Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

88 results about "Document security" patented technology

Technical content evaluation method for electric power bidding document

The invention discloses a method for evaluating the technical content of an electric power bidding document, which comprises the following steps of: extracting the bidding document and each bidding document from a bidding platform, and analyzing and acquiring the technical content of each bidding document through an electronic document; intercepting the content of a construction safety specification plate from the content of the technical part of each bidding document, judging whether the content contains a necessary module and whether each subide of the necessary module meets the safety specification standard, and evaluating the safety specification conformity of each bidding document; according to the evaluation result of the safety specification conformity of each bidding document, preliminarily screening out each qualified bidding document; equipment material technical parameter plate content is intercepted from technical part content of each preliminarily screened qualified bidding document, technical parameters of core equipment, materials and accessories are acquired and compared with corresponding technical parameter requirements in the bidding document, technical parameter conformity scores of each bidding document are evaluated, and ranking is generated; the bid evaluation efficiency and quality are improved, fairness and justice are ensured, and the method is suitable for bidding files of different formats.
Owner:GUIZHOU POWER GRID CO LTD

Attribute-based encryption system for selective document security

The present disclosure provides a method for selectively encrypting and decrypting portions of a document. The method includes receiving a document containing plaintext, analyzing the document using an artificial intelligence system to identify portions containing sensitive information, assigning predefined security levels or attributes to the identified portions, sending an encrypt file content request to a cryptographic engine, receiving an encrypted file content response, building an encrypted document by replacing portions with masking symbols and storing encrypted portions as metadata, and sending the encrypted document to a client device. The artificial intelligence system uses machine learning models trained on domain-specific data and employs pattern recognition and contextual analysis to identify sensitive content based on semantic understanding and classification rules.
Owner:NTT RESEARCH INC

File security processing method based on selective encryption and adaptive transmission

A file security processing method based on selective encryption and adaptive transmission comprises the following steps: analyzing file metadata in an upload request of a client to obtain a file feature and a user identity; based on the file features and the user identity, calling a configured encryption seed model to generate an initial encryption seed, and inputting the initial encryption seed into the optimized pseudo-random sequence model to generate an encryption position index so as to obtain an encryption position index; on the basis of the encryption position index and the initial encryption seed, performing encryption processing on a data block in a file data stream uploaded by the client in a streaming manner to obtain an encrypted data block; meanwhile, the transmission rate is adjusted based on the real-time transmission quantity and the network quality, and a transmission rate parameter of the adaptive network is obtained so as to control the time sequence scheduling and the data sending frequency of encrypted data block streaming transmission; and performing fragmentation aggregation and data splicing processing on the transmitted encrypted data blocks according to a transmission sequence to generate a complete encrypted file, and updating a file storage record in a database according to the complete encrypted file.
Owner:XIAMEN GUAGUALONG NETWORK TECHNOLOGY CO LTD

Multi-strategy fusion file data desensitization management and control system

The invention discloses a multi-strategy fusion file data desensitization management and control system, and relates to the technical field of information security and data processing, a system architecture adopts a hierarchical design and comprises a presentation layer, a business logic layer and a data access layer, the interface design of the presentation layer is simple, and a user can easily operate the presentation layer; the business logic layer is responsible for processing various rules and ensuring that data can be correctly processed; the data access layer is responsible for interacting with a database to realize secure storage and quick reading of data, and the architecture design ensures the expandability and maintainability of the data desensitization file security management system; system functions are realized in two ways: a common user can perform desensitization operation on sensitive data and download a file; an administrator can modify configuration and manage the desensitization rule besides the functions of a common user; the system can effectively protect sensitive data and reduce the risk of data leakage, and has high practical value.
Owner:HENAN XINWEIJIE TECH CO LTD

Granular level document security with role-based access

Embodiments relate to providing granular level document security with role-based access. A technique includes determining, by a first artificial intelligence (AI) model, segments of a document and generating, by a second AI model, tags for the segments of the document, the tags being unique identifiers for the segments. The technique includes defining permissions for the tags in an access control table based on a plurality of identifications, an identification being in the plurality of identifications. The technique includes, in response to receiving the identification with a request to access the document, extracting the tags permitted for the identification from the access control table, and filtering the document according to the segments for the tags permitted for the identification. The technique includes, in response to the request to access the document, causing the document that is filtered to be rendered with the segments for the tags permitted for the identification.
Owner:KYNDRYL INC

Method of application deployment, apparatus, and computer readable medium of the same

A method includes creating a first package of an application, registering the first package with an orchestrator and triggering deployment of the application on a set of target servers. In response to triggering deployment of the application, the orchestrator obtains client identification of security information for the application, deploys the application on the set of target servers, submits the configuration files to a configuration management tool for configuration, applies the configuration files to perform configuration of the application in the set of target servers, and triggers an observability framework (OBF) tool to start application monitoring in response to at least the orchestrator submitting the monitoring configurations to the OBF tool, and monitors the application in the set of target servers. The first package includes deployment files, security information, management configurations of the application, or monitoring configurations for the OBF tool.
Owner:RAKUTEN MOBILE INC

File download methods, devices, equipment, storage media and products

This invention belongs to the field of computer science and discloses a file download method, apparatus, device, storage medium, and computer program product. The method includes: responding to a user-initiated business data query request, generating a download token based on the business data query request, and feeding back the download token; upon receiving a file download request containing the download token, verifying the download token and obtaining a verification result; and if the verification result is successful, sending the file corresponding to the file download request to the user terminal. Because this invention generates a download token based on a business data query request and downloads files based on the download token, compared to the existing method of adding a data isolation dimension to a file table and then establishing an authorization relationship between the user and the isolation dimension in a dedicated table to verify file download permissions, this invention can prevent users from unauthorizedly downloading files and improve file security.
Owner:中国移动通信集团江西有限公司 +1

Method and system for displaying hidden content on graphical user interface

The invention relates to the related field of document security management, and discloses a method and a system for displaying hidden contents on a graphical user interface, which are used for realizing full-content hiding and unauthenticated display interaction of important files and objects by performing triggering and execution control on a preset scene guide program by adopting an image encryption recognition mode. Compared with a page type password or biological encryption authentication mode adopted in the prior art, the method has the advantages that the effect of completely hiding the object file can be achieved, and a specific authentication access interface does not need to be reserved for user operation and use, so that existence of the hidden file is not easily found by third-party personnel, and the file protection effect is more excellent.
Owner:班浩泽

File security acquisition method and device, medium and electronic equipment

The embodiment of the present disclosure provides a file security acquisition method, device, medium and electronic equipment, and relates to the technical field of data processing. The method comprises the following steps: obtaining a model training request about a preset task initiated by a requestor for a to-be-trained model, the model training request carrying a training configuration parameter, verifying the model training request, confirming a container group and a resource access key corresponding to the training configuration parameter after the verification is passed, and allocating computing resource and data resource required by the container group; and accessing training corpus in the data resource according to the resource access key in the container group, so as to train the to-be-trained model according to the computing resource and the training corpus. The file security acquisition method adopted by the present disclosure controls the access authority of data through the resource access key, so that the model training is carried out under the condition of ensuring data security, the risk of data and privacy leakage is reduced, and the effect of model training is improved.
Owner:HANGZHOU NETEASE CLOUD MUSIC TECH CO LTD

File detection processing method and system and server

The invention provides a file detection processing method and system and a server, and relates to the technical field of network security, the method is specifically used for a malicious file detection process between a client and a cloud, in the detection process, the client transmits feature vector data of a to-be-detected file to the cloud instead of original data, and the detection efficiency is improved. Therefore, the privacy problem is effectively solved, and quick and timely file security detection can be realized in the client by combining a related model deployed at the cloud end; besides, the detection result of the cloud can be acquired by utilizing the edge terminal of the client, and the to-be-detected file can be processed under the control of the edge terminal, so that the local processing of the client is realized, the strong dependence on the cloud is reduced, and the consumption of network bandwidth resources is reduced; abnormity which cannot be judged by the edge terminal can be directly uploaded to the cloud detection and analysis module and is confirmed by the cloud and then fed back to the edge terminal for final treatment, so that the accuracy is improved, and misoperation is reduced.
Owner:CEC CYBERSPACE GREAT WALL

File access control method, and electronic device

The present application provides a file access control method, and an electronic device. In the method, in response to a first operation performed by a user on an opened first file, a device usage permission risk of a first electronic device is detected, and first security status information of the first electronic device is determined. The device usage permission risk comprises at least one of a device privilege-escalation risk, a connection status risk, a network environment risk, or a geographic location risk. When the device usage permission risk of the first electronic device indicated by the first security status information increases, a file access permission of the first file is adjusted to a restricted file access permission, the restricted file access permission being restricted compared to the file access permission of the first file before the user performs the first operation. By means of the described solution, when a file is opened, if the device usage risk of the electronic device increases, the file access permission of the file can be promptly adjusted, thereby ensuring the security of the file.
Owner:HUAWEI TECH CO LTD

Cross-domain file secure transmission method, system and device and storage medium

The invention provides a cross-domain file secure transmission method, system and device and a storage medium wherein a server establishes an encryption tunnel between a sending end gateway and a receiving end gateway based on an IPSec protocol and deploys a firewall; the sending end gateway packages the original file to obtain an original compressed package, and encrypts the original compressed package by using a target encryption algorithm to obtain a target compressed package; transmitting the target compressed packet to a receiving end gateway by using an SFTP protocol in an encryption tunnel internal server; in the transmission process of the target compressed packet, the server performs real-time security policy control on the SFTP protocol data flow bearing the target compressed packet by using the firewall; after the control is passed, the receiving end gateway receives the target compressed packet; and the receiving end gateway decrypts the target compressed packet to obtain a decrypted compressed packet, and unpacks the decrypted compressed packet to obtain a decrypted file. By adopting the method, the security, integrity and availability of cross-domain file transmission are comprehensively guaranteed.
Owner:EVERSEC BEIJING TECH +1

Imaging video frames on documents

Security-enhanced documents and methods of forming security-enhanced documents having indicia under a Scratch-Off Coating (SOC), and more particularly including digitally imaging video frames onto the display area and / or back of the documents. In certain embodiments, portions of digitally imaged video frames are also utilized as game play variable indicia.
Owner:GTECH CORP

A mobile terminal dynamic key generation method and an electronic signature system

The application discloses a kind of mobile terminal dynamic key generation method and electronic signature system, comprising: activating multi-sensor data acquisition module, obtains data by the accelerometer, gyroscope, magnetometer of mobile device, obtains sensor data matrix after noise filtering and pre-processing;Detect network environment and device moving state, analyze signature document security level, determine security policy according to document type and signature mode, generate environment evaluation parameter matrix;Based on sensor data matrix and environment evaluation parameter matrix, generate dynamic key using data fusion algorithm and hash function, determine key update frequency and encryption strength according to environment risk level, establish encryption channel;Perform electronic signature operation and implement whole-process safety monitoring, ensure signature authenticity and integrity by multiple verification mechanisms.The application realizes the comprehensive promotion of mobile electronic signature system security, reliability and applicability.
Owner:广西壮族自治区信息中心 +1

Methods and systems for secure data sharing between the first and second zones

This specification provides a method and system for secure data sharing between a first region and a second region, wherein the second region is equipped with a secure access platform. In the first region, plaintext data to be shared with multiple users on the secure access platform is encrypted to generate an encrypted data file. A key file is generated based on the target user's access permissions to the encrypted data file. The encrypted data file needs to be accessed through the secure access platform using the key file. An evidence file is generated based on a security control policy configured for the encrypted data file, including the access permissions for each user. The encrypted data file and key file are transmitted to the target user via a network gateway. The evidence file is transmitted to the secure access platform via the network gateway, and the secure access platform controls the target user's access to the data in the encrypted data file according to the security control policy in the evidence file. This approach balances data sharing and data security.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

Document security management methods, terminal devices, electronic devices, media, and program products

This application provides a method, terminal device, electronic device, medium, and program product for secure file management, applicable to the fields of large-scale modeling and fintech. The method is applied to the application programming interface (API) of a terminal device and includes: acquiring file content uploaded to the terminal device via a pre-built API; parsing the file content to obtain text data; analyzing the text data using a pre-trained large-scale model to determine the risk level of the file content; determining a matching security management strategy from a pre-defined rule base based on the risk level and the caller information of the corresponding API; and performing security management on the file content according to the security management strategy.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

A file security protection system and method based on dynamic permissions and behavior monitoring

This invention provides a file security protection system and method based on dynamic permissions and behavior monitoring, comprising: a policy configuration module for configuring access tracking policies based on the target file when it is uploaded to a file access platform; a dynamic permission generation module for encrypting the target file and adding a dynamic watermark, and simultaneously assigning a dynamic authorization code to the accessing user; a login module for retrieving the target file with the added dynamic watermark and decrypting it when the accessing user logs in to the file access platform based on the dynamic authorization code; a browsing tracking module for monitoring the accessing user's access behavior based on the access tracking policy after decryption, and triggering an alarm when an anomaly is detected; and a log generation module for recording access behavior logs of all accessing users based on a cloud database and generating a visual audit interface. This improves the flexibility of file security protection.
Owner:BEIJING ACCELERATED NETWORK TECH CO LTD

Document security management method and device based on high confidentiality and storage medium

The invention discloses a document security management method and device based on high confidentiality and a storage medium, and the method comprises the steps: monitoring a document operation event in real time, and generating operation information based on the document operation event, the document operation event comprises a conventional operation or an unconventional operation on a quality manual, a program file, a standard operation specification or a table; determining an operation type of the operation information; if the operation type is a conventional operation, generating an operation backup of the document operation event and storing the operation backup; and if the operation type is an unconventional operation, collecting context information of the document operation event, and storing the context information in association with the operation history of the document. According to the method and the device, the conventional operation type and the non-conventional operation type are distinguished, and the complete context information is acquired for the non-conventional operation and is stored in an associated manner, so that the whole-process tracing of the non-conventional operation of the document is realized, and the integrity of document management and the auditing reliability are effectively improved.
Owner:SHENZHEN JINYUAN INFORMATION TECHNOLOGY CO LTD

Operation system dynamic data security mark maintenance method and device

The invention provides an operating system dynamic data security mark maintenance method and device. A file identity category and a file mark are set through a security mark generation module; a software package and pkgid mapping table and a file and software package mapping table to which the file belongs in the system are constructed through a system software package and file data management module; then, reading the configuration file, and obtaining an inheritance flag mapping table; a subject and an object in a security policy are received through a subject and object identity label data management module, converted into specific identity labels and stored, and file label initialization is performed through a security label setting module and dynamic data generated in an operating system are monitored. And carrying out file marking setting on the dynamic data according to the mapping table and the stored identity label. According to the invention, the file security mark is effectively managed and updated, so that the effectiveness and accuracy of the access control strategy are ensured.
Owner:KYLIN CORP

Online file security management method, system, server, medium and program

The invention discloses an online file security management method and system, a server, a medium and a program, which are applied to the field of medical laboratories, in the provided online file security management method, an interactive interface for online creation of office documents is provided for online file creation, the usability is good, the learning cost is low, and the experience satisfaction degree is high; data interaction between the terminal device and the file creation server in the file creation process is achieved in a centralized mode through the application server, the control integration level is high, the uniformity is good, and the safety and reliability of the system can be ensured; besides, in the file creation process, the file stream from the terminal equipment is subjected to multi-level security isolation through the first temporary storage area of the application server, the cache area of the file creation server and the second temporary storage area, and the security certification management of the data is further realized through a security certification mechanism, so that the security and the reliability can be further ensured.
Owner:ZYBIO INC

Docx document security processing method based on full homomorphic encryption

PendingCN122655101AAlgorithmCiphertext
The application discloses a DOCX document security processing method based on full homomorphic encryption, adopts double load reconstruction technology, injects high-precision ciphertext data into a self-defined XML component while retaining a DOCX legal structure and a visible abstract, and ensures that the encrypted document is still available in existing office software. The application can perform specific algebraic operations on the ciphertext data without decryption, and combines an encryption word segmentation device optimized for LLM to provide a theoretically optimal solution for document privacy protection.
Owner:郑珂威

Content detection for encrypted archive file

A security agent executing on a computing system may determine when an encryption process, configured to generate an encrypted archive file containing one or more files, is initiated on the computing system. The security agent may identify files accessed by the encryption process during generation of the encrypted archive file, and may generate corresponding archive content data indicating content of the files accessed by the encryption process and that are likely included within the encrypted archive file. The security agent may apply policies to operations associated with the encrypted archive file by using the archive content data to determine contents of the encrypted archive file, without decrypting the encrypted archive file.
Owner:CROWDSTRIKE

Intelligent anti-counterfeiting watermark generation system, method and equipment and storage medium

The invention relates to the field of document security, and discloses an intelligent anti-counterfeiting watermark generation system, method and device and a storage medium. The system comprises a finalizing watermark generation module used for generating a finalizing watermark when a contract file completes a finalizing process, and fusing the finalizing watermark with the contract file; the signing watermark generation module is used for generating a signing watermark when the contract file enters a signing process, and fusing the signing watermark with the contract file; the archiving watermark generation module is used for generating an archiving watermark when the contract file enters an archiving process, and fusing the archiving watermark with the contract file; the downloading watermark generation module is used for generating a downloading watermark when a contract downloading request initiated by a downloading party is received, and fusing the downloading watermark with a contract file; and the preview watermark generation module is used for generating a preview watermark when the previewer previews the contract file, and fusing the preview watermark with the contract file. According to the method, security protection is carried out on the contract file from multiple dimensions, and the security of the contract file is improved.
Owner:BEIJING ANZHENGTONG INFORMATION TECH HLDG CO LTD

Document full life cycle traceable method and system based on digital certificate and post quantum cryptography

The invention relates to the cross technical field of electronic authentication and document security management, and discloses a document full life cycle traceable method and system based on a digital certificate and post quantum cryptography, and the system is composed of a CA mechanism, a security storage system, a timestamp service, a watermark service, an electronic seal service, a printing service and a log auditing service. The method comprises the steps that a user A uses a digital certificate to electronically sign a draft file; the user B performs signature confirmation; the mechanism C carries out electronic signature and requests, and then the quantum cryptography timestamp is released; a user D needs to be authorized when querying, printing or exporting a file, and injects a hidden watermark bound with a digital certificate of the user D during exporting and printing; operation logs are recorded by a log auditing service in the whole process; when the document is leaked, the certificate identifier is obtained by analyzing the hidden watermark, and the leakage source is positioned in combination with the log. According to the method, an end-to-end credible document management and control system is constructed, and the traceability of the whole life cycle is realized.
Owner:KOAL SOFTWARE CO LTD

A delivery access check method and device, electronic equipment, and storage medium

This application discloses a delivery access check method, apparatus, electronic device, and storage medium. The method includes: acquiring delivery documents, security test results, and non-functional test results of a system to be delivered; performing corresponding check operations on the delivery documents, security test results, and non-functional test results of the system to be delivered; wherein the check operation corresponding to the delivery documents includes at least integrity checks and correctness checks; the check operation corresponding to the security test results includes at least coverage checks, correctness checks, and vulnerability checks; the check operation corresponding to the non-functional test results includes at least integrity checks and correctness checks; if all corresponding check operations are passed, the system to be delivered is determined to have passed the delivery access check; if any one of the corresponding check operations is failed, the system to be delivered is determined to have failed the delivery access check.
Owner:CHINA CONSTRUCTION BANK

A file security control method and device based on a flow number, a device, and a storage medium

This invention discloses a file security control method, device, and storage medium based on serial numbers. The method involves determining an initial serial number based on the number of target files and a parameter configuration file; generating sequential serial numbers through counting and accumulation; and generating a serial number image based on the serial number and its attribute information. Next, user information is acquired to generate seal attribute information, and a seal image is generated based on the seal attribute information and the serial number image. The original signature information is acquired, and electronic signature data is generated based on the original signature information and the seal image. Finally, the electronic signature data is pasted into a designated location on the file according to set rules. Each document has a unique electronic signature, serving as a unique identifier for the document and effectively limiting the number of copies. This unique identifier allows for tracing the document's flow and operation records, solving the problem of lack of document traceability.
Owner:AEROSPACE NETWORK SECURITY TECH (SHENZHEN) CO LTD +1

File access control method and electronic equipment

The invention provides a file access control method and electronic equipment. In the method, in response to a first operation of a user on an opened first file, a first electronic device detects a device use permission risk, and first security state information of the first electronic device is determined; the device use permission risk comprises at least one of a device unauthorized risk, a connection state risk, a network environment risk or a geographic position risk. When the equipment use permission risk, indicated by the first safety state information, of the first electronic equipment is improved, the file access permission of the first file is adjusted to be limited file access permission, and the limited file access permission is limited compared with the file access permission of the first file before the user executes the first operation. Through the scheme, when the file is opened, if the equipment use risk of the electronic equipment is improved, the file access permission of the file can be adjusted in time, and then the file security is ensured.
Owner:HUAWEI TECH CO LTD

File protection method, device, system and equipment, storage medium and program product

The embodiment of the invention provides a file protection method, device and system, equipment, a storage medium and a program product, and relates to the technical field of computing security. The file protection method comprises the following steps: in response to an access request of a user process to a file in a kernel space, loading a file access strategy based on an extended Berkley data packet filter eBPF, performing security check on the access request based on the file access strategy, and releasing or intercepting the access request according to a security check result; wherein the file access strategy is that the security service module of the user space receives the file access strategy from the server side and sends the file access strategy to the file security module, and the file security module stores the file access strategy in the kernel space in advance based on the eBPF. The technical scheme provided by the embodiment of the invention is relatively high in universality and security for various kernel versions.
Owner:ALIBABA CLOUD COMPUTING CO LTD

Method and system for security service of end device profiles

A method, a device, and a non-transitory storage medium are described in which a security service of end device profiles is provided. The service may include obtaining a profile for a card of an end device from a third party device in which the profile includes first and second executables. For example, the first and second executables may each include a subscriber identification module. The first executable may initialize and subsequently perform a switching procedure that enables the second executable to replace the use of the first executable. The first executable may also generate a key that can be used to provision the second executable on the end device.
Owner:VERIZON PATENT & LICENSING INC

File previewing method and device, electronic equipment, storage medium and program product

The embodiment of the invention discloses a file previewing method and device, electronic equipment, a storage medium and a program product. The method comprises the following steps: receiving a session file encrypted and transmitted by a sender through an instant messaging session; matching a preview mode corresponding to the session file; the preview mode comprises online preview or plug-in preview, the online preview characterization is combined with a server and a browser to realize the preview processing of the session file, and the plug-in preview characterization realizes the preview processing of the session file through a locally configured preview plug-in; and previewing the session file based on the preview mode obtained by matching. According to the embodiment of the invention, the confidential file previewing function is provided on the basis of the instant messaging session message, so that the file security can be ensured, and the file confidentiality process is more convenient to implement.
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD