Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

17 results about "Password strength" patented technology

Password strength is a measure of the effectiveness of a password against guessing or brute-force attacks. In its usual form, it estimates how many trials an attacker who does not have direct access to the password would need, on average, to guess it correctly. The strength of a password is a function of length, complexity, and unpredictability.

Password strength intelligent detection system and method based on exhaustion algorithm optimization

The invention belongs to the field of password strength detection, and particularly relates to an intelligent password strength detection system and method based on exhaustion algorithm optimization, and the system comprises a receiving module, an analysis module, a risk judgment module and a strength generation module. According to the method, traditional exhaustive traversal is optimized through probability-guided brute force cracking simulation analysis, multi-source implicit weak password feature extraction is combined, weights of two analysis results are dynamically fused by using real-time attack data, and a dynamic comprehensive risk value is generated; meanwhile, the system carries out real-time comparison through a centralized weak password dictionary database, and can automatically trigger asynchronous batch tracing detection on historical passwords after the dictionary is updated. And finally, the system integrates the dynamic risk value and a dictionary judgment result, and outputs an accurate strength grade and a risk report. According to the method, the problems of low traversal efficiency, dimension explosion and difficulty in historical password tracing of a traditional method are effectively solved, and the real-time performance, the accuracy and the scene adaptability of detection are remarkably improved.
Owner:BEIJING ZHONGKE JIANYOU TECHNOLOGY CO LTD

Relay protection embedded security gateway device

PendingCN121356870ANetwork connectionsSecuring communicationEmbedded securityProxy server
The invention relates to the technical field of embedded system network security, and provides a relay protection embedded security gateway device, which comprises a proxy server module for analyzing a downlink message to perform user login authentication, authority auditing and routing addressing, and performing auditing log recording and transparent forwarding on an uplink message, realizing one-to-many proxy communication based on the frame head addressing information; the authority auditing module is linked with the proxy server module and the auditing log module and is used for directly disconnecting the request which does not pass the authority verification; the audit log module is used for recording user operation events, permission change and system security events, supporting multi-format log storage and management and realizing log rolling recording and roll file exporting through a database; and the user management module is used for realizing full-life-cycle management of user identities and supporting password strength strategy configuration and a continuous wrong login locking mechanism. The method is suitable for network security protection of the power embedded device, and has the advantages of low invasiveness and high maintainability.
Owner:NANJING GUODIAN NANZI POWER GRID AUTOMATION CO LTD

A PCFG password strength evaluation method fusing pinyin mode

PendingCN122339663AAlgorithmPassword
This invention discloses a PCFG password strength evaluation method incorporating Pinyin patterns. The steps include: 1) extracting Pinyin patterns from a benchmark dataset and generating corresponding rule sets; 2) sequentially selecting rules from the rule set according to probability and generating corresponding passwords based on the probability of the terminal symbols in the patterns contained in the rules; 3) determining whether the currently generated password matches the corresponding user's password. If not, proceeding to step 2) changing the terminal symbols corresponding to the pattern and generating the password again. If all terminal symbols in the patterns contained in the rule have been exhausted, changing the rule and continuing to generate passwords; 4) when the password matches the corresponding user's password, determining the password strength of the corresponding user's password based on the number of rule changes. This invention significantly improves the effectiveness of password strength evaluation for passwords containing Pinyin, providing a more scientific evaluation method for user password security.
Owner:INSTITUTE OF INFORMATION ENGINEERING CHINESE ACADEMY OF SCIENCES

Electricity utilization information collection terminal with multi-layer security isolation

The application discloses a power utilization information acquisition terminal with multi-layer security isolation and relates to the technical field of power utilization information acquisition. The terminal comprises the following steps: power line carrier, micro-power wireless, cellular and Ethernet are used to bear acquisition indexes, and evidence packages containing link fingerprint summaries, health scores and interference categories are generated; a security chip is used to issue a token, and the link fingerprint summaries, object permission gears and minimum password strength thresholds are bound; a security channel is first built on a backup bearing, and the consistency of fingerprints, the validity of tokens and the non-downgrade are checked, and double-bearing consistency is performed on high-risk writing; the link fingerprint summaries and sequence check roots in the token are used to unlock object gates, and evidence object driving minimum access control and parameter setting are periodically uploaded; the method improves copy stability, reduces switching delay, avoids downgrade and miswriting, and is more convenient for operation and maintenance supervision and network acceptance.
Owner:LIYANG HUAPENG ELECTRIC POWER METER

Information processing apparatus, method for displaying password strength, and medium

An information processing apparatus includes a user interface. The apparatus displays a software keyboard for inputting a password, using the user interface; in a case where a password strength meter indicating a strength of a password is set to be displayed using the user interface, calculates a strength of a password input from the software keyboard; and displays the software keyboard and the password strength meter indicating the strength of the input password, and in a case where a password strength meter indicating a strength of a password is set not to be displayed using the user interface, displays the software keyboard. In the case where a password strength meter indicating a strength of a password is set not to be displayed using the user interface, the password strength meter is not displayed.
Owner:CANON KK

Password verification methods, devices, storage media and program products

This application provides a password verification method, device, storage medium, and program product, relating to the field of big data. The method includes: obtaining a user password to be verified; determining the target complexity level that the user password must meet; performing corresponding password security verification according to the target complexity level; performing a first verification on the user password when the target complexity level is first; performing both the first and second verifications on the user password when the target complexity level is second; and performing the first, second, and third verifications on the user password when the target complexity level is third; if all verifications of the user password pass, then the user password is allowed to be used. This method adds a verification dimension based on character space distribution, improving the accuracy of password strength assessment in complex business scenarios.
Owner:CETC JINCANG (BEIJING) TECH CO LTD

Dynamic password strength evaluation method for Internet of Things equipment

The invention discloses a dynamic password strength evaluation method for Internet of Things equipment, and relates to the technical field of Internet of Things security, and the method comprises the steps: obtaining a to-be-evaluated target password, carrying out the analysis of the target password, and extracting the basic characteristics of the password; generating initial password strength of the target password based on the password basic characteristics; mapping the initial password strength into attack cost according to context information of equipment corresponding to the target password; obtaining dynamic risk state data in the operation process of the equipment, and dynamically correcting the attack cost to obtain a dynamic password strength evaluation result of the target password; according to the method, probabilistic attack modeling is introduced, and equipment context and dynamic risk correction are combined, so that the problems that existing password strength evaluation is static and is separated from an actual attack environment of the Internet of Things are solved.
Owner:SHANGCE INFORMATION TECH CO LTD

Password strength evaluation method and system based on edge node of industrial Internet of Things

PendingCN121966887AReduce the difficulty of crackingweaken password strengthNetwork connectionsSecuring communicationAlgorithmTheoretical computer science
The invention discloses a password strength evaluation method and system based on industrial Internet of Things edge nodes, relates to the field of Internet of Things security, is applied to a node management gateway, and comprises the following steps: matching a plurality of edge nodes according to current service scene information; inputting the plurality of edge nodes into a preset node association knowledge graph for association clustering to obtain an association node graph of the plurality of edge nodes; calculating statistical parameters of the plurality of edge nodes based on the association node graph of the plurality of edge nodes; calculating risk propagation coefficients of the plurality of edge nodes according to the statistical parameters of the plurality of edge nodes; and according to the risk propagation coefficients of the plurality of edge nodes, correcting the password intensities of the plurality of edge nodes to obtain the corrected password intensities of the plurality of edge nodes, thereby solving the problem of insufficient edge node password intensity evaluation precision in the industrial Internet of Things at present.
Owner:HUBEI XINGYE TECHNOLOGY DEVELOPMENT CO LTD

Determining Password Strength Based on Personal Information and Activity

PendingUS20260252680A1PasswordDiscoverability
Systems and methods provide context-aware password strength evaluation. In an embodiment, a method includes receiving a user password, wherein the user password is associated with at least one of a newly created password, an updated password, or an existing password to be analyzed; parsing the user password into one or more segments; determining, for each segment, discoverability measures relative to personal information associated with the user, wherein the personal information includes at least one of publicly available data or non-public data; calculating a context-aware password strength rating based on the discoverability measures of the one or more segments; and providing feedback to the user regarding the context-aware password strength rating.
Owner:GEN DIGITAL INC

Weak password detection method based on multi-modal feature fusion and dynamic behavior analysis

The application provides a weak password detection method based on multi-modal feature fusion and dynamic behavior analysis. The method innovatively introduces multi-dimensional feature extraction, including password entropy, semantic correlation, user historical behavior, system login frequency, etc., to improve user feature adaptation and reduce dependence on static dictionaries. In addition, through real-time interactive feedback, password strength assessment and security recommendations can be pushed in real time. Therefore, the method of the application can solve the problems of strong dependence on static dictionaries, insufficient user feature adaptation, and lack of real-time feedback in existing weak password detection techniques, significantly improving the accuracy and defense efficiency of weak password detection in colleges and universities, and providing an efficient and easy-to-deploy password security solution for the education industry.
Owner:CAPITAL UNIVERSITY OF MEDICAL SCIENCES

Electricity utilization information acquisition terminal with multi-layer security isolation

The invention discloses an electricity utilization information acquisition terminal with multilayer security isolation, which relates to the technical field of electricity utilization information acquisition, and comprises the following steps of: bearing acquisition indexes on power line carrier, micropower wireless, cellular and Ethernet, and generating an evidence packet containing a link fingerprint abstract, a health score and an interference category; issuing an undertaking token by the security chip, and binding the link fingerprint abstract, the object permission level and the minimum password strength threshold; establishing a secure channel in a standby bearer, verifying that fingerprints are consistent and tokens are effective and do not degrade, and executing dual-bearer consistency for high-risk writing; unlocking an object gate through double certification of a link fingerprint abstract and a sequence check root in the token, and periodically uploading an evidence object to drive minimum access control and parameter setting; according to the method, the reading stability is improved, the switching time delay is reduced, degradation and miswriting are avoided, and operation and maintenance supervision and network access acceptance are more convenient.
Owner:LIYANG HUAPENG ELECTRIC POWER METER

Method and system for key recovery based on password strength assignment and threshold combination

The application discloses a key recovery method and system based on password strength distribution and threshold combination, relates to the password management and cryptography field, and comprises four stages of initialization, recovery password registration, recovery password revocation and key recovery. The initialization stage constructs secret sharing public parameters and a recovery bucket storage structure. In the registration stage, a candidate recovery password is assigned with a corresponding number of real shares according to the strength of the candidate recovery password, random data is filled to form fixed-length recovery data, and the recovery data is stored in a corresponding recovery bucket in an encrypted manner. In the revocation stage, the recovery permission of a specified recovery password can be cleared, and the storage state is synchronously updated. When a user forgets a master password, an effective share is extracted by inputting a registered recovery password, and the password library key is reconstructed after the cumulative threshold is reached, so that the password library access permission is recovered. The application does not require the user to additionally remember a special recovery password, considers the recovery availability and the cryptographic security, and has good cloud observation resistance.
Owner:NANKAI UNIV

Password strength assessment method and device, server

ActiveCN115422527BEvaluation resultAlgorithm
The present disclosure provides a password strength evaluation method and device, and a server. The method comprises: obtaining a password sample set, the password sample set comprising a plurality of password sample sets, each password sample set comprising a plurality of password samples having the same attribute characteristics; encoding each password sample in each password sample set to generate a plurality of word segmentation vectors; generating a feature vector for each password sample using the plurality of word segmentation vectors; generating a feature vector generator based on the feature vectors of the plurality of password samples; determining the password strength of a password to be evaluated based on the plurality of feature vector generators corresponding to the plurality of password sample sets, and outputting an evaluation result.
Owner:WUHAN MARITIME COMMUNICATION RESEARCH INSTITUTE

Intelligent detection system and method for password strength based on exhaustive algorithm optimization

This invention belongs to the field of cryptographic strength detection, and particularly relates to an intelligent cryptographic strength detection system and method based on an optimized exhaustive algorithm. The system includes a receiving module, an analysis module, a risk assessment module, and a strength generation module. It optimizes traditional exhaustive traversal through probabilistic guided brute-force attack simulation analysis, combines multi-source implicit weak password feature extraction, and dynamically fuses the weights of the two analysis results using real-time attack data to generate a dynamic comprehensive risk value. Simultaneously, the system performs real-time comparisons using a centralized weak password dictionary database and can automatically trigger asynchronous batch traceability detection of historical passwords after dictionary updates. Finally, the system integrates the dynamic risk value and dictionary assessment results to output an accurate strength level and risk report. This invention effectively overcomes the problems of low traversal efficiency, dimensionality explosion, and difficulty in tracing historical passwords in traditional methods, significantly improving the real-time performance, accuracy, and scenario adaptability of the detection.
Owner:BEIJING ZHONGKE JIANYOU TECHNOLOGY CO LTD

Weak password scanning and cleaning system based on machine learning and automatic blasting

PendingCN122027251AMachine learningSecuring communicationPasswordSocial engineering (security)
The invention discloses a weak password scanning and cleaning system based on machine learning and automatic blasting, and the system is characterized in that the system comprises the following modules: a data collection layer which is used for collecting asset information, Internet leakage passwords, open social work library data and internal password strategies; the analysis processing layer is used for generating a dynamic password book, fusing multi-source data and speculating a weak password by applying an AI algorithm; the detection execution layer comprises a distributed detection engine and is used for executing weak password detection on the target assets; the governance closed loop layer is used for distributing rectification tasks, verifying password strength, executing retest and confirmation and forming a governance closed loop; and the visual display layer is used for displaying the situation map, the trend report and the compliance audit information. According to the invention, through combination of an intelligent detection means and a systematized treatment process, not only is the bottleneck of the prior art in technical capability solved, but also upgrading is realized from a safety management concept, a set of efficient, comprehensive and feasible weak password comprehensive treatment solution is provided for enterprises and public institutions, and the comprehensive treatment effect of the enterprise and public institutions is improved. The practical value and the popularization prospect are extremely high.
Owner:ZHEJIANG HAIRUI NETWORK TECH CO LTD

Security configuration hot update and adaptive management method, terminal equipment and storage medium

The invention discloses a security configuration hot update and adaptive management method, terminal equipment and a storage medium. The method comprises the following steps: defining a data model of security configuration; defining an event of security configuration change; security level adaptive parameter verification is realized; executing multi-dimensional password strength verification; safely storing the password; issuing a change event during configuration storage; subscribing the configuration change event through the network service; service hot restart is executed; and processing the request in the configuration updating process. The method is based on event driving, and dynamic configuration, self-adaptive verification and non-interruption updating of network service security parameters can be achieved.
Owner:XIAMEN XINGZONG DIGITAL TECH CO LTD

A password strength credibility evaluation method for an instrument control system

PendingCN122457227APasswordSecurity rule
The application belongs to the technical field of information security, and provides a password strength trusted evaluation method for an instrument control system. A security rule definition party issues a password strength rule, and the password strength rule is compiled into a zkSNARK arithmetic circuit through a modular DFA mechanism. A password owner calculates a commitment of a private password of the password owner and uploads the commitment to a block chain. Meanwhile, password data is distributed to a computing service provider through secret sharing technology. The computing service provider receives requests of all password owners, executes a prover algorithm of the zkSNARK based on the password data and the commitment, obtains an aggregated proof, and uploads the aggregated proof to the block chain for a verifier to verify. The verifier uses a public commitment set and the aggregated proof as input to verify the correctness of the aggregated proof. If the verification is passed, it is confirmed that the passwords of all password owners meet the strength standard, and the large-scale batch evaluation of the password strength is efficiently and credibly completed without leaking the passwords of the users.
Owner:UNIV OF ELECTRONICS SCI & TECH OF CHINA