Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

135 results about "Document security" patented technology

File secure transmission system and method based on virtual printer

The invention relates to the technical field of data transmission security, in particular to a file security transmission system and method based on a virtual printer. The method comprises the following steps: acquiring a key constraint parameter set, and generating a preselected key pool according to the key constraint parameter set; acquiring virtual printing task information, analyzing the virtual printing task information, and generating a document data block set; based on the preselected key pool, performing encryption-write separated transmission on each data block in the document data block set to generate local encryption cache information; and determining a decryption key set according to the local encryption cache information and the preselected key pool, performing decryption-reading separated transmission on each data block in the local encryption cache information according to the decryption key set, and generating and outputting virtual printing content. According to the method and the device, the whole-process encryption and separated processing of the data are realized in the printing data transmission process, and the security and confidentiality of the document content are effectively guaranteed.
Owner:BEIJING ZHUONENG XINAN TECHNOLOGY CO LTD

Watermark processing method, device, equipment, medium and program product

The invention discloses a watermark processing method and device, equipment, a medium and a program product. The method comprises the steps of obtaining an original document and an original watermark in response to a watermark generation instruction determined by a user; performing feature extraction on the original document to obtain structural features, semantic features and visual features corresponding to the original document; constructing an adaptive intensity mapping function based on the structural features, the semantic features and the visual features; constructing a quantum state watermark function based on the original watermark and a preset quantum parameter; and according to the adaptive intensity mapping function, the quantum state watermark function and a preset quantum entanglement enhancement function, a target watermark is generated, and the preset quantum entanglement enhancement function is used for realizing conversion between the original watermark and the quantum entanglement state. According to the embodiment of the invention, the watermark strength can be adaptively adjusted according to the document features, the watermark security is improved, and the document security is guaranteed.
Owner:CHINA MOBILE GROUP ANHUI +1

Technical content evaluation method for electric power bidding document

The invention discloses a method for evaluating the technical content of an electric power bidding document, which comprises the following steps of: extracting the bidding document and each bidding document from a bidding platform, and analyzing and acquiring the technical content of each bidding document through an electronic document; intercepting the content of a construction safety specification plate from the content of the technical part of each bidding document, judging whether the content contains a necessary module and whether each subide of the necessary module meets the safety specification standard, and evaluating the safety specification conformity of each bidding document; according to the evaluation result of the safety specification conformity of each bidding document, preliminarily screening out each qualified bidding document; equipment material technical parameter plate content is intercepted from technical part content of each preliminarily screened qualified bidding document, technical parameters of core equipment, materials and accessories are acquired and compared with corresponding technical parameter requirements in the bidding document, technical parameter conformity scores of each bidding document are evaluated, and ranking is generated; the bid evaluation efficiency and quality are improved, fairness and justice are ensured, and the method is suitable for bidding files of different formats.
Owner:GUIZHOU POWER GRID CO LTD

Government affair file intelligent classification and retrieval system

The invention discloses an intelligent government affair file classification and retrieval system, and belongs to the technical field of file management and information. Aiming at the problems that a traditional government affair file management mode is low in efficiency and high in error rate, and an existing general file management system is insufficient in security management and control in the aspect of government affair file management, low in retrieval accuracy and the like, intelligent classification is performed by adopting a CNN and RNN combined deep learning architecture, and accurate retrieval is realized through a word vector model and an attention mechanism. The system constructs a knowledge graph in the government affair field to provide intelligent decision support, designs a multi-level authority management system to guarantee file security, has a real-time data updating and self-learning mechanism, and can adapt to rapid updating of government affair knowledge. Compared with the prior art, the system has the remarkable advantages in the aspects of classification and retrieval efficiency, accuracy, safety, compatibility, intelligent expansibility and the like, intelligence, high efficiency and standardization of government affair file management can be achieved, and the complex requirements of government affair office are met.
Owner:NO 15 INST OF CHINA ELECTRONICS TECH GRP

Encryption method and device suitable for large file, computer equipment and storage medium

The invention discloses an encryption method and device suitable for a large file, computer equipment and a medium, and the method comprises the steps: segmenting a to-be-encrypted large file into a plurality of sub-data blocks according to a preset rule, and coding each sub-data block to obtain an index value of each sub-data block; generating a master key, and generating a sub-data key corresponding to each sub-data block based on the index value of each sub-data block and the master key; based on the sub-data key corresponding to each sub-data block, performing encryption processing on each sub-data block to obtain a plurality of encrypted sub-data blocks; obtaining a check chain value of the to-be-encrypted large file based on each encrypted sub-data block; and merging the plurality of encrypted sub-data blocks and the check chain value to obtain a ciphertext of the to-be-encrypted large file. According to the method, association between blocks can be effectively cut off, the key leakage risk can be effectively reduced, the encryption strength is enhanced through the dynamic sub-keys, memory overflow is avoided through block processing, the security, reliability and processing efficiency of large file encryption are improved, and the requirements of large file secure storage and transmission are met.
Owner:ASPIRE TECH (SHENZHEN) LTD

Attribute-based encryption system for selective document security

The present disclosure provides a method for selectively encrypting and decrypting portions of a document. The method includes receiving a document containing plaintext, analyzing the document using an artificial intelligence system to identify portions containing sensitive information, assigning predefined security levels or attributes to the identified portions, sending an encrypt file content request to a cryptographic engine, receiving an encrypted file content response, building an encrypted document by replacing portions with masking symbols and storing encrypted portions as metadata, and sending the encrypted document to a client device. The artificial intelligence system uses machine learning models trained on domain-specific data and employs pattern recognition and contextual analysis to identify sensitive content based on semantic understanding and classification rules.
Owner:NTT RESEARCH INC

File security processing method based on selective encryption and adaptive transmission

A file security processing method based on selective encryption and adaptive transmission comprises the following steps: analyzing file metadata in an upload request of a client to obtain a file feature and a user identity; based on the file features and the user identity, calling a configured encryption seed model to generate an initial encryption seed, and inputting the initial encryption seed into the optimized pseudo-random sequence model to generate an encryption position index so as to obtain an encryption position index; on the basis of the encryption position index and the initial encryption seed, performing encryption processing on a data block in a file data stream uploaded by the client in a streaming manner to obtain an encrypted data block; meanwhile, the transmission rate is adjusted based on the real-time transmission quantity and the network quality, and a transmission rate parameter of the adaptive network is obtained so as to control the time sequence scheduling and the data sending frequency of encrypted data block streaming transmission; and performing fragmentation aggregation and data splicing processing on the transmitted encrypted data blocks according to a transmission sequence to generate a complete encrypted file, and updating a file storage record in a database according to the complete encrypted file.
Owner:XIAMEN GUAGUALONG NETWORK TECHNOLOGY CO LTD

Document security access method and device based on block chain, equipment and storage medium

The invention relates to the field of data access, and discloses a document security access method and device based on a block chain, equipment and a storage medium. The method comprises the following steps: storing identification information and encrypted data characteristics of a document in the block chain; setting a permission configuration strategy of the document through a preset configuration logic of the block chain; performing identity and permission verification on the user based on the permission configuration strategy, and storing verification-related interaction information in the block chain; and performing data recovery or integrity verification on the document based on the encrypted data features and the identification information stored in the block chain. According to the document security access method based on the block chain provided by the invention, the security and reliability of document storage are improved and auditing and recovery processes are simplified by utilizing the characteristics of decentralization, tampering resistance and transparency of the block chain.
Owner:SHANGHAI DONGPU INFORMATION TECH CO LTD

Updating an edge device operating in a secure computing environment

Described herein is a technique to update an edge device deployed in a secure computing network. A repository connected to a public network stores build contents configured to update software installed on the edge device; the public network is inaccessible to devices within the secure computing environment. A second device connected to the public network acquires the build contents in a signed lockbox file. An edge device management service generates a lockbox file containing the build contents and a trusted signer outside the secure computing network signs the lockbox file. The second device connects to secure computing network and establishes communications with the edge device. The edge device verifies the signed lockbox file provided by the second device. Upon verification, the edge device extracts the contents of the signed lockbox file and updates the software installed on the edge device.
Owner:CISCO TECHNOLOGY INC

Multi-strategy fusion file data desensitization management and control system

The invention discloses a multi-strategy fusion file data desensitization management and control system, and relates to the technical field of information security and data processing, a system architecture adopts a hierarchical design and comprises a presentation layer, a business logic layer and a data access layer, the interface design of the presentation layer is simple, and a user can easily operate the presentation layer; the business logic layer is responsible for processing various rules and ensuring that data can be correctly processed; the data access layer is responsible for interacting with a database to realize secure storage and quick reading of data, and the architecture design ensures the expandability and maintainability of the data desensitization file security management system; system functions are realized in two ways: a common user can perform desensitization operation on sensitive data and download a file; an administrator can modify configuration and manage the desensitization rule besides the functions of a common user; the system can effectively protect sensitive data and reduce the risk of data leakage, and has high practical value.
Owner:HENAN XINWEIJIE TECH CO LTD

Granular level document security with role-based access

Embodiments relate to providing granular level document security with role-based access. A technique includes determining, by a first artificial intelligence (AI) model, segments of a document and generating, by a second AI model, tags for the segments of the document, the tags being unique identifiers for the segments. The technique includes defining permissions for the tags in an access control table based on a plurality of identifications, an identification being in the plurality of identifications. The technique includes, in response to receiving the identification with a request to access the document, extracting the tags permitted for the identification from the access control table, and filtering the document according to the segments for the tags permitted for the identification. The technique includes, in response to the request to access the document, causing the document that is filtered to be rendered with the segments for the tags permitted for the identification.
Owner:KYNDRYL INC

Method of application deployment, apparatus, and computer readable medium of the same

A method includes creating a first package of an application, registering the first package with an orchestrator and triggering deployment of the application on a set of target servers. In response to triggering deployment of the application, the orchestrator obtains client identification of security information for the application, deploys the application on the set of target servers, submits the configuration files to a configuration management tool for configuration, applies the configuration files to perform configuration of the application in the set of target servers, and triggers an observability framework (OBF) tool to start application monitoring in response to at least the orchestrator submitting the monitoring configurations to the OBF tool, and monitors the application in the set of target servers. The first package includes deployment files, security information, management configurations of the application, or monitoring configurations for the OBF tool.
Owner:RAKUTEN MOBILE INC

File download methods, devices, equipment, storage media and products

This invention belongs to the field of computer science and discloses a file download method, apparatus, device, storage medium, and computer program product. The method includes: responding to a user-initiated business data query request, generating a download token based on the business data query request, and feeding back the download token; upon receiving a file download request containing the download token, verifying the download token and obtaining a verification result; and if the verification result is successful, sending the file corresponding to the file download request to the user terminal. Because this invention generates a download token based on a business data query request and downloads files based on the download token, compared to the existing method of adding a data isolation dimension to a file table and then establishing an authorization relationship between the user and the isolation dimension in a dedicated table to verify file download permissions, this invention can prevent users from unauthorizedly downloading files and improve file security.
Owner:中国移动通信集团江西有限公司 +1

Permission Control Method, Device, and Electronic Device Based on Operation Intent

Embodiments of the present disclosure disclose a permission control method, apparatus, and electronic device based on operation intent. A specific implementation of this method includes: in response to receiving a permission acquisition request for a target file initiated by a target user, constructing a temporary verification ring; initiating an authorization verification for the target user according to the user attribute information of the target user, the file summary information corresponding to the target file, and N verification nodes in the temporary verification ring; in response to passing the authorization verification, allocating an operation permission matching the permission type to the target user, and updating the operation recorder corresponding to the target user; determining the file operation intent and risk level according to the file operation record and a pre-constructed operation intent recognition network; in response to the file operation intent and risk level meeting the trigger conditions, generating an operation record summary information for the file operation record; and performing dynamic permission update on the target user. This implementation ensures the security and integrity of the file.
Owner:FUDAN (SHANGHAI) TECH CO LTD

Method and system for displaying hidden content on graphical user interface

The invention relates to the related field of document security management, and discloses a method and a system for displaying hidden contents on a graphical user interface, which are used for realizing full-content hiding and unauthenticated display interaction of important files and objects by performing triggering and execution control on a preset scene guide program by adopting an image encryption recognition mode. Compared with a page type password or biological encryption authentication mode adopted in the prior art, the method has the advantages that the effect of completely hiding the object file can be achieved, and a specific authentication access interface does not need to be reserved for user operation and use, so that existence of the hidden file is not easily found by third-party personnel, and the file protection effect is more excellent.
Owner:班浩泽

File security acquisition method and device, medium and electronic equipment

The embodiment of the present disclosure provides a file security acquisition method, device, medium and electronic equipment, and relates to the technical field of data processing. The method comprises the following steps: obtaining a model training request about a preset task initiated by a requestor for a to-be-trained model, the model training request carrying a training configuration parameter, verifying the model training request, confirming a container group and a resource access key corresponding to the training configuration parameter after the verification is passed, and allocating computing resource and data resource required by the container group; and accessing training corpus in the data resource according to the resource access key in the container group, so as to train the to-be-trained model according to the computing resource and the training corpus. The file security acquisition method adopted by the present disclosure controls the access authority of data through the resource access key, so that the model training is carried out under the condition of ensuring data security, the risk of data and privacy leakage is reduced, and the effect of model training is improved.
Owner:HANGZHOU NETEASE CLOUD MUSIC TECH CO LTD

Method and apparatus for implementing process whitelist based on file extended attributes

The present invention discloses a method and device for implementing a process whitelist based on file extended attributes. The whitelist list file is pre-encrypted and signed using encryption authentication technology. After the system boots and the file system is loaded, the whitelist list file is verified, decrypted, and the identity authentication of the whitelist list file is completed to ensure the security and reliability of the key information of the whitelist. The key information of the executable file in the whitelist list file is verified, and the corresponding file trusted extended attribute is set. Then, during the running process, when the application program is executed, only the file trusted extended attribute needs to be compared to quickly complete the verification. The present invention greatly improves the program startup efficiency on the premise of ensuring the security and reliability of the whitelist list file.
Owner:NARI TECH CO LTD +5

File detection processing method and system and server

The invention provides a file detection processing method and system and a server, and relates to the technical field of network security, the method is specifically used for a malicious file detection process between a client and a cloud, in the detection process, the client transmits feature vector data of a to-be-detected file to the cloud instead of original data, and the detection efficiency is improved. Therefore, the privacy problem is effectively solved, and quick and timely file security detection can be realized in the client by combining a related model deployed at the cloud end; besides, the detection result of the cloud can be acquired by utilizing the edge terminal of the client, and the to-be-detected file can be processed under the control of the edge terminal, so that the local processing of the client is realized, the strong dependence on the cloud is reduced, and the consumption of network bandwidth resources is reduced; abnormity which cannot be judged by the edge terminal can be directly uploaded to the cloud detection and analysis module and is confirmed by the cloud and then fed back to the edge terminal for final treatment, so that the accuracy is improved, and misoperation is reduced.
Owner:CEC CYBERSPACE GREAT WALL

File access control method, and electronic device

The present application provides a file access control method, and an electronic device. In the method, in response to a first operation performed by a user on an opened first file, a device usage permission risk of a first electronic device is detected, and first security status information of the first electronic device is determined. The device usage permission risk comprises at least one of a device privilege-escalation risk, a connection status risk, a network environment risk, or a geographic location risk. When the device usage permission risk of the first electronic device indicated by the first security status information increases, a file access permission of the first file is adjusted to a restricted file access permission, the restricted file access permission being restricted compared to the file access permission of the first file before the user performs the first operation. By means of the described solution, when a file is opened, if the device usage risk of the electronic device increases, the file access permission of the file can be promptly adjusted, thereby ensuring the security of the file.
Owner:HUAWEI TECH CO LTD

Cross-domain file secure transmission method, system and device and storage medium

The invention provides a cross-domain file secure transmission method, system and device and a storage medium wherein a server establishes an encryption tunnel between a sending end gateway and a receiving end gateway based on an IPSec protocol and deploys a firewall; the sending end gateway packages the original file to obtain an original compressed package, and encrypts the original compressed package by using a target encryption algorithm to obtain a target compressed package; transmitting the target compressed packet to a receiving end gateway by using an SFTP protocol in an encryption tunnel internal server; in the transmission process of the target compressed packet, the server performs real-time security policy control on the SFTP protocol data flow bearing the target compressed packet by using the firewall; after the control is passed, the receiving end gateway receives the target compressed packet; and the receiving end gateway decrypts the target compressed packet to obtain a decrypted compressed packet, and unpacks the decrypted compressed packet to obtain a decrypted file. By adopting the method, the security, integrity and availability of cross-domain file transmission are comprehensively guaranteed.
Owner:EVERSEC BEIJING TECH +1

File Secure Transmission Method and Device

An embodiment of the present application provides a method and device for secure file transmission, which can be used in the financial field. The method includes: receiving the summary information of files to be uploaded sent by a user, where the summary information of files to be uploaded is digitally signed by a preset U shield program; performing signature verification on the summary information of files to be uploaded, and performing MD5 verification on multiple files to be uploaded in the list of files to be uploaded after the signature verification passes; if the MD5 verification passes, obtaining multiple files to be uploaded in the list of files to be uploaded and performing signature verification on the multiple files to be uploaded, where the multiple files to be uploaded are individually digitally signed by a preset U shield program; the present application can improve the file transmission efficiency while ensuring the security of file transmission.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Imaging video frames on documents

Security-enhanced documents and methods of forming security-enhanced documents having indicia under a Scratch-Off Coating (SOC), and more particularly including digitally imaging video frames onto the display area and / or back of the documents. In certain embodiments, portions of digitally imaged video frames are also utilized as game play variable indicia.
Owner:GTECH CORP

A mobile terminal dynamic key generation method and an electronic signature system

The application discloses a kind of mobile terminal dynamic key generation method and electronic signature system, comprising: activating multi-sensor data acquisition module, obtains data by the accelerometer, gyroscope, magnetometer of mobile device, obtains sensor data matrix after noise filtering and pre-processing;Detect network environment and device moving state, analyze signature document security level, determine security policy according to document type and signature mode, generate environment evaluation parameter matrix;Based on sensor data matrix and environment evaluation parameter matrix, generate dynamic key using data fusion algorithm and hash function, determine key update frequency and encryption strength according to environment risk level, establish encryption channel;Perform electronic signature operation and implement whole-process safety monitoring, ensure signature authenticity and integrity by multiple verification mechanisms.The application realizes the comprehensive promotion of mobile electronic signature system security, reliability and applicability.
Owner:广西壮族自治区信息中心 +1

Methods and systems for secure data sharing between the first and second zones

This specification provides a method and system for secure data sharing between a first region and a second region, wherein the second region is equipped with a secure access platform. In the first region, plaintext data to be shared with multiple users on the secure access platform is encrypted to generate an encrypted data file. A key file is generated based on the target user's access permissions to the encrypted data file. The encrypted data file needs to be accessed through the secure access platform using the key file. An evidence file is generated based on a security control policy configured for the encrypted data file, including the access permissions for each user. The encrypted data file and key file are transmitted to the target user via a network gateway. The evidence file is transmitted to the secure access platform via the network gateway, and the secure access platform controls the target user's access to the data in the encrypted data file according to the security control policy in the evidence file. This approach balances data sharing and data security.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

Archives full life cycle management system and method based on cloud computing

The present invention relates to the field of archive management technology, specifically to an archive full life cycle management system and method based on cloud computing; specifically: an intelligent classification module based on format adaptability function and semantic density analysis, a five-stage life cycle management module, and a permission scheduling module integrating RBAC / ABAC permission control and blockchain auditing, based on a matrix decomposition archiving static coding mechanism, achieving document security storage and parsing through orthogonal matrices and pseudo-inverse operations, and improving data security in long-term archiving scenarios; dynamically optimizing cloud storage resources based on document life cycle status and access frequency, and reducing storage costs in combination with hot and cold tiering strategies; introducing AI algorithms, automatically evaluating archive retention value based on regulations and semantic analysis, and achieving compliance destruction decisions. The present invention significantly improves the efficiency and security of full-process management through multi-model fusion metadata extraction, dynamic policy binding, and automated state migration.
Owner:JINAN GUOYUN ELECTRONIC TECH CO LTD

File processing method, file processing device, storage medium and electronic equipment

A file processing method, a file processing device, a computer-readable storage medium, and an electronic device, relating to the field of computer technology. The file processing method includes: obtaining a file to be processed and a shell file corresponding to the file to be processed (S310); modifying the shell file based on section information of the file to be processed and the shell file to obtain a first intermediate file (S320); encrypting the file to be processed to obtain a second intermediate file (S330); and merging the first intermediate file with the second intermediate file to generate an executable file corresponding to the file to be processed (S340). This method can effectively process files and improve file security.
Owner:SHENZHEN HEYTAP TECHNOLOGY CO LTD +1

Document security management methods, terminal devices, electronic devices, media, and program products

This application provides a method, terminal device, electronic device, medium, and program product for secure file management, applicable to the fields of large-scale modeling and fintech. The method is applied to the application programming interface (API) of a terminal device and includes: acquiring file content uploaded to the terminal device via a pre-built API; parsing the file content to obtain text data; analyzing the text data using a pre-trained large-scale model to determine the risk level of the file content; determining a matching security management strategy from a pre-defined rule base based on the risk level and the caller information of the corresponding API; and performing security management on the file content according to the security management strategy.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

A file security protection system and method based on dynamic permissions and behavior monitoring

This invention provides a file security protection system and method based on dynamic permissions and behavior monitoring, comprising: a policy configuration module for configuring access tracking policies based on the target file when it is uploaded to a file access platform; a dynamic permission generation module for encrypting the target file and adding a dynamic watermark, and simultaneously assigning a dynamic authorization code to the accessing user; a login module for retrieving the target file with the added dynamic watermark and decrypting it when the accessing user logs in to the file access platform based on the dynamic authorization code; a browsing tracking module for monitoring the accessing user's access behavior based on the access tracking policy after decryption, and triggering an alarm when an anomaly is detected; and a log generation module for recording access behavior logs of all accessing users based on a cloud database and generating a visual audit interface. This improves the flexibility of file security protection.
Owner:BEIJING ACCELERATED NETWORK TECH CO LTD

Document security management method and device based on high confidentiality and storage medium

The invention discloses a document security management method and device based on high confidentiality and a storage medium, and the method comprises the steps: monitoring a document operation event in real time, and generating operation information based on the document operation event, the document operation event comprises a conventional operation or an unconventional operation on a quality manual, a program file, a standard operation specification or a table; determining an operation type of the operation information; if the operation type is a conventional operation, generating an operation backup of the document operation event and storing the operation backup; and if the operation type is an unconventional operation, collecting context information of the document operation event, and storing the context information in association with the operation history of the document. According to the method and the device, the conventional operation type and the non-conventional operation type are distinguished, and the complete context information is acquired for the non-conventional operation and is stored in an associated manner, so that the whole-process tracing of the non-conventional operation of the document is realized, and the integrity of document management and the auditing reliability are effectively improved.
Owner:SHENZHEN JINYUAN INFORMATION TECHNOLOGY CO LTD