Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

105 results about "Key size" patented technology

In cryptography, key size or key length is the number of bits in a key used by a cryptographic algorithm (such as a cipher). Key length defines the upper-bound on an algorithm's security (i.e. a logarithmic measure of the fastest known attack against an algorithm, relative to the key length), since the security of all algorithms can be violated by brute-force attacks. Ideally, key length would coincide with the lower-bound on an algorithm's security. Indeed, most symmetric-key algorithms are designed to have security equal to their key length. However, after design, a new attack might be discovered. For instance, Triple DES was designed to have a 168 bit key, but an attack of complexity 2¹¹² is now known (i.e. Triple DES has 112 bits of security). Nevertheless, as long as the relation between key length and security is sufficient for a particular application, then it doesn't matter if key length and security coincide. This is important for asymmetric-key algorithms, because no such algorithm is known to satisfy this property; elliptic curve cryptography comes the closest with an effective security of roughly half its key length.

Office process automation data analysis method based on symmetric encryption algorithm

The invention relates to an office process automation data analysis method based on a symmetric encryption algorithm, and the technical scheme comprises the following steps: introducing an encryption strategy generator, and dynamically adjusting the parameters of the symmetric encryption algorithm including the key length and the encryption round number through the real-time analysis of the data communication content including the data sensitivity, the frequency and the data volume; constructing a self-adaptive optimization model, and adjusting an encryption strategy according to external conditions such as a network state, equipment computing power and user behaviors; fragmenting the data packet before transmission, and allocating different transmission paths according to current network conditions and security evaluation; constructing a dynamic data recombination module at a data receiving end, and verifying and recombining data when encrypted data packets of different paths arrive; a lightweight key negotiation protocol based on symmetric encryption is adopted, and a key is generated and negotiated immediately when two communication parties initiate data exchange; a secret key life cycle management mechanism is introduced, and the service life and the number of times of limitation are set for each secret key.
Owner:温庆全

Industrial control system security auditing method and system

The invention relates to the technical field of security auditing, in particular to a security auditing method and system for an industrial control system, and the method comprises the following steps: aiming at a key control task, a communication task and a security task of a real-time operating system, collecting a period, a starting timestamp, a finishing timestamp, a central processing unit occupied time slice and peak memory usage amount data. According to the method, the period, timestamp, central processing unit occupation and memory usage data of a key task of a real-time operating system are collected, a task execution time boundary and a resource consumption envelope are set, and then an expected relation rule set of a task time sequence and resource consumption is constructed by applying historical data statistics and logic rule deduction; and meanwhile, the key length of symmetric and asymmetric encryption, initialization vector generation, hash algorithm selection, key derivation parameters and encryption operation context are stipulated, so that a comprehensive and specific ICS behavior specification baseline is established.
Owner:CHONGQING HUATAI ACCOUNTING FIRM (GENERAL PARTNERSHIP)

Internet of Things terminal security access method and system

The invention discloses a secure access method and system for an Internet of Things terminal, and relates to the technical field of information security, and the method comprises the following steps: when the Internet of Things terminal executes a key generation operation, firstly, carrying out the real-time monitoring of a generation environment, so as to capture the data information in a key generation process; according to the method, the generation environment is monitored in real time, the data information is obtained, data preprocessing and feature extraction are combined, the key strength is quantified, and the system can recognize and adjust the key which does not meet the safety requirement in time. And when the evaluation result shows that the key strength is insufficient, the system automatically triggers the key to be regenerated and the key length is expanded to ensure that the security standard is met. According to the scheme, the key generation of the Internet of Things terminal can respond to the environment change in real time, the key security is effectively improved, the limitation of a traditional static generation mechanism is broken through, the system protection capability is enhanced, and the security risk is reduced.
Owner:HUANGHE S & T COLLEGE

A business data encryption method and system applying quantum encryption

The present invention provides a method and system for encrypting business data using quantum encryption, which relates to the field of banking business data encryption. The method includes: constructing a fixed-time window, obtaining the key metadata and network pulse information of each bank-enterprise business data within the fixed-time window, and generating a point cloud set; generating topological structures of different scales based on the point cloud set, and recording topological feature information at each scale to generate a persistence diagram; extracting statistical quantities from the persistence diagram and calculating the decision factor corresponding to the current fixed-time window; based on the sensitivity coefficients of each bank-enterprise business data, determining the key length of each bank-enterprise business data according to the decision factor, and invoking a quantum random number generator to generate a unique key for each bank-enterprise business data under the current fixed-time window. The present invention can dynamically and flexibly adjust the encryption strategy, realizes the dynamic decoupling of the security strategy and network resources, and avoids service interruption caused by excessive occupation of bandwidth by encryption calculations.
Owner:BANK OF SHANGHAI

Systems and methods for amplifying the strength of cryptographic algorithms

Example embodiments provide systems and methods for increasing the cryptographic strength of an encryption or message-authentication-code-(MAC) generation technique. According to some embodiments, a MAC may be constructed around a shared secret (such as a random initialization number), thereby increasing strength of the MAC against brute force attacks based on the size of the shared secret. The MAC may be combined with randomized data, and may also be encrypted to further bolster the strength of the code. These elements (shared secret, MAC algorithm, and encryption algorithm) may be employed in various combinations and to varying degrees, depending on the application and desired level of security. At each stage, the cryptographic construct operates on the cyptographically modified data from the previous stage. This layering of cryptographic constructs may increase the strength of the group of contrasts more efficiently than applying any one construct with a larger key size or similar increase in complexity.
Owner:CAPITAL ONE SERVICES LLC

Internet of vehicles security authentication and data encryption transmission system integrated with IPv6 technology

The invention discloses an Internet of Vehicles security certification and data encryption transmission system integrated with an IPv6 (Internet Protocol Version 6) technology. According to the invention, the key strategy can be automatically optimized according to the dynamic environment in the actual operation of the Internet of Vehicles, and the dynamic balance between the security protection and the communication efficiency is realized. The system can intelligently judge the cracking risk faced by a current key by combining real-time data such as a vehicle driving state and network environment characteristics, so as to flexibly adjust the key length and the updating frequency: when the network environment is safe and the vehicle is in a low-risk area, the key service cycle is properly prolonged, and the basic key length is maintained to reduce the communication overhead; when a potential threat is detected or a vehicle enters a complex road section, the secret key security level is automatically improved, and the rotation period is shortened to enhance the protection capability. The system burden cannot be increased due to excessive encryption, potential safety hazards cannot be left due to insufficient protection, and key management better meets the actual requirements of high-speed movement of vehicles and rapid change of scenes in the Internet of Vehicles.
Owner:XIANGTAN TECHNICIAN COLLEGE

Business data encryption method and system applying quantum encryption

The invention provides a business data encryption method and system applying quantum encryption, and relates to the field of bank business data encryption, the method comprises the following steps: constructing a fixed time window, obtaining key metadata and network pulse information of business data of each bank enterprise in the fixed time window, and generating a point cloud set; topological structures of different scales are generated according to the point cloud set, topological feature information is recorded under each scale, and a persistent graph is generated; performing statistic extraction on the persistent graph, and calculating a decision factor corresponding to the current fixed time window; and based on the sensitivity coefficient of each bank-enterprise service data, determining the key length of each bank-enterprise service data according to the decision factor, and calling a quantum random number generator to generate a unique key for each bank-enterprise service data under the current fixed time window. According to the invention, the encryption strategy can be dynamically and flexibly adjusted, the dynamic decoupling of the security strategy and the network resources is realized, and the service interruption caused by the excessive occupation of the bandwidth by the encryption calculation is avoided.
Owner:BANK OF SHANGHAI

Energy big data secure storage method, storage medium and system

The invention relates to the technical field of big data processing, in particular to an energy big data secure storage method, a storage medium and a system.The method comprises the steps that energy data of any type of energy is obtained, the energy data comprises multiple data types, and any group of data in any data type is arranged according to a time sequence to form a data sequence; determining an association value and a data regularity of each type of data; the encryption strength coefficient of each type of data is obtained; determining the local feature approximation degree of each type of data based on the mutation moment difference and the distribution range difference corresponding to the subsequences between each type of data and all other types of data; determining the period approximation degree of each type of data; further obtaining a key length coefficient of each type of data; and when the energy data is stored, encrypting various types of data by adopting an AES encryption algorithm based on the key length coefficient. The invention aims to improve the encryption strength while ensuring the encryption efficiency.
Owner:HULUDAO POWER SUPPLY COMPANY OF STATE GRID LIAONING ELECTRIC POWER

Intelligent electronic information exchange processing method and system

The invention discloses an intelligent electronic information exchange processing method and system, and relates to the technical field of information processing, an anti-attack capability coefficient is calculated by obtaining a key length of a used encryption algorithm, and a network signal value of encrypted electronic information in an exchange processing process is obtained to calculate an exchange network environment fluctuation coefficient; acquiring data exchange quantities at different moments to calculate a data volume exchange stagnation coefficient, calculating an encryption leakage risk coefficient according to the anti-attack capability coefficient, the network environment fluctuation coefficient and the data volume exchange stagnation coefficient, and judging whether an encryption leakage risk exists in an electronic information exchange processing process or not and whether exchange processing needs to be continued or not; whether the encrypted data may be leaked in the information exchange process or not can be detected and prevented in time, it is ensured that the encrypted data cannot be cracked or leaked in the exchange process, and the possibility of safety accidents is reduced.
Owner:SHANDONG HONGYE DEV GRP CO LTD

Computer network security data transmission system

The invention discloses a computer network security data transmission system, and relates to the technical field of network security, a core architecture of the computer network security data transmission system is formed through mutual cooperation of a plurality of groups of algorithm units, and a plurality of factors such as attack frequency, intensity, fluctuation amplitude and key length are quantized, so that the security of the computer network security data transmission system is improved. And calculating to obtain a data encryption danger value Esv, so that an encryption strategy can be dynamically adjusted to adapt to different security requirements, a self-adaptive and evolvable mathematical framework is provided for a computer network security data transmission system, and the intelligent level of the system is remarkably improved. A data transmission risk value Dtr is calculated through a transmission risk value algorithm unit in combination with a plurality of influence factors such as data transmission time Dtt and network delay Nd, so that the computer network security data transmission system can carry out comprehensive quantitative evaluation on the data transmission risk; and scientific and reliable data support is provided for adjustment of an encryption strategy in subsequent data transmission.
Owner:SHENZHEN GUNAI TECHNOLOGY CO LTD

Information encryption management method and system

The invention belongs to the technical field of data security and passwords, and provides an information encryption management method and system. After the system receives the access request, calling user historical behaviors, and calculating behavior baseline stability; obtaining a time deviation degree based on the difference between the current access time and the historical time distribution, obtaining a geographic deviation degree based on the difference between the source address and the geographic attribution, combining the time deviation degree and the geographic deviation degree into a comprehensive deviation degree, and modulating according to the behavior baseline stability to obtain a context disturbance factor. Fusing the context disturbance factor with the static risk index of the target data to obtain a session risk calibration value; and mapping the key length to the step set according to the session risk calibration value to obtain a final key length, and performing encryption. According to the method, the encryption strength can be adaptively improved when abnormal access occurs, the performance is kept under normal access, and the method has real-time performance, context sensing and good generalization ability.
Owner:NINGBO NINGFAN INFORMATION TECH CO LTD +1

Security Negotiation

A wireless device sends, to a base station, a registration request message comprising one or more first parameters that indicate security algorithms supported by the wireless device, and comprise at least a first security algorithm with a first key length and at least a second security algorithm with a second key length. The wireless device receives, from the base station, a first radio resource control (RRC) message, wherein the first RRC message comprises a message authentication code-integrity (MAC-I), and indicates a selected security algorithm, among the first security algorithm and the second security algorithm. The wireless device sends, to the base station, a second RRC message comprising a second MAC-I, based on the selected security algorithm.
Owner:OFINNO LLC

Identity-based signature method supporting multi-message aggregation

The invention discloses an identity-based signature method supporting multi-message aggregation. The identity-based signature method comprises the steps of system initialization and key generation, user signature key generation, message signature construction, single signature verification, signature aggregation and aggregation signature verification. Due to the fact that the linear homomorphic signature technology is adopted, the identity-based aggregation signature method is provided, and the technical problems of signature after aggregation, key size expansion and the like in the existing aggregation signature technology are solved. Through the method, a verifier can safely and efficiently merge a plurality of signatures into a signature with a compact size, efficient data source authentication can be realized while the data integrity is guaranteed, and the verification efficiency is remarkably improved. The method has the advantages of high security, low communication cost, small calculation overhead and the like, can be applied to the technical fields of large-scale data authentication, distributed system security, lightweight cryptographic protocols and the like, and is particularly suitable for mobile terminals or Internet of Things equipment scenes with limited calculation resources.
Owner:SHAANXI NORMAL UNIV

Business data management method and system based on data analysis

The invention relates to the field of business management, in particular to a business data management method and system based on data analysis. The method comprises the following steps: collecting business data in a business database, and dividing each field in a customer data table of each customer; calculating an information chaos coefficient, and calculating a uniqueness ratio; obtaining a sensitivity original score; constructing a field sensitivity score based on the sensitivity original score, calculating a field correlation factor, and obtaining a field coupling coefficient; dividing the encryption strength grade of each field of each user on the basis of the field coupling coefficient, obtaining the key length and the update round number of each field of each customer in the encryption process by combining the field coupling coefficient, encrypting the service data of each field on the basis of the key length and the update round number, and managing the service data; and the refinement, intelligence and security level of business data management is improved.
Owner:HANGZHOU LIUDU ENTERPRISE MANAGEMENT CONSULTING CO LTD

A signaling service system and a communication method based on the signaling service system

The embodiment of the application provides a signaling service system and a communication method based on the signaling service system, the method is applied to a first client, a two-way authentication request for a second client is sent to a key management platform, and a session key handle sent by the key management platform after two-way authentication is passed is received, key negotiation is carried out between the key management platform and the second client, and a negotiation key handle and first public key information sent by the key management platform are received; a second key negotiation request is sent to the second client, the second key negotiation request comprises the session key handle, a negotiation key length and the first public key information, a session key sent by the key management platform is received, and communication is carried out with the second client according to the session key. Through the authentication mechanism based on quantum encryption technology, two-way identity authentication and quantum key negotiation are carried out, the security of a signaling channel can be ensured, and the risk of information leakage and malicious attack is reduced.
Owner:CHINA TELECOM QUANTUM TECH CO LTD

Safety method and device based on homomorphic encryption

The invention provides a security method and device based on homomorphic encryption, and belongs to the technical field of communication, and the method comprises the steps: obtaining a level 2 error learning hypothesis LWE ciphertext; converting the LWE ciphertext into a first ring error learning hypothesis RLWE'ciphertext at a level 1 by executing a public key switching algorithm and a splicing operation; and calculating the first RLWE'ciphertext by executing a scheme switching algorithm to obtain a first RGSW ciphertext at the level 1. It can be seen that one RLWE'ciphertext, such as a first RLWE 'ciphertext, is calculated through a public key switching algorithm, then the first RLWE' ciphertext is expanded into an RGSW ciphertext, such as a first RGSW ciphertext, through a scheme switching algorithm, the key size is smaller, and the overhead is smaller than that of calculation of two RLWE 'ciphertexts, so that the overhead of circuit bootstrap in a hierarchical homomorphic calculation mode can be reduced, and the circuit bootstrap efficiency is improved. The operation efficiency is improved.
Owner:HUAWEI TECH CO LTD +1

Method, apparatus, and computer program for setting encryption key in wireless communication system, and recording medium for same

The present disclosure relates to a method, apparatus, and computer program for setting an encryption key in a wireless communication system; and a recording medium for same. According to one embodiment of the present disclosure, a method for setting an encryption key size in a wireless communication system may comprise: a step in which a first controller of a first device receives a first message containing information on a minimum value of a first encryption key size from a first host of the first device; and a step in which the first controller transmits, to the first host, a second message indicating an encryption change. The second message may contain information on the first encryption key size.
Owner:INTELLECTUAL DISCOVERY CO LTD

Key length discriminator for ransomware attacks

An example computer system for providing countermeasures for a ransomware attack can include: one or more processors; and non-transitory computer-readable storage media encoding instructions which, when executed by the one or more processors, causes the computer system to generate a key by to: create a salt using artificial intelligence; form a data section by the salt and an original key; and form a dummy section to fill out a length of the key.
Owner:WELLS FARGO BANK NA

Data security encryption method for distributed storage of mass data

The invention relates to the technical field of data encryption processing, in particular to a data security encryption method facing mass data distributed storage. Acquiring data importance according to the daily load condition of the storage node in the historical analysis period and the variation trend of the read-write quantity of the disk; determining an ideal key length required by the encryption process of the storage node according to the number of users served by the storage node in the historical analysis period and the data importance; according to the distribution uniformity of data fragments stored by a storage node during real-time data storage, the key complexity of each data fragment on the storage node is obtained, the key complexity is matched with the key length supported by an encryption algorithm, the ideal key length is adjusted, the optimal key length of the data fragments on the storage node is determined, and the optimal key length of the data fragments on the storage node is obtained. And encrypting the data fragments on the storage nodes. According to the method, differential encryption is dynamically performed on each data fragment on different storage nodes through a two-stage adaptive adjustment mechanism, so that the security of distributed storage data encryption is improved.
Owner:SHAANXI SCI TECH UNIV

A method and system for secure access of an internet of things terminal

The application discloses an Internet of Things terminal security access method and system, and relates to the technical field of information security, comprising the following steps: when performing a key generation operation on an Internet of Things terminal, first, the generation environment is monitored in real time to capture data information in the key generation process. The application quantifies the key strength by real-time monitoring of the generation environment and obtaining data information, combining data preprocessing and feature extraction, and the system can timely identify and adjust the key that does not meet the security requirements. When the evaluation result shows that the key strength is insufficient, the system automatically triggers the key regeneration and extends the key length to ensure that the security standard is met. The scheme enables the Internet of Things terminal key generation to respond to environmental changes in real time, effectively improves the key security, breaks through the limitations of the traditional static generation mechanism, enhances the system protection capability and reduces the security risk.
Owner:HUANGHE S & T COLLEGE

A method for processing financial data with improved security

This invention discloses a method for improving the confidentiality of financial data processing. In the field of information security technology, the method automatically identifies the source department and data type based on the submitter information of the financial data, determines the confidentiality level of the data using a confidentiality level rating table, and dynamically parses the key length and arrangement rules accordingly. It uses the characterization conversion results of the submitter's account and submission time, along with a random string, to perform multi-source fusion to construct a high-entropy basic key. After being hosted by a hardware security module, this key is intercepted to form the final encryption key, ensuring its unpredictability and security. An encryption algorithm combined with a random initialization vector is used to encrypt the original data text, ensuring the confidentiality and integrity of the data. The encrypted data is segmented according to the key length, generating a random number sequence and binding it to the data block. The number mapping relationship is stored on the blockchain. After being encapsulated with a unique identifier, the data block is randomly shuffled and further divided, and finally distributed and stored in the cloud.
Owner:JINAN JUSHI INFORMATION TECH CO LTD

Apparatus in wireless communication system and method performed thereby

A first device and a method performed by the same are provided. The method comprises the following steps: a first host sends an HCI setting minimum encryption key size command to a first controller through a first host controller interface (HCI), wherein the HCI setting minimum encryption key size command comprises a parameter for specifying a minimum encryption key size; and receiving, by the first host, an HCI encryption change event from the first controller via the first HCI, the HCI encryption change event comprising a first parameter indicating that an encryption change has occurred, where the HCI encryption change event comprising a second parameter specifying a size of a key for encryption, the first controller does not negotiate a key size less than the minimum encryption key size, where the HCI encryption change event further includes a third parameter for an identifier of a connection between the first device and the second device, where the HCI encryption change event occurs on the first device, and where the first controller does not negotiate a key size less than the minimum encryption key size. To inform the first host when a change has occurred for connection encryption present between the first device and the second device.
Owner:INTELLECTUAL DISCOVERY CO LTD

Method and system for realizing AES based on FPGA

The invention provides a method and a system for realizing AES (Advanced Encryption Standard) based on an FPGA (Field Programmable Gate Array), and relates to the field of channel transmission encryption and decryption, the method comprises the following steps: a plaintext is subjected to byte replacement, row shift, column mixing and round key addition circulation (N-1) rounds based on the FPGA, the Nth round is subjected to byte replacement, row shift and round key addition to obtain a ciphertext, and the number N of circulation rounds is designed according to the length of a key. The byte replacement comprises the following steps of: storing a byte lookup table by using an RAM (Random Access Memory) in an FPGA chip, and mapping a new byte in the lookup table according to each byte of the state equation to replace an original byte; the row shifting comprises the step of respectively circularly shifting the second row, the third row and the fourth row of the 4 * 4 state equation leftwards by 1, 2 and 3 bytes; column mixing comprises the following steps: left-multiplying a matrix of the state equation by a fixed matrix; the round key addition comprises the steps that the state equation and the round key are subjected to bitwise exclusive OR, a new state equation is obtained, and the round key is obtained through key expansion. According to the invention, the AES can be realized on the FPGA with fewer logic resources.
Owner:CHINA UNIV OF GEOSCIENCES (WUHAN)

PLC data encryption communication method based on chaotic system mobile key

The invention provides a PLC data encryption communication method based on a chaotic system mobile key, and relates to the technical field of industrial control and information security, and the method comprises the steps: building a switching chaotic system model through a plurality of chaotic systems, and based on a basic judgment model in the switching chaotic system model, executing a switching strategy according to an initial value as a switching signal; switching the obtained initial value of the chaotic system through the switching strategy, generating a key stream, and shifting the key stream; and carrying out XOR operation on the shifted key stream and the plaintext to obtain encrypted ciphertext data. By shifting the key stream, the key length is increased, and the key space is expanded, so that the security of the encryption and decryption algorithm is improved. Due to the high sensitivity of the chaotic system to the initial condition, it is possible to automatically generate a differentiated encryption matrix during communication every time, protocol packaging delay is effectively reduced, and it is ensured that stable operation can be achieved even in a high-requirement real-time scene.
Owner:INSPUR GENERSOFT CO LTD

Key use method and device and storage medium

The invention discloses a secret key using method and device and a storage medium. The method comprises the steps that n data processing processes are created and used for conducting concurrent processing on data; obtaining n unused key files with the length of L from the key files with the total length of M according to the data average length L within a past period of time T, and sequentially and correspondingly distributing the n key files to corresponding data processing processes; and distributing the to-be-processed data to the corresponding data processing process for encryption processing. According to the invention, a segment of key is preset in each data processing process, so that the data processing process can immediately execute encryption operation when receiving the to-be-processed data without waiting to request to distribute the key to a key file; particularly, under the condition that the length of the data to be processed is smaller than the length of the preset key, encryption can be completed by directly using the preset key, the encryption preparation time is remarkably shortened, and the real-time performance of data processing is improved.
Owner:MATRICTIME DIGITAL TECH CO LTD

Digital asset circulation method and system based on cryptography

The present application relates to the technical field of cryptography, and in particular to a digital asset circulation method and system based on cryptography. The digital asset circulation method comprises: in response to a confirmation end receiving a target asset circulation request of an initiator, obtaining historical circulation information of a receiver and the initiator; calculating a real-time security demand on the basis of the historical circulation information and an asset circulation amount of the target asset circulation request, and allocating a key length of the target asset circulation request on the basis of real-time security demands of all asset circulation requests of a current moment; generating a temporary public key and a temporary private key on the basis of the key length, and using the temporary public key to generate a digital signature of the target asset circulation request; and using the temporary private key to perform signature verification on the digital signature, and if the signature verification is successful, the confirmation end adjusting digital assets in accounts of the initiator and the receiver on the basis of the asset circulation amount. The technical solution of the present application can ensure the circulation efficiency and the circulation safety of digital assets.
Owner:TIANYI CAIJIN TECHNOLOGY SERVICES (WUHAN) CO LTD

Software license verification method based on satisfiability problem

The invention discloses a software license verification method based on a satisfiability problem, which comprises the following steps that: a license issuing center generates a random 3-SAT problem for an authorized user of software, takes information of the 3-SAT problem and a solution of the 3-SAT problem as digital license information of the authorized user, and then sends the digital license information to the authorized user and a software verification party; when the authorized user needs to use the software, two communication devices are used for sending an interaction application to a software verification party; performing multi-round interaction between the two communication devices and the software verification party, and recording information of each round; and the software verification party checks the interaction information of each round and judges whether the authentication is passed or not, namely whether the authorized user is authorized to have an effective license or not. The security of the method is based on the NP completeness of the 3-SAT problem, and does not depend on the key length or the complexity of an encryption algorithm; meanwhile, the absolute confidentiality of the license key is ensured by using the zero-knowledge proving technology.
Owner:NANJING UNIV +1

Encryption and decryption method and system, computer equipment and storage medium

The invention relates to the technical field of data security, in particular to an encryption and decryption method and system, computer equipment and a storage medium. The method comprises the following steps: sequentially storing an initial key in a zeroth register, a first register, a second register, a third register, a sixth register and a seventh register; according to the key length of the initial key, performing iteration round key addition operation iteration on the sub-keys stored in the registers to obtain the sub-keys output by each round of iteration operation, and sequentially storing the sub-keys in the corresponding registers according to a generation sequence; if the round key adding operation meets an iteration target, generating a target key after the initial key is expanded based on each round key in each register; and encrypting or decrypting a target file based on the target key. The invention provides an encryption and decryption method which is shorter in path and higher in efficiency.
Owner:芯来智融半导体科技(上海)股份有限公司

Video encryption transmission link optimization method and system based on digital twinning

The invention discloses a video encryption transmission link optimization method and system based on digital twinning. The method comprises the following steps: deploying lightweight probes at a sending end, a receiving end and an intermediate node, acquiring an encryption algorithm, a key length, encryption and decryption time delay, hop-by-hop time delay and a packet loss rate in real time, and sending the information with timestamps into a message queue; after the cloud twin container reads the data, a network topological graph, an encryption state machine and a video quality attenuation model are updated, a future traffic matrix and an attacker model are input into a running diagram neural network, and multiple groups of encryption parameter and routing path combinations are output; the reinforcement learning agent selects an optimal combination, issues encryption parameters to an encryption engine through a network configuration protocol, and issues a new path to a forwarding plane through a segment routing protocol; after the strategy takes effect, the probe continues to collect performance data, a message queue is sent back to correct network weight, closed-loop optimization is formed, encryption delay and end-to-end delay are continuously reduced, and dynamic optimization of a video encryption transmission link is achieved.
Owner:BEIJING FUSION HSBC TECH CO LTD