Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

3145 results about "Password" patented technology

A password, sometimes called a passcode, is a memorized secret used to confirm the identity of a user. Using the terminology of the NIST Digital Identity Guidelines, the secret is memorized by a party called the claimant while the party verifying the identity of the claimant is called the verifier. When the claimant successfully demonstrates knowledge of the password to the verifier through an established authentication protocol, the verifier is able to infer the claimant’s identity.

High-security method for negotiating temporary session key based on national secret algorithm

The invention relates to the technical field of commercial password detection methods, and discloses a high-security method for negotiating a temporary session key based on a national secret algorithm, and the commercial password detection method comprises the following steps: initialization and identity authentication: two communication parties generate an SM2 public and private key pair, and the identity is verified through a digital certificate and an SM2 signature; temporary key negotiation: generating a shared key point based on an SM2 key exchange protocol; session key derivation: generating a temporary session key by using an SM3 hash algorithm; key confirmation and encrypted communication: verifying the key through an SM4 algorithm and encrypting communication data; according to the high-security method for negotiating the temporary session key based on the national secret algorithm, efficient key negotiation of both communication parties in an unsecure channel is realized through an SM2 key exchange protocol, an SM3 hash algorithm and an SM4 symmetric encryption algorithm. The method combines digital certificate authentication, dynamic random numbers and timestamps, has forward security, replay attack resistance and man-in-the-middle attack resistance, and is suitable for high-security scenes such as finance and government affairs.
Owner:SHAANXI QINGSHAN SIJI INFORMATION TECH CO LTD

Control method of multi-protocol switching anti-quantum security gateway

The invention relates to a control method for a multi-protocol switching anti-quantum security gateway, and the method comprises the steps: carrying out the safety self-inspection of a hardware environment after the security gateway is powered on, generating a unique root key of equipment based on a physical unclonable function, continuously collecting and analyzing the network traffic characteristics, and carrying out the self-inspection of the hardware environment. Based on a machine learning model, a quantum attack mode is identified and an encryption algorithm mode is dynamically decided, protocol analysis is carried out on a communication data packet, dynamic conversion and adaptation are carried out between a traditional protocol and an anti-quantum cryptography protocol according to an instruction and a preset rule, and an anti-quantum cryptography engine is called to carry out encryption or signature operation. And dynamically deriving and managing a session key in a complete period based on a root key, switching an algorithm mode, a communication protocol and a key in a linkage manner according to a quantum attack detection result, and starting anti-side channel attack protection and hardware security response. According to the method, active protection of the security gateway on quantum attacks, multi-protocol seamless compatibility and full-life-cycle security management of keys are realized.
Owner:WEIDE GUANGDONG INFORMATION TECH CO LTD

Intelligent warehouse login verification method and system based on dynamic living body detection

The invention relates to the technical field of information security, provides an intelligent warehouse login verification method and system based on dynamic living body detection, and is used for realizing accurate generation of an identity label vector, enhanced authentication of a dynamic password and automatic matching of warehouse authority while accurately performing living body detection. And the security and convenience of warehousing system login are comprehensively improved. The method comprises the following steps: collecting real-time interaction action data of a warehousing system login user, calling a preset living body detection algorithm to carry out dynamic biological characteristic analysis on the real-time interaction action data, and generating a living body verification confidence coefficient and a user identity identification vector; performing dynamic password enhanced authentication according to the living body verification confidence coefficient and a preset security authentication threshold value, and generating a dynamic access token containing multiple layers of encryption identifiers; and based on the user identity identification vector and the dynamic access token, executing storage permission automatic matching processing, and outputting a login verification result associated with the user permission level to the storage system according to the permission matching label.
Owner:SHANDONG LUNENG SOFTWARE TECH

MES system login authentication method based on face recognition technology

The invention discloses an MES (Manufacturing Execution System) login authentication method based on a face recognition technology, which relates to the technical field of industrial information security, and comprises the following steps of: constructing an authentication data acquiring a face image of an authorized user of an MES, extracting a reference face feature template after preprocessing, and constructing the authentication database; performing associated storage on the reference feature template, user identity information, preset operation authority and affiliated production station information to form an authentication database; according to the method, spoofing attacks are prevented through multi-mode living body detection, and the problem that a traditional password / key is easy to leak and borrow is solved in combination with uniqueness of human face biological characteristics; a person-post-terminal binding mechanism further limits permission abuse, and internal operation risks are reduced; the non-contact authentication does not need to memorize a password or carry a physical key, and is suitable for a working scene that a workshop operator wears gloves and holds tools; and the recognition passing rate in a complex industrial environment is improved through dynamic threshold optimization.
Owner:HUBEI UNIV FOR NATITIES

Artificial intelligence assisted password security policy dynamic adaptive adjustment method

The invention relates to the technical field of data processing, in particular to an artificial intelligence-assisted password security policy dynamic adaptive adjustment method, which comprises the following steps of: acquiring login operation data to generate an encryption feature gradient; the aggregation server generates a dynamically updated federal reference model through a double-channel model updating mechanism, wherein a long-term model updating channel is fused with historical parameters to maintain system stability, and a short-term behavior time window channel dynamically adjusts recent gradient weight based on a time decay function. A graph computation engine generates a spatio-temporal composite risk score. And the risk decision engine generates a third-level response instruction. A risk misjudgment event is verified based on a response result, high-value training samples are screened to drive incremental training, space-time sensitive parameters are finely adjusted by a meta-learning optimizer, and noise is injected into a quantum gradient jammer to defend attacks. Optimized parameters are synchronized to a system module, and a closed-loop adaptive system is formed by combining homomorphic encryption transmission, model digital watermarking, quantum source hardware binding and anti-quantum signature.
Owner:CHINA ACADEMY OF INFORMATION & COMM

Automatic user management method and system based on FreeIPA platform

The invention belongs to the technical field of computers, and discloses an automatic user management method and system based on a FreeIPA platform, and the method comprises the steps: achieving the automatic management of the life cycle of a user through the writing of an automatic script or the use of an API interface of FreeIPA; authority and renewal strategies are automatically adjusted according to roles and service requirements of the users; a user account is automatically unlocked, an OTP token is issued, a password is modified, and meanwhile operation safety is ensured; and through tools such as nailing, automation of the approval process of user management operation is realized. By integrating enterprise communication tools such as nailing, automation of operations such as user creation, cleaning, forbidding, renewal, unlocking, OTP token issuing and password modification is realized, and the method is combined with an internal approval process of an enterprise. According to the invention, the efficiency of user management is improved, the safety risk is reduced, the standardization of user management operation is ensured, and the flexibility of the system is improved.
Owner:HAINAN GESHAN NETWORK TECH CO LTD

Data security protection method for power transaction

The invention relates to the field of power transaction security, in particular to a data security protection method for power transaction. Comprising the following steps: a registration authentication stage: completing identity registration through triple authentication of a physical token, biological feature recognition and a dynamic password and GPS positioning white list verification; in the key initialization stage, an SM2 asymmetric key pair and an SM4 symmetric communication key are dynamically generated according to a transaction time window and main body attributes, and are issued through a point-to-point encryption channel and updated in time; in the data encryption and binding stage, a transaction instruction is encrypted, signed and subjected to double-layer integrity verification; a matching and on-chain registration stage: executing matching after verifying the signature, encrypting a result, writing the result into the block chain, and generating a zero-knowledge proof; and in the settlement and supervision stage, settlement or alarm responsibility investigation is started after decryption verification. According to the invention, the problems of single identity authentication, static key, easy data tampering and the like in the prior art are solved, full-flow security protection of power transaction is realized, and data confidentiality, integrity and traceability are improved.
Owner:SHANDONG ENERGY POWER SALES CO LTD

Method and system for encrypting and isolating storage data of credential mobile terminal

The invention relates to a method and system for encrypting and isolating storage data of a credential mobile terminal, and belongs to the technical field of information. The method comprises the following steps: encrypting and partitioning the whole storage area, and setting an access strategy according to user permission; when a user requests to access, executing multi-factor authentication containing a password and an external hardware certificate, and adding biological characteristic authentication; after the authentication is passed, an encryption key is taken from the domestic security chip; and encrypting and decrypting data by using the secret key, and opening corresponding partition access according to authority. The system comprises a storage partition module, an identity authentication module, a key management module, an encryption and decryption module and an authority control module and is used for executing the method. The method also comprises the steps of equipment startup trusted boot and firmware upgrade verification, is based on a custom curing system, and is compatible with Android 10 +. The problems of poor hardware controllability and positioning security risk of the creative mobile terminal are solved, and full-link data security protection is realized.
Owner:JINAN UNIV IND TECH RES INST CO LTD +1

Multi-encryption-based AI glasses security payment method and related device

The invention discloses a multi-encryption-based AI glasses security payment method and a related device, and relates to the field of security payment. In the method, multi-modal biological information of a user is collected, when the multi-modal biological information is consistent with preset biological information, a dynamic password request is sent to bound target equipment, and a dynamic password returned by the target equipment is received and displayed on a display interface; and when the user inputs the dynamic password on the payment interface, encrypting payment information by using a private key to obtain encrypted information, sending the encrypted information to a payment server to decrypt the payment information through the payment server and verify the decrypted data through a block chain network, and when the verification result is successful, sending the encrypted information to the user. Fund transfer is executed according to the payment information; and fund transfer information returned by the payment server is received. By implementing the technical scheme provided by the invention, the payment security and convenience are improved, and information leakage is effectively prevented through a multi-encryption technology.
Owner:GUANGZHOU GUDONG INTELLIGENT TECHNOLOGY CO LTD

Data verification method and device based on two-dimensional code third-party login and national secret authentication

The invention provides a data verification method based on two-dimensional code third-party login and national secret authentication, and the method comprises the steps: obtaining a user identity bill and obtaining a private key password corresponding to the user identity bill by an encryption end when a login request sent by a user end through scanning a login two-dimensional code of a login end is received; the encryption end encrypts the private key password to obtain an encrypted key password, and sends the encrypted key password to the login end; the encryption end determines collaborative signature response data according to the collaborative signature request and the user identity bill and sends the collaborative signature response data to the login end; and the encryption end verifies the complete signature through the verification request, and sends a verification result to the authentication end. By arranging the encryption end, national secret authentication and two-dimensional code third-party login are combined, and the safety of logging in a third-party website when the two-dimensional code is scanned is guaranteed.
Owner:SHENZHEN OLYM INFORMATION SECURITY TECHOLOGY CO LTD

Network data sharing method and system based on dual identity authentication

The invention discloses a network data sharing method and system based on dual identity authentication, and the method comprises the steps: a user A logs in a client A through the dual authentication of a password and a digital certificate, and transmits an encrypted file data packet formed after an original file is encrypted to a server; the user A selects target data at the client A and appoints a shared user B, and the server updates a shared file list of the user A; the user B submits a data downloading request on the client B, and the server verifies the authority of the user B and sends the encrypted file data packet to the client B; the client B decrypts the encrypted file data packet to obtain an original file; the system comprises a client module, a storage module and a server module. According to the method, a dynamic key generation mechanism is adopted, the requirement for real-time change of the authority in a multi-user cooperation scene is met, the leakage risk of a preset key is avoided, and the conflict between user privacy and sharing convenience is effectively solved.
Owner:NANJING UNARY INFORMATION TECH

Systems methods and devices for dynamic authentication and identification

Systems and methods involving various registration and authentication workflows are disclosed herein. A user may be authenticated without the use of static usernames or passwords. In some embodiments, an authentication identifier may be generated that is associated with an authentication request for a user to access a protected resource (e.g., a web app). An authentication code may be generated based on the authentication identifier. The authentication code may be sent to a computing device to be provided to the user, who may provide the authentication code to an application on their mobile device. The mobile device may send a payload containing the authentication identifier, credentials saved on the user device from a previous registration step, and a digital signature. The digital signature may be authenticated using contents of the payload before validating the authentication identifier.
Owner:SCRAMBLE ID INC

Internet of Things secure access method based on cloud edge collaboration

The invention discloses an Internet of Things secure access method based on cloud edge collaboration, which comprises the following steps: firstly, an Internet of Things device and an edge server respectively register in a CSC (Content Service Controller), and obtain an intelligent card or related data to complete information updating and storage; the equipment is inserted into an intelligent card to log in, and data are sent to the edge server after identity password verification; the edge server verifies the timestamp and then forwards the data to the CSC; the CSC verifies the timestamp and the identity, generates a session key parameter and sends the session key parameter to the edge server; the edge server verifies the identity of the CSC and then generates session key encrypted data to be transmitted back, and after the verification of the device is passed, secure communication is established. According to the method, mutual verification and encryption protection are adopted in identity verification; a timestamp, a random value and strict verification are used for message transmission to prevent replay and man-in-the-middle attack; secret key management guarantees safety through dynamic change of secret values, attacks such as physical capture are resisted in combination with PUF, and communication safety is comprehensively guaranteed.
Owner:SICHUAN BAICHENG INFORMATION TECHNOLOGY CO LTD

Article label anti-counterfeiting authentication method and system and computer equipment

The invention relates to an article label anti-counterfeiting authentication method and system and computer equipment. Comprising the following steps: reading first label information containing an identification area, a coding area and a password area through an external network base station to realize data preliminary verification and label authentication; and the second label information only containing the coding area is read by the intranet base station for re-verification, so that data multiple verification and anti-counterfeiting verification are provided for electronic label data interaction in a network isolation environment, information comprehensiveness and security are considered, the accuracy and reliability of target object identification are improved, and the user experience is improved. And meanwhile, data security is guaranteed through partition information management.
Owner:CHANGSHA YINGXIN SEMICONDUCTOR TECHNOLOGY CO LTD

Novel ARE cryptosystem of infinite dimension key space for resisting ADC attack on finite dimension cryptosystem

Due to the appearance of dynamic structured mathematics responded by a global coupling structure, a great threat is generated to a traditional password system represented by AES-256 and information security. Most of current mainstream symmetric cryptographic systems such as AES and post-quantum encryption candidate schemes are based on discrete key space and structure modeling operation, the security of the current mainstream symmetric cryptographic systems depends on exhaustion infeasibility or mathematical difficulty complexity, and the current mainstream symmetric cryptographic systems and post-quantum encryption candidate schemes are difficult to resist attacks of adaptive dynamic coupling such as ADC. Therefore, the invention provides a novel ARE encryption system which is constructed by taking'non-modeling property 'as a core principle. A system key is generated by a non-numerable dimension perturbation function, has unique attributes of no structure, non-derivation, non-periodicity and the like, and is combined with an encryption method of a key function which cannot be covered, physical noise perturbation and a quantum random source to construct a new generation of ARE password architecture; the method has the capability of being incapable of being deduced, reduced in order, incapable of being converged to a key space and extremely high in structural modeling attack resistance, any analyzable optimization path can be blocked from the source, and it is ensured that ADC evolution attacks are completely resisted.
Owner:李海全

Password change via dynamic power reset pattern

During operation, an electronic device may receive, associated with a computer, a packet or a frame that includes a dynamic power reset pattern, where the dynamic power reset pattern specifies temporal pattern of power resets. Then, the electronic device may detect multiple power resets, where a given detected power reset in the detected power resets involves activation of a power reset button in the electronic device. Moreover, the electronic device may compute a detected power reset pattern, where the detected power reset pattern includes a detected temporal pattern of detected power resets. Next, the electronic device may compare the dynamic power reset pattern and the detected power reset pattern. Furthermore, based at least in part on a result of the comparison, the electronic device may at least selectively provide, to the computer, the result of the comparison.
Owner:RUCKUS IP HOLDINGS LLC

ESIM card changing method and related equipment

The embodiment of the invention discloses an embedded subscriber identity module (eSIM) card changing method and related equipment, and the method comprises the steps that an authentication server receives a first card changing request sent by terminal equipment, and the first card changing request comprises a user account, a password, a user number and an eUICC chip identifier; verifying the user identity of the terminal equipment according to the user account and the password; and if the verification is passed, a second card changing request is sent to an operator service support system (BSS), the second card changing request comprises the user number and the eUICC chip identifier, the second card changing request is used for indicating the BSS to complete eSIM card changing, and an eSIM server is notified to generate an eSIM configuration file and associate the eSIM configuration file with the eUICC chip identifier. By adopting the embodiment of the invention, the eSIM card changing process is simplified, and the eSIM card changing efficiency is improved.
Owner:HUAWEI TECH CO LTD

Password strength intelligent detection system and method based on exhaustion algorithm optimization

The invention belongs to the field of password strength detection, and particularly relates to an intelligent password strength detection system and method based on exhaustion algorithm optimization, and the system comprises a receiving module, an analysis module, a risk judgment module and a strength generation module. According to the method, traditional exhaustive traversal is optimized through probability-guided brute force cracking simulation analysis, multi-source implicit weak password feature extraction is combined, weights of two analysis results are dynamically fused by using real-time attack data, and a dynamic comprehensive risk value is generated; meanwhile, the system carries out real-time comparison through a centralized weak password dictionary database, and can automatically trigger asynchronous batch tracing detection on historical passwords after the dictionary is updated. And finally, the system integrates the dynamic risk value and a dictionary judgment result, and outputs an accurate strength grade and a risk report. According to the method, the problems of low traversal efficiency, dimension explosion and difficulty in historical password tracing of a traditional method are effectively solved, and the real-time performance, the accuracy and the scene adaptability of detection are remarkably improved.
Owner:BEIJING ZHONGKE JIANYOU TECHNOLOGY CO LTD

Using cross workloads signals to remediate password spraying attacks

A method for detecting password spray attacks. The method includes obtaining information from an on-machine malware detection application for a particular machine indicating that a password spray tool is detected on the particular machine. Information is obtained indicating that the particular machine has performed failed sign in attempts. As a result, a determination is made that the particular machine is performing password spray attacks.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Method and apparatus for thought password brain computer interface

Systems and methods are described herein for authentication and password security. The system may detect involuntary and voluntary brain signals of a user and measure the characteristics of those signals. The signals may be detected and analyzed using a wearable device comprising a plurality of sensors. The system may authenticate the identity of the user by triggering the user to imagine content or react to presented content. The content may comprise an image or movement, and brain signals of the user may indicate signals that are consistent for the user. The system may authenticate the user based on the brain signals based on data stored for the user or profile for the user. This determination may be performed by a machine learning model trained to classify users based on the brain signal data.
Owner:COMCAST CABLE COMM LLC

Quantum cipher migration resisting method and system, electronic equipment and storage medium

The invention relates to an anti-quantum password migration method and system, electronic equipment and a storage medium, and belongs to the technical field of anti-quantum data transmission. The method comprises the following steps: carrying out adaptive expansion on a transport layer security protocol; the encryption end and the decryption end perform secure transmission of the application data based on the expanded transport layer security protocol, and the secure transmission process of the application data comprises the following steps: generating a master key, a multi-level sub-key and a path key chain according to a chain type post-quantum key generation mechanism based on the expanded cipher suite; the encryption end generates an encryption key through a part of the sub-keys, encrypts application data in a symmetric encryption mode to generate a ciphertext, and sends the ciphertext and a path node key at the tail end of the path key chain to a decryption end; and the decryption end verifies the path node key, generates a decryption key by using part of the sub-keys after the verification of the path node key is passed, and decrypts the ciphertext. According to the invention, the security and high efficiency of data transmission in the anti-quantum cryptography migration process are realized.
Owner:RELATED (BEIJING) TECHNOLOGY CO LTD

Multi-strategy fusion password detection method and system and medium

The invention provides a multi-strategy fusion password detection method and system and a medium, and relates to the technical field of data processing.The method comprises the steps that after an initial registration password submitted by a user is received, lightweight hash is calculated; performing weak password mark hit matching, and outputting a password state matching result; if not, parallel feature vectors are extracted through an SIMD instruction set; loading to a multi-strategy fusion model, carrying out multi-strategy password strength characteristic fusion evaluation, and outputting a real-time password strength label; matching an asynchronous scene, performing asynchronous dual-thread application scene risk detection, and outputting a heterogeneous scene risk report; randomly disturbing the initial registration password to obtain a temporary standby password library; and loading to a registration interface for visual display. The technical problems that in the prior art, password evaluation depends on a model with the large calculation amount, the evaluation speed is low, real-time password detection cannot be achieved, and then user experience and system efficiency are affected are solved.
Owner:SHANDONG WEIPING INFORMATION SECURITY EVALUATION TECH CO LTD

Data encryption method and system based on multi-terminal interaction

The invention discloses a data encryption method and system based on multi-terminal interaction, and relates to data encryption: when a user registers for the first time, acquiring main password data input by the user, and generating main key seed data through a key derivation function according to the main password data; based on the master key seed data, a hierarchical hash algorithm is adopted to construct a key derivation tree data structure, the key derivation tree data structure takes the master key seed data as a root node, and the key derivation tree data structure is expanded layer by layer according to the device category and the device identifier to form a tree-shaped derivation path; when a new device requests authorization, a derivation path is calculated according to the key derivation tree data structure in combination with the attribute data of the corresponding new device, and exclusive key data corresponding to the new device is derived and generated from the master key seed data along the derivation path; according to the exclusive key data of the sending device, in combination with the path data of the receiving device in the key derivation tree, encrypting the data to be transmitted between the devices to generate an encrypted data stream; the encryption efficiency of the offline equipment is improved.
Owner:SHENZHEN YOUQIAN INFORMATION TECH CO LTD +2

Password plaintext risk monitoring system and method based on traffic analysis and large model

The invention discloses a password plaintext risk monitoring system and method based on traffic analysis and a large model. The method comprises the following steps: collecting related basic information based on a traffic background environment to construct a knowledge base; analysis is carried out based on the pre-collected traffic, marking analysis is carried out on field information identified in the traffic, and a prompt word library is generated; the method comprises the following steps: collecting environment traffic, performing traffic analysis on the collected traffic, extracting interaction information in the traffic, performing cleaning and structural processing, and submitting the interaction information to a password plaintext risk identification agent; and the intelligent agent performs analysis through large model capability according to submitted content in combination with a knowledge base and cue words, judges a password plaintext state in the traffic information, and finally generates a risk report and returns the risk report. According to the method, the accuracy of password plaintext risk identification is improved through the intelligent analysis capability of the large model.
Owner:FUJIAN FUJITSU COMM SOFTWARE CO LTD

Cross-domain authentication and data sharing method and system capable of verifying homomorphic encryption

The invention provides a cross-domain authentication and data sharing method and system capable of verifying homomorphic encryption, and relates to the technical field of blockchains, comprising the following steps: a data owner generates a public and private key pair by using a homomorphic encryption scheme based on a lattice password; the data owner performs homomorphic encryption on the original data by using the public key to generate a homomorphic ciphertext; the data owner performs integrity protection on the homomorphic ciphertext by using a Merkle tree structure to generate a ciphertext abstract; the cross-domain authentication center receives a data access request sent by the data user, and the cross-domain authentication center verifies the identity of the data user by using a multi-factor authentication method; the data user submits an authorization token and a data access request to the distributed storage system; the distributed storage system verifies the authorization token and returns corresponding homomorphic ciphertext data; the verification network verifies the calculation process, generates a verification report and sends the verification report to the data owner; and the data user collects partial decryption results and reconstructs a complete decryption result.
Owner:LIANYUN (SHANDONG) BIG DATA CO LTD

SaaS service security verification method and system under zero-trust architecture

The invention provides a SaaS service security verification method and system under a zero-trust architecture. The method comprises the following steps: a client sends a login request to a server; the server side verifies the login request and returns a dynamic key, a coding rule table and a shuffling rule to the client side based on the login request and a current time window; the client generates a first password table corresponding to the dynamic key, hashing data of the service request according to a coding rule table, embedding the data into the first password table, performing shuffling processing of various different schemes on the first password table according to a shuffling rule to obtain a client request signature, and sending the service request and the client request signature to the server; and the server side obtains the server side request signature according to the same logic, verifies the client side request signature based on the server side request signature, and returns a response result corresponding to the service request to the client side after the verification is passed. According to the method, the end-to-end data integrity and security in the communication process of the client and the server can be remarkably improved.
Owner:BEISEN CLOUD COMPUTING CO LTD

Block chain-based artwork anti-counterfeiting traceability system and method

The invention relates to the technical field of block chain anti-counterfeiting, in particular to an artwork anti-counterfeiting traceability system and method based on a block chain, and the method comprises the steps: obtaining the multi-modal feature data of an artwork, and generating a unique digital fingerprint through a Hash algorithm; continuously acquiring a moving track image of the artwork and extracting spatial-temporal characteristics to generate a dynamic track password; encrypting the digital fingerprint, the track password and the artwork ownership information together, writing the encrypted information into a tamper-resistant distributed account book of a block chain, forming block chain data, and binding the block chain data with a two-dimensional code corresponding to the artwork; scanning the two-dimensional code attached to the artwork, calling the block chain data, and comparing the block chain data with the physical features and the track password to verify the artwork. Therefore, the position of the artwork can be continuously tracked in combination with the historical trajectory of the artwork, the artwork can be better traced through association between the position of the artwork and other anti-counterfeiting information of the artwork, and the transparency and credibility of an artwork transaction market are improved.
Owner:BEIJING HUALIBIWEI TECH CO LTD

Context-based deep mail password strength measurement method

The invention provides a context-based deep mail password strength measurement method, which comprises the following steps of: introducing user context information such as an e-mail, a name and a birthday on a basic password measurement model framework, and realizing information fusion through a multi-head self-attention mechanism; and a password sequence probability calculation model is constructed in combination with a character-level long-short-term memory network (LSTM). An evaluation system taking guess times as a core index is established to quantify the performance difference of different models under the condition that whether user context information exists or not. Experiments show that the method can more truly reflect the cracking capability of an attacker when the attacker masters the context information of the user.
Owner:SHENYANG AEROSPACE UNIVERSITY

Identity verification method and system based on homomorphic encryption

The invention discloses an identity verification method and system based on homomorphic encryption. The method comprises the steps that a server side generates a public key and a private key, during registration, a client side obtains the public key, a unique identifier input by a user and a password, and the public key is used for encrypting the password to obtain a first ciphertext; storing the first ciphertext and the unique identifier in a database of a server; during login, the client obtains a unique identifier and a password input by a user, the server generates a random challenge value and sends the random challenge value to the client, the client encrypts the password by using the public key to obtain a second ciphertext, and a third ciphertext is calculated according to the second ciphertext and the random challenge value; the server obtains the third ciphertext and the unique identifier, and obtains the first ciphertext from the database according to the unique identifier; calculating according to the first ciphertext and the random challenge value to obtain a fourth ciphertext; obtaining a difference ciphertext according to the third ciphertext and the fourth ciphertext; and if the difference ciphertext is 0, the user identity authentication is passed. According to the method, the server side cannot acquire the plaintext, and privacy is guaranteed.
Owner:LINGSHU TECH CO LTD

A method and device for implementing high-speed operation of an algorithm based on a multi-level field cache

The application discloses a method and device for realizing high-speed operation of an algorithm based on a multi-level field cache, which comprises the following steps: a configuration management CPU sends algorithm parameters to an FPGA chip and saves the algorithm parameters in a RAM; a service processing CPU creates a handle and sends the handle to the configuration management CPU; the configuration management CPU generates a key number according to the handle; the configuration management CPU sends a key library to the FPGA chip; the service processing CPU sends a to-be-operated message to the FPGA chip; an algorithm scheduling module performs fragmentation judgment, and performs subsequent processing according to a sequence judgment result; a password operation module takes the received key, an initialization vector or an intermediate chain variable and the to-be-operated message as input, performs password operation, and outputs a calculation result and an operated intermediate chain variable; whether the to-be-operated message is the last data fragment is judged according to a tail fragment identifier, and subsequent processing is performed according to a tail fragment judgment result. The application can reduce the communication interface and CPU access times, realize high-speed operation of a password algorithm, and improve the overall performance of a password service system.
Owner:JIANGSU NEW QUALITY INFORMATION TECH CO LTD