Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

3085 results about "Information security" patented technology

Information security, sometimes shortened to infosec, is the practice of protecting information by mitigating information risks. It is part of information risk management. It typically involves preventing or at least reducing the probability of unauthorized/inappropriate access, use, disclosure, disruption, deletion/destruction, corruption, modification, inspection, recording or devaluation, although it may also involve reducing the adverse impacts of incidents. Information may take any form, e.g. electronic or physical., tangible (e.g. paperwork) or intangible (e.g. knowledge). Information security's primary focus is the balanced protection of the confidentiality, integrity and availability of data (also known as the CIA triad) while maintaining a focus on efficient policy implementation, all without hampering organization productivity. This is largely achieved through a structured risk management process that involves...

Information security adaptive protection method and system based on artificial intelligence

The invention discloses an information security adaptive protection method and system based on artificial intelligence, and relates to the field of security protection, and the method comprises the steps: dynamically collecting multi-dimensional asset data through distributed nodes, carrying out the edge calculation preprocessing, and extracting features through a deep learning model; carrying out threat identification by fusing LSTM time sequence analysis, an isolated forest and a multi-modal AI detection engine of a knowledge graph; outputting a risk level based on an improved analytic hierarchy process and a fuzzy evaluation model; the AI strategy engine combines the risk level and the business scene to generate an optimal protection strategy, and continuous optimization is carried out through reinforcement learning; a standardized instruction is linked with safety equipment to execute protection, and interception effect closed-loop optimization is fed back in real time; a whole process log is stored through a block chain, and an attack evidence chain is generated through an AI traceability model. The method has the advantages that the information security protection capability is comprehensively improved through hierarchical data acquisition, multi-modal threat detection, scientific situation evaluation, dynamic generation of an optimization protection strategy and combination of block chain evidence storage and AI traceability.
Owner:HEFEI XINGSHENG NETWORK TECH CO LTD

MES system login authentication method based on face recognition technology

The invention discloses an MES (Manufacturing Execution System) login authentication method based on a face recognition technology, which relates to the technical field of industrial information security, and comprises the following steps of: constructing an authentication data acquiring a face image of an authorized user of an MES, extracting a reference face feature template after preprocessing, and constructing the authentication database; performing associated storage on the reference feature template, user identity information, preset operation authority and affiliated production station information to form an authentication database; according to the method, spoofing attacks are prevented through multi-mode living body detection, and the problem that a traditional password / key is easy to leak and borrow is solved in combination with uniqueness of human face biological characteristics; a person-post-terminal binding mechanism further limits permission abuse, and internal operation risks are reduced; the non-contact authentication does not need to memorize a password or carry a physical key, and is suitable for a working scene that a workshop operator wears gloves and holds tools; and the recognition passing rate in a complex industrial environment is improved through dynamic threshold optimization.
Owner:HUBEI UNIV FOR NATITIES

Network security situation awareness and analysis platform based on AI

The invention discloses a network security situation awareness and analysis platform based on AI, and relates to the technical field of network security situation awareness and analysis, and the platform comprises a multi-source data collection module which integrates flow, logs, assets and threat intelligence data, and carries out encryption transmission and standardization; the data preprocessing module purifies and optimizes data, and guarantees data quality and sensitive information security; the AI situation awareness analysis module extracts features through a deep learning model, dynamically evaluates the situation and identifies threats; the threat early warning and decision-making module triggers graded early warning and generates a targeted emergency response scheme; the visual display and interaction module displays information in multiple dimensions and supports query and report generation; and the data storage and tracing module adopts a mixed storage architecture, so that the data security and traceability are ensured. The platform integrates multi-source data and realizes situation accurate perception and intelligent decision by means of an AI technology; the early warning is accurate, the visual interaction is convenient, and the intelligent and efficient level of network security protection is comprehensively improved.
Owner:HUNAN CONGMAO TECH CO LTD

Government administration department knowledge base access authority control method based on block chain

The invention discloses a government affair department knowledge base access authority control method based on a block chain, and relates to the technical field of block chains and information security, distributed nodes jointly participate in decision making, the performance bottleneck of a single control point and the single point fault risk are effectively eliminated, and the reliability and stability of a system are remarkably improved; when a plurality of departments need to collaboratively update a strategy, the intelligent contract based on the threshold multi-signature mechanism can automatically execute voting aggregation and a strategy effective process without depending on manual operation of a central administrator, so that the efficiency and the automation level of cross-department collaboration are greatly improved, and the instantaneity and the consistency of strategy change are ensured; the inherent non-tampering and traceable characteristics of the block chain provide powerful auditing guarantee for the whole authority management process; and each policy update request, voting process, final decision and policy version switching are completely recorded on the chain to form a non-repudiated audit clue.
Owner:HANGZHOU CHUANGMING ZHICAI INTELLIGENT TECH CO LTD

Information security management method and system based on digital medical treatment

PendingCN121366684ASemantic analysisDigital data protectionCiphertextInformation security management
The invention relates to the technical field of information security management, and discloses an information security management method and system based on digital medical treatment. The method comprises the following steps: verifying doctor professional qualification, patient authorization range, data sensitivity level and time permission validity in a multi-institution medical data access request, and generating a permission verification result; analyzing ontology semantic attributes and sensitivity characteristics of medical search keywords input by a user, and determining a corresponding hierarchical encryption strategy based on the permission verification result; performing homomorphic encryption transformation on the medical term synonym set according to the hierarchical encryption strategy, and constructing a medical ciphertext database; and receiving a medical query request, executing symptom disease association matching and ciphertext state logical reasoning operation in the medical ciphertext database, and outputting an encrypted state search result. According to the method, the privacy leakage risk caused by search behavior trajectory analysis is effectively prevented, and the security and availability of medical data are improved.
Owner:SHENZHEN HEALTH DEV RES & DATA MANAGEMENT CENT

NLP verification method for commercial password security assessment report based on agent

The invention belongs to the technical field of information security, and discloses an NLP verification method for a commercial password security assessment report based on an agent. The comprehensive consistency verification of the assessment report is realized by constructing a cryptographic term knowledge graph, generating a cross-chapter cryptographic parameter consistency verification matrix, identifying security statement conflict points and constructing a report internal logic conflict detection model. And adopting a multi-agent cooperation mechanism to carry out iterative optimization on a verification result, and outputting a structured verification report containing contradictory position indexes and type labels. According to the method, the consistency verification capability of the password evaluation report is improved, dominant parameter inconsistency and hidden semantic conflicts can be accurately identified, the auditing cost is reduced, and the wrong implementation risk caused by report inconsistency is prevented.
Owner:BEIJING YOULUE SECURITY TECH CO LTD

Power system data access management and control system based on risk dynamic assessment

The invention discloses a power system data access management and control system based on risk dynamic assessment, and particularly relates to the technical field of power system information security and access control. Comprising an access request interception module, a multi-dimensional risk data acquisition module, a dynamic risk assessment engine module, a self-adaptive access control decision module and a security audit and learning module. Multi-dimensional dynamic context information such as an access subject, an object, an environment and a behavior sequence is collected in real time, a rule engine and machine learning hybrid model is combined to carry out real-time risk calculation, a quantitative comprehensive risk value is output, and an access control decision is dynamically generated according to a risk level threshold. The system has self-learning and self-adaptive optimization capabilities, continuously optimizes the model through an audit log, improves the security and flexibility of data access of the power system, and balances service availability and security protection requirements.
Owner:国网新疆电力有限公司营销服务中心 +1

User information protection method and device based on dynamic desensitization strategy

The invention relates to the technical field of information security, in particular to a user information protection method and device based on a dynamic desensitization strategy, and the method comprises the steps: determining sensitive data and a sensitivity score thereof through a named entity recognition model and a sensitivity scoring algorithm, extracting scene parameters, and determining a scene risk score through a risk quantification algorithm; and then a dynamic desensitization strategy generation algorithm is called to generate a target desensitization strategy, and finally, the strategy is used for desensitization and a reversible desensitization data identifier is generated. Through the series of steps, the desensitization strategy is dynamically generated according to different use scenes, the problem of scene adaptability deficiency caused by static desensitization strategy stiffness is solved, meanwhile, the reversible desensitization reduces the security risk caused by reverse cracking of rules, excessive desensitization is avoided, and the data availability is improved.
Owner:BEIJING QINGSONG YIKANG INFORMATION TECHNOLOGY CO LTD

Attack event semantic recognition method and system for terminal log analysis

The invention discloses an attack event semantic recognition method and system for terminal log analysis, and relates to the technical field of information security, and the method comprises the steps: collecting multi-source heterogeneous log data from terminal equipment, and carrying out the preprocessing to obtain standard log data; performing structured conversion and multi-modal fusion on the standard log data to obtain fused log data; performing feature extraction on the fused log data to obtain a key log feature set; and constructing an event semantic recognition optimization model, performing semantic recognition on the key log feature set, determining attack event semantic information, and triggering attack event early warning. The technical problem of low attack event identification accuracy and real-time performance due to the fact that the existing log analysis method cannot efficiently process the multi-source heterogeneous log data is solved, and the technical effect of improving the attack event identification accuracy and real-time performance through structured conversion and multi-modal fusion of the multi-source heterogeneous data is achieved.
Owner:CHINA SOUTHERN POWER GRID COMPANY

Document tampering detection method and system based on image data processing

The invention relates to the field of digital image processing and information security, and discloses a document tampering detection method and system based on image data processing, and the method comprises the following steps: firstly, extracting the noise residual error and microscopic penetration characteristics of a document image, and constructing a physical potential energy field and a virtual viscous resistance field; performing dynamic evolution by using a Darcy law variant model to generate a virtual flow velocity vector field to simulate the slippage behavior of the fluid in the heterogeneous medium; and then a heterogeneous graph is constructed based on the flow field divergence singular points and the streamline trajectory, deep reasoning is carried out by using graph neural network aggregation node dynamic features, and finally a tampering localization mask is generated. According to the method, the fluid mechanics field theory is innovatively introduced, hidden static texture differences are converted into remarkable dynamic flow field anomalies, the problem that microscopic tampering traces are difficult to capture in the prior art is solved, and the detection precision and generalization ability in a complex document scene are remarkably improved.
Owner:DOROAD ENERGY CO LTD

Data acquisition method and device based on block chain tamper-proofing

The invention relates to the technical field of data acquisition and information security, and discloses a block chain tamper-proof data acquisition method and device, and the device comprises a control chip, an identity recognition module, a local tamper-proof module, a time sequence processing module (including a parallel uploading unit), a clock calibration module, a storage monitoring module and the like. The method comprises the steps of hardware-level identity verification, operator verification, generation of a data packet containing metadata, encryption and tamper prevention, networking / offline uplink evidence storage, association uplink approval and hash comparison verification. By applying the method and the system, the tamper-proofing of the data in the whole process can be realized, the offline scene is adapted, and the high-credibility data acquisition requirement is met.
Owner:XIONGAN XINYI TECHNOLOGY CO LTD

Dynamic key generation system and method based on multi-source QRNG and QKD

The invention relates to the technical field of quantum cryptography, in particular to a dynamic key generation system and method based on multi-source QRNG and QKD, and the system comprises an interface registration method, a calling method, related equipment and a storage medium, is used for generating a high-security quantum key, and is a quantum key service system with a layered architecture. By abstracting, integrating and managing bottom-layer multi-source QRNG and QKD equipment and fully utilizing the flexible scheduling of quantum equipment, the security of key generation is ensured, so that the key service has higher performance, usability and security, and unified, dynamic and high-security quantum key generation and supply services are provided for various applications of the upper layer. The method is widely applied to the industries and fields of government, finance, energy, traffic, electric power and the like, meets the requirements of quantum key acquisition of various business applications in cloud computing and non-cloud environments, and ensures information security and business continuity.
Owner:CHINA SOUTHERN POWER GRID DIGITAL GRID GROUP (GUIZHOU) CO LTD

Symmetric encryption key secure transmission method and system

The invention relates to the field of information security, and provides a symmetric encryption key secure transmission method and system. The method comprises the following steps: acquiring a unique fingerprint of equipment and a system parameter, and deriving the unique fingerprint of the equipment and the system parameter through a Hash algorithm to generate a seed key; deriving an initial symmetric key through a Hash algorithm based on the seed key, and performing recursive calculation in combination with key update parameters to obtain a session key; generating a plurality of random components, equally dividing the session key, and then carrying out XOR operation on the session key and each random component to obtain a key fragment set; and carrying out encryption verification on the session key and the plurality of key fragments in the key fragment set, generating verification values corresponding to the plurality of key fragments, and respectively transmitting the plurality of key fragments and the corresponding verification values through a plurality of different transmission paths. According to the invention, dynamic derivation and secure fragmentation transmission of the symmetric key without hardware protection and asymmetric encryption are realized, and the system security is improved.
Owner:E-SURFING DIGITAL LIFE TECH CO LTD

Dynamic traceability identifier generation and verification method based on multi-node environment data fusion

The invention provides a dynamic traceability identifier generation and verification method based on multi-node environment data fusion, and relates to the technical field of information security and Internet of Things data credibility. The method comprises the following steps: firstly generating a seed identifier, then collecting environment data through each node to construct a multi-dimensional vector and carrying out weighted fusion, after serialization, generating a dynamic hash identifier by combining with an upper-level identifier, and meanwhile, introducing an offline trusted evolution, time drift tolerance and self-adaptive risk control mechanism; and finally, backtracking the traceability chain through recursion verification, and guaranteeing privacy in combination with zero-knowledge proof. The method solves the problems that a static traceability code is easy to copy and the data credibility is low, achieves the dynamic anti-counterfeiting and tamper-proofing of the traceability identifier, enables the digital identifier to be strongly associated with physical circulation, improves the credibility of the traceability process, can automatically find abnormal circulation and give an alarm, and is suitable for a commodity traceability scene.
Owner:JIANGSU NANDA DIGITAL TECH CO LTD

Dynamic S-box and cross-channel diffusion image encryption method based on six-dimensional hyper-chaos driving

The invention discloses a dynamic S-box and cross-channel diffusion image encryption method based on six-dimensional hyper-chaos driving, and belongs to the field of information security, and the method comprises the implementation steps: 1) constructing a novel six-dimensional hyper-chaos system; 2) constructing a cross-channel diffusion scheme based on the six-dimensional hyperchaotic system; 3) constructing a dynamic S box library based on a six-dimensional hyperchaotic system; according to the invention, by introducing an inter-channel coupling mechanism, the potential safety hazard of traditional sub-channel encryption is effectively relieved. A dynamic S box generated based on chaotic system state self-adaption enhances the nonlinear confusion characteristic, and Arnodcat mapping transformation realizes global pixel scrambling. Theoretical and experimental results show that the method overcomes the limitation of a low-dimensional system, and the aspects of statistical analysis, key sensitivity, attack resistance and the like are remarkably improved.
Owner:GUILIN UNIVERSITY OF TECHNOLOGY

Information security management system based on network operation and maintenance

The invention belongs to the technical field of network information security, and discloses an information security management system based on network operation and maintenance. The method comprises the following steps: periodically acquiring multi-dimensional traffic data of a network node through a traffic acquisition module, and constructing and labeling a network security situation map by means of an asset labeling module; the authority distribution module automatically adjusts the authority of the abnormal access node by analyzing the node access behavior; the threat detection module analyzes the flow in real time, drives the self-adaptive isolation module to quickly isolate threat nodes according to the generated temporary strategy, and updates the joint defense model for cooperative defense; the attack evolution prediction module performs attack path prediction by extracting attack features and optimizes an isolation strategy accordingly; and information leakage is effectively prevented.
Owner:GUANGZHOU PENGLONGJISUANJI TECH CO LTD

Multi-modal data desensitization method, system, equipment and medium

The invention provides a multi-modal data desensitization method, system and device and a medium, and belongs to the technical field of information security. The method comprises the following steps: firstly, acquiring multi-modal original data based on preset access information and acquisition frequency, and after standardized preprocessing, positioning sensitive information by using a classification recognition algorithm and generating an analysis report. Then, according to a report, matching a strategy from a desensitization strategy library bound with the sensitivity level, adjusting a dynamic confusion algorithm parameter to desensitize, integrating and generating desensitized multi-modal data, and recording and storing a mapping relationship between the original data and the desensitized data; and if a restoration request is received, after authorization verification is passed, reverse desensitization restoration data is carried out by using the mapping relation. Besides, full-process feedback information is collected, the desensitization effect is quantitatively evaluated according to a preset index, the desensitization strategy and algorithm are iteratively optimized accordingly, and effective desensitization and safety management of multi-modal data are achieved.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

Block chain technology-based review data information security tamper-proofing method

The invention discloses a block chain technology-based review data information security tamper-proofing method, and relates to the technical field of information security, the tamper-proofing method comprises the following steps: a data encryption storage step, a data evidence storage step, a trusted computing step and a data verification step, when a computing request is received, the trusted computing step is executed, and the trusted computing step is executed; whether the identity of a requester conforms to the access control strategy is verified through the smart contract, after verification is passed, the smart contract generates a calculation task event, the oracle monitors and captures the event, then a calculation task is transmitted to the trusted execution environment, ciphertext data is obtained in the trusted execution environment and decrypted, and the calculation task is sent to the target server. The method has the advantages that the balance of data privacy protection and integrity verification is realized through a hierarchical architecture combining on-chain evidence storage and off-chain encrypted storage, sensitive review data is stored in an off-chain database in an encrypted form, the security of the review data is improved, the security of the review data is improved, and the security of the review data is improved. Only data fingerprints are recorded on the block chain, data privacy is protected, and data integrity can be verified through the block chain.
Owner:HEFEI FANKE NETWORK TECH CO LTD

Molecular identity authentication system and method based on layered assembly of DNA origami framework

The invention provides a molecular identity authentication system and method based on DNA origami framework layered assembly. The molecular identity authentication system comprises a disclosed skeleton chain and a plurality of shared staple chains, the shared staple chain comprises staple chains shared by three groups of single bodies and staple chains shared in pairs, and the staple chains are used as secret keys to be distributed to three participants so as to prepare the three groups of single bodies respectively, and then the three groups of single bodies are combined and spliced into a tripolymer with a dot matrix pattern, so that multi-user collaborative layered chain type assembly is realized. According to the molecular identity authentication system based on DNA origami framework layered assembly, the system combination complexity is improved to the information theory security level, so that the biological information security protection capability is improved, and brute force cracking is prevented.
Owner:SHANGHAI JIAOTONG UNIV +1

Multistage desensitization electricity charge sensitive data protection system

The invention provides a multi-stage desensitization electricity charge sensitive data protection system, belongs to the technical field of information security in the power industry, and relates to a full-life-cycle protection scheme of sensitive data such as an identity label, account information and contact information in an electricity charge service system. The problems that in the prior art, only simple masking or full-table encryption is carried out on a database layer, the desensitization dimension is single, multiple links are prone to leakage, no role fine-grained desensitization strategy exists, and exported files are difficult to trace are solved. The system comprises a data acquisition source and acquisition layer desensitization, a transmission layer encryption, a storage layer transparent encryption, an API gateway, a desensitization strategy center, a front-end dynamic mask, a watermark export, a log desensitization plug-in and an auditing log module, covers the whole process from data acquisition to log auditing, dynamically regulates and controls data display according to roles, and exports a file embedded identity watermark. And desensitizing the log and reserving operation marks. Full-link leakage prevention, fine-grained permission control and leakage traceability can be realized, and the transformation cost is low.
Owner:CHINA SOUTHERN POWER GRID INTERNET SERVICE CO LTD

SM2 collaborative signature, encryption and decryption system and method fusing anti-quantum characteristics

The invention discloses an SM2 collaborative signature and encryption and decryption system and method fusing anti-quantum characteristics, and relates to the field of cryptography and information security. According to the method, an anti-quantum cryptographic algorithm and a national cryptographic SM2 cooperative computing framework are deeply integrated, and a key security system is constructed: SM2 sub-private keys, anti-quantum key pairs and public keys are acquired and generated through an anti-quantum algorithm software and hardware enhancement module, and the private keys are encrypted and stored and are regularly alternated; on the basis of anti-quantum collaborative signature, encryption and decryption modules, an anti-quantum verification mechanism is embedded, and data is transmitted in combination with a national secret TLCP protocol, so that signature, encryption and decryption operations are completed; the equipment integration and dynamic security control unit monitors a security state, calculates a threat index to generate a protection strategy, and dynamically switches a security mode, so that the problems of insufficient security, vulnerability to attacks and data tampering of a traditional SM2 algorithm under the threat of quantum computing are effectively solved; and the long-term anti-attack capability and the operation reliability of the equipment in a high-security demand scene are remarkably improved.
Owner:ZHEJIANG ICINFO TECH

Gearbox fault diagnosis method based on multisource agent federal field generalization

The invention relates to the technical field of internet big data and information security, and designs a gearbox fault diagnosis method based on multi-source agent federal field generalization by combining the interaction capability of wide-area data and a local diagnosis agent. According to the method, a dual regularization mechanism is introduced in the training process of each local diagnosis agent, and the problem of negative migration is solved by actively learning domain-invariant fault features, so that the cross-working-condition and cross-equipment generalization diagnosis performance of a final model is remarkably enhanced on the premise of protecting data privacy; meanwhile, a central server is replaced by a decentralized coordination network realized by a block chain technology, and a committee consensus protocol is executed to ensure that the generation process of the global model is open, transparent and non-tampering, so that the single-point fault risk is fundamentally eliminated, the security and robustness guarantee is provided for the whole coordination process, and the method has the advantages of being high in practicability and the like. And the long-term applicability and the fault diagnosis accuracy and reliability of the method in a dynamically changing industrial environment are ensured.
Owner:CHONGQING UNIV

Communication data intelligent safety supervision system based on big data

The invention relates to the technical field of big data security analysis and network information security, in particular to a communication data intelligent security supervision system based on big data, which comprises a data acquisition module used for extracting standardized entity behavior feature vectors from multi-source heterogeneous communication data; the baseline modeling module is used for dynamically generating a multi-dimensional behavior baseline portrait based on the historical sequence of the entity behavior feature vectors; the anomaly detection module is used for comparing the real-time entity behavior feature vector with the multi-dimensional behavior baseline portrait so as to calculate a micro anomaly score; the atlas construction module is used for screening the micro-anomaly events according to whether the micro-anomaly score exceeds a preset threshold value or not, and quantifying association confidence among the screened events so as to construct an attack chain atlas; the risk quantification module is used for aggregating the characteristics of the attack chain atlas to determine a systematic risk score; according to the method, the discovery capability and response efficiency of complex attacks such as advanced persistent threats and the like are greatly improved.
Owner:STATE GRID JIBEI ELECTRIC POWER COMPANY LIMITED CHENGDE POWER SUPPLY +1

Database watermark management system and method, electronic equipment and storage medium

The invention discloses a database watermark management system and method, electronic equipment and a storage medium, and relates to the technical field of information security, and the disclosed database watermark management system comprises an intelligent decision layer which is used for analyzing data features of input data and determining a watermark embedding mode of the input data according to an analysis result; the bimodal embedding layer is used for carrying out watermark embedding operation on first data of which the watermark embedding mode is a numeric embedding mode in the input data by adopting a preset improved least significant bit algorithm, and carrying out watermark embedding operation on second data of which the watermark embedding mode is a non-numeric embedding mode in the input data by adopting a preset improved least significant bit algorithm; carrying out watermark embedding on the second data by adopting a multi-system invisible character replacement technology; and the cross-modal traceability layer is used for analyzing the watermark information from the input data embedded with the watermark through a preset double-watermark collaborative verification mechanism. According to the method, the adaptation degree of database watermark embedding can be improved.
Owner:VIPSHOP (GUANGZHOU) SOFTWARE CO LTD

Electronic document tracing method and device based on dynamic encryption and multi-modal watermark

The invention discloses an electronic document tracing method and device based on dynamic encryption and multi-modal watermarking, and relates to the technical field of information security and digital rights management. The method comprises the following steps: acquiring a PDF document uploaded by a user, encrypting the PDF document by adopting a randomly generated main encryption key, and acquiring and storing the encrypted PDF document; the content of the encrypted PDF document is analyzed, secret information is embedded into a picture in the document based on a two-dimensional discrete cosine transform algorithm, and picture watermark embedding is completed; a self-adaptive watermark embedding algorithm is adopted to embed secret information into a text in the document, and text watermark embedding is completed; related information of the checking operation is written into a block chain database; dynamically extracting watermark information from the divulged PDF document by adopting a watermark extraction algorithm; and querying a traceability database according to the extracted watermark information, and outputting a traceability result by comparing the extracted watermark information with information in a database storing various watermark information. According to the invention, the survival rate and the concealment of the watermark can be improved.
Owner:UNIV OF SCI & TECH BEIJING

Power metering system network security situation analysis method and system based on big data

The invention provides an electric power metering system network security situation analysis method and system based on big data, and relates to the technical field of electric power system information security. According to the method, network traffic, system logs, security alarms, asset information, vulnerability records and external threat intelligence are collected, a security data lake is constructed, and security situation factors are extracted; outputting an anomaly detection result and a threat classification result by using the unsupervised anomaly detection model and the supervised threat classification model; calculating an asset security risk value and an overall security risk value by combining the vulnerability severity and the asset importance, and generating an overall security index, an attack threat level and a vulnerability level; and a time sequence prediction model is further constructed based on the network security situation indexes, and future situation prediction and security early warning are realized. According to the invention, comprehensive perception, accurate analysis and active defense of the network security situation can be realized.
Owner:HARBIN INSTITUTE OF TECHNOLOGY (SHENZHEN) (INSTITUTE OF SCIENCE AND TECHNOLOGY INNOVATION HARBIN INSTITUTE OF TECHNOLOGY SHENZHEN)

Data migration method and device, equipment, medium and program product

The invention provides a data migration method which can be applied to the technical field of artificial intelligence, and relates to application of a large model in the fields of information security and financial science and technology. The data migration method comprises the steps that in response to a migration request for migrating target data in a first database to a second database, a target agent is called to split the migration request into N migration tasks, the database structures of the first database and the second database are different, and N is an integer larger than or equal to 2; calling a target agent to sequentially execute N migration tasks based on a preset tool set, so as to migrate the target data in the first database to a second database; wherein at least one non-target tool in the preset tool set is masked in advance based on the to-be-executed target migration task, and the target agent is configured to perform tool calling based on the masked preset tool set. The invention further provides a data migration device and equipment, a storage medium and a program product.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Communication encryption method, computer equipment and storage medium

PendingCN121126333ASecurity arrangementKey serverSAFER
The embodiment of the invention provides a communication encryption method, computer equipment and a storage medium, relates to the technical field of information security, and can provide a safer communication process. Comprising the following steps: a server receives a first key acquisition request sent by a first terminal, and acquires a first composite key from a plurality of composite keys; wherein the composite key is a key obtained after fusion processing based on multiple types of quantum keys. And the server obtains a second composite key matched with the user information of the first terminal from the plurality of composite keys. And sending the second composite key to the server, so that the server encrypts the first composite key through the second composite key to obtain the encrypted first composite key. And the server sends the encrypted first composite key to the first terminal, so that the first terminal encrypts or decrypts communication data with the second terminal based on the first composite key after decrypting the encrypted first composite key.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Watermark-based method for actively defending deep counterfeiting

The invention relates to a deep forgery active defense method based on watermarking, which belongs to the technical field of information security, firstly provides a semantic self-adaptive watermark embedding method based on Transform, and dynamically distributes watermark weights according to the semantic importance of a human face area by using a cross attention mechanism so as to enhance the defense effect on deep forgery attack; secondly, a separable decoder watermark architecture is constructed, the separable decoder watermark architecture comprises a robust decoder and a semi-robust decoder, a random image processing module (RIPM) is introduced during training, the separable decoder is trained by simulating images of conventional distortion and deep forgery attack, and stable traceability of user identity information and recognition of deep forgery behaviors are achieved; meanwhile, local watermark concentration difference caused by deep counterfeiting is analyzed, a thermodynamic diagram of a counterfeiting region is generated in combination with supervised learning, and positioning of the deep counterfeiting region is realized.
Owner:CHONGQING UNIV OF POSTS & TELECOMM

Implementation method of electronic signature of customs business scene and seal management system

The invention relates to the technical field of information security, discloses a realization method of an electronic signature of a customs business scene and a seal management system, and aims to solve the problems of trust centralization, easy data tampering, difficult traceability, poor business adaptation and insufficient interoperability of an existing electronic signature. According to the method and the system, a distributed account book technology is introduced, decentralized creation and registration, signature generation and verification, life cycle management and on-chain recording of auditing and tracing of the electronic seal are realized, a dynamic and configurable business scene strategy engine is constructed, a customs business process is flexibly adapted, and high safety, high efficiency and high adaptability are ensured. According to the method, a decentralized trust basis is established, the tamper-proofing capability and efficiency are improved, full-chain auditing traceability and cross-mechanism interoperation are realized, and data security is guaranteed.
Owner:ORIENT KOUAN TECH CO LTD