Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

752 results about "Internet privacy" patented technology

Internet privacy involves the right or mandate of personal privacy concerning the storing, repurposing, provision to third parties, and displaying of information pertaining to oneself via the Internet. Internet privacy is a subset of data privacy. Privacy concerns have been articulated from the beginnings of large-scale computer sharing.

Application-agnostic puncturing of network address translation (NAT) services

Two electronic devices attempt to communicate and exchange Internet Protocol (IP) packets over a cellular communication network, and at least one of the two devices is behind a symmetric Network Address Translation (NAT) service. At least one of the two devices executes a Session Traversal Utilities for NAT (STUN) protocol, which provides to that device a pair of external IP address and port of that device; which that device then informs to a Message Broker Unit that is accessible to both devices via the public Internet. The Message Broker Unit provides the external IP address and port of that device, to the other device; which then connects to a Virtual Private Network (VPN) server and sends to the first device one or more User Datagram Protocol (UDP) packets that penetrate or puncture the NAT service in an application-agnostic manner.
Owner:LIVEU

Unified Resolution-as-Evidence Protocol and System for Policy-Enforced DNS Resolution with Knowledge Graph Injection, Global Identity and Object-Key Anchoring, and Time-Value Minting Based on a Pre-Established Identifier Reservoir.

PendingUS20260149707A1FinanceSecuring communicationDomain nameEntity identifier
A policy-governed network resolution system generates a cryptographically verifiable Resolution Receipt (RR) for each identifier request. An identifier (e.g., a domain name under a BEIDNS / BEIDomain / BEITLD namespace) is routed to a resolver gateway, matched to a basepoint within a curated identifier reservoir, evaluated under a versioned policy container, and authorized by a signed scope token to enforce selective disclosure. The resolver may enrich the context with a knowledge-graph entity identifier, derive a decentralized identity root for Behavioral Economics Identity (BEI), and mint a content-addressable global object key. Minute-grade activity is metered and recorded in the RR, including policy version, reason codes, lifecycle state, audit anchors, and a signature chain, further supporting denial receipts with remediation steps. RR digests may be recorded in append-only logs and optionally anchored to a distributed ledger. Aggregated RR metrics may be streamed for real-time indexing, resource governance, and bounded rollback in IoT and real-estate embodiments.
Owner:BEI FURONG

Interactive Email Warning Tags

Aspects of the disclosure relate to providing a flexible and automated system for automatically detecting when emails include harmful content, flagging the emails, providing interactive reporting functionality, and providing follow-up enforcement actions to protect users. A computing platform may intercept an email in transit to an email server. Subsequently, the computing platform may analyze the email and generate at least one unique link for reporting suspicious content associated with the email. Next, the computing platform may generate an email warning tag comprising text information and the at least one unique link for reporting the suspicious content associated with the email. Then, the computing platform may inject the email warning tag into the email to produce a modified email comprising content from the email and the email warning tag, and may send the modified email to the email server.
Owner:PROOFPOINT INC

A personalized medication service data security processing system fusing zero-trust architecture and differential privacy

The application discloses a kind of personalized medication service data security processing systems of fusing zero trust architecture and differential privacy, it is related to medical data security technical field, including dynamic trust evaluation to request subject;Inject differential privacy noise;Combining zero trust strategy continues to obtain trust score;Only receive desensitized statistical information or encrypted intermediate representation in the cloud.The application solves the privacy leakage and trust loss problems caused by static protection and weak desensitization in traditional personalized medication services, significantly improves the security, compliance and user trustworthiness of medical data during collection, use and sharing, and provides a secure foundation that can be implemented, verified and continuously evolved for intelligent medication services in high-sensitivity scenarios.
Owner:PEKING UNIVERSITY FIRST HOSPITAL (PEKING UNIVERSITY FIRST CLINICAL MEDICAL COLLEGE) +1

System and control method thereof

There was a possibility that an unauthorized third party could synchronize multi-device FIDO credentials and misuse the service. [Solution] The credential information management server 123 maintains registered terminal information and registration denial terminal information, and in response to a request from an unregistered authentication terminal 112, it makes an authentication terminal registration permission request and maintains the information of the authentication terminal 112 according to the response to the request (Figure 5). When the authentication client 301 of the authentication terminal 112 synchronizes the credential information of the credential information management server 123, if the authentication terminal 112 is a registration denial terminal (Yes in S803), it interrupts the synchronization. Also, during credential authentication, if the authentication terminal 112 is not a registered terminal, it interrupts credential authentication (Figures 10 and 11).
Owner:CANON KK

A method for monitoring and controlling the illegal use of mobile phones

ActiveCN115733955BInternet privacyEngineering
This invention relates to a domestically produced method for monitoring the unauthorized use of mobile phones, belonging to the field of information security protection technology. The system of this invention includes network cameras, a domestically produced intelligent server, access control, client terminals, a video wall, and a switch. The network cameras and access control are deployed in the monitoring location; the switch and the domestically produced intelligent server are deployed in the server room; the video wall is deployed in the monitoring room; and the client terminals are deployed in the office. The method of this invention includes: video acquisition, video analysis, display of analysis results, and access control linkage control. This invention uses domestically produced CPUs and domestically produced accelerator cards, making it more secure and eliminating the risk of sanctions or backdoors; it can automatically control access, promptly preventing unauthorized mobile phone users from escaping the scene, thus buying valuable time to prevent information leaks.
Owner:BEIJING INST OF COMP TECH & APPL +1

Group peer-to-peer financial transactions

In accordance with some embodiments, user interfaces for displaying a transfer request, detecting user input directed to initiating a transfer corresponding to the request, and receiving authentication information to authorize the transfer corresponding to the request are described.
Owner:APPLE INC

Metaverse integrated authentication method and system

Provided is a metaverse integrated authentication method. The metaverse integrated authentication method includes: transmitting, by a user terminal, an IDP login request; when the IDP login request is received, extracting, by a first ID provider, subscription information associated with a user of the user terminal from a first ID database; providing, by the first ID provider, the user terminal with an access token based on the extracted subscription information; transmitting, by the user terminal, a first login request for a public metaverse based on the provided access token; extracting, by a first server associated with the public metaverse, account information associated with the first login request from an account database; and performing, by the first server, authentication of the user terminal for the public metaverse based on the extracted account information.
Owner:CATALYSTER CORP

Using a Smart Home Appliance to Securely Collect and Transmit Medical Data

PendingUS20260214078A1Data packInternet privacy
Systems and methods are provided for securely managing sensitive information, such as patient data or medical data. According to one implementation, a method includes a step of receiving sensitive information from one or more electronic medical devices over one or more secure, encrypted communication channels in a home network, wherein the one or more electronic medical devices are pre-authenticated using secure credentials. The method also includes a step of re-encrypting the sensitive information received from the one or more electronic medical devices to create secured data packets. Next, the method includes a step of transmitting the secured data packets over the Internet to a remote healthcare server.
Owner:DIGICERT INC

Authenticating access to an end-of-life documents registry

PCT designated stageWO2026112637A1FinanceUser identity/authority verificationEntity typeInternet privacy
A system includes a processor configured to receive, from a registrant device, an upload of at least one document such as incapacity or end-of-life documents. The system stores the at least one document and receives access selections designating each of (i) contact and demographic information of one or more designated individuals and (ii) one or more types of entities permitted to request access to the at least one document as permitted entity types. The system receives an access request identifying a registrant for whom the at least one document is sought and verifies that the requester is a designated individual or associated with one of the permitted entity types. The system provides, to the requester device, access to the at least one document.
Owner:REGISTRYAZIP INC

Secure Storage and Management of Sensitive Information

PendingUS20260213922A1Internet privacyEngineering
Systems, apparatuses, and methods are described for securely storing and managing sensitive information. A gateway may manage the encryption and storage of the sensitive information. A mobile device may be authenticated by the gateway using a local connection between the gateway and the mobile device. The mobile device may access, encrypt and / or decrypt the sensitive information based on being authenticated by the gateway. As an added layer of security, the gateway may re-encrypt the sensitive information when the mobile device is disconnected from the gateway and / or based on a period of time associated with the storing of the sensitive information. The mobile device may receive the re-encrypted information after reconnecting and / or being reauthenticated with the gateway.
Owner:COMCAST CABLE COMM LLC

Authentication techniques for seamless roaming

PCT designated stageWO2026147810A1RoamingInternet privacy
This disclosure provides methods, components, devices and systems for authentication techniques for seamless roaming. Some aspects relate more specifically to techniques for a non-access point (AP) device to prepare the second security key and transition the non-AP device to a target AP multi-link device (MLD) via communications with the serving AP MLD, with the target AP MLD, or both. In some aspects, the target AP MLD may perform validation based on information from the non-AP device or based on communicating with a previous serving AP MLD. In some aspects, a network may initiate roaming by indicating for the non-AP device to roam from a serving AP MLD to one or more target AP MLDs. The non-AP device may identify a timer associated with performing the roaming, and may accept or reject the request to perform the roaming within a duration of the timer.
Owner:QUALCOMM INC

System and method for purchasing advertisements associated with words and phrases

Disclosed is a system and method for enhancing value for advertisers by helping them select and initiate the purchase of an advertisement associated with advertising (ad) words or phrases that have strong semantic relationships to a given context, but which are not necessarily the most popular ad words or phrases with the highest costs. Advertisements associated with ad words or phrases that have strong semantic relationships to a given context, and yet are still cost effective in that their calculated value exceeds the costs of purchasing the ad keywords, are bid for and bought. The system and method may be adapted to automatically purchase advertisements associated with ad words or phrases when they fall within a desired price range based on their calculated value. As the prices of advertisements associated with these words or phrases fluctuate over time based on their popularity, the automated bidding and buying of advertisements may be used to purchase advertisements associated with words or phrases at a price desirable to a given ad purchaser. By automatically purchasing such advertisements, the return on investment for an advertiser may be improved.
Owner:PRIMAL FUSION INC

Multi-party password distribution method based on secret sharing

ActiveCN117097463BCode bookCovert communication
A multi-party password book distribution method based on secret sharing, a sender uploads a password book to an interstellar file system through public key encryption, adopts secret sharing to secret split information obtained by splicing a public key and a Hash of an expected receiver, a receiver obtains a secret share through biological feature recognition technology, and obtains a sender public key through a judgment function to download an original password book from the interstellar file system. According to experimental results and security analysis, the scheme can guarantee high time efficiency and resist impersonation attacks, and guarantee the safe transmission of the password book. The present application solves the security problem of password book distribution by adopting a shamir threshold scheme, changes the threshold for safe password book distribution, dynamically solves the entry and exit of receivers, solves the problem that original covert communication can only perform one-to-one communication, and realizes one-to-many communication.
Owner:SONGSHAN LAB

System and method for ensuring data protection and regulatory compliance

PCT designated stageWO2026150334A1Internet privacyData field
A system and a method for data privacy compliance are disclosed The system is configured to receive, from a client device, information associated with a data fiduciary, the information comprising a digital offering provided by the data fiduciary, a plurality of labels corresponding to a plurality of data fields associated with the digital offering, at least one reference data privacy policy document associated with the data fiduciary, or any combination thereof. Further, system determines one or more labels of the plurality of labels used for collecting personally identifiable information (PII) based on at least one predefined criteria, and determines one or more purposes associated with the collection of the PII and a compliance of the one or more determined labels with the one or more determined purposes. Based on the determined compliance of the one or more labels, the system performs at least one action.

Syncing objects for multidevice synchronization

A service provider can store a health database associated with a user profile. The service provider can transmit, to a first user device, the health database. The service provider can receive, from the first user device, a first health sync object, The first health sync object can be based on first health information collected at the first user device. The first health sync object can include a first sync identity that includes a first hardware identifier indicative of the first user device and a first database identifier indicative of the health database. The service provider can identify a second user device to receive the first health sync object. The service provider can determine that the first sync identity is different from a second sync identity associated with the second user device. The service provider can transmit, to the second user device the first health sync object.
Owner:APPLE INC

Charging privacy budgets in networks and schedulers that help enhance privacy

An apparatus for a user equipment that implements privacy guarantees regarding service requests for providing data from a communication network, the apparatus comprising components for: sending a privacy budget to a core network function, wherein the privacy budget at least partially enables the core network function to select a user equipment capable of processing the service request and maintaining guaranteed privacy; receiving a service request from the network function, wherein processing the service request is associated with a privacy cost; obtaining the privacy cost associated with processing the service request; determining whether the privacy cost associated with processing the service request is greater than the privacy budget; and processing the service request based on whether the privacy cost associated with processing the service request is greater than or less than the privacy budget.
Owner:NOKIA TECHNOLOGIES OY

Adaptive quantum-based voice over internet protocol (VoIP) security

Systems, methods, and apparatus are provided for adaptive, quantum-based VoIP security. A biometric voiceprint may be generated from a VoIP communication. In response to failure to authenticate the voiceprint, the sound waves associated with the voiceprint may be selectively neutralized without terminating the VoIP communication. In response to authentication of the voiceprint, a biometric key may be generated based on the voiceprint. A quantum encryption key may be generated and distributed via a quantum channel. A VoIP session key may be generated based on the biometric encryption key and the quantum encryption key and used to encrypt the VoIP communication. An ambient sound associated with the VoIP communication may be isolated. In response to failure to authenticate the ambient sound, the caller may be required to provide an additional form of authentication.
Owner:BANK OF AMERICA CORP

Code scanning authentication method, system and related device

The application relates to a code scanning authentication method, a system and related equipment. The method adopts scanning a two-dimensional code displayed by a client to obtain a trusted timestamp and a dynamic address; based on the trusted timestamp, a first signature is generated by using a first signature private key of a mobile terminal, the first signature is sent to a co-signing server to trigger the co-signing server to use a second signature private key stored by the co-signing server to perform secondary signing on the first signature; according to the dynamic address, a final signature, a signature certificate of the mobile terminal and the trusted timestamp are submitted to a corresponding authentication server; after authentication succeeds, in response to a login state query request, the client obtains user identity information and automatically completes login, the problems that in the prior art, mobile terminal key single-point storage risk is high, and after a private key is leaked, the private key is easily abused to cause authentication credentials to be impersonated are solved, the technical effect that authentication credentials impersonation risk caused by single-end private key leakage is avoided, and the security and reliability of code scanning authentication are improved.
Owner:BEIJING EETRUST TECH CO LTD

Method and apparatus for improving communication security

Embodiments of the present application disclose a method and device for improving communication security. A specific embodiment of the method comprises: obtaining a first key based on a root key and first identification information saved by a first communication party; obtaining a second key based on the first key; obtaining a third key based on the second key and data information matching a target application scenario; and encrypting target communication data based on the third key. The embodiment generates different third keys based on different application scenarios, and encrypts the target communication data by using the third keys, which can improve the communication security. When the third key in one application scenario is leaked or cracked, the third keys in other scenarios are not affected, which is conducive to improving the communication security.
Owner:YUNDING NETWORK TECH BEIJING

Operating method of security system in environment in which user information receiving device and key security device are separated

An operating method of a security system for authenticating a user on the basis of fast identity online (FIDO) according to an embodiment of the present disclosure includes: receiving first user information through a user information receiving device connected to a key security device; storing feature information generated on the basis of the first user information in the key security device; receiving second user information of which authentication is requested through the user information receiving device; and receiving a token for allowing user access from a FIDO server in response to a case in which the key security device determines that authentication feature information generated on the basis of the second user information matches the feature information.
Owner:AIRCUVE INC +1

Image forming apparatus and control method for image forming apparatus

PendingJP2026121608AInternet privacyEngineering
The present invention provides an image forming apparatus, etc., that can restrict the reuse of login names. [Solution] Personal identification information that identifies a user is registered and associated with that user. When a request to delete a registered user is received, it is determined whether or not to prohibit the reuse of the personal identification information associated with the user who made the deletion request. Depending on the determination that the reuse of a particular piece of personal identification information should be prohibited, the registration request of the user associated with that piece of personal identification information is rejected.
Owner:SHARP KK

Vehicle data access system with a personal authenticating process

ActiveUS12688739B1Third partyInternet privacy
The present disclosure related to the configuration and management of accessibility of vehicle data communications provided to a service technician or other third party. The service technician requests access to the vehicle data with authentication information. The network service provider can facilitate an initial authentication for access to vehicle data, provide access to the vehicle data for authenticated and authorized users, and manage revocation of vehicle data access rights via a common interface provided through the vehicle without requiring customized software, applications or external computing devices.
Owner:TESLA INC

Contact data for identity verification

Particular embodiments receive, by a payment service in association with a user account associated with a service provider, an identity verification submission associated with an identifier and a name. The payment service, for the phone number, queries contact records associated with user accounts associated with the service provider. The payment service receives, as a result of the query, several name options associated with the phone number, where each of the name options are stored in individual contact records. The payment service determines a name option of the several name options to associate with the identifier based at least in part on a similarity of individual name options to other name options. The payment service approves or rejects the identity verification submission based at least in part on the determined name option.
Owner:BLOCK INC

Cadastral survey web browsing management system, computer program for executing cadastral survey web browsing management method, and cadastral survey web browsing system

This invention provides a cadastral survey web-based viewing management system that allows for easy viewing of cadastral maps and cadastral registers, a cadastral survey web-based viewing management method, a computer program for implementing the same, and a cadastral survey web-based viewing system. [Solution] User terminals 300a to 300c are equipped with the ability to connect to the internet and the ability to use a web browser. The internet 400 is connected to web servers 500a to 500c that provide the website of the cadastral survey company. The website 500 of the cadastral survey company publishes a web page of the cadastral survey results. Users can view information related to the cadastral survey results using user terminals 300. User terminals 300 can access the URL (Uniform Resource Locator) on the web server 500 where the web page for viewing the cadastral survey results is stored, and display the web page for viewing the cadastral survey results.
Owner:KAMICHI CO LTD

privacy shield (type I)

ActiveCN310008034SInternet privacyEngineering
1. Name of the designed product: privacy shield (type I). 2. Use of the designed product: for preventing eavesdropping of mobile phone. 3. Design points of the designed product: in shape. 4. Picture or photo best indicating the design points: perspective view.
Owner:BEIJING VENUS INFORMATION SECURITY TECH +1