Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

56 results about "Online identity" patented technology

Internet identity (IID), also online identity or internet persona, is a social identity that an Internet user establishes in online communities and websites. It can also be considered as an actively constructed presentation of oneself. Although some people choose to use their real names online, some Internet users prefer to be anonymous, identifying themselves by means of pseudonyms, which reveal varying amounts of personally identifiable information. An online identity may even be determined by a user's relationship to a certain social group they are a part of online. Some can even be deceptive about their identity.

Distributed threat intelligent honeynet trapping method

The invention relates to the technical field of network security defense, in particular to a distributed threat intelligent honeynet trapping method, which comprises the following steps: S1, on the basis of an attack deception defense technology, constructing a trap on the inevitable way of a hacker, confusing the attack target of the hacker, accurately sensing the attack behavior of the hacker, and guiding and isolating the attack traffic into an intelligent honeynet; and S2, combining attack countering and attack tracing to accurately obtain network identity and fingerprint information of the hacker. According to the distributed threat intelligent honeynet trapping method, through dynamic assembly of a bait environment and a monitoring module and reconstruction of a polymorphic module, resources of basic elements (a sandbox, bait and the like) forming the intelligent honeynet are servitized, and the maximum flexibility is ensured through modular design. When deception resources are deployed, different types of sandboxes can be randomly arranged according to an existing template or a user-defined mode, various disguise confusion capability combinations adaptive to a typical power application scene are called, and existing anti-trapping techniques and tactics of attackers can be effectively coped with.
Owner:南京聚沙电力科技有限公司

Self-adaptive distributed network integration system and method for virtual and real unmanned aerial vehicle cooperation

The invention discloses a self-adaptive distributed network integration system and method for virtual and real unmanned aerial vehicle cooperation, and relates to the technical field of unmanned aerial vehicle control, the system comprises a central control plane and at least one node agent, the central control plane comprises a global identity manager configured and distributed with globally unique network identity information, recording and recovering the network identity information; the network topology and state manager is configured to generate a virtual and real network state view, responds to query and issues a network simulation instruction to the node agent; the distributed network coordinator is configured to decide and coordinate the node agents to construct a cross-host logic two-layer network domain; the security policy manager is configured to define and store a network access control policy of the virtual unmanned aerial vehicle; the adaptive distributed network integration system and method aim to realize physical presentation of the virtual unmanned aerial vehicle on the network level, so that the virtual unmanned aerial vehicle can directly communicate with and collaboratively work with a real unmanned aerial vehicle in the same network plane.
Owner:ARTIFICIAL INTELLIGENCE RES INST OF HEFEI COMPREHENSIVE NAT SCI CENT (ANHUI ARTIFICIAL INTELLIGENCE LAB)

System and method for predictive platforms in identity management artificial intelligence systems using analysis of network identity graphs

Systems and methods for embodiments of a graph based artificial intelligence systems for identity management are disclosed. Embodiments of the identity management systems disclosed herein may utilize artificial intelligence approaches for determining health indicators for the identity management state of an enterprise. Specifically, in certain embodiments, an artificial intelligence based identity management systems may utilize one or more components to generate signals associated with the identity management state of an enterprise based on a network identity graph and evaluate feature spaces of these input signals from these components based on a global objective function or the like.
Owner:SAILPOINT TECHNOLOGIES INC

Internet of vehicles efficient cross-domain authentication method based on reputation framework

The invention discloses an Internet of Vehicles efficient cross-domain authentication method based on a reputation framework, and relates to the field of Internet of Vehicles, and the method comprises an initialization stage, a system basic setting obtaining stage, a system parameter generation stage, a regional reputation weight configuration stage and an intelligent contract deployment stage. In the registration stage, a vehicle node registers an identity in the Internet of Vehicles and obtains a public and private key pair of the vehicle node; in the intra-domain verification stage, the identity of the vehicle is verified in the source region; in the cross-domain authentication stage, a vehicle initiates a cross-domain authentication request and applies for joining the Internet of Vehicles of a target area; in the identity tracking stage, historical authentication records of the vehicle in the cross-domain authentication process are tracked. The method and the device have the effect of improving the system security.
Owner:GUANGZHOU UNIVERSITY

Method for electronic identity verification and management

A method for electronic identity verification and management includes receiving a request for verification of identity for a customer from a service provider; requesting consent from the customer to access data from one or more data holders associated with the customer; receiving consent from the customer to access data from the one or more data holders and sending the consent to the one or more data holders; receiving customer data from the one or more data holders; processing the customer data to verify the identity of the customer, identifying one or more online identity sources of the customer and analysing the one or more online identity sources to determine a level of risk associated with the customer identity, and generating a verified compound digital identity for the customer based on the authenticated identity document and the one or more online identity sources of the customer without storing personally identifiable information.
Owner:DATA ZOO PTY LTD

Information access handover

A computerized method of information access handover between a first device and a second device of a user is presented. The method comprises displaying, on the first device, a QR code generated by a synchronizer. The method further comprises capturing the QR code with the second device for displaying the data record and providing a registration option for associating the data record with the user at a relying party. The method further comprises performing a web authentication registration and, in response to that the web authentication registration flow has been performed successfully, performing an information access handover and securing process. The information access handover and securing process comprises sharing, by the second device, the unique user identifier and the device identifier with the first device, storing them at the first device, and securing access to the data record. A corresponding system and computer program are provided, too.
Owner:AMADEUS SAS

Computer network identity verification system

The invention discloses a computer network identity verification system which comprises an identity authentication unit, an identity verification unit, an abnormal behavior recognition unit, a verification auxiliary auditing unit and a verification auxiliary switching unit. The verification auxiliary auditing unit is connected with the abnormal behavior recognition unit, the identity authentication unit and the verification auxiliary switching unit at the same time, and the identity authentication unit achieves network identity authentication based on a common authentication means. The identity authentication unit is used for performing identity authentication by using other means when the identity authentication unit cannot perform network identity authentication, the abnormal behavior identification unit is used for identifying network attack behaviors, and the verification auxiliary auditing unit is used for assisting auditing identity authentication. The computer network identity verification system disclosed by the invention has the advantages that the verification operation is carried out on the extension set, and the security of network identity verification is further guaranteed.
Owner:SHAANXI BANDIANYUAN INFORMATION TECH CO LTD

Network exposure services targeting a roaming subscriber through an aggregating node

PCT designated stageWO2026142489A1Computer networkTelecommunications
Embodiments herein relate to a method performed by an aggregating node (11) for handling network exposure services in a communication network (100) The aggregating node (11): obtains a visited network indication, wherein the visited network indication5 indicates a visited network identity of a visited network that a user equipment, UE, (10), for which a network exposure service is requested, has roamed to, and also information associated with the visited network identity and / or the UE (10); and triggers an execution of the requested network exposure service targeting the UE based on the obtained visited network indication and the obtained10 information.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Identity verification system and method for gathering identifying authenticating registering monitoring tracking analyzing storing and commercially distributing dynamic biometric markers and personal data via electronic means

Disclosed is a computer implemented system for digitally authenticating, registering, and enrolling a consumer in a secure online identity verification system that prevents identity fraud and provides public anonymity to the consumer based on the consumer's live feed dynamic biometric information gathered via the Internet, the system wherein the system includes a simultaneous use security system designed for individual consumer identity verification with an encoded display during an active Internet session and at least one or more individual consumer legal identity and verified aliases assigned to the at least one or more of a nom de plume, icon, badge, and avatar and selected for the individual consumer's public identity. The system and method are further designed to allow notarization including self-notarization.
Owner:GIRAUD STEPHEN G

Method and apparatus for device selection

Embodiments of the present application provide a device selection method and apparatus, including: an edge enabler server (EES) receiving information from a terminal device (UE) requesting the EES to determine a first edge application server (EAS) for the UE; then, the EES determining the first EAS according to at least one of a public land mobile network identity (PLMN ID) corresponding to the UE or an edge computing service provider identity (ECSP ID) corresponding to the UE, and sending information of the first EAS to the UE. The EES selects the first EAS for the UE through at least one of the PLMN ID of the UE or the ECSP ID of the UE, and the first EAS selected by the EES for the UE supports services of the UE, thereby avoiding the problem that services are affected because the EAS obtained by the EES cannot meet the services of the UE, and improving the experience of users.
Owner:HUAWEI TECH CO LTD

Smart key device

1. The name of this design product: smart key device. 2. Purpose of this design product: Mainly used for online identity authentication. 3. The key point of the design of this product lies in its shape. 4. The picture or photo that best illustrates the design points: Stereoscopic drawing 1.
Owner:FEITIAN TECHNOLOGIES CO LTD

Data flow pushing method and device, equipment, storage medium and program product

The invention provides a method and a device for pushing data, electronic equipment, a computer readable storage medium and a computer program product, and relates to the technical field of artificial intelligence such as streaming media technology, data transmission and cloud service. A specific embodiment of the method comprises the steps of detecting whether a global domain name system configuration file is maintained or not in response to a received data push flow request of a target application; in response to the absence of the global domain name system configuration file, based on the network identity identification instruction, reading domain name system information recorded by the target network identity, and determining a target address; and orienting the to-be-pushed data uploaded by the target application to the target address, and pushing the to-be-pushed data to target equipment indicated by the target application by using a push flow component of the target address. According to the mode, the configuration difficulty and the modification limitation of the domain name system can be reduced, so that the flow pushing platform can complete the analysis of the domain name system in a more flexible and quality manner, and the flow pushing capability of the flow pushing platform is improved.
Owner:GUANGZHOU DULING TECH CO LTD +1

Predictive targeting, analytics and modeling of users and audiences

Profile Information is aggregated from online websites and services to correlate discovered identities to one another via computational analysis of Intra-Personal Relationships, Inter-Personal Relationships, and Profile Data. The information, relationships and content of identities which have been determined to share Intra-Personal relationships are aggregated into Meta-Profiles; the Meta-Profiles are used in place of component Intra-Related identities to optimize computer functions such as social graph operations, content customization, and audience operations (including: analysis, metrics, profiling and targeting). The system processes identities and relationships belonging to individuals registered with the system and those belonging to unregistered users. The system is provided with data from users, via third-party systems, or through automated discovery. These innovations solve problems of online identity disambiguation specific to internet computing, and improve computer operations by optimizing memory footprint and operation calls to minimize the number of nodes and edges traversed.
Owner:VANASCO JONATHAN BRIAN

Agile network session monitoring and enforcement

Disclosed embodiments relate to systems and methods for dynamically reviewing managed session activity using machine learning models. Techniques include identifying a managed session between a network identity and a target resource; performing a reviewal process for the managed session, including identifying session data associated with the managed session; providing the session data and a context data as an input to at least one machine learning model; obtaining an output from the at least one machine learning model based on an analysis of the session data and the context data; and determining, based on the output, whether to perform a security action associated with the managed session.
Owner:CYBER ARK SOFTWARE LTD

Network identity credibility authentication system fused with block chain

The invention discloses a network identity credibility authentication system fused with a block chain, and the system comprises a client service module which is used for carrying out the homomorphic encryption processing of original identity data to generate encrypted identity data, generating a group signature associated with the encrypted identity data in a cryptographic manner based on an anti-quantum cryptography algorithm, and sending the group signature to the client service module; generating a zero-knowledge proof based on the encrypted identity data and the group signature; and the on-chain verification and evidence storage module is deployed in a block chain network in a smart contract form and is used for verifying the zero-knowledge proof and registering the group signature as an anonymous identity certificate corresponding to the encrypted identity data after the verification is passed. The system ensures that the original identity data of the user does not need to leave its local device. The verifier can confirm the authenticity and compliance of the identity of the user only by verifying one cryptographic proof through the block chain.
Owner:杨冬

Logging a client device into a user-defined network with a federation-based network identity

Aspects described herein include a method of automatically grouping client devices for a user-defined network (UDN). The method includes receiving, from a client device, an authentication request to join an access provider network. The authentication request includes a unique identifier of the client device that is targeted to a coalition-based network. The method also includes transmitting the unique identifier to a UDN cloud, transmitting the authentication request to an identity provider, and in response to authentication of the authentication request by the identity provider, receiving, from the UDN cloud, a list of one or more UDNs associated with the unique identifier. The method further includes joining the client device with one or more other client devices that are present on the access provider network of the same UDNs listed.
Owner:CISCO TECHNOLOGY INC

Adaptive Distributed Network Integration System and Method for Virtual-Real UAV Collaboration

This invention discloses an adaptive distributed network integration system and method for virtual-real drone collaboration, relating to the field of drone control technology. It includes a central control plane and at least one node agent. The central control plane comprises: a global identity manager, configured to assign globally unique network identity information and record and reclaim the network identity information; a network topology and state manager, configured to generate virtual-real network state views, respond to queries, and issue network simulation commands to the node agents; a distributed network coordinator, configured to decide and coordinate the node agents to construct a cross-host logical Layer 2 network domain; and a security policy manager, configured to define and store network access control policies for virtual drones. This adaptive distributed network integration system and method aims to achieve a "physical" representation of virtual drones at the network layer, enabling them to communicate directly and collaborate with real drones within the same network plane.
Owner:ARTIFICIAL INTELLIGENCE RES INST OF HEFEI COMPREHENSIVE NAT SCI CENT (ANHUI ARTIFICIAL INTELLIGENCE LAB)

A cross-domain identity authentication method based on SGX

A cross-domain identity authentication method based on SGX belongs to the field of Internet of Things identity authentication and solves the technical problems of edge terminal node identity privacy exposure, session insecurity, and high security authentication complexity. The central agent registers on the Intel online identity authentication server, completes trusted authentication, and obtains a remote authentication report as the trusted root of the entire inter-domain trusted network. Each trusted domain establishes a domain proxy server in its own security domain based on the relevant conditions within its own domain, and uses the edge domain agent and the central agent as nodes of the inter-domain trusted network. The edge trusted domain agent obtains trusted authentication by registering and remotely authenticating with the central agent. The two edge domain agents achieve mutual authentication of the trusted state through two-way remote authentication, thereby realizing trust transmission and privacy protection. Through the trusted and secure communication channel established by the two edge domain agents, the identity authentication and key negotiation process of the data requesting terminal node and the data owning node is completed.
Owner:BEIJING UNIV OF TECH

Rapid allowed resource reflection

Disclosed herein are techniques for dynamically identifying at least one network resource accessible to a network identity. Operations may include receiving a request associated with a network identity; identifying a first data element associated with the network identity; generating a plurality of instances of the request; fetching, just in time, based on the first data element and in association with at least one of the plurality of instances of the request, two or more policies associated with the network identity wherein the two or more policies are at least one of: located in two or more data storage locations, associated with two or more policy types, or associated with two or more types of resources; evaluating, just in time, based on the first data element and in association with at least one of the plurality of instances of the request, a batch of one or more policies; and identifying, based on the evaluation, one or more network resources accessible to the network identity.
Owner:CYBER ARK SOFTWARE LTD

Dynamic and monitored access to secure resources

Disclosed embodiments relate to providing dynamic and least-privilege access to network resources. Techniques include receiving a request from a network identity to access a network resource; authenticating the network identity using a native client and communication protocol; authorizing the network identity based on at least a first account of the network identity and according to one or more access policy; identifying a credential of an existing privileged account; creating a just-in-time session to the network resource to access the network resource using the retrieved existing privileged account; monitoring the just-in-time session; identifying, one or more action or command requested by the network identity within the native communication protocol; and continuously validating the one or more requested action or command according to the one or more access policy.
Owner:CYBER ARK SOFTWARE LTD

Multi-level network identity authentication and access control system

The application discloses a multi-level network identity authentication and access control system, which further introduces biometric recognition technology after traditional password verification, uses deep learning-based image processing technology to extract multi-scale features from user-input fingerprint images, captures shallow detail features and global structure features of the fingerprint, and obtains comprehensive feature representation of the fingerprint image through feature selection enhancement and multi-level feature joint perception processing, to generate a defogging fingerprint image, and then generate a final verification result based on pixel-by-pixel fingerprint difference information between the defogging fingerprint image and an authorized fingerprint image, so that only verified users can access systems or data corresponding to their roles. In this way, the problem of poor quality of fingerprint images can be effectively addressed, thereby improving the accuracy and security of identity authentication and optimizing the overall performance and user experience of the system.
Owner:STATE GRID HENAN INFORMATION & TELECOMM CO +1

Agentless single sign-on techniques

Described herein are methods, systems, and computer-readable storage media for using a network identity. Techniques may include obtaining and encrypting a first data element using an encryption key and storing the encrypted first data element mapped to a network identity. Techniques may further include receiving a request from the network identity to perform an action on a resource and authenticating the network identity using an existing protocol, decrypting the first data element using a second data element calculated based on standard fields of the existing protocol, and enabling the action on the resource using the first data element.
Owner:CYBER ARK SOFTWARE LTD

User equipment identity management at entry level in telecommunications networks

Systems and methods of managing network identities and access perform or comprise receiving a registration request at a first network node of the telecommunications network, the registration request including an equipment identifier corresponding to a UE transmitting the registration request; prior to performing an authentication sub-procedure: transmitting a UE identity check request to a second network node of the telecommunications network, the UE identity check request including the equipment identifier, and receiving a UE identity check response from the second network node; and in response to a determination that the UE identity check response indicates that the UE is invalid, rejecting the registration request without performing the authentication sub-procedure.
Owner:BOOST SUBSCRIBERCO LLC

Authentication of a user via a private-network identity service

The technology disclosed herein enables reliance on private network security by an identity provider when handling access-token requests. In a particular example, a method includes authenticating a node of a user to access the private network. The method further includes transmitting an access request from the node to a resource and receiving, at the node, a request from the resource for a token validating an identity of the user. The method also includes, at the node, requesting the token from the identity provider over the private network. The identity provider provides the token to the node on a basis of the node having access to the private network. Additionally, the method includes transmitting the token from the node to the resource, wherein the resource provides the node with access thereto upon confirming with the identity provider that the token is valid.
Owner:TAILSCALE INC

A method and device for switching three-code identification of a mobile communication network user communication

The application provides a method and device for realizing three-code identification switching of user communication in a mobile communication network. The method for three-code identification switching comprises the following steps: a terminal device receives a three-code synchronous switching instruction issued by a management background, the three-code synchronous switching instruction comprising a new device identification IMEI, a new code number identification IMSI and a new mobile phone number MSISDN; information of the three-code synchronous switching instruction is parsed and buffered; the original eSIM code number of the terminal device is deactivated so that the terminal device is disconnected from a network; after the terminal device is disconnected from the network, the original IMEI of the terminal device is replaced by the new IMEI, and the terminal device is restarted; after the terminal device is restarted, the new IMSI and the new MSISDN buffered are read, and the new eSIM code number is activated. The application realizes switching of all network identity identifications of users in a current mobile communication network, and has significant advantages in user identity protection, communication identification switching efficiency and data protection.
Owner:CHINA ACADEMY OF INFORMATION & COMM +1

Terminal registration processing method and device

A terminal registration processing method and device are provided. The method includes: detecting that an identity card is inserted into at least one card slot; reading an identifier of the identity card; acquiring, from a database, a network identity corresponding to the identifier, wherein the database stores a correspondence between a network identity and an identifier of a registered card; and registering the identity card according to a result of acquiring the network identity.
Owner:ZTE CORP

Agile network session monitoring and enforcement

Disclosed embodiments relate to systems and methods for dynamically reviewing managed session activity using machine learning models. Techniques include identifying a managed session between a network identity and a target resource; identifying session data associated with the managed session; preprocessing the session data to generate preprocessed session data; providing the preprocessed session data as an input to at least one machine learning model; obtaining an output from the at least one machine learning model based on an analysis of the session data; and determining, based on the output, whether to perform a security action associated with the managed session.
Owner:CYBER ARK SOFTWARE LTD