Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

61 results about "Hash chain" patented technology

A hash chain is the successive application of a cryptographic hash function to a piece of data. In computer security, a hash chain is a method to produce many one-time keys from a single key or password. For non-repudiation a hash function can be applied successively to additional pieces of data in order to record the chronology of data's existence.

Digital asset management

Systems and methods improve security of vehicle-transfer processing using model-driven fraud flagging with cryptographic provenance. A transfer request message including a vehicle identifier is received. Historical event records for the vehicle identifier are retrieved from an append-only, hash-linked event log. A feature vector is generated from the historical event records and one or more external authoritative data sources. A trained fraud detection model is executed to produce a fraud score and, in some embodiments, a confidence value. When a fraud-flagging criterion is satisfied, a fraud-flag artifact is generated including a model identifier and version, a feature schema identifier, and a hash of at least a portion of the feature vector, and the artifact is digitally signed. Based on the signed artifact, the system selectively blocks, delays, or routes the transfer request to remediation, preventing commitment of a corresponding transfer record to the event log until a remediation condition is satisfied.
Owner:CHAMP TITLES INC

An agent-oriented authorization and operation trace method and system

This invention proposes an authorization and operation traceability method and system for intelligent agents. The invention includes: responding to identity binding requests to generate independent digital identity identifiers and asymmetric key pairs for natural person users and intelligent agents, and storing them in a secure hardware area; receiving authorization policy configuration instructions to set the operation scope and sensitive operation types, and storing them in the permission policy engine; upon receiving an operation request, calling the corresponding key pair to generate a digital signature and operation token, determining whether secondary confirmation is required based on the authorization policy, and adding a source identifier after successful verification; generating a hash chain log of the operation records and storing it with associated hash values, achieving end-to-end tamper-proof and traceability, and ensuring the secure and reliable operation of the intelligent agent.
Owner:CHINA UNICOM ONLINE INFORMATION TECHNOLOGY CO LTD

An industrial internet vulnerability library establishment method

ActiveCN122021854BSolve deviationSolve the problem of inaccurate confidence assessmentThe InternetIndustrial Internet
The present application belongs to the technical field of industrial internet security, and relates to an industrial internet vulnerability library establishment method, which solves the problems of low construction quality, weak traceability, insufficient continuous evolution ability and difficulty in supporting deep security application of the existing vulnerability library. The present application obtains industrial internet multi-source vulnerability data and external feedback data, obtains extraction results and initial confidence based on multi-source vulnerability data by adopting rule extraction and remote supervision deep learning joint extraction, divides the certainty knowledge base and the to-be-reviewed queue according to the double threshold after the confidence is optimized by the graph convolution network, analyzes the external feedback data of the samples in the to-be-reviewed queue as the instant reward signal, optimizes the sampling strategy and updates the model through deep reinforcement learning, extracts triples from the certainty knowledge base to build a knowledge graph and generate a version hash chain regularly, and obtains a structured vulnerability knowledge base containing a hash chain and confidence evaluation. The present application realizes high-precision construction and dynamic optimization of the vulnerability library.
Owner:北京中关村实验室

Distributed control and cross-node auditing method for data security obligations in multi-party computing scenarios

PendingCN122457304AThird partyDigital signature
The application discloses a kind of distributed control and cross-node auditing method of data security obligation under multi-party computing scene.In the scene such as federal learning, secure multi-party computation, task initiator generates obligation agreement voucher based on security semantic knowledge base and is confirmed by the cryptography signature of each participant;Each participant node executes obligation processing to local data through unified obligation execution interface;Each node obligation execution audit log adopts unified format and is continuously associated across nodes through cryptography hash chain;Intermediate result in the calculation process can be passed after obligation compliance verification;After completion of calculation, additional digital signature structured obligation execution proof report is generated, and independent verification by a third party is supported.The application solves the engineering problems that the privacy computing framework lacks unified obligation control mechanism and cross-institution obligation execution cannot form a continuous and verifiable proof chain, enabling multi-party computing scenarios to have cryptography-trusted compliance evidence capabilities.
Owner:SHANGHAI CUSTLE INFORMATION TECH CO LTD

Distributed ledger based management of rights of use for iot devices

The application discloses a kind of based on distributed account book's IoT equipment use benefit right management method and system, and store the root block containing block number, internet of things equipment identification, time stamp, authority set, tenant public key and tenant signature by tenant node generation;In response to lease request, generate the first-level block containing block number, previous block hash value, time stamp, lease period, lease authority set, tenant public key and tenant signature, or by tenant in response to share request Generation of the following block containing block number, predecessor hash value, time stamp, share start end time, share authority set, sharer public key and tenant signature;The user node of request access equipment constructs authority token, which contains complete authorization chain from root block to target block and signed command message;Internet of things equipment receives token and executes hash chain verification, public key-signature chain verification and business rule verification, executes command after passing through.This way, the access permission information of the application does not have to be stored in resource party any more, but is verified by resource party with request when user access, so that user permission information and resource party are decoupled.
Owner:INST OF COMPUTING TECH CHINESE ACAD OF SCI

Hardware-anchored liquidity containment and capital reserve enforcement engine with attestation-bound real-time settlement controls

PendingUS20260187726A1Flip-flopTerm memory
A hardware-anchored Liquidity Containment and Capital Reserve Enforcement Engine executes real-time reserve validation, liquidity sufficiency computation, and deterministic settlement gating entirely within trusted execution environments (TEEs) comprising Intel SGX enclaves, AMD SEV-SNP protected VMs, or ARM TrustZone secure worlds, materially altering processor states to isolate all reserve computation. Liquidity Integrity Vectors are computed using the reserve adequacy function h(alpha, beta, gamma) from hardware-attested inputs anchored to TEE-resident hardware mechanisms comprising enclave-sealed monitoring registers, memory encryption engine integrity states, or attestation-based recalibration triggers. A Liquidity Containment Gate enforces a non-bypassable hardware execution barrier requiring all LIV computation, Capital Reserve Monitor validation, and ZKP proof generation to complete within a single attested TEE execution instance before settlement authorization is released. A ZKP Verification Engine generates Groth16 arithmetic-circuit proofs of approximately 192 bytes verifiable in under 10 milliseconds, enabling External Counterparty verification of reserve sufficiency without disclosure of proprietary balance sheet data. A Provenance Ledger stores append-only cryptographic hash chains with each entry bound to a TEE attestation report. A Settlement Attestation Binder cryptographically binds settlement authorizations to specific TEE attestation report identifiers, enabling independent verification of both settlement outcomes and the hardware environments that authorized them.
Owner:BICKERSTAFF III GEORGE WILLIAM

A blockchain-based archive information security storage and tamper-proof method and system

ActiveCN121351146BDigital data protectionEngineeringDigital fingerprint
The application discloses a kind of based on blockchain's archive information security storage and anti-tampering method and system, belong to information security field, the method includes: obtaining the archive information to be handled and generating standard archive data;Standard archive data is handled using time sequence cumulative state hash model to generate digital fingerprint, time sequence cumulative state hash model constructs the academic state hash chain of each student with initial academic state hash as starting point and evolves with time recursively, the generation of each new academic state hash is forced to depend on previous academic state hash, current period archive data digest, time stamp and context challenge factor derived from previous state;Digital fingerprint is packaged into archive information transaction with student unique identifier and operation metadata, broadcast to blockchain network after being signed by authorized agency;Form personal electronic academic record.The application provides strong, provable time sequence integrity for the audit and traceability of archive.
Owner:SICHUAN VOCATIONAL & TECHN COLLEGE

An information management platform based on internet of things technology

This invention specifically relates to an information management platform based on Internet of Things (IoT) technology, specifically in the fields of IoT data security and information management technology. It includes: a source-side data entanglement generation module; an edge-side local ledger maintenance module; a business event-triggered anchoring module; and a cloud-based auditing and dispute arbitration module. In this invention, standardized data collection and lightweight chained hash entanglement calculation lock the time-series data from the physical source of data generation. A lightweight algorithm with hardware-level optimization is used, occupying only 32 bytes of volatile memory to cache the latest hash value, adapting to the low power consumption, low computational cost, and small storage characteristics of IoT terminals. The edge side is equipped with a real-time packet-by-packet chain break detection and self-healing mechanism, which can quickly detect and attempt to repair hash chain breaks, preventing tamper-proofing failure.
Owner:TIBET FANCHEN CULTURE DEV CO LTD

An identity feature-based target range system bidirectional authentication method and system

PendingCN122339700ASecure communicationMan-in-the-middle attack
This invention discloses a two-way authentication method and system for a target range system based on identity features, belonging to the field of target range system security technology. It includes three verification stages: the control server first generates a random challenge value and sends it to the target device; the target device calculates a response value using a non-cloning function and returns it. After successful verification, both parties exchange and confirm random numbers through hash operations, ultimately establishing a secure communication link. By dynamically generating random challenge values ​​and combining a two-way authentication mechanism using non-cloning functions and hash chains, it solves the problems of identity forgery, man-in-the-middle attacks, and replay attacks in traditional methods, offering advantages such as improved identity authentication security and ensured communication reliability.
Owner:HUANENG POWER INT INC +1

Device authentication method and apparatus, storage medium, and electronic device

The application discloses a device authentication method and device, a storage medium and an electronic device. The method comprises the following steps: receiving a target keep-alive packet periodically sent by a target device; performing a device authentication operation based on a locally stored initial key and a target hash value and the target keep-alive packet, and determining whether the target device is authenticated; in the case of receiving the target keep-alive packet for the first time, the target hash value is a hash value at the end position of a target hash chain, and in the case of not receiving the target keep-alive packet for the first time, the target hash value is a hash value in the target keep-alive packet received last time; in the case of passing the authentication of the target device, updating the target hash value to a current hash value, and sending an authentication passing packet to the target device. The application solves the technical problem of low device authentication credibility.
Owner:ZHEJIANG DAHUA TECH CO LTD

A large model generated content tamper-resistant watermarking method based on semantic steganography

The application discloses a large model generated content tamper-resistant watermarking method based on semantic steganography, which comprises the following steps: extracting core semantics from an original text to generate a semantic fingerprint, and performing error correction coding on the semantic fingerprint to obtain a watermark bit sequence; dividing the text into multiple text blocks; through iteration, generating a semantic space geometric partition for each text block according to a secret key and the semantic history of all previously processed blocks through a pseudo-random process; and using a large language model to perform constraint rewriting on the text block, so that the semantic vector of the rewritten text block falls into the geometric partition specified by the current watermark bit, until all bits are embedded. The application realizes strong robustness against interpretation attacks by implanting the watermark into the semantic space, and based on the context-dependent mechanism of the hash chain, any tampering will cause a chain of errors, thereby locating the tampered position, and providing an effective technical means for integrity verification and copyright protection of the large model generated content.
Owner:NANJING YIZHENG COMM INFORMATION TECH CO LTD

Method and apparatus for scheduling execution of hash chains

This application provides a method and apparatus for scheduling and executing hash chains. The method includes: when at least one target hash core completes a hash operation on a currently allocated hash chain, storing the hash value obtained from the hash operation into a hash result according to the chain index corresponding to the currently allocated hash chain; the chain index is used to determine the storage location of the hash value in the hash result; based on the updated value of the queue head pointer and the hash chain queue, continuing to allocate hash chains to at least one target hash core, and updating the updated value of the queue head pointer; the updated value of the queue head pointer represents the first hash chain to be allocated in the hash chain queue when the next hash chain allocation occurs; performing a hash operation on the newly allocated hash chain based on at least one target hash core, until all hash chains in the hash chain queue are allocated and hash operations are completed on all hash chains, and obtaining a hash result.
Owner:OPEN SECURITY RES INC

Forensic video certification system for mobile devices with cryptographic chain of evidence, zero-knowledge architecture, hybrid post-quantum secure server anchoring, and browser-based verification.

Forensic video certification system for mobile devices, comprehensive: a) a video recording module (1) for recording a continuous video stream including an audio track in a container format on the mobile device (11), wherein the recording parameters video duration, video resolution and frame rate are captured as metadata, b) a video hash module (2) for calculating a SHA-256 hash over the complete binary video data including all video frames, audio tracks and container metadata, wherein the hash calculation is performed incrementally in blocks (chunked hashing), c) a zero-knowledge transmission module (3) that ensures that only the 32-byte SHA-256 hash and the associated cryptographic proof data are transmitted to an external server (12) and that the complete video data never leave the mobile device (11), characterized in that d) a cryptographic signature module (4) is provided which generates a digital signature for each video recording using an elliptic curve method (Ed25519) with a device-specific key pair stored in a hardware-secured key memory of the mobile device (11), e) a hash chain module (5) is provided which concatenates the hashes of all video recordings in a sequential, gapless chain, with each chain hash being calculated as a cryptographic hash over the concatenation of the previous chain hash and the current video hash, and f) a forensic chain of evidence module (7) is provided which runs a defined processing pipeline for each video recording and generates a piece of evidence with at least eighteen fields, comprising video hash, digital signature, public key, timestamp, previous chain hash, chain index, video duration, video resolution and device information.
Owner:BRINGEZU RENE

A distributed power terminal-oriented identity permission dynamic authentication method

PendingCN122457365AEngineeringSystem call
The application relates to the technical field of power terminal network security, and specifically discloses an identity and permission dynamic authentication method for distributed power terminals, which issues an initial capability token based on a hash message authentication code when the terminal accesses the network, and fuses historical interaction data to construct a baseline risk graph representing a normal calling range; in operation, the method continuously extracts the multi-modal behavior characteristics of terminal traffic and system calls, injects the graph into a graph neural network, quantizes a continuous horizontal penetration risk gradient, trims a minimum necessary permission set, re-encodes the set into a decay constraint condition, and appends the condition to the tail of the token in a one-way hash chain. Finally, an edge gateway can complete the unauthorized interception in a stateless manner by verifying the integrity of the token hash chain. The method drives the continuous decay of permissions by risk gradient, replaces the centralized strategy change with the cryptographic evolution of the token itself, avoids the algorithmic bottleneck of high-frequency permission synchronization, and retains the core telemetry communication permission, thereby suppressing horizontal penetration while ensuring power grid business continuity.
Owner:STATE GRID HENAN INFORMATION & TELECOMM CO +1

A new energy vehicle charging pile remote monitoring management control method and system

This invention provides a remote monitoring, management, and control method and system for new energy vehicle charging piles. It achieves real-time monitoring of charging gun status, abnormal noise, and electrical parameters by deploying multimodal sensors. Edge computing and dynamic threshold cleaning reduce data redundancy and improve transmission efficiency. A self-attention mechanism and Drools rule engine are combined for multi-source data fusion and root cause analysis to dynamically assess risk levels. Dynamic power allocation based on health status and grid load optimizes resource utilization. Peak-valley dynamic pricing and an incentive mechanism guide off-peak charging. A hash chain ensures the immutability of maintenance data. Scheduling paths are optimized based on urgency and engineer resources. User feedback and extreme weather data iterative models enhance system robustness. This achieves intelligent management of the entire charging pile lifecycle, improving operation and maintenance efficiency, safety, and user charging experience.
Owner:JIANGXI IND & TRADE VOCATIONAL & TECH COLLEGE (JIANGXI PROVINCIAL GRAIN CADRE SCHOOL JIANGXI PROVINCIAL GRAIN WORKERS SECONDARY VOCATIONAL SCHOOL)

Enterprise supplementary medical reimbursement holographic account driven closed-loop management method

PendingCN122335453AExponentially weighted moving averagePapermaking
This invention discloses a closed-loop management method driven by a holographic ledger for supplementary medical reimbursement in enterprises, comprising: initializing holographic ledger records containing a finite state machine instance and a hash chain storage area; performing hash verification before each step starts, and starting the step after passing the verification, outputting the hash and writing it into the hash chain to form an immutable evidence chain, which is automatically migrated by the state machine; extracting the fiber texture of the invoice and the microscopic imprint features of the papermaking equipment and combining them into a joint physical fingerprint, which is bound to the business data hash value via HMAC-SHA256 to generate a two-layer fusion verification vector; comparing this vector with historical records in multiple dimensions and verifying the integrity of the hash chain, distinguishing the anomaly type and triggering differentiated processing; intercepting and triggering review when an anomaly occurs, and adaptively adjusting the judgment threshold based on the review result using an exponentially weighted moving average method to form a ledger-driven closed-loop traceability chain; this invention realizes ledger active driving, data hash chain closed-loop locking, two-layer traceability of invoice physical features, and adaptive optimization of detection parameters.
Owner:YINGDA TAIHE LIFE INSURANCE CO LTD SHANXI BRANCH

Modular firmware security upgrade method and system for intelligent monitoring terminal

PendingCN122152335AVersion controlProgram/content distribution protectionCryptographic key generationTimestamp
The application relates to the technical field of Internet of Things security, and discloses a modularized firmware security upgrade method and system for an intelligent monitoring terminal, which comprises the following steps: dividing firmware into four independent modules of a boot loader, a kernel, a file system and an application program, and calculating a check value; generating a security package by using a device unique identifier to derive an encryption key; generating an asymmetric key pair based on a hardware fingerprint to perform digital signature verification; creating a dual-system partition mapping table after verifying the integrity of running firmware and the security state of a system; performing module decryption verification and atomized update of a partition pointer in a fixed sequence; and generating a hash chain containing data such as a timestamp and a version number for storage evidence. The system comprises five modules of an upgrade package construction, security authentication, environment verification, upgrade execution and storage evidence tracing. Through modularized security encapsulation, hardware fingerprint authentication and an atomized upgrade mechanism, the security and reliability problems in the firmware upgrade process are solved.
Owner:DONGGUAN QIAOAN ZHILIAN TECHNOLOGY CO LTD

A collaborative asset management system based on end-to-end encryption

This invention relates to the fields of information security and computer software technology, and discloses a collaborative asset management system based on end-to-end encryption, employing a zero-knowledge architecture with client-server collaboration. The client creates a collaborative space and generates a space key. For sensitive credentials, it generates a content key to form credential ciphertext and content key encapsulated ciphertext. During access, a controlled-use proxy decapsulates the content key encapsulated ciphertext in a local controlled execution environment to obtain the content key, completing controlled credential use and thus preventing the plaintext credential from being exposed to external programs. The server stores the space key encapsulated ciphertext, credential ciphertext, content key encapsulated ciphertext, and directory and policy information. Through a proxy re-encryption (ciphertext domain conversion) module, the space key encapsulated ciphertext is converted into ciphertext that new members can decapsulate without decrypting the plaintext key, enabling dynamic member addition without re-encrypting and retransmitting all credentials. The system registers capability declarations through extended module interfaces to describe heterogeneous asset access capabilities. Based on this, the client selects a connector and executes a blind injection / proxy call authentication process. At the same time, audit events are encrypted and their integrity is protected by hash chains or digital signatures. The server only stores audit ciphertext and non-sensitive index fields, thereby achieving collaborative management, controllable use, and scalable access under zero-knowledge conditions.
Owner:王华

A data security evidence storage method and system for smart city construction

The application relates to the technical field of device management, and discloses a data security evidence storage method and system for smart city construction; the method comprises the following steps: collecting target device running state data, performing encryption preprocessing, constructing a safety data set, identifying data abnormalities, and determining a list of potential incidents with correlations; intelligently grouping devices according to event priorities, generating and dynamically adjusting a resource allocation scheme, automatically acquiring standby resources and expanding configurations when the scheme does not meet the evidence storage requirements; based on the expansion scheme, a path selection model integrating bandwidth and priority constraints is used to calculate and verify the shortest delay data evidence storage path; finally, full-link log recording is performed on the evidence storage process along the path, integrity verification based on a cryptographic hash chain is implemented, and the resource adjustment effect is evaluated based on the verification result to generate a confirmation result; the application improves the timeliness and reliability of device data evidence storage in the complex environment of a smart city.
Owner:BEIJING MUNICIPAL ENG RES INST

A data storage and visualization processing system

PendingCN122389103AData displayAntigen
The application belongs to the technical field of data processing, and particularly relates to a data storage and visual processing system. The system comprises: a heterogeneous data acquisition component for multi-source data preprocessing and feature extraction; a secure distributed storage component for maintaining data integrity and synchronously resisting antigen information by using a hash linked list and a redundancy mechanism; an immune clone detection and analysis device for simulating an immune mechanism to recognize abnormalities through affinity matching and perform clone variation to accurately lock tampering areas; an adversarial generation evolution device for constructing a game defense mechanism to improve the detection accuracy and early warning capability for unknown attacks; and a dynamic defense visual rendering engine for assigning different visual coding parameters to different security level data areas according to the detection results. The application realizes the transformation from passive data display to active defense display by deeply coupling the immune adaptive mechanism and the adversarial generation network, and enhances the detection efficiency and visual feedback capability of the system for complex and dynamic variation attacks.
Owner:ZHENGZHOU SODA INTELLIGENT TECH CO LTD

Full-process data processing method, system and device of travel order and storage medium

The application relates to the technical field of data processing, and specifically provides a whole-process data processing method, system and device of a travel order and a storage medium, which comprises the following steps: generating a unique main hash identifier of a travel order and uploading the unique main hash identifier to a blockchain network; for a plurality of business links in the life cycle of the travel order, sequentially constructing a sub-hash identifier associated with the main hash identifier on the blockchain network to form a main-sub hash chain; wherein, when each sub-hash identifier is constructed, input data at least comprises the main hash identifier, link data of a current business link, and a sub-hash identifier generated by an immediately preceding business link, so that each sub-hash identifier is sequentially nested and bound; and based on link data recorded in the main-sub hash chain, dynamically generating and synchronizing consumption details associated with the order. The application realizes whole-process automation, refinement and compliance of travel management under data driving.
Owner:SHANDONG LANGCHAO SMART CULTURAL TOURISM IND DEV CO LTD

A method and system for tracing abnormal rights data of a communication behavior portrait

This application relates to the field of data governance technology, and in particular to a method and system for tracing the source of abnormal rights data by integrating communication behavior profiling. The method includes: acquiring rights service event streams and communication link event streams and generating a unified event sequence; extracting number lifecycle features, SMS link features, call forwarding / call transfer features, and behavioral response features based on the unified event sequence to construct a communication behavior profile; calculating a verification code link integrity score and outputting a high-contribution evidence factor; constructing a causal relationship identification attack chain stage using key rights events as anchors; and executing tiered loss mitigation measures when triggering conditions are met, simultaneously generating an evidence package set, constructing a verifiable summary, and outputting the source tracing result. This application achieves interpretable source tracing of verification code link attacks, avoids difficulties in post-incident evidence collection through a real-time loss mitigation and evidence solidification synchronization mechanism, and uses a hash chain structure to ensure the immutability and verifiability of evidence, enhancing trust in cross-departmental collaboration.
Owner:SICHUAN ZHONGCHENG XINFU COMM TECH CO LTD

A bank transaction data consistency checking method and system

PendingCN122347465AFeature setTransaction data
The application provides a bank transaction data consistency verification method and system. The application solves the problems of data inconsistency between core account, channel transaction and clearing system, difficulty in abnormality tracing and insufficient compliance. By collecting full-amount transaction flow to generate a feature set, dividing core / extension layer fields, calculating sub-hash based on SM3 algorithm and dynamically configuring aggregation strategy to build hierarchical hash chain; using distributed asynchronous reconciliation engine to perform main hash fast matching and sub-hash field level verification; triggering abnormality tracing when matching fails, combining link tracking and GNN to locate difference nodes; building a dynamic threshold model to realize fuse current limiting; writing transaction records and hash chain into relational, blockchain and columnar heterogeneous ledgers; generating tamper-proof audit log chain. Realize field-level accurate verification, abnormality detection rate increased by 300%, verification throughput up to 100,000 transactions per second, meet regulatory requirements, and ensure high precision, high efficiency and high reliability of bank transaction system.

Blockchain and smart contract based woven data security traceability method and system

The application provides a weaving data security traceability method and system based on a blockchain and a smart contract, relates to the technical field of blockchains, and comprises the following steps: collecting multi-source heterogeneous data of a weaving process, encrypting sensitive data to generate a ciphertext data segment, extracting features of public data to generate a plaintext abstract segment, and combining to form a hybrid structure data packet. The hash value of the data packet is calculated and chain connection is performed, a time sequence hash chain is generated, and after consensus verification by a blockchain network, the data packet is written into a block. The identity and authority of a query request party are verified by a deployed smart contract, the accessible data range is determined according to the authority level, and the corresponding data packet is traced along the chain. The tamper-proof and credible storage and fine-grained safe access of weaving data are realized.
Owner:NANTONG HAIHUI SCI & TECH DEV CO LTD

An AI knowledge base supporting RBAC+ABAC permission control method

This invention provides an RBAC+ABAC-supported access control method for AI knowledge bases, belonging to the field of AI knowledge base technology. This invention employs a gradient boosting decision tree and a Bloom filter to construct a simplified decision model. An optimization algorithm based on thermodynamic entropy finds the policy configuration with the minimum entropy value through simulated annealing, eliminating rule conflicts and simplifying the logical structure. During vector retrieval, the permission encoding vector and semantic vector are concatenated to form a joint vector to construct a permission-aware index. During answer generation, a permission context fingerprint is attached, and secondary propagation of permissions is verified through a permission re-verification gateway. Operation logs are recorded using a hash chain structure to ensure the immutability of audit traceability. This invention solves the technical problem that AI knowledge bases cannot simultaneously guarantee the efficiency of permission decisions and the maintainability of policy rules when performing fine-grained access control.
Owner:BEIJING NANCAL RUIYUAN DIGITAL TECH CO LTD

Blockchain-based grain quality detection data traceability management method and system

The application discloses a grain quality detection data traceability management method and system based on a blockchain, and relates to the field of data management.The method comprises the following steps: collecting a sampling data packet, calculating and submitting a first hash value, generating a first transaction record and a physical anti-fake label; reading the physical anti-fake label to obtain on-chain information, calculating and submitting a second hash value, continuously calculating and storing key process data as process hash values to form a process hash chain; after detection, submitting detection result data and a result hash value, performing trusted verification and standard compliance determination on all chain data, and storing the determination conclusion as a determination transaction record; based on the determination transaction record, extracting and verifying the correlation between all hash values and determination transaction records, and reconstructing a complete grain quality detection evidence chain. The problems of the prior art, such as dependence of sampling information on manual work, low information detection real-time performance, lack of verification link in data management and storage, and low data monitoring and determination efficiency, are solved.
Owner:黑龙江省粮食质量安全监测和技术中心

Blockchain-based wire and cable production data traceability method

The application discloses a blockchain-based wire and cable production data tracing method, and relates to the technical field of credible storage and tracing of industrial production data; the method comprises the following steps: encapsulating production data into process data blocks at each process node and calculating the first hash value of the process data blocks; obtaining the hash value of the previous process, splicing the hash value with the current hash value to calculate a chain hash, and then adding the two to the current data block to form an enhanced process data block and calculating the second hash value of the enhanced process data block; submitting a storage transaction containing the second hash and the chain hash to a consensus storage of a consortium chain network; when tracing, obtaining a hash sequence from the chain and corresponding enhanced data blocks from off-chain, and verifying the data integrity and the correlation authenticity between processes by comparison. The application realizes the tamper-proofing and credible tracing of production full-process data by constructing a cryptographic hash chain between processes and storing a fingerprint in a consortium chain, and fundamentally improves the security of production data.
Owner:LIAONING JIAYI CABLE CO LTD

Audit data encryption transmission method and system based on dynamic permission management

The present application relates to the technical field of data security and security audit, in particular to an audit data encryption transmission method and system based on dynamic permission management; the method calculates instant risk quantitative score by collecting user risk factors, data sensitivity level and context threat index in real time, and determines the security level; the core is to generate encryption strategy and compensatory control set according to the security level; when the security level is critical, the system dynamically calculates the minimum privilege key window, and sets the life cycle of the session key based on the window; combined with the operation context, the unforgeable traceable certificate is generated through the hash chain algorithm; the present application overcomes the defects of static strategy, and realizes fine dynamic security protection.
Owner:HANGZHOU JUNNAN TECH CO LTD