Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

11 results about "Multilevel security" patented technology

Multilevel security or multiple levels of security (MLS) is the application of a computer system to process information with incompatible classifications (i.e., at different security levels), permit access by users with different security clearances and needs-to-know, and prevent users from obtaining access to information for which they lack authorization. There are two contexts for the use of multilevel security. One is to refer to a system that is adequate to protect itself from subversion and has robust mechanisms to separate information domains, that is, trustworthy. Another context is to refer to an application of a computer that will require the computer to be strong enough to protect itself from subversion and possess adequate mechanisms to separate information domains, that is, a system we must trust. This distinction is important because systems that need to be trusted are not necessarily trustworthy.

Construction method of hybrid key encapsulation mechanism

The invention discloses a construction method of a hybrid key encapsulation mechanism, which comprises the following steps of: generating a public and private key pair of two PKE (Public Key Exchange) algorithms based on security parameters, and outputting a public and private key pair of the hybrid key encapsulation mechanism; taking a public key of a mixed key encapsulation mechanism as the input of an encapsulation algorithm, randomly selecting two plaintexts, respectively generating ciphertexts through public key encryption algorithms of two PKE algorithms, deriving a shared key through a key derivation function, and outputting the shared key; and taking the ciphertext and the private key of the mixed key encapsulation mechanism as the input of a de-encapsulation algorithm, and outputting a shared key. According to the method, a construction method based on the KEM is not used any more, universal construction of the hybrid KEM based on the PKE scheme is achieved, multiple PKE schemes can be adopted for instantiation, multi-level safety under classical and quantum models is achieved, a key derivation function of the KEM for achieving CPA and CCA safety only depends on a plaintext part, and therefore the key derivation function of the hybrid KEM is independent of the plaintext part. Running efficiency is improved by simplifying hash operations and removing redundant hash operations.
Owner:Chinese People's Liberation Army Cyberspace Force Information Engineering University

Multi-level security authorization method for Internet of Things equipment

The invention provides a multilevel security authorization method for Internet of Things equipment, which relates to the technical field of security control of the Internet of Things equipment, and comprises the following steps: an operator triggers the Internet of Things equipment to enter a network distribution state, and then broadcasts the own equipment type; an operator initiates an authorization request through the third-party device, and the Internet of Things device gives a near field communication verification request according to the authorization request; after establishing near field communication with the Internet of Things equipment based on the near field communication verification request and the equipment type, the third-party equipment issues timestamp information to the Internet of Things equipment; the Internet of Things equipment carries out encryption calculation according to the timestamp information and the communication key, and sends an encryption result to the third-party equipment through near field communication; the third-party device reports the encryption result to the cloud server and requires to obtain the control right of the Internet of Things device; and the cloud server verifies the encryption result and grants a control right to the Internet of Things device to the third-party device after the verification is passed. The method has the beneficial effect of remarkably improving the security of the authorization process.
Owner:ZHEJIANG QINYUAN WATER TREATMENT S T

Content auditing method and system based on multi-modal retrieval enhancement generation

The invention provides a content auditing method and system based on multi-modal retrieval enhancement generation. The method comprises the following steps: collecting and preprocessing multi-modal data; mapping the preprocessed data to a security classification system constructed by a multi-level security semantic tree, and dynamically skipping to a corresponding level; marking, checking a marking result, generating a joint vectorization result, and constructing a multi-modal vector data set; clustering analysis is carried out, and an anti-fact comparison sample is generated according to each cluster to construct a comparison enhancement retrieval library; finely adjusting the first multi-modal model, encoding, inputting an encoding result into a comparison enhancement retrieval library for retrieval, and returning an anti-fact comparison sample; and constructing an enhanced prompt containing a context example, and generating a final auditing conclusion. According to the method, the text and the image are unified into the same semantic space to realize cross-modal retrieval of the most similar safe and unsafe samples. In the reasoning stage, similar samples are used as contexts to be embedded into prompts, a retrieval enhancement generation mechanism is formed, the illusion probability is remarkably reduced, and the auditing accuracy is improved.
Owner:SHENZHEN ZHUOYUE ZHIYUN TECHNOLOGY CO LTD

Sightseeing vehicle slope rollover prevention device based on double-axis inclination sensor

ActiveCN224465842URolloverControl engineering
The utility model provides sightseeing car slope anti -rollover device based on double shaft inclination sensor, including first anti -rollover subassembly and second anti -rollover subassembly, be provided with double shaft inclination sensor on first anti -rollover subassembly, the double shaft inclination sensor sets up the wheel of sightseeing car, one end of double shaft inclination sensor still is provided with receiver, the one end of receiver still is provided with voice broadcast unit, be provided with gyro stabilizer on second anti -rollover subassembly, the gyro stabilizer sets up with the chassis of sightseeing car. The utility model adopts above -mentioned sightseeing car slope anti -rollover device based on double shaft inclination sensor, integrated real -time monitoring early warning and initiative stable control function, through the collaborative work of first anti -rollover subassembly (dynamic monitoring early warning module) and second anti -rollover subassembly (initiative stable execution module), constructs multilevel security protection system, effectively reduces the rollover risk of sightseeing car in complex terrain driving.
Owner:湖南省特种设备检验检测研究院

Multistage security access control method based on inverse matrix and asymmetric encryption

The invention discloses a multilevel security access control method based on an inverse matrix and asymmetric encryption. The multilevel security access control method is used for improving data access control efficiency and security in a cloud environment. According to the method, by combining the characteristics of'forbidding down-reading 'and'forbidding up-writing' in a Biba model and based on a hierarchical key distribution mechanism, access authority control of multiple levels of users to data is realized through inverse matrix calculation and an asymmetric encryption technology. A data owner allocates read-write keys according to security levels, and key management is optimized through dynamic adjustment of an inverse matrix, so that the integrity and confidentiality of data circulation among different security levels are ensured. According to the method, the access control strategy is optimized, the elliptic curve encryption algorithm is introduced, the key derivation process is simplified through the public matrix, the dynamic and efficient requirements are met at the same time, the calculation complexity and the storage overhead are reduced, and the defense capacity for hostile attacks (such as collusion attacks) is enhanced.
Owner:NANJING UNIV OF AERONAUTICS & ASTRONAUTICS

Method and system for ensuring dual bar code authentication of documents

ActiveUS12719992B2EngineeringQuality check
The embodiments of present disclosure herein address unresolved problems of a file path encryption, a manual quality check and a dual bar-code verification while scanning and transferring of the answer sheets to a server via a communication network. Embodiments herein provide a system and method for ensuring a dual bar code-based authentication of answer sheets. The system and method provide a multilevel security that is achieved by a programmatic scanning and validation. A metadata tagging, and manual quality check can be carried out by an operator. The system and method provide a file transfer over a Hypertext Transfer Protocol (HTTP) network and with the help of a blow-fish algorithm, media files path is stored in an encrypted manner. The system and method restrict any third-party entity to get access to the confidential data and ensure a single user authorization from scanning, monitoring to package creation and an operator management.
Owner:TATA CONSULTANCY SERVICES LTD

Server security protection method and system

The invention relates to the technical field of server security protection, and discloses a server security protection method and system. The method comprises the following steps: executing dynamic tracking of a server running state to obtain running data; performing protocol behavior collaborative analysis on the tracking result to generate a protocol interaction map representing a complex calling relationship between services; performing multi-level security threat assessment based on the map, and identifying an abnormal interaction mode deviating from a normal baseline; positioning a core risk area, performing real-time protection strategy adaptation, and generating a dynamic security strategy instruction; and finally executing the instruction to complete safety protection. According to the method, conversion from isolated event analysis to system relation modeling is realized by constructing the protocol interaction atlas, so that a complex attack chain can be accurately identified; through dynamic strategy adaptation based on a graph structure, protection upgrading from extensive blocking to accurate minimization intervention is realized, the threat detection capability is improved, and the service continuity is guaranteed.
Owner:百信信息技术有限公司

Method for detecting and assessing the security compliance of base software

The application discloses a kind of basic software security compliance detection evaluation methods, it is related to electric digital data processing technical field, including based on network security data security related regulations and industry specifications, constructs multilevel security compliance detection benchmark library, supports benchmark library incremental update and rule version management;Full amount acquisition target basic software static data and complete structured analysis, collect software running full-dimensional dynamic behavior data in sandbox environment;Extract multidimensional compliance detection features and complete pre-processing;Detection features are matched with benchmark library rules, identify hierarchical risk points and locate corresponding basis;Quantitative evaluation system is constructed to calculate compliance comprehensive score, and compliance level is divided;Generation detection evaluation report, complete rectification regression detection and compliance closed-loop verification.The application improves the precision and execution efficiency of basic software security compliance detection, realizes full-dimensional compliance risk dead angle coverage, and can adapt to the security compliance control needs of multi-industry basic software.
Owner:HUNAN CONGMAO TECH CO LTD

Anti-webpage crawler method based on user access time portrait

An anti-webpage crawler method based on a user access time portrait comprises the steps that firstly, a personalized reading time reference model is constructed by extracting webpage content features to replace a traditional static rule, and a foundation is laid for accurate judgment; secondly, a multi-level progressive defense mechanism of'suspected crawler users-highly suspected targets-multi-level security challenges' is adopted, and it is ensured that non-interference passing is achieved for most of normal users while it is intercepted that the crawlers are intercepted; and finally, establishing a refined access control system comprising a user white list, a black list and a crawler white list, and continuously driving self-learning and calibration of the model by using white list user data, so that the system has long-acting self-adaptive protection capability.
Owner:NANJING UNIV OF POSTS & TELECOMM

Network traffic analysis and intrusion detection method based on multi-level security management and control system

The application discloses a network flow analysis and intrusion detection method based on a multilevel security management and control system, and relates to the technical fields of Internet of Things and network security. The application comprises the following steps: collecting data packets of network flow data and caching key attributes of the data packets; performing data cleaning on the cached data packets to obtain to-be-detected data; performing abnormality detection on the to-be-detected data; when attack flow is detected, storing the attack flow into a database and performing alarm processing; the application optimizes the performance of the system and improves the credibility of transmission quality through network flow analysis; through the construction of a real-time detection framework, the related time sequence overhead is reduced, the detection capability is greatly enhanced, the poor performance of a prediction model in performance is avoided, and the problem of the effectiveness of the prediction model in processing complex network environments is solved.
Owner:中邮建技术有限公司

An access control authorization method based on multi-level security and secret sharing

The present invention discloses an access control authorization method based on multi-level security and secret sharing. The authorization steps of the method include: first, the system divides the security level of resources, generates subkeys, and randomly transfers the subkeys and matching attributes to trusted management points for storage and preservation; second, the user requests an attribute certificate from the system to determine the security level; then, when the user requests a resource, the system verifies the attribute certificate and user signature and other information. If the verification is successful, the subkey is returned; if the verification fails, it returns null; finally, the system compares the user request with the resource permission table. If they are consistent, the resource is returned and authorized; otherwise, it is rejected. The present invention considers the scope of resources that users can legally access from the perspective of attributes, realizes multi-level security of user access, reduces the possibility of resource leakage, and ensures the confidentiality of system resources.
Owner:NANJING UNIV OF AERONAUTICS & ASTRONAUTICS