Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

272 results about "Key generation" patented technology

Key generation is the process of generating keys in cryptography. A key is used to encrypt and decrypt whatever data is being encrypted/decrypted. A device or program used to generate keys is called a key generator or keygen.

Verifying identity of an emergency vehicle during operation

A method includes: receiving, by a computing device of a first vehicle, a command from a host device; in response to receiving the command, storing a new device secret in memory; generating, by the computing device using the new device secret, a triple comprising an identifier, a certificate, and a public key; and sending, by the computing device, the triple to a second vehicle, where the second vehicle is configured to verify an identity of the first vehicle using the triple.
Owner:MICRON TECHNOLOGY INC

An encryption method fusing quantum key and post-quantum cryptographic algorithm

The application discloses an encryption method fusing quantum key and post-quantum cryptographic algorithm, and belongs to the technical field of data encryption. The original quantum key is generated by a BB84 protocol QKD device, and a post-quantum key generation seed, a lattice noise scaling factor and a quantum enhanced session base key are obtained through hash derivation; quantum derived mask is generated by combining the original quantum key and the operation data characteristics of the water and power terminal; the quantum mask protection data is obtained by performing XOR preprocessing on the data to be encrypted; based on the post-quantum encryption algorithm, the two-part basic ciphertext is generated by using the above-mentioned seed, parameters and protection data; the original quantum key is divided into pieces to obtain quantum enhanced encryption values, and the two-part ciphertext is subjected to secondary disturbance encryption and XOR processing, thereby forming enhanced ciphertext; and finally, the enhanced ciphertext and the check code are spliced and transmitted to the central control room. Through multi-level encryption and key enhancement, the security and attack resistance of data transmission in the water and power terminal and the like are significantly improved.
Owner:SICHUAN LIANGSHANSHUILUOHE ELECTRICITY DEV CO LTD

Third party based key exchange method, system and components thereof

The application provides a third-party-based key exchange method and system, a trusted third party and an entity, wherein the trusted third party only participates in identity authentication of the entity and assists in negotiation of a key between the two entities, and cannot obtain a shared key between the two entities, effectively solving the problem that the trusted third party cannot avoid obtaining the exchanged key in the existing key exchange scheme based on the trusted third party, and ensuring that the finally exchanged key is only owned by the two entities participating in the key exchange. In addition, in the application, the trusted third party can also provide a random number to participate in the final key generation, thereby ensuring the strength of the final key, meeting the requirement that the trusted third party needs to manage the strength of the exchanged key in a specific application scenario, and enhancing the management and control capability of the system.
Owner:QUANTUMCTEK CO LTD +1

Blockchain-based verifiable key generation method in ma-cpabe

PendingCN122372200ASmart contractKey generation
This invention discloses a blockchain-based verifiable key generation method in MA-CPABE. The method includes: a data owner running a global setting algorithm to generate system parameters, and electing multiple decentralized attribute authorization nodes through a blockchain staking mechanism; each node generating public and private keys and uploading the public key to the blockchain; the data owner encrypting data based on a policy and publishing the ciphertext and its identifier to the blockchain; when a user requests a key, the attribute authorization node calls an optimized key generation circuit to generate a decryption key and a corresponding zero-knowledge proof, submitting the proof and related data to the blockchain, where a verification node verifies and records the key generation event; for the update history of the zero-knowledge proof, a chain-based evidence storage system is constructed through a smart contract event mechanism to achieve verifiable traceability of its change history. This invention achieves decentralized trusted key management, efficient off-chain computation and verifiability, and significantly reduced blockchain resource consumption.
Owner:YUNNAN UNIVERSITY OF FINANCE AND ECONOMICS +1

Ciphertext conversion system, ciphertext conversion method, and non-transitory computer readable medium

A ciphertext conversion system (100) includes a conversion key generation device (600) and a conversion device (700). The conversion key generation device (600) performs encryption of a public-key encryption scheme using a public key and a first decryption enabling condition, so as to generate a first converted public-key ciphertext and a key corresponding to the first converted public-key ciphertext, performs encryption of a symmetric-key encryption scheme using a second symmetric-key encryption secret key as a plaintext and the key corresponding to the first converted public-key ciphertext as a secret key, so as to generate a first partial conversion key, and calculates, as a second partial conversion key, an exclusive-OR of a result of performing encryption using a first symmetric-key encryption secret key and first auxiliary information and a result of performing encryption using the second symmetric-key encryption secret key and second auxiliary information. The conversion device (700) calculates, as at least part of a converted symmetric-key ciphertext, an exclusive-OR of a symmetric-key ciphertext and the second partial conversion key, where the symmetric-key ciphertext is an exclusive-OR of a plaintext and a result of performing encryption using the first symmetric-key encryption secret key and the first auxiliary information.
Owner:MITSUBISHI ELECTRIC CORP

A JPA-based web code automatic generation system

ActiveCN115437616BImplement one-click publishing functionImprove development efficiencyVersion controlProgram documentationWeb applicationJava
The application provides a JPA-based web code automatic generation system, comprising a JPA client, a code generation server, a Java backend service module and a Vue frontend service module; the system combines JPA technology with template technology, and can generate database tables and the front end and the back end of a web application system in batches according to JPA classes at one time, thereby greatly improving development efficiency. When a user adjusts requirements, the properties of the classes are modified, and one-key generation is very convenient.
Owner:CHINA INFOMRAITON CONSULTING & DESIGNING INST CO LTD

A physical layer key generation method and system based on gray-cdf quantization and adaptive LDPC syndrome negotiation

PendingCN122372994APhysical layerKey generation
The application discloses a physical layer key generation method and system based on Gray-CDF quantization and adaptive LDPC syndrome negotiation. The legal communication parties acquire channel characteristic sequences in reciprocal wireless channels, determine multi-level equal probability quantization thresholds according to empirical cumulative distribution functions of local channel characteristics, and adopt Gray codes to map adjacent quantization intervals into code words with only one different bit, so as to generate original key sequences; subsequently, LDPC syndrome lengths are adaptively determined according to current channel quality or initial bit inconsistency rate estimation values, the syndromes are disclosed through a public channel to complete key error correction, and retry or discard processing is performed on decoding failure frames; after successful negotiation, privacy amplification is performed according to disclosed leakage, and a consistent key is obtained. The application can improve original key generation rate, reduce negotiation disclosure, and improve the reliability of physical layer key generation and the available key rate.
Owner:HARBIN INST OF TECH

Data protection method and system based on TPM encryption

ActiveCN122263135BData streamCiphertext
The present application relates to the technical field of encrypted data protection, in particular to a data protection method and system based on TPM encryption, comprising: extracting file index node and directory item features, generating root node digest through hierarchical aggregation logic and measuring to platform configuration register, establishing hardware anchor topology based on storage root key; analyzing data stream to generate feature keywords, generating hardware derived credentials using TPM hardware unique key, constructing balanced search tree and encapsulating to generate ciphertext mapping index. Analyzing I / O request, performing hardware anchored logical integrity comparison for metadata operation; quantifying hardware evaluation value for data content operation, if threshold is met, synchronous hardware verification is performed, otherwise, physical block is located based on ciphertext mapping index and verification operation is pushed into delay queue asynchronously. The present application realizes strong binding of data and hardware and fast addressing of ciphertext through software and hardware cooperative anchoring, effectively balancing data security protection and high concurrency I / O throughput performance.
Owner:杭州鸿道科技有限公司

A bit data transmission scheduling method based on a 6G space-ground integrated quantum network, a storage medium and an equipment

ActiveCN120880564BCiphertextQuantum transport
The application discloses a bit data transmission scheduling method based on 6G space-ground integrated quantum network, a storage medium and equipment, and comprises the following steps: constructing a 6G space-ground integrated quantum communication network; searching for nodes meeting network scheduling task requirements in the quantum communication network, constructing a candidate node set, and screening out a determined best emission node; sending a quantum state to a receiving end through a quantum key distribution protocol at the best emission node, calculating a quantum bit error rate, selecting a candidate relay node from the candidate node set with the minimum quantum bit error rate as the target, and forming a quantum transmission channel; and the quantum transmission channel prepares a quantum key by using an entangled state, generates a random matrix density, generates a ciphertext through the random matrix density, and transmits the ciphertext to the receiving end. The application can reasonably schedule network resources, ensure data security through quantum communication, and the like.
Owner:CHINA TELECOM DIGITAL INTELLIGENCE TECH CO LTD

A multi-carrier continuous-variable quantum key distribution system and method

The application relates to the technical field of quantum secure communication, and discloses a multi-carrier continuous variable quantum key distribution system and method, which comprises a multi-carrier quantum key generation module, a multi-carrier quantum state preparation module, an optical fiber channel, a multi-carrier quantum state detection module and a multi-carrier quantum key processing module. The application effectively avoids the influence of the dispersion effect of the optical fiber channel on the wideband CV-QKD system, improves the data processing performance of the wideband and long-distance CV-QKD system under an ultra-low signal-to-noise ratio, realizes an N-way CV-QKD system with different modulation protocols, and guarantees high-flexibility, high-practicability and high-code-rate quantum secure communication.
Owner:NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP

A multi-agent communication key management method and system adaptive to dynamic topology

This invention discloses a multi-agent communication key management method and system adapted to dynamic topologies, relating to the field of multi-agent communication security technology. It addresses the problems of low scalability and high failure risk in the existing centralized key generation and distribution processes of agent keys. The invention includes: the role of the GC can be elected and rotated among multiple agents, avoiding physical single points of failure; and it establishes a multi-agent group key system based on a logical key tree. When an agent joins or leaves, only logarithmic-level key updates are required, reducing the communication overhead of key distribution from O(N) to O(logN), significantly improving the system's efficiency and scalability when handling large-scale, highly dynamic groups.
Owner:BEIJING XINLIAN SHUAN TECHNOLOGY CO LTD +1

Blockchain address application user information management

Methods, systems, and devices for data management are described. An application may receive a request message including a payload for signature by a blockchain address and indicating requested information to be provided to a collection endpoint associated with a client application. The application may receive the information and encrypt the information using a cryptographic key generated based on a passkey associated with a user. A smart contract may store the encrypted information mapped to the blockchain address that is associated with the passkey. The application may obtain the encrypted information from the smart contract and decrypt the information using the cryptographic key. The application may broadcast, after receiving a user input executing the signature, messages to a blockchain network and configured to execute an operation on the blockchain network and transmit, using the collection endpoint, a response message including the requested information and an identifier of the operation.
Owner:COINBASE INC

An encryption method based on registration keyword strategy hiding

This invention provides a searchable encryption method based on registered keywords and with hidden policies, belonging to the field of cryptography and information security technology. It solves the risks of key escrow and keyword privacy leakage in existing attribute-based search encryption schemes. The technical solution includes the following steps: S1, system initialization; S2, user key generation; S3, user public key validity detection; S4, generation of the system master public key; S5, trapdoor generation; S6, keywords for the encryption access policy; S7, keyword policy detection. This invention utilizes a set of arithmetic and non-double number sequences to construct system common parameters, shortening the parameter length. Simultaneously, it employs a dual-system encryption mechanism to achieve complete security and hides the keyword policy by embedding subgroup elements in the ciphertext, thereby ensuring keyword privacy. While ensuring data confidentiality, this method enables secure and flexible retrieval of encrypted data.
Owner:NANTONG UNIV

Unified key management in a communication network environment

Unified key generation management in a communication network environment are disclosed. By way of one example, a method in user equipment generates a first cryptographic value, independent of generation of the same first cryptographic value at a first network entity of a first communication network, wherein the first network entity includes an access control and mobility function and the first cryptographic value is derived from a cryptographic value for a security anchor function. The method generates a set of one or more user plane cryptographic values from the first cryptographic value, independent of the generation of the same set of one or more user plane cryptographic values at the first network entity. The method uses the set of one or more user plane cryptographic values to securely communicate with a second network entity of the first communication network, wherein the second network entity includes an access user plane function.
Owner:NOKIA TECHNOLOGIES OY

Information processing system, one or more non-transitory computer-readable storage media having program stored therein, and authentication method

ActiveUS12683940B2Information processingKey server
A server issues challenge data and transmits the challenge data to a client. The client stores encrypted group data including a plurality of encrypted data encrypted with a server key, and parameter data A, in a memory, receives the challenge data, generates response data using a response key on the client side, and transmits the response data, the encrypted group data, and the parameter data A to the server. The server selects encrypted data to be used from the received encrypted group data, based on the received parameter data A, sets a response key on the server side, based on the selected encrypted data and data decrypted with the server key, verifies the received response data, based on the challenge data and the response key on the server side, and notifies a result of the verification to the client. The client receives the notification.
Owner:NINTENDO CO LTD

Key management method, device, equipment, storage medium and program product

Embodiments of the present application provide a key management method, device, equipment, storage medium and program product, and relate to the field of blockchains. The method comprises: obtaining a key generation request, generating a key pair in a security chip built in a smart watch based on the key generation request; storing a private key of the key pair in a non-rewritable area of the security chip, and encapsulating a calling function of the private key as an encryption interface for calling by a private key calling request. In this process, the private key is limited in the physically isolated area of the security chip from generation, is difficult to be directly accessed by the outside, can only be called and obtained through the encryption interface, and the original data of the private key does not leave the security chip. The method of the present application improves the storage and use security of the key in the wearable device.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Method for pseudo-random number generation for information encryption

A method of generating at least one encryption key (130) for encrypting data (142), a method of data transmission between at least two communication systems (136, 138), a method of encrypting data (142) and a method of decrypting encrypted data (144) are disclosed. Further disclosed are an encryption key generating device (110), a system (134), a data encryption system (148) and a data decryption system (150). The method of generating at least one encryption key (130) for encrypting data (142), specifically for data transmission over an insecure channel, comprises:blending at least two materials (114) according to at least one item of blending information by using a blending device (112), thereby generating at least one blend (120);ii. detecting at least one material property (124) of the blend (120) by using at least one detector (126); andiii. transforming the material property (124) into the encryption key (130) by using at least one data processing device (132) configured for applying at least one transformation algorithm to the material property (124).
Owner:BASF SE

A malicious sample encryption process tracking method based on a large language model guide

ActiveCN122120024BLinguistic modelAlgorithm
A malicious sample encryption process tracking method based on large language model guidance, potential encryption features in a binary malicious sample are extracted through static analysis technology, and the related function call relationship is identified, then, the large language model is used to automatically screen and reason the disassembled code, and the irrelevant execution path is eliminated, and the key function subset related to key generation and encryption operation is screened out. Then, the screened function subset is taken as input and is given to the angr symbolic execution framework for further analysis, through the marking of the key function parameters, dynamic taint analysis and path exploration are carried out, and important links in the encryption process are accurately identified. Finally, the automatic identification of the whole process of malicious sample encryption is realized, and the storage positions of the encryption key and sensitive data can be accurately located. The present application effectively solves the "path explosion" problem in the traditional symbolic execution method, and significantly improves the analysis efficiency of the complex encryption type of confrontation behavior.
Owner:NANKAI UNIV

A method and system for updating root keys when switching communication networks on a device terminal.

ActiveCN122027155BAccess networkCiphertext
This invention discloses a method and system for updating the root key when a device terminal switches communication networks. The method includes: a root key generation and storage device pre-stores an initial root key ciphertext in the quantum-safe device terminal; when the quantum-safe device terminal first connects to a communication network (i.e., connects to a first communication network), it performs root key authentication with the first network communication device, and encrypted communication can be established after successful authentication; when the quantum-safe device terminal changes its access network (i.e., connects to a second communication network), it needs to perform identity authentication and update the initial root key to obtain a root key usable in the second communication network. Based on the pre-stored root key ciphertext, this invention updates the original root key when the terminal deregisters from one communication network and connects to another independent communication network, enabling the terminal to complete network switching and subsequent encrypted communication without returning to the factory, significantly improving the flexibility and availability of the device.
Owner:MATRICTIME DIGITAL TECH CO LTD

A method and system for drone identity anonymization and secure data outsourcing

The application discloses a kind of unmanned plane identity anonymization and safe data outsourcing method and system, method is based on integrated supervision platform and unmanned plane, including system initialization stage, integrated supervision platform generates main private key and public parameter;User anonymous and private key generation stage, unmanned plane registers anonymous identity and obtains user private key;Data preprocessing and outsourcing stage, unmanned plane divides data into block and sub-block and encrypts, generates coding vector using erasure code coding, generates verification label for each coding data block, constructs random distribution table according to the number of cloud server, distributes coding vector and label to multiple cloud server storage.In this way, the unmanned plane identity anonymization and safe data outsourcing method described reduces storage redundancy, ensures that data can be reconstructed when multiple servers fail, and guarantees data availability and robust recovery.
Owner:SOUTHWEST PETROLEUM UNIV

A key management method, medium and device for unmanned aerial vehicles

The present application relates to the technical field of key management, and particularly relates to a key management method for unmanned aerial vehicles, a medium and equipment, a symmetric session key uniquely associated with a flight session identifier is cooperatively generated by no less than a first preset number threshold of symmetric key generation nodes, which breaks away from single node dependence, and realizes precise matching of the key and the flight session life cycle; the key state and the flight session state are synchronized by continuously maintaining the key effective state and real-time detecting the triggering condition of the revocation condition during the flight session operation, and the security risks caused by the key being valid when the session is abnormal are avoided; after the revocation condition is triggered, the key is marked as invalid when the recommended revocation node number reaches a second preset number threshold, which avoids abnormal revocation of the key caused by single node misoperation or malicious behavior, disperses the node load, solves the performance bottleneck of centralized key management, and improves the processing efficiency and scalability.
Owner:THE SECOND RES INST OF CIVIL AVIATION ADMINISTRATION OF CHINA

A wireless channel key generation method and system based on a flow antenna

This invention discloses a wireless channel key generation method and system based on a fluidic antenna. First, a physical layer key generation (PLKG) model based on a fluidic antenna system (FAS) is constructed, completing channel modeling adapted to FAS characteristics. Second, for independent and identically distributed (AID) and spatially correlated channel scenarios, based on the PLKG secret key rate, a key rate optimization problem with transmit power constraints and sparse port activation constraints is further established, and a solution method is proposed to achieve joint optimization of sparse port selection and transmit beamforming vector. Finally, through the entire process of channel feature sequence detection, quantization, information negotiation, and privacy amplification, a symmetric encryption key shared by legitimate parties is generated. This invention achieves low-overhead, high-security, and highly adaptable wireless channel key generation through the dynamic port reconfiguration capability of the fluidic antenna.
Owner:SOUTHEAST UNIV

A key management system, device, storage medium, and computer program product

This application relates to the field of computer technology and discloses a key management system, device, storage medium, and computer program product. The system includes: a key generation module, used to process merchant terminal information sent by a merchant file management system using an encryption machine to generate a CUPS key; and to perform trans-encryption processing on CUPA keys sent by the UnionPay merchant management platform or uploaded by UnionPay branches to obtain a trans-encrypted key; and a key distribution module, used to send the CUPS key and the trans-encrypted key to a transaction system, a merchant terminal key database, and a preset key receiving address or a payment terminal management system, so that the CUPS key and the trans-encrypted key are downloaded to the target terminal. The key management system provided by this application can automate the entire process of merchant file acquisition, key generation, and distribution, effectively solving the problems of low key download efficiency and slow process in the prior art.
Owner:CHINA UNIONPAY MERCHANT SERVICES CO LTD

A verifiable private information retrieval method against poisoning attacks on RAG knowledge base

This application proposes a verifiable private information retrieval method against RAG knowledge base poisoning attacks, comprising the following steps: The server maps each data fragment in the knowledge base to a polynomial form in a polynomial ring to obtain the server-side knowledge base; the client generates a query polynomial and a private key based on the polynomial ring, generates a private commitment based on the private key, constructs a private query, and sends it to the server; the server performs ciphertext field retrieval calculation on the polynomial ring based on the private query to generate a ciphertext polynomial for the retrieval response; the client performs decryption operation on the ciphertext polynomial for the retrieval response in the response message using the private key to obtain the retrieval result. This scheme generates a unique version identifier and knowledge base commitment for the server-side knowledge base. When the knowledge base content is legally updated, a new knowledge base commitment and version identifier are generated and published simultaneously, without the need to reconstruct the entire knowledge base index, significantly reducing the preprocessing overhead and time cost of dynamic updates to the knowledge base in private retrieval.
Owner:ZHEJIANG SCI-TECH UNIV

A safe and efficient model co-construction method

ActiveCN116488906BEdge serverData mining
The application relates to a safe and efficient model co-construction method, and belongs to the field of artificial intelligence. The method comprises the following steps: regional division: each edge server divides a responsible management region according to the range coverage capacity thereof; system initialization: a global model and a key generation are initialized; local model training: model updating is calculated according to local data of equipment, and gradient information is disturbed and returned; edge security robust aggregation: a communication-efficient security-enhanced aggregation protocol is designed to support the implementation of an asynchronous grouping robust aggregation algorithm based on disturbed gradients; cloud global model aggregation: local model aggregation results returned by each edge server are received, and a federal average algorithm is executed to perform global model aggregation. The application can effectively improve the robustness and security of a global model under the condition that a client exists device heterogeneity and resource limitation.
Owner:CHONGQING UNIV OF POSTS & TELECOMM