Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

13 results about "Password hashing" patented technology

Password hashing is the process of encrypting a user’s password before storing it into a database. The encryption is one way and passwords once hashed cannot be decrypted to their original text value.

Password hashing method and device for resisting quantum attack

The invention discloses a password hashing method and device for resisting quantum attacks. The method comprises the following steps: dividing plaintexts into n groups with the same length; determining a state corresponding to each group of plaintexts, calculating an intermediate variable, and calculating the intermediate variable by the conversion function to obtain a state corresponding to a subsequent group; determining an output abstract block based on the calculation result of the last group of plaintexts; the conversion function carries out extrusion calculation on the output abstract block, the first r bits of the result obtained through calculation are spliced with the output abstract block, the spliced result serves as the output abstract block, and the output abstract block serves as the final abstract of the plaintext. The method is suitable for various security scenes such as data integrity verification, digital signature and key derivation, and a core method is provided for constructing an autonomous and controllable post-quantum era password infrastructure.
Owner:NO 15 INST OF CHINA ELECTRONICS TECH GRP

Lightweight multi-factor authentication and key agreement method and system for resource-constrained medical equipment

The invention relates to the technical field of medical equipment security, and discloses a lightweight multi-factor authentication and key agreement method and system for resource-constrained medical equipment, and the method comprises the steps: carrying out the setting of a main private key and a password hash function of a medical terminal based on a security demand, constructing a terminal secret state based on the terminal identity, the main and private keys and the basic certificate hash function, combining the state binding hash function, performing multi-factor secret state fusion on the medical terminal to obtain a dynamic secret state, and performing bidirectional authentication based on the terminal encryption hash function, performing forward security session key generation and state updating after the authentication is passed to obtain a forward security session key and a forward security terminal secret state, and finally updating the terminal secret state based on a new password input by a user and the state binding hash function to obtain a password binding terminal secret state; according to the invention, the efficiency of lightweight multi-factor authentication and key negotiation oriented to the resource-constrained medical equipment can be improved.
Owner:JIAXING UNIV

Cryptographic key update system for updating 256-bit cryptographic key

A method for updating a 256-bit cryptographic key by a cryptographic key update system includes transmitting a first transmission, a second transmission, and a third transmission. The second transmission is symmetric key encryption under a serial key encryption key and a new cryptographic key of a plurality of parameters. The transmitter derives a key encryption key by converting an authentication key and a constant bit string based on a one-way compression function, the one-way compression function is one of the following functions: taking a 128-bit advanced encryption standard (AES-128) as a password hash function of a modified detection code 2 (MDC-2) of a bottom block password, taking the 128-bit advanced encryption standard (AES-128) as a password hash function of a modified detection code 4 (MDC-4) of the bottom block password, and taking a 256-bit advanced encryption standard (AES-256) as a Hirose compression function of the bottom block password; and a 256-bit hash function.
Owner:GM GLOBAL TECHNOLOGY OPERATIONS LLC

Password authentication method and device based on Hash ring, equipment and storage medium

The invention relates to the technical field of data encryption, and provides a password authentication method and device based on a hash ring, equipment and a storage medium, and the method comprises the steps: constructing a plurality of hash functions into the hash ring; the hash ring comprises the number of each hash function; on the basis of a hash function on the hash ring, performing iterative loop calculation according to the number of iterations corresponding to the time influence factor to obtain a password hash value; splicing the password hash value, the random salt value, the initial hash function number and the time influence factor into an initial key; the initial hash function number is used for determining an initial hash function in the hash ring; the initial key is used for generating a target key of the user. According to the method, a plurality of hash functions are adopted to form the hash ring, and the finally generated target key is jointly determined through the password hash value, the random salt value, the initial hash function number and the time influence factor, so that the cracking difficulty can be greatly increased, and the user password is also difficult to decode under the condition that the user database is broken.
Owner:CHINA MOBILE M2M +1

Cryptographic security of an evolving actual possession token

PendingUS20260127593A1Cryptography processingSecuring communicationCryptographic hash functionTransaction data
Disclosed is a method, a device, a system and / or a manufacture of cryptographic security of an evolving actual possession token. In one aspect, a method may include receiving an electronic token in a current transfer transaction having a block hash of the previous transfer transaction representing a state of the electronic token following the previous transfer transaction. A data block of the current transfer transaction is generated along with a secret value. The method feeds into a cryptographic hash function inputs including transaction data of the current transfer transaction, the block hash of the previous transfer transaction, and the secret value to generate a block hash of the current transfer transaction. The method stores the secret value in the computer memory and transmits for storage on a server a state hash representing an evolved state of the electronic token to establish independent evidence of evolution of the electronic token.
Owner:ONLI INC

Methods and devices for establishment and use of ephemeral security between ambient internet of things (AIOT) entities

PCT designated stageWO2026039668A1Key distribution for secure communicationSecurity arrangementCryptographic hash functionInternet privacy
Systems, methods, and apparatuses for establishing an ephemeral security context between an ambient internet of things (AIOT) device and a reader device are provided herein. The reader device transmits a plurality of cryptographic puzzles and one or more puzzle parameters to the AIOT device. Each cryptographic puzzle is associated with a tuple comprising an ephemeral key and an ephemeral key index associated with the ephemeral key. The plurality of cryptographic puzzles may include reverse encryption based cryptographic puzzles and / or reverse cryptographic hash functions. The AIOT device selects and solves a cryptographic puzzle of the plurality of cryptographic puzzles and recovers the ephemeral key corresponding to the selected cryptographic puzzle. The AIOT device transmits a first message including a random device identifier and an ephemeral key index corresponding to the recovered ephemeral key. The AIOT device and the reader device establish the ephemeral security context based on the ephemeral key.
Owner:INTERDIGITAL PATENT HOLDINGS INC

De-duplication based on data fingerprint integration

ActiveCN114631075BInput/output to record carriersCryptographic hash functionEngineering
A computer-implemented method for performing data deduplication in a communication network, the method comprising: applying a cryptographic hash function to data to generate a fingerprint of the data. Storing an address mapping table entry in a first table that maps a LBA of a LUN assigned to the data to a PBA of a storage location at which the data is persistently stored. Storing the fingerprint as a key and a location token of the data as a value in a key-value entry in a second table, the location token comprising the LBA and the PBA of the storage location. Modifying the value in the key-value entry in the second table in response to detecting that an additional key-value entry in the second table comprises the fingerprint.
Owner:HUAWEI TECH CO LTD

Password storage method, password verification method and password management system

The invention discloses a password storage method, a password verification method and a password management system, relates to the technical field of information security, and solves the problem of insufficient security in the password storage and verification process. According to the embodiment of the invention, the context information is constructed through the system security policy identifier and the user identity information, and is deeply embedded into the derived data obtained through the HKDF calculation, so that the generation of the key material, the salt value and the signature key is bound with the specific policy and the user identity, and the fusion of the user information, the security policy and the password certificate is realized. According to the scheme provided by the invention, the attack of hash clone can be resisted through the password hash value strongly associated with the user information and the integrity signature, and the updating of the password voucher record can be automatically completed through the changeable system security policy identifier under the condition that the user does not need to modify the password, so that the leaked batch clone vouchers are invalid, and the user experience is improved. And the password storage security is improved.
Owner:GUIZHOU DIGITAL INNOVATION HLDG (GRP) CO LTD

Decentralized terminal user login and management method in ad hoc network environment

The invention discloses a decentralized terminal user login and management method in an ad hoc network environment. The method comprises the following steps: a first terminal receives a user login request and performs local authentication; if the authentication is passed, broadcasting authentication information containing a user name and a version number, receiving a verification result of the second terminal, and judging a login state based on feedback; and if the authentication is not passed, broadcasting user login information containing a user name and password hash, receiving a verification result and updating information of the third terminal, and finishing local data updating and login. According to the invention, a dual-path mechanism of local verification and broadcast collaboration is adopted, and through a distributed user management module and a version number synchronization strategy, security authentication, data consistency maintenance and off-line operation support in an environment without a central server are realized, and the problems of user login and management in an ad hoc network environment are effectively solved.
Owner:SICHUAN BROCOM TECH CO LTD

Methods for establishment and use of ephemeral security between AIOT entities

PendingUS20260052381A1Security arrangementSecuring communicationCryptographic hash functionInternet privacy
Systems, methods, and apparatuses for establishing an ephemeral security context between an ambient internet of things (AIOT) device and a reader device are provided herein. The reader device transmits a plurality of cryptographic puzzles and one or more puzzle parameters to the AIOT device. Each cryptographic puzzle is associated with a tuple comprising an ephemeral key and an ephemeral key index associated with the ephemeral key. The plurality of cryptographic puzzles may include reverse encryption based cryptographic puzzles and / or reverse cryptographic hash functions. The AIOT device selects and solves a cryptographic puzzle of the plurality of cryptographic puzzles and recovers the ephemeral key corresponding to the selected cryptographic puzzle. The AIOT device transmits a first message including a random device identifier and an ephemeral key index corresponding to the recovered ephemeral key. The AIOT device and the reader device establish the ephemeral security context based on the ephemeral key.
Owner:INTERDIGITAL PATENT HOLDINGS INC

Method and system for generating and proving the unique identity of a device

The application relates to the technical field of Internet of Things equipment security, and particularly discloses a device unique identity generation and trusted certification method and system, which comprises the following steps: in the device identity endogenous initialization stage, a secure password chip generates a device unique identity seed based on a PUF circuit and a password hash function, takes the device unique identity seed as a deterministic random entropy source to endogenously generate public and private keys, and uses the private key to issue a self-signed device certificate for the public key; in the device network access registration stage, a device identity management platform verifies the signature value and extended information of the signed device certificate, and after verification, issues a device identity certificate for the public key; in the device running stage, the verification party sends a true random number to the device as a challenge, the secure password chip generates a certification signature, and the device identity certificate, system state information and the certification signature are sent to the verification party for verification. The application can ensure that the identity of each device and each chip is absolutely unique, and fundamentally eliminates certificate replication and hardware counterfeiting.
Owner:山东三未信安信息科技有限公司 +1

System and method for password expiration management

A method includes sending a notification to a user device of a user that a password reset is required. A hash of a password is received from the user device at a reset date and a reset time. A default expiration date and a default expiration time are determined for the password based on the reset date and the reset time. Excluded dates, excluded time intervals, allowable dates, and allowable time intervals are determined. In response to determining that the default expiration date falls on a first excluded date, a first allowable date that is before or after the first excluded date is set as the expiration date. In response to determining that the default expiration time falls within a first excluded time interval, a time that falls within a first allowable time interval is set as the expiration time.
Owner:BANK OF AMERICA CORP