Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

27 results about "Online identity" patented technology

Internet identity (IID), also online identity or internet persona, is a social identity that an Internet user establishes in online communities and websites. It can also be considered as an actively constructed presentation of oneself. Although some people choose to use their real names online, some Internet users prefer to be anonymous, identifying themselves by means of pseudonyms, which reveal varying amounts of personally identifiable information. An online identity may even be determined by a user's relationship to a certain social group they are a part of online. Some can even be deceptive about their identity.

Method for electronic identity verification and management

A method for electronic identity verification and management includes receiving a request for verification of identity for a customer from a service provider; requesting consent from the customer to access data from one or more data holders associated with the customer; receiving consent from the customer to access data from the one or more data holders and sending the consent to the one or more data holders; receiving customer data from the one or more data holders; processing the customer data to verify the identity of the customer, identifying one or more online identity sources of the customer and analysing the one or more online identity sources to determine a level of risk associated with the customer identity, and generating a verified compound digital identity for the customer based on the authenticated identity document and the one or more online identity sources of the customer without storing personally identifiable information.
Owner:DATA ZOO PTY LTD

Computer network identity verification system

The invention discloses a computer network identity verification system which comprises an identity authentication unit, an identity verification unit, an abnormal behavior recognition unit, a verification auxiliary auditing unit and a verification auxiliary switching unit. The verification auxiliary auditing unit is connected with the abnormal behavior recognition unit, the identity authentication unit and the verification auxiliary switching unit at the same time, and the identity authentication unit achieves network identity authentication based on a common authentication means. The identity authentication unit is used for performing identity authentication by using other means when the identity authentication unit cannot perform network identity authentication, the abnormal behavior identification unit is used for identifying network attack behaviors, and the verification auxiliary auditing unit is used for assisting auditing identity authentication. The computer network identity verification system disclosed by the invention has the advantages that the verification operation is carried out on the extension set, and the security of network identity verification is further guaranteed.
Owner:SHAANXI BANDIANYUAN INFORMATION TECH CO LTD

Network exposure services targeting a roaming subscriber through an aggregating node

PCT designated stageWO2026142489A1Computer networkTelecommunications
Embodiments herein relate to a method performed by an aggregating node (11) for handling network exposure services in a communication network (100) The aggregating node (11): obtains a visited network indication, wherein the visited network indication5 indicates a visited network identity of a visited network that a user equipment, UE, (10), for which a network exposure service is requested, has roamed to, and also information associated with the visited network identity and / or the UE (10); and triggers an execution of the requested network exposure service targeting the UE based on the obtained visited network indication and the obtained10 information.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Method and apparatus for device selection

Embodiments of the present application provide a device selection method and apparatus, including: an edge enabler server (EES) receiving information from a terminal device (UE) requesting the EES to determine a first edge application server (EAS) for the UE; then, the EES determining the first EAS according to at least one of a public land mobile network identity (PLMN ID) corresponding to the UE or an edge computing service provider identity (ECSP ID) corresponding to the UE, and sending information of the first EAS to the UE. The EES selects the first EAS for the UE through at least one of the PLMN ID of the UE or the ECSP ID of the UE, and the first EAS selected by the EES for the UE supports services of the UE, thereby avoiding the problem that services are affected because the EAS obtained by the EES cannot meet the services of the UE, and improving the experience of users.
Owner:HUAWEI TECH CO LTD

Predictive targeting, analytics and modeling of users and audiences

ActiveUS12524740B2Other databases indexingMarketingData OriginRelational system
Profile Information is aggregated from online websites and services to correlate discovered identities to one another via computational analysis of Intra-Personal Relationships, Inter-Personal Relationships, and Profile Data. The information, relationships and content of identities which have been determined to share Intra-Personal relationships are aggregated into Meta-Profiles; the Meta-Profiles are used in place of component Intra-Related identities to optimize computer functions such as social graph operations, content customization, and audience operations (including: analysis, metrics, profiling and targeting). The system processes identities and relationships belonging to individuals registered with the system and those belonging to unregistered users. The system is provided with data from users, via third-party systems, or through automated discovery. These innovations solve problems of online identity disambiguation specific to internet computing, and improve computer operations by optimizing memory footprint and operation calls to minimize the number of nodes and edges traversed.
Owner:VANASCO JONATHAN BRIAN

Network identity credibility authentication system fused with block chain

The invention discloses a network identity credibility authentication system fused with a block chain, and the system comprises a client service module which is used for carrying out the homomorphic encryption processing of original identity data to generate encrypted identity data, generating a group signature associated with the encrypted identity data in a cryptographic manner based on an anti-quantum cryptography algorithm, and sending the group signature to the client service module; generating a zero-knowledge proof based on the encrypted identity data and the group signature; and the on-chain verification and evidence storage module is deployed in a block chain network in a smart contract form and is used for verifying the zero-knowledge proof and registering the group signature as an anonymous identity certificate corresponding to the encrypted identity data after the verification is passed. The system ensures that the original identity data of the user does not need to leave its local device. The verifier can confirm the authenticity and compliance of the identity of the user only by verifying one cryptographic proof through the block chain.
Owner:杨冬

Rapid allowed resource reflection

Disclosed herein are techniques for dynamically identifying at least one network resource accessible to a network identity. Operations may include receiving a request associated with a network identity; identifying a first data element associated with the network identity; generating a plurality of instances of the request; fetching, just in time, based on the first data element and in association with at least one of the plurality of instances of the request, two or more policies associated with the network identity wherein the two or more policies are at least one of: located in two or more data storage locations, associated with two or more policy types, or associated with two or more types of resources; evaluating, just in time, based on the first data element and in association with at least one of the plurality of instances of the request, a batch of one or more policies; and identifying, based on the evaluation, one or more network resources accessible to the network identity.
Owner:CYBER ARK SOFTWARE LTD

Agentless single sign-on techniques

Described herein are methods, systems, and computer-readable storage media for using a network identity. Techniques may include obtaining and encrypting a first data element using an encryption key and storing the encrypted first data element mapped to a network identity. Techniques may further include receiving a request from the network identity to perform an action on a resource and authenticating the network identity using an existing protocol, decrypting the first data element using a second data element calculated based on standard fields of the existing protocol, and enabling the action on the resource using the first data element.
Owner:CYBER ARK SOFTWARE LTD

User equipment identity management at entry level in telecommunications networks

Systems and methods of managing network identities and access perform or comprise receiving a registration request at a first network node of the telecommunications network, the registration request including an equipment identifier corresponding to a UE transmitting the registration request; prior to performing an authentication sub-procedure: transmitting a UE identity check request to a second network node of the telecommunications network, the UE identity check request including the equipment identifier, and receiving a UE identity check response from the second network node; and in response to a determination that the UE identity check response indicates that the UE is invalid, rejecting the registration request without performing the authentication sub-procedure.
Owner:BOOST SUBSCRIBERCO LLC

Authentication of a user via a private-network identity service

The technology disclosed herein enables reliance on private network security by an identity provider when handling access-token requests. In a particular example, a method includes authenticating a node of a user to access the private network. The method further includes transmitting an access request from the node to a resource and receiving, at the node, a request from the resource for a token validating an identity of the user. The method also includes, at the node, requesting the token from the identity provider over the private network. The identity provider provides the token to the node on a basis of the node having access to the private network. Additionally, the method includes transmitting the token from the node to the resource, wherein the resource provides the node with access thereto upon confirming with the identity provider that the token is valid.
Owner:TAILSCALE INC

A method and device for switching three-code identification of a mobile communication network user communication

The application provides a method and device for realizing three-code identification switching of user communication in a mobile communication network. The method for three-code identification switching comprises the following steps: a terminal device receives a three-code synchronous switching instruction issued by a management background, the three-code synchronous switching instruction comprising a new device identification IMEI, a new code number identification IMSI and a new mobile phone number MSISDN; information of the three-code synchronous switching instruction is parsed and buffered; the original eSIM code number of the terminal device is deactivated so that the terminal device is disconnected from a network; after the terminal device is disconnected from the network, the original IMEI of the terminal device is replaced by the new IMEI, and the terminal device is restarted; after the terminal device is restarted, the new IMSI and the new MSISDN buffered are read, and the new eSIM code number is activated. The application realizes switching of all network identity identifications of users in a current mobile communication network, and has significant advantages in user identity protection, communication identification switching efficiency and data protection.
Owner:CHINA ACADEMY OF INFORMATION & COMM +1

Terminal registration processing method and device

A terminal registration processing method and device are provided. The method includes: detecting that an identity card is inserted into at least one card slot; reading an identifier of the identity card; acquiring, from a database, a network identity corresponding to the identifier, wherein the database stores a correspondence between a network identity and an identifier of a registered card; and registering the identity card according to a result of acquiring the network identity.
Owner:ZTE CORP

Agile network session monitoring and enforcement

Disclosed embodiments relate to systems and methods for dynamically reviewing managed session activity using machine learning models. Techniques include identifying a managed session between a network identity and a target resource; identifying session data associated with the managed session; preprocessing the session data to generate preprocessed session data; providing the preprocessed session data as an input to at least one machine learning model; obtaining an output from the at least one machine learning model based on an analysis of the session data; and determining, based on the output, whether to perform a security action associated with the managed session.
Owner:CYBER ARK SOFTWARE LTD

A network identity authentication credential management method and system of intelligent security hardware

This invention discloses a method and system for managing network identity authentication credentials for smart security hardware, relating to the field of Internet of Things (IoT) security technology. The method includes: registering a decentralized identity identifier for each smart security hardware device on a blockchain, and storing a public key credential associated with the decentralized identity identifier on the blockchain as an initial identity credential; real-time collection of behavioral data sequences generated by the smart security hardware during operation, inputting them into a pre-trained global anomaly recognition agent, and outputting a behavioral deviation score; dynamically generating a current trust score, uploading the current trust score and corresponding anomaly event information to the blockchain for evidence storage; and monitoring changes in the trust score based on a smart contract, automatically executing the corresponding access control policy when the current trust score falls below a preset trust threshold to adjust the communication permissions of the smart security hardware in the network. This invention effectively improves the reliability and security of network identity authentication for smart security hardware.
Owner:SHENZHEN HOUSELAI TECH CO LTD

5G network identity authentication method and device based on quantum dynamic key

PendingCN121888252ARealize “one-time, one-key” dynamic managementAvoid capacity constraintsKey distribution for secure communicationPublic key for secure communicationKey exchangeSecure communication
The invention relates to a 5G network identity authentication method and device based on a quantum dynamic key. The method comprises the following steps: receiving an authentication request from a client, wherein the request comprises a unique identifier of equipment; executing a key exchange process based on an asymmetric key agreement algorithm with the client through a quantum key distribution link to generate a first session key under the condition that the client is judged to request authentication for the first time based on the equipment unique identifier; binding and storing the first session key, the equipment unique identifier and a cryptographic hash value generated based on the first session key; establishing a secure communication channel with the client based on the first session key to complete first authentication; and under the condition of judging that the client does not request authentication for the first time based on the unique equipment identifier, executing a rapid authentication process through a dynamic distribution system of the quantum key pool. By adopting the method, quantum attacks can be resisted, and efficient and large-scale concurrent identity authentication can be supported.
Owner:SHENZHEN POWER SUPPLY BUREAU

Network identity continuous trust evaluation method and system

The invention provides a network identity continuous trust assessment method and system, relates to the technical field of network security, and solves the security risk problem that an existing network identity authentication mechanism lacks dynamic and continuous assessment of a user trust state. In the method, a network identity association factor and a network identity influence factor are obtained, the association factor describes an association factor set influencing a network identity trust state, and the influence factor describes a network identity security risk degree influenced by the association factor; inputting the two types of factors into a network identity trust formula, wherein the formula is used for calculating the network identity trust state in real time; network identity weight factors are introduced during calculation, and the importance of correlation factors and influence factors participating in calculation in a trust formula is described respectively; and calculating to obtain a network identity trust factor, thereby completing continuous trust evaluation of the network identity. According to the method, the trust state of the network identity is accurately evaluated, and an effective trust basis is provided for security control based on the network identity.
Owner:NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP

System and method for proactively enriching a reputation database of bad cyber actors based on similarity scores for bad actors’ behavior profiles

PendingUS20260189583A1Network activityAttack
A system and method for enriching a reputation database is provided. The system and method comprise: receiving attack attributes associated with an attack campaign; extracting an attack behavior profile for an identity linked to the attack campaign, wherein the attack behavior profile is based on the received attack attributes; retrieving, from a reputation database, behavior profiles of known bad actor groups, wherein bad actor groups are collections of network identities identified for engaging in malicious cyber activity; determining similarity scores between the extracted attack behavior profile and the behavior profiles of each known bad actor group; and enriching the reputation database by updating, based on the determined similarity scores, the extracted attack behavior profile and the behavior profiles of known bad actor groups stored in the reputation database.
Owner:RADWARE LTD

Bmc-based arp proxy optimization method and device

PendingCN122317037AAddress Resolution ProtocolIp address
This application discloses an ARP proxy optimization method and device based on BMC, relating to the field of data processing technology. The method includes entering an ARP frame proxy state upon receiving an enable command from the host, listening for and parsing ARP frame addressing commands to obtain a first IP address included in the ARP frame addressing command; when the IP address in the first IP address addressing command is the same as the host's second IP address, sending the pre-stored MAC address corresponding to the second IP address to the ARP frame addressing command sender. This method completely eliminates the wake-up power consumption generated by the host in response to ARP requests. Through the BMC proxy mechanism, it overcomes the strong dependence of the ARP protocol on the online status of the physical host, achieving decoupling between network identity and physical power consumption status.
Owner:SHANDONG YUNHAI GUOCHUANG CLOUD COMPUTING EQUIP IND INNOVATION CENT CO LTD

Verifying data

Disclosed herein is a system for verifying data associated with a party requesting a product or service. The system includes a verification function, a ledger database, and a network directory with network identity data records. The verification function receives a data verification request message with an identifier and a data assert assertion of data asserted to be accurate by the requesting party. The verification function determines a network identity associated with the identifier by querying the network directory and communicates a data record request associated with the network identity to the ledger database. The ledger database identifies a verified data record associated with the network identity. The verification function determines if the verified data record matches the data assertion and communicate a message to the external computer system indicating if the data has been verified.
Owner:SAGE GLOBAL SERVICES LTD

Native agentless efficient queries

Disclosed embodiments relate to systems and methods for providing agentless efficient queries for native network resource connections. Techniques include receiving a request from a network identity to access an original network resource; authenticating the network identity using a native client and communication protocol; authorizing the network identity based on one or more access policy; identifying an account having a secret, based on the one or more access policy; accessing the original network resource using the secret; enabling the network identity to access the original network resource using the account using the native client and communication protocol; creating at least one new entity associated with the original network resource; adapting the request to use the at least one new entity; and performing the request using the at least one new entity.
Owner:CYBER ARK SOFTWARE LTD

Cross-network identity provisioning method and system

An example operation includes one or more of the following: an identity-providing node connects blockchain one to blockchain two; the identity-providing node creates an interoperable identity network (IIN) for blockchain one and blockchain two as an instance of a self-governing identity (SSI) network; and a smart contract is executed to: invoke an IIN access control policy; map the attributes and permissions of blockchain one to the attributes and permissions of blockchain two based on the IIN access control policy; and generate a valid verifiable credential (VC) of the IIN in blockchain one and blockchain two based on the mapped attributes and permissions.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Distributed network identity authentication method and system based on block chain

The invention provides a distributed network identity authentication method and system based on a block chain, and relates to the technical field of data processing, and the method comprises the steps: 1, a user terminal generates a decentralized identity identifier and a corresponding asymmetric cryptography key pair, identity registration information containing the decentralized identity identifier and the public key is uploaded to a block chain identity chain to complete registration; and 2, in the identity authentication process, acquiring authentication request data sent by a user terminal, extracting a plurality of authentication feature quantities from the authentication request data, and dividing the authentication strategy framework into a plurality of strategy execution areas by using a grid division algorithm based on spatial distribution features of the authentication feature quantities. According to the invention, through combination of decentralized identity registration, regionalized strategy adjustment and block chain smart contract verification, the security, reliability and dynamic adaptability of distributed network identity authentication are improved, and the credibility of the authentication process and the non-tampering of the result are guaranteed.
Owner:ZHEJIANG UNIV OF FINANCE & ECONOMICS

Communication methods and devices

A terminal includes: a processor and a memory, where the memory is configured to store a computer program, and the processor is configured to invoke and execute the computer program stored in the memory, so as to enable the terminal to perform: receiving a first message, where the first message carries a temporary identity of a first user, and the first user is a user using the terminal. The temporary identity of the first user comprises at least one of: an identity of a region corresponding to the temporary identity of the first user, a relevant identity of a network device corresponding to the temporary identity of the first user, an identity of a network corresponding to the temporary identity of the first user, a temporary mobile subscriber identity, an international mobile subscriber identity, a globally unique temporary UE identity, or a permanent equipment.
Owner:GUANGDONG OPPO MOBILE TELECOMMUNICATIONS CORP LTD

Equipment selection method and device

The embodiment of the invention provides a device selection method and device. The device selection method comprises the steps that an EES (edge enabled server) receives a request from UE (user equipment) to determine information of a first EAS (edge application server) for the UE; afterwards, the EES determines a first EAS according to at least one of a public land mobile network identity label PLMN ID corresponding to the UE or an identity label ECSP ID of an edge computing service provider corresponding to the UE, and sends information of the first EAS to the UE. Wherein the EES selects the first EAS for the UE through at least one of the PLMN ID of the UE or the ECSP ID of the UE, and further, the first EAS selected for the UE by the EES supports the service of the UE, thereby avoiding the problem that the service is affected due to the fact that the EAS acquired by the EES cannot meet the service of the UE, and improving the user experience.
Owner:HUAWEI TECH CO LTD

Authentication method, device and equipment based on fingerprint certificate

The invention provides an authentication method, device and equipment based on a fingerprint certificate. The method comprises the following steps: generating an original fingerprint feature template based on a collected fingerprint of an authorized user; a first asymmetric key pair is generated based on the original fingerprint feature template, the first public key is sent to a remote server, a fingerprint certificate sent by the remote server is received, and the fingerprint certificate is determined based on the first public key. And deleting the first asymmetric key pair, generating a to-be-detected fingerprint feature template based on the collected fingerprint of the to-be-detected user, and generating a second asymmetric key pair based on the to-be-detected fingerprint feature template. And when the second public key is consistent with the first public key in the fingerprint certificate, determining that the to-be-tested user is an authorized user. Authentication from the remote server is completed based on the received fingerprint certificate and the second private key. According to the invention, a traditional normal form of separation of biological fingerprint authentication and digital certificate authentication is broken through, and integration of user identity authentication and equipment network identity authentication is realized.
Owner:ZHIXUN CIPHER (SHANGHAI) TESTING TECH CO LTD

Ensuring high security level for accessing network resources

Systems, methods, and apparatuses are disclosed for establishing secure access between network identities. Techniques may include receiving, from a first network identity, a request to access a second network identity and obtaining at least one security attribute. Techniques may further include determining, based on the at least one security attribute, a security level for a secure tunnel with a communication component located in a network associated with the second network identity, identifying, just-in-time and based on the security level, the secure tunnel with the communication component located in the network associated with the second network identity resource; and establishing a secure connection with the second network identity using the secure tunnel.
Owner:CYBER ARK SOFTWARE LTD