Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

50 results about "Key generator" patented technology

A key generator is used in many cryptographic protocols to generate a sequence with many pseudo-random characteristics. This sequence is used as an encryption key at one end of communication, and as a decryption key at the other.

Systems and methods for utilizing machine learning models to generate encryption keys

A device may receive input key material, and may process the input key material, with a trained generative adversarial network (GAN) model, to generate an encryption key with a maximized entropy. The trained GAN model may include a key generator network model trained to generate encryption keys that generalize key derivation functions with higher entropy to enhance cryptographic security, and a key discriminator network model trained to predict authenticities of the encryption keys generated by the key generator network model. The device may perform one or more actions based on the encryption key.
Owner:VERIZON PATENT & LICENSING INC

Intelligent transportation safety monitoring system and method based on quantum encryption and edge computing

The invention belongs to the technical field of Internet of Things, and particularly relates to an intelligent transportation safety monitoring system and method based on quantum encryption and edge computing, the system comprises a transportation equipment end and a monitoring center, the transportation equipment end is installed on a transportation tool, and the transportation equipment end comprises a quantum encryption unit, an edge computing node and multiple sensors. The multiple sensors acquire multi-source sensor data, the edge computing device is used for performing format conversion, multi-source data fusion and analysis decision on the multi-source sensor data, and the edge computing device performs data interaction with the monitoring center after performing quantum encryption on data needing to be transmitted through the quantum encryption unit. The monitoring center comprises a quantum key management system, a data storage server and a data analysis server, and the quantum key management system comprises a quantum key generator, a quantum encryption unit and a quantum decryption unit. The method better adapts to the resource limitation of the edge computing device, and meets the requirement of intelligent transportation for real-time performance.
Owner:ANHUI SYMBIOSIS PUBLIC SERVICE SUPPLY CHAIN TECH RES INST CO LTD

System and method for providing multiple key encryption

Systems and methods for providing multiple key encryption may generate a private key encryption key (KEK) and a corresponding public KEK in a trusted execution environment (TEE); provide the public KEK to a key generator; generate, by the key generator, a data encryption key (DEK) and encrypt the DEK with the public KEK; obtain, by a key processor, an ephemeral public key and the encrypted DEK, and send the ephemeral public key and the encrypted DEK to the TEE; decrypt, by the TEE, the encrypted DEK using the private KEK, and re-encrypt the decrypted DEK with the ephemeral public key; obtain, by the key processor, the re-encrypted DEK from the TEE and pass the re-encrypted DEK to a signing service; decrypt, by the signing service, the re-encrypted DEK using a corresponding ephemeral private key; and encrypt, by the signing service, data using the DEK.
Owner:THE BANK OF NEW YORK MELLON

System and method for cost management using blockchain and encryption

A system for cost management using blockchain and encryption is provided. The system includes an access interface, a recorder, a determinator, a key generator, an encryptor, and a decryptor. The access interface is configured to provide a platform for users to log in. The recorder is for recording cost information. The determinator is configured to determine whether the cost information recorded in the recorder is non-sensitive. When the cost information is determined as being non-sensitive, the cost information is directly uploaded to and recorded on a blockchain network via a smart contractor module. When the cost information is determined as being sensitive, the key generator generates a symmetric key randomly. The encryptor is configure to encrypt the cost information using the symmetric key to obtain ciphertext information and encrypt the symmetric key using public keys to obtain encrypted keys. The encryptor sends the ciphertext information to the blockchain network.
Owner:THE HONG KONG UNIV OF SCI & TECH

Privacy protection and traceable anonymous bidirectional authentication method for heterogeneous Internet of Vehicles

The invention discloses a privacy protection and traceable anonymous bidirectional authentication method for heterogeneous Internet of Vehicles, which comprises the following steps: generating public and private keys based on a key generation center, a private key generator and a trusted registration mechanism, and constructing a heterogeneous password system; the vehicle completes key registration by fusing the certificateless public key system, and the roadside unit completes key registration based on the identity public key system; the vehicle registers and uses the pseudonym to communicate with the roadside unit; and the vehicle and roadside unit bidirectional authentication verifies the legality of the opposite side through a hash function and a temporary value, and finally generates a session key. According to the invention, by providing traceable pseudonym and anonymous authentication communication for each vehicle, the privacy of the vehicle can be effectively protected, and an attacker can be prevented from tracking the identity information of the vehicle. Based on various security hypotheses, the method meets various security attributes including anonymity, unlinkability, perfect forward security, security of known temporary information specific to sessions and the like, and the security of data transmission of the Internet of Vehicles can be improved.
Owner:BEIJING UNIV OF TECH

Method and apparatus for device identifier composition engine certificate-based security and out-of-band temporary key generation for bluetooth pairing

An information handling system includes a hardware processor and a memory device to execute code instructions of an automatic peripheral device pairing management system pairing agent to receive, via a wireless interface adapter, a device identifier composition engine (DICE) certificate from a wireless peripheral device indicating the identity of the wireless peripheral device, the DICE certificate including a public key. The hardware processor executes computer readable program code of an out-of-band (OOB) temporary key generator agent to generate an OOB temporary key. The hardware processor executes the computer readable program code of the automatic peripheral device pairing management system pairing agent to encrypt the OOB temporary key using the public key. The hardware processor to sends the public key-encrypted OOB temporary key to the wireless peripheral device to be decrypted using a private key at the wireless peripheral device. The hardware processor executes a confirm value generation function to confirm that the OOB temporary key matches the decrypted OOB temporary key at the wireless peripheral device to automatically Bluetooth® (BT) pair the information handling system to the wireless peripheral device.
Owner:DELL PROD LP

Calculation device

The invention discloses computing equipment, and relates to the field of computers, the computing equipment comprises a processor and a memory, the memory comprises a memory controller, a key generator and a memory, the processor is connected with the memory controller, the memory controller is respectively connected with the key generator and the memory, and the processor is used for operating the key generator and the memory in the process of operating processor tasks. Initiating a data access request to a memory controller; the memory controller is used for responding to the data access request and encrypting and decrypting the target task data by using a data key corresponding to the target task data to obtain reference task data; calling a memory to execute a target access operation on the reference task data; the key generator is used for generating a data key; and the memory is used for storing the task data of the processor task for the processor, so that the technical problem that the data security of the computing equipment is insufficient is solved, and the technical effect of improving the data security of the computing equipment is achieved.
Owner:XIAMEN YUANCHOU INTELLIGENT COMPUTING TECHNOLOGY CO LTD

Single-chip integrated encryption card

The utility model discloses a single-chip integrated encryption card, which comprises a PCB (printed circuit board) carrier plate provided with an FPGA (field programmable gate array) main control chip, an SFP (small form-factor pluggable) interface, a PCIE (peripheral component interface express) interface and an SMBUS (system management bus) interface. The FPGA main control chip is respectively connected with the SFP interface, the PCIE interface and the SMBUS interface; a key generator is arranged in the FPGA main control chip and used for generating a key, and a memory is arranged in the FPGA main control chip and used for storing the key. The utility model discloses a single-chip integrated encryption card which is respectively connected with an SFP interface, a PCIE interface and an SMBUS interface through an FPGA main control chip, so that data transmission and encryption processes are packaged in a single chip, external cracking is avoided, hardware is not easy to tamper, the single-chip integrated encryption card has relatively strong cracking resistance, and the security of data can be effectively improved.
Owner:NAT QUANTUM COMM (GUANGDONG) CO LTD

Method for protecting a software code implementing a cryptographic algorithm against cloning attacks

The present invention relates to a method for protecting against cloning attacks a client application comprising a standard implementation of a cryptographic algorithm taking as input a reference cryptographic key, a client device storing instead of said reference cryptographic key and said client application: • a bound whitebox cryptographic key generated by a bound whitebox cryptographic key generator of a server device, from said reference cryptographic key, depending on a reference secret binding parameter, a modified client application comprising aa whitebox-protected implementation of said cryptographic algorithm configured to take as inputs said stored bound whitebox cryptographic key and an input secret binding parameter, and delivering a result equal to the result of the execution of the cryptographic algorithm using as input said reference cryptographic key when said input secret binding parameter used as input is equal to said reference secret binding parameter, and delivering a different result otherwise, said method being performed by the client device when executing the modified client application and comprising: - retrieving (S1 ) a runtime secret binding parameter, - executing (S2) said whitebox-protected implementation of said cryptographic algorithm using as inputs said bound whitebox cryptographic key and said runtime secret binding parameter.
Owner:THALES DIS FRANCE SA

Network gray fault detection method and device, medium and switch system

The invention provides a network gray fault detection method and device, a medium and a switch system, the method is applied to a first switch in a message transmission path, the first switch is other switches except a second switch in the message transmission path, and the second switch is an ingress switch; the first switch receives a target message flow sent by a preceding-stage switch, and the target message flow is obtained in the mode that a second switch adds check key values to message headers of all messages in the message flow in sequence based on a self-circulation key generator according to the message arrival sequence; performing XOR accumulation processing on the verification key value carried by each message in the target message flow in sequence, and determining a verification value of the target message flow; and under the condition that the verification value is different from the preset value, determining that the packet loss gray fault event exists in the transmission process of the message flow. According to the embodiment of the invention, the detection efficiency and detection precision of the packet loss gray fault can be improved.
Owner:TSINGHUA UNIVERSITY

System for generating verifiable physical transaction documents

PCT designated stageWO2025210326A1Key distribution for secure communicationFinanceDocumentation generatorDocument Identifier
A computer-implemented system for generating verifiable physical transaction documents, wherein each physical transaction document comprises transaction information and security information, the system comprising: a key generator configured to generate a plurality of keys; a document generator configured to generate a plurality of physical transaction documents; and a digital counterpart ledger configured to store a respective digital counterpart for each of the plurality of physical transaction documents, wherein the digital counterpart ledger is an immutable ledger, wherein the document generator is configured to generate each physical transaction document by: obtaining a first key from the key generator; obtaining transaction information; obtaining a unique document identifier based on the key; generating a digital counterpart of the physical transaction document, the digital counterpart comprising the unique document identifier and the transaction data; adding the digital counterpart to the digital counterpart ledger; and producing the physical transaction document based on the digital counterpart.
Owner:ARQIT LTD

A Multi-Party Joint Data Watermarking Structure and Method

This invention provides a multi-party collaborative data watermarking structure and method, including a key management module comprising a task receiver and a key generator, wherein the task receiver manages the correspondence between keys and tasks; and a watermarking module comprising a root key identification module, a preceding key reading module, and a new watermarking module. The root key identification module identifies the root key of the watermark, i.e., the first key to add the watermark; the preceding key reading module reads the different keys added to this root key sequentially; and the new watermarking module generates a watermark from the key generated by the key management module and adds it to the data. This technical solution is used to mark the multi-party transmission process, forming a parallel, serial watermark chain.
Owner:STATE GRID FUJIAN ELECTRIC POWER RES INST +1

Contractor data auditing terminal equipment

The utility model provides contractor data auditing terminal equipment, which comprises a replaceable scanning module, which is connected by adopting a magnetic type quick release interface, is integrated with an RGB color scanning head and an OCR special inclined scanning head, and is used for digitally collecting multi-form data; an electric lifting support and a gravity sensor are integrated on the back of the self-adaptive touch display screen, and the height and the inclination angle are automatically adjusted according to the height of a user; the intelligent auditing module is used for carrying out OCR (Optical Character Recognition), logic verification and abnormal marking on the digital data; the two-stage data encryption module is arranged in the lower data processing area, is connected with the replaceable scanning module, comprises a hardware-stage key generator and a data encryption chip, and is used for encrypting the data acquired by the replaceable scanning module; and the bill printing module adopts a double-roller paper clamping mechanism and is used for outputting an audit report. According to the utility model, self-service uploading, instant auditing and safe output of contractor data are realized, and the data auditing efficiency and safety are improved.
Owner:GUOHUA ENERGY INVESTMENT +1

A public key searchable encryption similarity query method with forward security

PendingCN122660875ASimilarity queryKey (cryptography)
The application discloses a public key searchable encryption similarity query method with forward security, belongs to the field of cryptography, and is applied to cloud database retrieval query privacy protection.The application realizes the method as follows: 1, a key generator generates public parameters; 2, the key generator generates keys required in subsequent steps; 3, the key generator judges whether a time stamp meets a condition; if the condition is not met, the key generator repeats step 2; 4, a data owner encrypts data; 5, a mode provider and the key generator interact to generate a trapdoor; and 6, a service provider and the mode provider interact to perform similarity query and return a query result.Compared with the prior art, the application solves the technical problem of improving data security, mode security and forward security by using the public key searchable encryption similarity query in the similarity query scene.
Owner:BEIJING INST OF TECH

Power supply and distribution mode and ship

The embodiment of the invention discloses a power supply and distribution mode and a ship. The ship main distribution board in the mode comprises at least two sections of busbars and a control module; each section of busbar in the at least two sections is electrically connected with at least one key generator or / and at least one key operation device; and the control module is used for controlling the on-off of the electric connection and switching the power output supply of the key generator and / or the power input allocation of the key operation equipment when the connected busbar is offline due to a fault (such as a fault). According to the power supply and distribution mode provided by the embodiment of the invention, electrical connection channels with other designated sections of busbars are specially additionally arranged for the key-position generator and the key-position operation equipment, so that disability caused by power supply and distribution failure due to offline connection of the busbar sections can be successfully avoided, continuous output of the power of the key generator can be ensured, and the power supply and distribution efficiency can be improved. And the power utilization of key operation equipment can be continuously allocated, and meanwhile, the load imbalance between different busbar sections on the distribution board can be optimized.
Owner:SHANGHAI MERCHANT SHIP DESIGN & RES INST

Generating keys for node clusters in single security association

A computing node in the computing cluster includes at least a key generator and an encryption engine. The key generator implements a key derivation function and generates a first data encryption key based on the key derivation key. The key derivation key is a global security association encryption key shared by a plurality of nodes in the computing cluster. The first data encryption key has uniqueness for a node pair of the plurality of nodes including a first node and a second node. The encryption engine encrypts a data packet using the first data encryption key.
Owner:ADVANCED MICRO DEVICES INC

Systems and methods for utilizing machine learning models to generate encryption keys

A device may receive input key material, and may process the input key material, with a trained generative adversarial network (GAN) model, to generate an encryption key with a maximized entropy. The trained GAN model may include a key generator network model trained to generate encryption keys that generalize key derivation functions with higher entropy to enhance cryptographic security, and a key discriminator network model trained to predict authenticities of the encryption keys generated by the key generator network model. The device may perform one or more actions based on the encryption key.
Owner:VERIZON PATENT & LICENSING INC

Cloud storage data sharing method and system supporting dynamic user group and outsourcing decryption

The invention relates to a cloud storage data sharing method and system supporting dynamic user groups and outsourcing decryption, and belongs to the technical field of information security. According to the method, a key generation center selects system security parameters, outputs system public parameters and the number of users at the same time, and generates a system main public key, a main private key, state information and a revocation list; the data user generates a public key and a private key by using a key generator (KeyGen), and sends the public key to the key generation center; the key generation center generates a conversion key according to the public key and the attribute information of the data user, and sends the conversion key to the cloud server through a public channel; meanwhile, a key updating algorithm is operated, and key updating information is broadcasted; the data owner encrypts the data, generates a ciphertext and uploads the ciphertext to the cloud server; the cloud server performs calculation outsourcing processing on the ciphertext by using the conversion key and the key updating information, and outputs the converted ciphertext; and the data user completes final decryption of the converted ciphertext by using the private key.
Owner:FUJIAN NORMAL UNIV

Electric power system stability on-line monitoring method based on convolutional neural network

The invention relates to an electric power system stability online monitoring method based on a convolutional neural network, and the method comprises the steps: collecting target data of all generator buses in real time, and carrying out the preprocessing of the target data, and the target data comprise a voltage amplitude, a phase angle and a frequency; generating a thermodynamic diagram according to the pre-processed target data, performing feature extraction and pattern classification on the thermodynamic diagram by using a convolutional neural network to obtain a category prediction result, the convolutional neural network being obtained by training through a training set, the training set being generated by a simulation fault sample, and the training set being obtained by training the simulation fault sample; each sliding window sample is endowed with a category label; according to the category prediction result, judging whether the state is an instability early warning state or not; and after an instability early warning state is determined, identifying a key generator set through a principal component analysis (PCA) method or a double-branch convolutional neural network. According to the invention, the accuracy and timeliness of transient stability prediction are improved.
Owner:POWER ECONOMIC RESEARCH INSTITUTE OF JILIN ELECTRIC POWER CO LTD

Dynamic encryption bus communication method and system for core security level software

The invention discloses a dynamic encryption bus communication method and system for nuclear security level software, and the method comprises the steps: monitoring the operation data of each to-be-monitored part in a nuclear facility through each monitoring sensor in the operation process of the nuclear facility; the key generator generates a real-time key according to a preset dynamic key generation algorithm, and transmits the real-time key to each monitoring sensor and the analysis display unit; each monitoring sensor encrypts each operation data based on the real-time secret key to generate ciphertext data and transmits the ciphertext data to an analysis display unit through a bus; and decrypting by software in the analysis display unit to obtain decrypted data, and analyzing and displaying the nuclear security level of the nuclear facility based on the decrypted data. According to the method, the real-time secret key suitable for running data real-time communication transmission is generated through the preset dynamic secret key generation algorithm, and the real-time secret keys between the monitoring sensors are different, so that the problem that the secret keys are easy to leak and attack is avoided, and the safety and the reliability of communication transmission are integrally improved.
Owner:CHINA STATE SHIPBUILDING CORP LTD RESEARCH INSTITUTE 719

Generation of cryptographic keys

There is provided mechanisms for generating a cryptographic key for a user. The method is performed by a cryptographic key generator device. The method comprises authenticating the user using biometrics data read from the user using a biometrics reader. The method comprises obtaining, only when having authenticated the user, a PUF response from a PUF entity by providing a challenge based on biometrics response data to the PUF entity. The biometrics response data is a function of the biometrics data. The method comprises generating the cryptographic key using a cryptographic function and by seeding the cryptographic function with the PUF response.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Key generation for a cluster of nodes within a single security association

Each computing node in a computing cluster includes at least a key generator and a cryptographic engine. The key generator implements a key derivation function and generates a first data encryption key based on the key derivation key. The key derivation key is a global security association encryption key shared by multiple nodes in the computing cluster. The first data encryption key is unique to a node pair, including a first node and a second node among multiple nodes. The cryptographic engine uses the first data encryption key to encrypt data packets.
Owner:ADVANCED MICRO DEVICES INC

Data sharing authorization information management method and system based on block chain

The embodiment of the invention provides a data sharing authorization information management method and system based on a block chain, and the method comprises the steps: configuring a private key generator which generates an irreversible function of a private key for an identity label; receiving a user identity identifier, generating a user private key through a private key generator, binding the user private key with the user identity identifier, and generating a digital signature based on the user private key; comprehensively counting behavior indexes of the block chain nodes, calculating node reputation values, layering the block chain nodes based on the node reputation values, and selecting consensus nodes in each layer, the behavior indexes including association behaviors for digital signatures; and when detecting that the consensus nodes are abnormal, performing communication voting through the hierarchical nodes, and dynamically adjusting the consensus nodes according to a voting result.
Owner:SHANGHAI TOBACCO GROUP CO LTD

A secret electronic file secret transmission management system, method and application

A secret electronic file secret transmission management system, method and application, including a transmission channel connecting a user end and a supervision end, and a secure transmission management software arranged on the user end and the supervision end, belong to the technical field of data security, characterized in that: the user end includes a computing power device, a storage device, an identification password machine, a special secret transmission encryption and decryption computer and a secure transmission management software; the supervision end includes a computing power server, a storage server, an identification password machine, a special secret transmission encryption and decryption computer, a quantum true random key generator and a secure transmission management software. The secret file is encrypted and decrypted and transmitted in a "point-to-point" manner, and is stored safely using lossless storage technology, which can effectively solve the problems of safe and fast transmission and safe storage of secret electronic files, and is applied to government agencies, secret units, military enterprises, military and military-civilian integration units to transmit secret electronic files and improve the high-level data security management of secret electronic files.
Owner:XIAN HUALI GUODUN INFORMATION TECH CO LTD

Communication method and communication device based on homomorphic encryption

The invention provides a communication method and device based on homomorphic encryption, and the method comprises the steps: a secret key generator obtains a first secret key parameter, and the first secret key parameter is a secret key parameter related to a root secret key after network equipment accessed by terminal equipment is updated; and the key generator derives a homomorphic encryption and decryption key according to the first key parameter and a homomorphic encryption and decryption algorithm, wherein the homomorphic encryption and decryption key is used for the homomorphic task participated by the terminal equipment. Therefore, in the communication system, when the information of the homomorphic task in which the terminal equipment participates changes, the key generator can re-derive the homomorphic key for the homomorphic task according to the superior key of the updated homomorphic key, thereby ensuring the continuity of the homomorphic task of the terminal equipment.
Owner:HUAWEI TECH CO LTD

Key generation method

A computer-implemented method of generating keys of a hierarchical key structure, wherein the method is performed by a key generator and comprises: obtaining a child key derivation path, wherein the child key derivation path comprises a sequence of elements, wherein the sequence of elements comprises one or more sets of one or more elements, each set of elements being generated based on a respective data item of a data path, and wherein each element in the sequence corresponds to a respective position of key in a respective level of the key structure; and generating one or more child keys based on the child key derivation path, wherein each respective child key is generated based on a respective element in the sequence at the respective position and of the respective level corresponding to that respective element.
Owner:NCHAIN LICENSING AG

Identity-based public key generation protocol

A computer-implemented method for generating an identity-based encryption key, the method comprising: obtaining a set of private key shares and a set of corresponding public key shares, wherein each private key share is generated based on a personal identifier, at least one of the set of private key shares is generated by a respective one of a set of key generators; generating an identity-based private key based on each of the one or more private key shares; generating a partially identity-based public key, wherein the partially identity-based public key is generated based on each of the set of corresponding public key shares; transmitting the partially identity-based public key to at least one of the set of key generators to generate the identity-based public key; and / or generating the identity-based public key, wherein the identity-based public key comprises the personal identifier and the partially identity-based public key.
Owner:NCHAIN LICENSING AG

Lightweight communication two-party calculation method, device and system based on verifiable distributed point function

The invention discloses a two-party calculation method, device and system for lightweight communication based on a verifiable distributed point function, and aims to realize a two-party nonlinear function (comparison function) security calculation scheme under a malicious security model by designing the verifiable distributed point function in a privacy protection machine learning scene. Therefore, a malicious security two-party computing protocol of lightweight communication is realized. Specifically, the patent designs a verifiable distributed point function scheme to realize identification and verification of a malicious key generator and a malicious participant; a lightweight secret sharing comparison protocol, namely a distributed point function evaluation scheme, is designed, and a malicious and safe two-party calculation protocol is realized on the premise that excessive additional calculation is not introduced. Compared with a previous scheme, the method has the advantages that the safety is further improved, and the calculation efficiency of the online stage is further improved.
Owner:WUHAN UNIV