Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

72 results about "Key sharing" patented technology

Backup and recovery system and methods for cryptocurrency hardware wallet

Backup and recovery of multi-party computation (MPC) security data utilized to secure digital assets and transactions thereof can enhance user confidence and user experience in digital asset transactions. Example MPC security data can include cryptographic keys and key shares utilized with a N×M MPC signature and validation framework. A computing device participating in generation of MPC secure data can retain a segment of the MPC secure data and can encrypt and store an encrypted segment at a second device. A recovery service or recovery application at the second device can facilitate recovery of the MPC secure data segment at the computing device, or at an additional device not involved in generation of the MPC secure data. The recovery service or application can facilitate recovery of the MPC secure data segment even in the event the computing device is lost.
Owner:CROSSBAR INC

Key sharing and detection scheme based on intelligent electric meter

The invention discloses a key sharing and security detection scheme based on an intelligent electric meter, and aims to solve the problems that an untrusted electric meter in an intelligent power grid is difficult to identify effectively, the detection scale is uncontrollable and the communication security is insufficient. According to the scheme, the elliptic curve cryptography, the threshold secret sharing mechanism and the physical unclonable function are combined, and hardware-level binding of the unique identity of the equipment and the secret key is achieved in the registration stage. Through a threshold password mechanism, a plurality of intelligent electric meters cooperatively participate in key reconstruction and encryption communication, and the intelligent electric meters can still work normally when part of the electric meters fail or are broken through. The center node can actively identify a fault or a malicious ammeter and dynamically adjust a communication strategy according to the integrity and correctness of the feedback information. Meanwhile, the scheme supports dynamic identity updating and integrity verification, and effectively resists modeling attacks, Sybil attacks, replay attacks and DoS / DDoS attacks. According to the invention, secure identity authentication, reliable key distribution and efficient anomaly detection are realized, and the security of smart grid terminal communication is improved.
Owner:CHUXIONG POWER SUPPLY BUREAU OF YUNNAN POWER GRID CO LTD

Keyshare refresh via threshold encryption key

Methods, systems, and devices for key management are described. A party having a key share of multiple key shares of a cryptographic key may encrypt a key share via a public threshold encryption key. The party may transmit, in accordance with a multi-party computation (MPC) operation, requests to multiple parties having private key shares of a private threshold decryption key corresponding to the public threshold encryption key. The party may receive multiple partial decryption results from a subset of the parties having the private key shares of the private threshold decryption key. The party may combine the partial decryption results to generate the key share and execute a portion of the MPC operation using the generated key share. Executing the portion of the MPC operation may cause a key share refresh operation for the key share of the cryptographic key.
Owner:COINBASE INC

Multi-device assistive identity verification method and system

The present disclosure provides a multi-device assistive identity verification method and system. The method includes: receiving an identity key allocation request and an identity key sharing request of a user; and allocating and storing an identity key, and sending the identity key to the user and a sharer. The method further includes: when a transaction request of the user is received, inviting the user and the sharer to assist in confirmation, and comparing tokens to perform identity verification.
Owner:ALIPAY (HANGZHOU) INFORMATION TECH CO LTD

Unified password service method and system supporting cross-level sharing

The invention discloses a unified password service method and system supporting cross-level sharing. The method comprises the following steps: generating a root key in a hardware security module HSM cluster; generating a key encryption key KEK in the HSM cluster based on the root key; generating a data encryption key DEK based on the KEK; the API gateway receives an encryption request sent by the service application, and performs identity authentication and authority authentication; the cryptographic operation service instance calls a key management service (KMS); the KMS obtains the stored corresponding encrypted DEK and the associated KEKID from a distributed database according to the target key ID; decrypting the encrypted DEK by using the KEK corresponding to the KEKID through the HSM; the KMS encrypts the plaintext data by using the plaintext DEK to obtain ciphertext data; the superior tenant grants the access permission of the target key to the corresponding subordinate tenant through the key sharing interface, and a sharing relation is recorded in a key permission table; according to the invention, key plaintext storage and exposure risks are fundamentally eliminated.
Owner:SHENZHEN HUASHENG JIUSI TECH CO LTD

Method and Apparatus for Server-Based Sharing of Digital Keys

An apparatus for a digital vehicle key sharing server includes interface circuitry and processing circuitry. The processing circuitry is configured to obtain, via the interface circuitry, a request for sharing a digital vehicle key for one or more vehicles to a second device from a first device. The processing circuitry is further configured to determine whether the second device specified by the request is a user device or a server. The processing circuitry is also configured to process the request for sharing the digital vehicle key based at least in part on whether the second device specified by the request is a user device or a server.
Owner:BAYERISCHE MOTOREN WERKE AG

Communication system, communication apparatus, method, and program

A communication system according to one embodiment is a communication system including a plurality of communication apparatuses, in which each communication apparatus includes: an application program configured to perform encrypted communication with another communication apparatus; a protocol conversion unit configured to transmit a message representing a predetermined procedure when a key request for a shared key to be used in the encrypted communication is received from the application program; a state management unit configured to receive a message from the protocol conversion unit to manage an execution state of the procedure, and to transmit the message to a protocol driver supporting a predetermined key sharing protocol; and a protocol driver configured to request a key sharing system that executes the key sharing protocol, to generate the shared key, when the message is received from the state management unit.
Owner:NT T INC

Dynamic path generation method, resource access method and device

This application provides a dynamic path generation method, relating to the field of information security, and applicable to the fintech field. The dynamic path generation method includes: responding to a connection request initiated by a client, negotiating and generating a shared key with the client; temporarily generating the shared key during each negotiation; performing a hash operation on the shared key to obtain a hash value; truncating a predetermined number of bits from the hash value as a dynamic path identifier; concatenating the dynamic path identifier and a resource base path to obtain a dynamic path; the dynamic path pointing to a specific resource stored on the server. This application also provides a dynamic path generation apparatus, device, and program product, as well as a resource access method and apparatus.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Authentication utilizing quantum entanglement swapping and key sharing method

To provide an authentication of a person capable of performing accurate measurement and declaration thereof in a quantum communication network of a quantum entanglement swapping node, etc., a method and a system for performing key sharing with the person by an unprecedented protocol.SOLUTION: In a system which performs a quantum communication, an authentication unit 17 controls a light separation section 21, and a first intra-node user 11 and a second intra-node user 13 respectively output a first photon signal and a second photon signal. A third intra-node user 15 detects the first photon signal and the second photon signal which pass the light separation section 21 and notifies the first intra-node user 11 and the second intra-node user 13 of a detection result. The authentication unit 17 notifies the first intra-node user 11 and the second intra-node user 13 of control information of the light separation section. The first intra-node user 11 and the second intra-node user 13 use the detection result and the control information to authenticate the third intra-node user 15.SELECTED DRAWING: Figure 1
Owner:NAT INST OF INFORMATION & COMM TECH

Group key sharing

The present disclosure provides methods systems and apparatuses for use in the secure agreement of group keys in which the group key(s) are shared between multiple end-point devices, said multiple-endpoint devices being used to create the group key(s) that is / are distributed in such a manner that no other untrusted part of the system has access to sufficient information to be able to derive or determine the group key(s) and / or portions of said group key(s). This is achieved by pairs of endpoint devices agreeing pairwise keys between themselves, wherein an intermediary device that distributes encryption keys to the endpoint devices over quantum communication channels does not have sufficient information to be able to derive the identity of the pairwise keys.
Owner:ARQIT LTD

Digital-key sharing method, digital-key authentication method, and computing device

Provided are a digital key sharing method, a digital key authentication method, and a computing device. The digital key sharing method is executed by a first device and includes: sending to a second device a digital key creation request that includes valid space information for a digital key, so as to generate the digital key at the second device; receiving a digital key signature request from the second device, wherein the digital key signature request includes data to be signed of the digital key, and said data includes the valid space information; and on the basis that the signing of the digital key signature request is completed, sending a digital key import request to the second device, so as to indicate the second device to save the generated digital key. Therefore, the security of a digital key can be improved in a spatial dimension.
Owner:BEIJING BOE TECH DEV CO LTD +1

Non-contact card personal identification system

To provide a system, method and apparatus for multi-factor authentication of a transaction received at a client device by using a personal identification number (PIN) in combination with a non-contact card.SOLUTION: The system includes a transaction device 222, a non-contact card 205, and an authentication server 223. The transaction device receives an input PIN from a user and transmits it to the non-contact card. The non-contact card performs PIN verification by comparing the received input PIN with a stored PIN. If the comparison result indicates a match, encryption logic generates an encryption code and transmits the encryption code to the transaction device. The transaction device transmits the received encryption code to the authentication server. Upon receiving the encryption code, the authentication server generates an expected encryption code using a counter, key, shared secret and the like associated with the non-contact card, and determines whether the generated encryption code matches a unique digital signature provided by the received encryption code. The authentication server then returns to the transaction device an authentication status indicating whether the transaction is approved or denied.SELECTED DRAWING: Figure 2B
Owner:CAPITAL ONE SERVICES LLC

A blockchain consensus algorithm with high performance

The application discloses a kind of high-performance blockchain consensus algorithm, the method includes: in current block period, based on preset clustering algorithm, all senior consensus nodes in the senior consensus group to be clustered are clustered to obtain m signature groups;Based on BLS aggregation signature, determine two deputy leader nodes in each signature group and the group signature block corresponding to each deputy leader node, that is, obtain 2m deputy leader nodes and 2m group signature blocks;Based on the coin protocol of verifiable key sharing, the leader node is elected from the deputy leader node and the block corresponding to each leader node, that is, obtain m leader nodes and m blocks;The credit value of each node in the blockchain network is obtained, and the new senior consensus group to be clustered is determined, steps 1 to 4 are continued to be executed, to realize blockchain consensus.The consensus algorithm of the application has high consensus efficiency, high scalability, high block efficiency, high chain quality and other performances.
Owner:XIAN TECH UNIV

Systems and methods for key sharing for cryptocurrency transactions

A system for managing and using digital financial assets, such as cryptocurrency uses multiple independent devices that mutually cooperate to control cryptocurrency assets in a secure manner. Each of these devices may store a unique private key associated with the cryptocurrency assets, which may be configured such that a certain minimum number of these private keys are required to transfer the cryptocurrency assets. The use of multiple private keys spread across multiple distinct devices may reduce the likelihood of loss stemming from a hardware failure or reduce the likelihood of an attacker successfully gaining access to the cryptocurrency assets. In addition, selection of the devices to be used for storing these private keys, as well as how many private keys are required to authorize a transaction, may be tailored to balance a user's preferences for reliability of access versus security and for third-party custody versus self-custody.
Owner:BLOCK INC

Digital key sharing method and device, intelligent equipment and medium

Disclosed is a digital key sharing method, comprising: requesting a server to create a digital key pre-sharing session, the request comprising location information, a verification code and a timestamp of an intelligent device; in response to the creation of the digital key pre-sharing session, information of matched receiver equipment returned by the server is received, and the matched receiver equipment is the receiver equipment which is detected by the server and inputs the same verification code within a preset range of the intelligent equipment within a preset time period; generating a digital key sharing session in response to the selection of the target recipient device; and in response to the generation of the digital key sharing session, requesting the server to issue the digital key of the vehicle to the target receiver device. The invention further relates to a digital key sharing device, intelligent equipment and a medium.
Owner:BAYERISCHE MOTOREN WERKE AG

Digital key sharing method and apparatus, terminal device, vehicle, and storage medium

The application discloses a digital key sharing method and device, a terminal device, a vehicle and a storage medium, and belongs to the technical field of vehicle control. The method comprises the following steps: receiving a first message, wherein the first message is used for sharing the control right of a second terminal device to a first vehicle to a first terminal device, and the second terminal device stores a first target certificate used for controlling the first vehicle; in response to the first message, generating a self-signed certificate; sending the self-signed certificate to the second terminal device; and receiving the first target certificate and a second target certificate returned by the second terminal device, wherein the second target certificate is determined by the second terminal device according to the self-signed certificate. The first terminal device can directly receive the second target certificate determined by the second terminal device according to the self-signed certificate of the first terminal device, without the intervention of a server, so that the sharing speed and efficiency of the digital key between the terminal devices are improved.
Owner:CHENGDU OPPO TELECOMM TECH CORP LTD

Parking space operation method using UWB system based on digital key sharing, and parking management application stored on storage medium

The present invention relates to a parking space operation method using an ultra-wideband (UWB) system based on digital key sharing, the method comprising steps in which: a parking management application is connected to a parking management device through wireless communication; the parking management device receives digital key generation request information from the parking management application on the basis of the connection between the parking management application and the parking management device; a parking management server and a vehicle server share a digital key on the basis of the received digital key generation request information; the parking management device is connected, on the basis of the shared digital key, to a vehicle through a UWB module and a Bluetooth low energy (BLE) module mounted on the vehicle; and the parking management device transmits position information of the vehicle to the parking management application on the basis of the connection between the parking management device and the vehicle.
Owner:LG INNOTEK CO LTD

Vehicle digital key sharing service method and system

The vehicle digital key sharing service method according to one embodiment includes a digital registration step in which a management server generates a terminal digital key and a vehicle digital key after user authentication in response to a digital key registration request through a dedicated application of a mobile terminal and the mobile terminal stores the terminal digital key in a secure world that is separated from a normal world and a digital key using step in which an authentication token is generated using the terminal digital key stored in the secure world when the mobile terminal approaches or tags a vehicle and a vehicle device locks or unlocks a door of the vehicle by activating the vehicle digital key, which is registered from the management server, to validate the authentication token.
Owner:KSMARTECH

Cloud-based sharing of digital keys

A system for managing an access to an asset (106, 108) is provided. A digital key to the asset (106, 108) is generated and synchronized between a first user device (104a) of a first user (102a) and an access control device (110a, 110b) that controls the access to the asset (106, 108). A key-sharing request is initiated by the first user device (104a) to grant a second user (102b) the access to the asset (106, 108). Based on the key-sharing request, a server (112) communicates the digital key to a second user device (104b) of the second user (102b). When the second user device (104b) is within a detection range of the access control device (110a, 110b), the access control device (110a, 110b) receives the digital key from the second user device (104b), validates the digital key, and grants the second user (102b) the access to the asset (106, 108) for an access duration defined in the key-sharing request.
Owner:EVQ TECH PTE LTD

User base device, cryptographic communication system, and cryptographic communication method

According to one embodiment, a user base device A has a cryptographic module a key sharing module. The key sharing module restores and disperses a cryptographic key used to generate the encrypted data. The key sharing module includes a quantum cryptographic communication device applicable to a plurality of front ends. The front ends are used to receive dispersed cryptographic key from different routes, and to output dispersed cryptographic key to different routes.
Owner:KK TOSHIBA +1

Digital car key sharing and revocation method, system and equipment and computer medium

The invention provides a digital car key sharing and revocation method, system and device and a computer medium. The method comprises the following steps: establishing a state synchronization channel among a car end, a cloud end and at least two terminal devices; a first terminal device sends a sharing request to a cloud end, and the cloud end generates an intermediate voucher with a first life cycle; the first terminal device calls a vehicle owner private key stored locally to sign the intermediate voucher, and sends the signed intermediate voucher to the cloud; after the cloud verifies that the signed intermediate voucher is valid, a sub-voucher with a second life cycle is signed and issued to the second terminal equipment; when the first terminal device, the second terminal device, the vehicle end or the cloud end triggers a revocation event, the cloud end generates a revocation instruction and broadcasts the revocation instruction to the vehicle end and all the terminal devices through the state synchronization channel, and the vehicle end and all the terminal devices synchronously delete the digital vehicle key object corresponding to the sub-voucher after receiving the revocation instruction. And the respective local digital car key state is updated.
Owner:DONGFENG MOTOR GRP

Internal key management for a storage subsystem encrypting data in the cloud

A method for sharing data encryption keys among a plurality of storage systems is disclosed. The method generates, by a first storage system, a data encryption key for encrypting data sent from the first storage system to cloud storage. The method stores the encrypted data in the cloud storage in the form of an encrypted data object. In certain embodiments, the first storage system stores an Internet Protocol (IP) address of a second storage system belonging to a same key sharing network as the first storage system. The method replicates, from the first storage system to the second storage system, the data encryption key. The second storage system retrieves the encrypted data object from the cloud storage and decrypts the encrypted data in the encrypted data object using the data encryption key received from the first storage system.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Communication device, communication method, and program

In a case where a connection of a second link 105 is established between the communication device 102 and the other communication device 103 via a second frequency channel in a state where a connection of a first link 104 has been established between the communication device 102 and the other communication device 103 via a first frequency channel, a second key for encrypting broadcast or multicast communication using the second frequency channel is shared with the other communication device 103 via the first frequency channel by a key sharing process performed with the other communication device 103 via the first frequency channel, and the first key generated in the first frequency channel and the second key are set as an encryption key in the second frequency channel.
Owner:CANON KK

Key sharing method, key sharing system, authentication device, authentication target device, recording medium, and authentication method

A key sharing method between the authentication device and the authentication target device. The authentication device shares sharing information with the authentication target device in advance, one of the authentication device and the authentication target device shares a generation value generated by a predetermined method with the other of the authentication device and the authentication target device, and each of the authentication device and the authentication target device generates a plurality of pieces of first distribution information from the sharing information by using generation value with a predetermined encoding method capable of restoring data before distribution by arranging all or a part of a plurality of pieces of distribution data obtained by distributing the data before distribution, and shares one piece of first distribution information among the plurality of pieces of first distribution information or derivation information derived from the one piece of first distribution information as a common key.
Owner:DAI NIPPON PRINTING CO LTD

A trajectory data-based outsourcing cloud environment privacy protection infection mode mining method

The application belongs to the field of cloud computing security, and discloses a trajectory data-based outsourcing cloud environment privacy protection infection mode mining method, which is divided into two stages: the first stage: trajectory data preprocessing, encryption and outsourcing, first, the data owner pre-processes the trajectory data set to be uploaded, generates a corresponding encoding matrix for the trajectory data of each object, then generates a secure index matrix for the encoding matrix through a strong anti-collision one-way hash function, and finally uploads the encrypted trajectory data and the generated secure index matrix to a cloud server, and shares the key with authorized users; the second stage: a privacy protection infection mode mining method, first, the authorized user sends the infected object number to the cloud server, the cloud server performs infection mode mining after receiving the infected object number, and returns the mining result to the authorized user. The application can ensure high accuracy of the mining result, improve the mining efficiency, and is easy to implement.
Owner:NANJING UNIV OF POSTS & TELECOMM

Distributed key generation and resharing for multi-device cryptocurrency wallets with tee-backed security

Implementations of the present disclosure are directed to star distributed key generation (SDKG) between computing devices for private key sharing in cryptographic networks, where a computing device is the center of a star graph of multiple computing devices and functions as a 2-out-of-3 DKG protocol that can is robust against multiple types of corruptions.
Owner:CIRCLE INTERNET GRP INC

Systems and Methods for Scalable Secure Multi-Party Computation with Configurable Party Participation

A method and system for secure multi-party computation reduces the number of parties participating in each partition of a computation circuit from a total party count N to one plus a checkpoint key share count. A controller partitions an overall secure multi-party computation circuit such that parts of the circuit that directly use each private input value are partitioned separately. For each partition, the controller assigns an input-providing computer and a plurality of key holder computers. Within each secure multi-party computation protocol instance, shares of a secret key are generated and distributed among the key holder computers. The partition output is encrypted using the secret key to produce encrypted checkpoint data, which is written to external storage. A subsequent protocol instance decrypts the checkpoint data using the key shares, enabling continued computation with a different input-providing computer while maintaining security through distributed key share custody.
Owner:ENVEIL INC

Key configuration and key sharing method, device, equipment, medium and product

The invention provides a key configuration method and device, a key sharing method and device, equipment, a medium and a product. The method comprises the following steps: when a key configuration demand exists, determining key configuration data; wherein the key configuration data comprises a key type of at least one to-be-configured key, a key permission and a corresponding use limit; configuring a key of a corresponding type based on the key type, the key permission and the use limitation; and determining a corresponding storage area based on the key type of the at least one to-be-configured key, and storing the configured key in the corresponding storage area. According to the scheme, different secret keys are generated according to the types of the secret keys, the secret key permissions and the corresponding use limits, so that a secret key owner controls the secret key use permission of a secret key user, and the use safety of the secret keys is improved; and meanwhile, the configured key can be directly obtained for sharing and use, and a shared key is not required to be generated through a key exchange algorithm, so that the real-time performance of key sharing is greatly improved.
Owner:ZEBRED NETWORK TECH CO LTD

Vehicle key remote sharing method and related apparatus

This invention discloses a method and related apparatus for remotely sharing car keys. The method, applied to a borrower's client, includes: upon receiving a master key from a cloud server, generating a session key request, wherein the master key is generated by the cloud server upon receiving a sharing request from the car owner's client; sending the session key request to the vehicle, wherein the session key request instructs the vehicle to generate a session key; upon receiving the session key, generating a security sequence based on the session key and the master key, generating a UWB data frame based on the security sequence, and sending the UWB data frame to the vehicle using UWB ranging, so that the vehicle can verify the UWB data frame based on the master key sent by the cloud server. The remote car key sharing method and related apparatus of this invention improve the security of remote car key sharing.
Owner:BYD CO LTD

Management server, wireless device, and program

This reduces the risk of profiles for WD drives being downloaded by other WD drives. [Solution] The management server includes notification means for notifying the WD of first information including access information indicating a storage server that the WD accesses to download a profile, and identification information for identifying the profile in the storage server; generation means for generating a shared value to be shared with the WD using a key sharing algorithm; and configuration means for configuring the storage server so that when the WD accesses the storage server based on the first information, the storage server requests the wireless device to provide the shared value or a value based on the shared value.
Owner:KDDI CORP