Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

233 results about "Hardware security module" patented technology

A hardware security module (HSM) is a physical computing device that safeguards and manages digital keys for strong authentication and provides cryptoprocessing. These modules traditionally come in the form of a plug-in card or an external device that attaches directly to a computer or network server. A hardware security module contains one or more secure cryptoprocessor chips.

Embedded security management method based on digital RMB industrial control equipment

The invention relates to an embedded safety management method based on digital RMB industrial control equipment, and belongs to the technical field of industrial control system safety. The method comprises the following steps: during first deployment, carrying out information binding on an asymmetric key pair of the industrial control equipment and an equipment identity identifier to generate an equipment digital certificate; the digital signature is verified step by step from a private key of the asymmetric key pair during power-on starting through a safe starting process; when communication is established, performing digital signature on a communication key by calling a signature function of the hardware security module based on a challenge-response mechanism; when a digital RMB transaction is carried out, the trusted execution environment and the digital RMB hardware wallet module carry out secure interaction, and a transaction instruction is analyzed; during the operation period of the equipment, key data streams are continuously collected and analyzed by deploying an exception monitoring module. Reading, querying and related business transactions of the digital RMB on the industrial control equipment are achieved, and it is ensured that the identity is not forged and the instruction is not tampered.
Owner:SHANGHAI FEICHEN ELECTRONIC TECH CO LTD

Tamper-resistant end-to-end service data evidence storage method and system

The invention discloses a tamper-resistant end-to-end service data storage method and system, and relates to the technical field of service data storage methods, and the method comprises the steps: initializing a hardware security module and a monotone increasing clock in terminal equipment, building a unique identity identifier of the equipment, and preparing a log environment for recording service data; the method comprises the following steps: collecting current business data and associated meta-information thereof, and constructing input content of current data processing in combination with an equipment identity, a clock value, a data structure template and an abstract value generated by previous business data; hash operation is carried out on the input content to generate an abstract of the business data, the abstract is signed by using a hardware security module to form an equipment side digital signature, and the abstract, the signature and meta-information are written into a log only increasing but not changing and an offline queue; and after the terminal recovers the network connection, generating a unique idempotent key based on the abstract of the service data or the combination of the equipment identity and the clock, and submitting an evidence storage request containing the abstract and the signature to the server.
Owner:北京跃创三品文化科技有限公司

Multi-dimensional credit asset traceability system and method

The invention discloses a multi-dimensional credit asset traceability system and method. The system comprises a data acquisition and encryption module (10) which is used for performing encryption and digital signature on credit asset data based on a trusted execution environment (TEE) and a hardware security module (HSM) at a data generation end; the parallel Hash processing module (20) is used for performing parallel Hash operation on the encrypted data and generating leaf node Hash values based on GPU acceleration and a multi-thread technology; the nested hash and zero-knowledge proof module (30) constructs leaf node hash values into a compression type Merkle tree and generates a zero-knowledge proof (ZKP), so that a third party can verify the authenticity and consistency of data without accessing full data; the on-chain evidence storage module (40) is used for recording root Hash (RootHash) and zero knowledge proof of the compression type Merkle tree to the block chain; the dynamic authorization and secure multi-party computing module (50) performs access clipping on the credit asset data based on the access intention and realizes verification of the minimum data dimension through secure multi-party computing (SMPC). Through combination of technical means such as trusted hardware acquisition, parallel hash calculation and privacy protection verification, rapid verification is realized on the premise of not exposing original data, and verification performance, data security and privacy protection capability are remarkably improved.
Owner:北京娱广科技有限公司

Power grid industrial control system security protection method and device based on block chain

The invention discloses a power grid industrial control system security protection scheme based on a block chain, and belongs to the field of power grid automation security. Aiming at the problems of high centralized authentication risk, weak physical layer protection and the like of a traditional industrial control system, a trusted execution environment and intelligent contract response system is constructed through fusion of a block chain distributed account book and a hardware security module (HSM). According to the scheme, equipment physical identity binding and vibration monitoring are achieved through an HSM, the consensus efficiency is optimized through an improved PBFT algorithm, instruction legality, parameter compliance and execution logic rationality are dynamically verified in combination with an intelligent contract, a security baseline is generated in real time, and the instruction stream deviation degree is monitored. The method can dynamically balance the security and real-time performance of the instruction, reduce manual intervention, improve the abnormal response efficiency to a second level, is suitable for industrial control systems such as SCADA (Supervisory Control And Data Acquisition) and the like, remarkably improves the protection capability in scenes such as DDoS attack resistance and physical tampering detection, and provides an extensible intelligent protection normal form for power grid security.
Owner:GUANGZHOU POWER SUPPLY BUREAU GUANGDONG POWER GRID CO LTD

System, method, device and equipment for safe communication between charging pile and BMS and storage medium

The invention relates to the field of electric vehicle charging control, and particularly provides a system, method, device and equipment for safe communication between a charging pile and a BMS and a storage medium, the system comprises a bidirectional authentication module, a communication encryption module, a verification module and an optimization module; the bidirectional authentication module is used for constructing a bidirectional authentication protocol between the charging pile and a battery management system (BMS) based on the hardware security module and authenticating the identity; the communication encryption module is used for customizing an integrated transport layer security protocol line through an open source tool and encrypting security communication data; the verification module is used for designing a three-level verification mechanism, blocking a malicious firmware injection path and verifying a secure communication process; and the optimization module is used for optimizing the key process by adopting a redundant backup scheme deployed in a containerization manner. Through the system, the effect of a safe communication process between the charging pile and the BMS can be realized.
Owner:CHINA FAW CO LTD

KMS dedicated HSM design (direct access)

A method of providing access to a hardware security module (HSM) partition may include receiving request for access to the HSM partition from a client device. The request may include a leaf certificate signed with a public key associated with a user and a secret key associated with the client device. The method may include verifying the request using the leaf certificate and a trust anchor certificate signed with a public key associated with the client device. The method may include a first connection between the HSM partition and the client device. The method may include verifying the request using the leaf certificate and an authentication certificate stored on the HSM partition. The method may include establishing a second connection between the client device and the HSM partition such that the computing system is isolated from the second connection.
Owner:ORACLE INT CORP

Link encryption and key diversification on a hardware security module

A Hardware Security Module (HSM) (900), and method thereof, suitable for use in securely servicing cryptographic requests from multiple tenant applications to preserve end-to-end privacy is provided. A Link Encryption and Key Diversification interoperability (43) between two processors provides cryptographic and logical isolation between multiple tenant applications on the HSM (900) that use and share more than one PCIe Physical Function (30) over more than one Virtual Function (VF) (21) to one or more Crypto Units (CU) (61) for satisfying a request (46) of an HSM cryptographic services. An Output Feedback (OFB) block with CRC support is further provided with encryption and decryption. The HSM as configured is more resistant to side channel attacks.
Owner:THALES DIS CPL USA INC

Cryptographic integrity verification and adaptive artificial intelligence document extractor system for workflow automation in various domains

A system and method for secure and efficient automated workflows includes two complementary components. A digest embedding system verifies the integrity of workflow event sequences using a rolling SHA-256 digest salted with microsecond-precision timestamps. A template-caching extractor adaptively processes heterogeneous electronic documents. The digest system enables decentralized verification without querying centralized audit logs. The extractor uses a layout hash derived from document structure to route documents through either a low-latency, rule-based extraction path or a fallback artificial intelligence model path. New templates are generated for previously unseen layouts exceeding a confidence threshold. The disclosed methods improve latency, resource utilization, energy utilization and scalability in sectors including finance, healthcare, and logistics, offering advantages over existing prior art in terms of integration, specific mechanisms for timestamp salting, hardware security module utilization for workflow events, layout-based template caching, and adaptive learning.
Owner:LEGACI LABS INC

Card password generation method and device, card password jet printing method and device, card password verification method and device, terminal and storage medium

The invention discloses a card password generation, jet printing and verification method and device, a terminal and a storage medium, and the method comprises the steps: reading an enterprise code and a seed code corresponding to the enterprise code from a hardware security module, and enabling each enterprise to have a unique enterprise code; based on a hardware security module, generating a card number according to the enterprise code, the seed code and a preset card number generation algorithm, and generating a card password corresponding to the card number in combination with the card number and a preset card password generation algorithm; spraying and printing the generated card password on a card password area on the coupon corresponding to the card number through spraying and printing equipment; carrying out OCR (Optical Character Recognition) on the coupon to obtain a card password recognition result, and comparing the card password recognition result with the card password; and if the comparison result is consistent, covering the card password area and deleting the card password. According to the method, dynamic generation and verification of the card number and the card password are realized based on the hardware security module, and the card password is not stored after being generated, so that the effects of improving the card password security and the product quality and avoiding information leakage are achieved.
Owner:SUZHOU JINHETONG SOFTWARE

Personalization of a secure element

A method for personalizing an integrated secure element, which is permanently installed in a mobile end device. The method involves the agreement of a shared secret between the secure element and an HSM, encrypting an operating system, and possibly personalization data and / or one or several profiles, in the HSM based on the shared secret and transferring the encrypted operating system to the secure element, and re-encrypting the operating system in the secure element for storage in the NVM memory of the mobile end device.
Owner:GIESECKE DEVRIENT MOBILE SECURITY GERMANY GMBH

Implementation method of transparent encrypted virtual file system based on hardware key

The invention provides a transparent encryption virtual file system implementation method based on a hardware key, and aims to solve the problems of poor user experience, complex key management, insufficient security and the like of an existing file system encryption scheme. Hardware-level key isolation is realized to ensure that the key never leaves the USB KEY; transparent user experience is provided, and after a hardware key is inserted and a password is input, an encrypted file can be operated like accessing a common file; file-level fine-grained access control is supported, real-time encryption is performed during writing, and real-time decryption is performed during reading; and when the USB KEY is pulled out, the virtual file system cannot be accessed immediately, only the encrypted ciphertext is stored in the physical storage, and meanwhile, the stability of the system is ensured based on the mature FUSE technology, so that the defects in the prior art are effectively solved.
Owner:QINGDAO WEIWEIYAN DATA INFORMATION TECHNOLOGY CO LTD

Cryptographic integrity verification and adaptive artificial intelligence document extractor system for workflow automation in various domains

A system and method for secure and efficient automated workflows includes two complementary components. A digest embedding system verifies the integrity of workflow event sequences using a rolling SHA-256 digest salted with microsecond-precision timestamps. A template-caching extractor adaptively processes heterogeneous electronic documents. The digest system enables decentralized verification without querying centralized audit logs. The extractor uses a layout hash derived from document structure to route documents through either a low-latency, rule-based extraction path or a fallback artificial intelligence model path. New templates are generated for previously unseen layouts exceeding a confidence threshold. The disclosed methods improve latency, resource utilization, energy utilization and scalability in sectors including finance, healthcare, and logistics, offering advantages over existing prior art in terms of integration, specific mechanisms for timestamp salting, hardware security module utilization for workflow events, layout-based template caching, and adaptive learning.
Owner:LEGACI LABS INC

Supermarket cash register data real-time processing and privacy protection method based on edge computing

The invention discloses a supermarket cash register data real-time processing and privacy protection method based on edge computing. According to the invention, through edge node localization training and a gradient parameter sharing mechanism, the data transmission pressure of a central node is obviously reduced, the convergence speed of a global model is effectively improved through a dynamic weighted aggregation algorithm, the iteration period of a transaction risk control model is greatly shortened, and the response delay of a system to abnormal transactions is controlled at an extremely low level; a high-concurrency transaction scene can be efficiently processed, the real-time detection capability and the system stability are enhanced, a differential encryption strategy is implemented for data with different sensitivities by a hierarchical privacy protection architecture, the unpredictability of a core data key is ensured by quantum random number encryption, a dynamic differential privacy algorithm automatically adapts to data distribution characteristics when noise is added, and the real-time detection capability and the system stability are improved. A hardware security module is combined with a threshold secret sharing mechanism, and a multi-layer protection system is constructed from a physical layer to a protocol layer, so that the risk of data leakage is effectively reduced, and meanwhile, the compliance requirements of related laws and regulations are met.
Owner:GUANGZHOU CHAOYING SOFTWARE ON CO LTD

Unified password service method and system supporting cross-level sharing

The invention discloses a unified password service method and system supporting cross-level sharing. The method comprises the following steps: generating a root key in a hardware security module HSM cluster; generating a key encryption key KEK in the HSM cluster based on the root key; generating a data encryption key DEK based on the KEK; the API gateway receives an encryption request sent by the service application, and performs identity authentication and authority authentication; the cryptographic operation service instance calls a key management service (KMS); the KMS obtains the stored corresponding encrypted DEK and the associated KEKID from a distributed database according to the target key ID; decrypting the encrypted DEK by using the KEK corresponding to the KEKID through the HSM; the KMS encrypts the plaintext data by using the plaintext DEK to obtain ciphertext data; the superior tenant grants the access permission of the target key to the corresponding subordinate tenant through the key sharing interface, and a sharing relation is recorded in a key permission table; according to the invention, key plaintext storage and exposure risks are fundamentally eliminated.
Owner:SHENZHEN HUASHENG JIUSI TECH CO LTD

Systems and methods for utilizing onboard vehicle hardware for secure ECU data communication

Aspects of the present application utilizes onboard vehicle hardware for secure ECU data communication. In some embodiments, a main ECU receives a private key from a certificate authority and stores it within a hardware security module (HSM). The main ECU may then generate a symmetric vehicle-specific key based on at least one vehicle parameter of the vehicle (e.g., the odometer) and store it in the HSM. An additional ECU may be detected by the main ECU on a vehicle communication network (e.g., ethernet). The additional ECU may be an FPGA that includes an unprovisioned vehicle control operation. The main ECU may generate an FPGA image for the additional ECU where the FPGA image has the symmetric vehicle-specific key. The main ECU may then cryptographically sign the FPGA image using the private key stored in the HSM and transmit the signed FPGA image to the additional ECU for installation.
Owner:ADEIA GUIDES INC

Key management system and method

The invention discloses a key management system, which adopts a layered architecture and is provided with an independent key pool module in a cryptographic equipment adaptation layer and a data storage layer. And the adaptation layer provides a unified calling interface upwards by packaging special protocols of different password devices, so that upper-layer service logic and a bottom-layer hardware security module (HSM) are decoupled. By means of the design, the system can be seamlessly compatible with password devices of various brands, models and authentication standards, and the problems that an existing system is difficult to upgrade and poor in compatibility due to hardware binding are solved. Meanwhile, the key pool module stores the dynamic keys used in the service in a database in a centralized manner after the dynamic keys are encrypted by the HSM instead of being directly exposed or dispersedly stored, so that safe and orderly management of massive service keys is realized. Therefore, on the premise of ensuring the security of the key, a technical basis of high expansibility and strong compatibility of the system is formed, so that the system can flexibly adapt to a heterogeneous hardware environment and support a large-scale key application scene.
Owner:WUHAN TIANYU INFORMATION IND

POS application security signature system and method based on cloud service

The invention provides a POS application security signature system and method based on cloud service. The system architecture is clearly divided into a front-end service area and a high-security trusted area. The front-end service area is deployed in a special network management area which is logically isolated from the Internet and comprises a Web management background and a Web management background database; the high-security trusted area is a trusted environment, and an application signature server, an application signature server database and a hardware security module are deployed in the high-security trusted area. An application developer accesses the system through a controlled client environment. According to the method, responsibility separation of a submitter, a security officer and a key administrator is realized through role-based access control, hierarchical strong identity authentication is adopted, and a rigorous process is followed; a submitter verifies the hash of a file and then creates a task, the task data is synchronized to a high-security credible area after two security officers approve the task independently in sequence, and two key administrators execute dual control to start an HSM key to complete signature. The whole process operation is recorded in an auditing log which cannot be tampered. According to the invention, automation, high security and compliance of the cloud signature process are realized.
Owner:FUJIAN MOREFUN ELECTRONICS TECH CO LTD

Virtualizing secure vault of data processing unit for secure hardware security module for hosts

A system and method of securing and virtualizing firmware trusted platform modules (TPMs) for virtualizing a hardware security module (HSM) for a host within a network fabric is provided. The system and method include operably coupling a set of components associated with a host comprising a data processing unit (DPU) secure vault and a firmware trusted platform module (TPM). The firmware TPM is configured as a virtual firmware TPM. The DPU secure vault secures the virtual firmware TPM into one or more virtual firmware TPMs based on one or more partitions configured with the DPU secure vault. A virtual TPM manager communicatively coupled to the DPU secure vault manages one or more virtual TPMs for hosting a set of Virtual Machines (VMs) or Containers.
Owner:CISCO TECHNOLOGY INC

Start control method and device for application software in battery management system

The invention provides a start control method and device for application software in a battery management system, relates to the technical field of battery management system application, and aims to solve the problems of redundancy check, partition stiffness and key exposure of the existing BMS safety start. According to the scheme, a security startup table is managed through a hardware security module (HSM), an App initial address, an actual effective length and a corresponding app-CMAC value are stored in the table, and a key is solidified in the HSM and cannot be accessed by the outside; during burning, the HSM calculates CMAC according to the actual length of the App and writes the CMAC into a table, the HSM only verifies effective length data during starting, and meanwhile, the Bootloader executes service logic in parallel. According to the method, the BMS starting speed is smaller than or equal to 200 ms, App length dynamic change in OTA upgrading is supported, physical tampering is prevented, additional storage and CPU burden are avoided, and the BMS starting efficiency, flexibility and safety are improved.
Owner:NEUSOFT REACH AUTOMOBILE TECH (SHENYANG) CO LTD

Single user binded hardware security module (sub HSM)

The present invention discloses a SUB HSM (1) in the form of a wirelessly charged battery powered card, comprises a card body (1) integrated with a plurality of hardware modules; wherein the hardware modules include: one or more peripheral modules to which a user can interact therewith for providing input and / or output data, a transmission module (20) for establishing a data transfer link to connect with a device which a user interface is operated thereon via a communication protocol, a battery module (30) for supply electricity to the operational modules, and a centralised microcontroller unit (40) for controlling the operations of the hardware modules.
Owner:FOO YONG KWANG

MPC threshold signature method and system suitable for HSM

The invention discloses an MPC threshold signature method and system suitable for HSM, and relates to the technical field of information security and cryptography, and the method comprises the steps: a management module manages a plurality of hardware security modules HSM, coordinates a key generation module of each HSM to execute a distributed key generation protocol DKG, and enables a private key fragment to be directly generated in each HSM and to be encrypted and stored; the MPC threshold signature module receives a to-be-signed message of an application APP and user certificate information, calls the management module to perform identity verification on the user certificate information, and obtains a target HSM node list associated with a user passing verification; the MPC threshold signature module schedules a threshold signature module with at least a threshold value of t HSM nodes according to the target HSM node list, and MPC threshold signature operation is executed in each HSM based on private key fragments; and the MPC threshold signature module receives partial signatures returned by each HSM, and aggregates the partial signatures into a standard digital signature for realizing efficient, compliant and single-point fault resistant digital signature operation on the premise of ensuring absolute security of the private key.
Owner:山东三未信安信息科技有限公司 +1

Zoned system for a vehicle

A computer-implemented method causes a data processing hardware to perform operations when executed by the data processing hardware. The operations include providing a common encryption key and a unique encryption key at a system on a chip (SoC) of a radar module, providing a unique key pair at the SoC, the unique key pair including a unique public key and a unique private key, and encrypting software with the common encryption key. The operations further include generating a secure boot certificate for the encrypted software, signing the secure boot certificate using the unique private key, and writing the encrypted software to an external flash memory. The operations further include updating the software at the SoC, verifying the software update via a regional public key, and signing the secure boot certificate with a device unique private key via a hardware security module (HSM) of the SoC.
Owner:GM GLOBAL TECHNOLOGY OPERATIONS LLC

System and method for generating postage

ActiveUS12608712B2Postage metering systemFranking apparatusData integrityHardware security module
A postage generating system and method that allows for the generation of postage without the use of a PSD, while still maintaining the necessary data integrity and non-repudiation aspects. The cryptographic and accounting functions are performed separately when an indicium is generated and reconciled to ensure that every transaction is properly accounted for and funds are deducted from the user's account. The cryptographic functions for an indicium are performed utilizing a cloud-based Hardware Security Module (HSM). Transaction records for indicium generated by an HSM are stored in a database. The accounting is performed by a transaction server, separate and remote from the HSM, to make updates to the client's account to account for generated indicia. An Integrity Monitor Server monitors the consistency of the transactions, i.e., that every transaction performed by an HSM is properly accounted for by the transaction server and funds are deducted from the user's account.
Owner:PITNEY BOWERS INC

Enabling protection of password operations

The present disclosure relates to a method for implementing protection of cryptographic operations performed by a stateless hardware security module for a client workload, the method comprising: a key generation request and an attestation document from the client workload, verifying the key generation request and the attestation document, determining a workload requirement for the client workload, and transmitting the workload requirement to the client workload. A cryptographic key is generated, and the determined workload requirement is encoded as an attribute of the generated cryptographic key. The generated cryptographic key and attributes (cryptographically protected using the hardware security module key) are returned to the client workload.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Hardware security modules integrated in memory devices and systems

This application is directed to memory methods, systems, and devices for managing secure data and implementing secure operations locally. In one aspect, a memory device includes a non-volatile memory, a memory controller, a secure controller, and an integrated memory enclosure. The non-volatile memory includes a secure memory portion and a data memory portion. The secure memory portion stores secure data, and the data memory portion stores user data. The memory controller is coupled to the data memory portion, and configured to receive a data access request and access the user data in response to the data access request. The secure controller is coupled to the secure memory portion, and configured to access the secure data and implement a secure operation on the secure data. The integrated memory enclosure encloses the secure controller, the memory controller, and the non-volatile memory.
Owner:SK HYNIX NAND PRODUCT SOLUTIONS CORP

Utilizing hardware tokens in conjunction with HSM for code signing

Utilizing hardware tokens in conjunction with a Hardware Security Module (HSM) for code signing includes, subsequent to storing a private key of a developer, receiving a request to sign a digest of software from the developer; receiving an approval from the developer to enable use of the private key; and responsive to the approval, encrypting and signing the digest utilizing the private key to attest the software is from the developer. The steps can further include, responsive to failing to receive the approval, denying the request. In this manner, a cloud based HSM approach can be trusted similarly to a physical hardware token approach, as well as providing the additional security benefits of an HSM over a physical hardware token.
Owner:DIGICERT INC

Bluetooth data transmission encryption method based on intelligent terminal

The application relates to the field of Bluetooth data transmission security technology and discloses a Bluetooth data transmission encryption method based on an intelligent terminal. After the intelligent terminal and a receiving device establish a Bluetooth connection, a temporary session key is generated. A built-in hardware security module of the terminal is accessed to obtain a pre-stored root key. The root key and the temporary session key are used as inputs to generate a session encryption key with higher strength through a key derivation function. The session encryption key is used to encrypt data to be transmitted by using a symmetric encryption algorithm. The hash value of the original transmission data is independently calculated based on a hash function and used as an integrity check code of the data. The encrypted data and the integrity check code are encapsulated and sent to the receiving device through a Bluetooth protocol stack. The application strengthens the security of the key by combining hardware security and dynamic negotiation, and improves the anti-attack ability and reliability of Bluetooth data transmission by adopting an independent integrity check mechanism.
Owner:深圳市乾海芯联科技有限公司 +1

Key update methods, key management systems, devices, storage media and products

This application provides a key update method, a key management system, a device, a storage medium, and a product, relating to the field of information security. The method includes: a POS terminal backend management system calling the POS terminal's key generation interface to generate a public-private key pair via the POS terminal's PIN pad and returning the public key; forwarding the public key to a hardware security module and calling the hardware security module to generate a first working key; the hardware security module encrypting the first working key based on the public key to generate a first ciphertext and a corresponding key verification value, and sending them to the POS terminal; upon receiving the first ciphertext and the key verification value, the POS terminal obtains the first working key based on its private key and updates its current working key to the first working key. In this application, the POS terminal backend management system is used for instruction scheduling, and the encryption and decryption of information are configured in the POS terminal and the hardware security module, enabling remote and efficient updating of the POS terminal's working key.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Tamper response against physical and logical attacks on an hsm

Provided is an electronic hardware sub-system within a multi-tenant Hardware Security Module (HSM) for tamper response against physical and logical attacks against the HSM. An HSM Manager manages and orchestrates the vHSMs for dynamic fraud analysis by way of a Tamper Prevention System, wherein a Watchdog detects intrusions and declares Tamper Events, and a Tamper Enforcement Module signals HSM Actors about a tamper state action responsive to said Tamper Event and intrusions. Once enabled, it protects multi-tenant applications against cryptographic attacks and offers continuous fraud detection in a layered approach that intelligently detects a root cause of an attack and isolated an impacted area in a tenant partition. Other embodiments disclosed.
Owner:THALES DIS CPL USA INC