control technology.
Owner:SHAANXI NORMAL UNIV

Threshold ecsga signature method and system based on pseudo-random number generator

This invention discloses a threshold ECDSA signature method and system based on a pseudo-random number generator, including distributed key generation, pre-signing, online signing, and signature verification. Distributed key generation is used to distribute the generation of the public and private keys required for signing and to construct the pseudo-random number generator seed; pre-signing is used to quickly generate the pre-signature material required for signing; online signing is used to quickly generate a signature pair based on public parameters and the pre-signature material when the signature message arrives; and signature verification is used to verify the signature pair. This invention uses a pseudo-random number generator to solve the multi-party multiplication problem in the pre-signing stage, securely generating the material in the form of additive shares required for signing. Compared with the expensive and complex multi-party multiplication-to-addition operations commonly used in existing protocols, this achieves optimized communication rounds and a significant reduction in communication overhead.
Owner:SHANDONG UNIV

Distributed key generation and resharing for multi-device cryptocurrency wallets with tee-backed security

Implementations of the present disclosure are directed to star distributed key generation (SDKG) between computing devices for private key sharing in cryptographic networks, where a computing device is the center of a star graph of multiple computing devices and functions as a 2-out-of-3 DKG protocol that can is robust against multiple types of corruptions.
Owner:CIRCLE INTERNET GRP INC

Anti-quantum-attack distributed key generation method and system

The invention discloses an anti-quantum-attack distributed secret key generation method and system, and belongs to the technical field of information security, and the method comprises the steps: all user terminals passing through a first verification round form an effective terminal set, each user terminal in the effective terminal set discloses a second public key to carry out the verification of a second verification round, each second public key comprises a joint sub-public key; in the second verification round, if the first user terminal does not pass the verification of the second verification round, each user terminal except the first user terminal in the effective terminal set calculates a third public key based on the received first secret sharing of the first user terminal and broadcasts the third public key; and each user terminal in the effective terminal set restores the joint sub-public key of the second user terminal based on all the third public keys, and obtains a joint public key based on all the joint sub-public keys. According to the method, a lattice-based DKG scheme can be realized, and better cryptographic performance is achieved.
Owner:WUHAN UNIV

Verifiable multi-round aggregation method and system based on federated learning in vehicle-road cooperation environment

The invention relates to a verifiable multi-round aggregation method and system based on federated learning in a vehicle-road cooperation environment. The method comprises the steps that a roadside unit and a regional trusted mechanism generate random seeds through random beacons; screening a distributed key generation protocol of a decoder vehicle operation discrete logarithm to obtain a global key share; selecting a vehicle set participating in training and generating an association graph, and performing aggregation operation based on the parameters participating in training to generate an aggregation result and overall proof parameters; if the vehicle is offline, using the global key share to reconstruct training participation parameters; validation parameters are generated through a key exchange protocol, allowing the vehicle to validate the result with a minimum amount of calculation. By providing setting, aggregation and verification operations for the vehicles in the vehicle-road coordination environment, safe aggregation in the vehicle-road coordination environment and verification of the aggregation result are realized, the multi-round aggregation efficiency can be improved, and it is ensured that federal learning can operate efficiently, safely and reliably in the vehicle networking environment.
Owner:HAINAN UNIV