Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

64 results about "Physical access" patented technology

Physical access is a term in computer security that refers to the ability of people to physically gain access to a computer system. According to Gregory White, "Given physical access to an office, the knowledgeable attacker will quickly be able to find the information needed to gain access to the organization's computer systems and network."

Methods and systems for detecting a discrepancy between access rules of access control equipment and an access policy

Methods, systems, and computer-readable media are described herein for receiving access events from access control equipment controlling physical access to a secured premises, comparing each access event to an access policy, detecting that a particular access event violates a clause of the access policy, and generating a compensatory action item for the particular access event that violates the access policy. The access control equipment includes a door controller and one or more readers in communication with the door controller. The door controller is configured to receive requests from the one or more readers, to control access to the secured premises based on access rules for the secured premises, and to generate the access events based on the requests from the one or more readers.
Owner:GENETEC

Verified physical access of telecommunications network subscribers at third-party events or venues

The verification of individuals entering controlled locations such as events and venues is improved by using wireless devices as the entry tickets themselves, verifiable by a telecommunications network. The wireless device provides a network subscriber's identification information (e.g., a phone number) to an access point terminal, in response to an identification / authentication request from the access point terminal. In order to obtain the identification information to provide to the terminal, the wireless device verifies itself via the telecommunications network, which is capable of verifying the device's subscriber identity module (SIM) via cryptographic protocols. Thus, by verifying the device's SIM, the telecommunications network verifies the identity of the network subscriber operating the device, for purposes of sharing a phone number as an entry ticket. Because entry is controlled according to the device's own network-verifiable identity, third-parties that operate events or venues need not distribute entry tickets (e.g., physical or electronic) to individuals.
Owner:T MOBILE US INC

Context-aware elm security analysis and response

An improved context-aware security system may include an artificial intelligence (Al) reasoning security system. The context-aware security system may be configured to receive security input data from a plurality of input sources, generate a contextual security analysis, identify a security response, and send instructions to a security system output device to execute the security response. The context-aware security system may include a plurality of security input sources configured to provide security inputs and contextual data, including credential readers, physical access controllers, security sensors, environmental sensors, or external information sources. The context-aware security system may include a directive input subsystem configured to receive security directives from an authorized user interface. A plurality of security system output devices may be configured to execute the security response, including credential reading systems, biometric systems, alerting systems, logging systems, or notification systems.
Owner:HID GLOBAL CORP

Multipath link optimization for private mobile network

ActiveUS12549948B2Network topologiesConnection managementInternet networkStation
Some embodiments of the invention provide a method for link optimization in an SD-PMN defined over at least a first site of a first entity and a second site of a PMN-provider. The method configures a first portion of the SD-PMN deployed at the first entity's first site, the first portion of the SD-PMN including at least one or more physical access points for connecting user devices at the first entity's first site to the SD-PMN and one or more control plane components of the SD-PMN. The method configures a first edge router deployed at the first entity's first site to use multiple links including at least one commercial Internet network link between the first edge router and a gateway router deployed in the PMN-provider second site to reach the PMN-provider second site and to perform a multi-link optimization process on the multiple links to establish a secure tunnel for use in communicating with the gateway router.
Owner:VELOCLOUD NETWORKS LLC

A safety protection device

This invention relates to the field of industrial safety technology, and in particular to a safety protection device, comprising a cabinet with an installation port. Baffles are installed on the inner walls of both sides of the installation port near the inner side of the cabinet, and an openable door is provided on the inner wall of the installation port near the outer side of the cabinet. A first type of sensor is disposed between the door and the baffles to detect the opening and closing state of the door and output a first state signal. A second type of sensor is disposed at the installation port to detect intrusion into the area of ​​the installation port and output a second state signal. A safety controller is mounted on the baffles. This invention integrates physical access control sensing and open area photoelectric sensing through the first and second types of sensors, achieving comprehensive protection with both contact and non-contact warnings, thus achieving a dual warning effect to prevent personnel from entering dangerous areas.
Owner:KUNSHAN SEAGEAR AUTOMATION SYST CO LTD

Intelligent asset management method and system based on multi-modal interaction and intent understanding

The application discloses an intelligent asset management method and system based on multi-modal interaction and intention understanding, and belongs to the technical field of Internet of Things and artificial intelligence interaction. The method comprises the following steps: collecting a voice instruction of a user in response to the passing of user identity authentication; performing intention recognition and slot filling on the voice instruction, and extracting structured operation information containing an operation intention, an asset identifier and an operation quantity; generating a structured business record based on the structured operation information; performing authority decision according to the structured business record, and controlling to open a storage door after the decision passes. The system comprises an identity authentication module, a voice collection module, a sensor array, an edge computing main control, an electronic lock control module and a communication module. The application automatically maps a physical access operation into a structured business record, realizes in-process compliance control and multi-modal data cross verification, has a delay record degradation path, and solves the technical problems of log hollowing and low compliance data collection rate of existing asset management equipment.
Owner:周乐熙

Real-time broadcast program emergency processing system and method

The invention discloses a real-time broadcast program emergency processing system and method, and the system comprises a hardware layer which completes signal physical access, computing power support and data storage; the data acquisition and preprocessing layer is used for uniformly acquiring and processing multi-source heterogeneous monitoring signals, mainly realizing demodulation, descrambling and demultiplexing of the signals, code stream trimming and IP multicast, and realizing radio frequency monitoring, TS stream monitoring, environment monitoring and EFD intrusion alarm; the core algorithm layer is used for completing feature modeling, multi-channel signal comparison, abnormal classification positioning and continuous model iteration; the application service layer is used for realizing business logic processing, fault warning and automatic handling, and data query and analysis; and the user interaction layer realizes man-machine interaction, state display, model management and compliance auditing. In the aspect of broadcast program degradation identification, the accuracy and the response speed can be improved, so that the aims of reducing the error rate and the accident level of safe broadcast and improving the operation and management level of the safe broadcast are fulfilled.
Owner:SHANGHAI MEDIA & ENTERTAINMENT TECH DEV CO LTD

Object hierarchy to support device configuration in physical access control systems

Example implementations include a method, apparatus, and computer-readable medium for configuring a device in a physical security system via an open architecture. The device receives a command from an application via a publish-and-subscribe broker. The command includes: a type field indicating the command, a source field indicating the application, a timestamp, and a payload including a list of objects, each object including one or more parameters defined by a field name, a datatype, one or more possible values, and a mandatory status. The device transmits an event message to the application via the publish-and-subscribe broker, the event message includes a type field identifying the event message, a source field identifying the device, a timestamp, and a payload including a type field identifying a type of event.
Owner:TYCO FIRE & SECURITY GMBH

Offline mode NFC-based FIDO2 Authentication System for Door / Turnstile Access Control

The present invention relates to an offline mode Near Field Communication (NFC)-based FIDO2 authentication system for door and turnstile access control. This system comprises a FIDO2 security key, an NFC reader, and a door controller. The FIDO2 security key stores user credentials and performs cryptographic operations, while the NFC reader communicates with the key to authenticate users. The door controller, connected to the NFC reader, controls the door lock mechanism based on authentication results. The system operates without continuous network connectivity, providing secure offline authentication. The NFC reader performs several operations: it receives credential data from the FIDO2 security key, generates and transmits a cryptographic challenge, receives and verifies a signed response using a pre-stored public key, extracts a Physical Access Control (PAC) number upon successful authentication, and transmits the PAC number to the door controller to grant or deny access.
Owner:SINGH SHASHI PRAKASH +1

Beacon and device location verification using additional generated codes

A method of operating a physical access control system (PACS) includes detecting, by a credential device of the PACS, a beacon signal associated with a physical access portal of the PACS; reading, by the credential device, beacon authentication information for the beacon signal; authenticating the beacon signal using the beacon authentication information; proceeding with a process of authentication of the credential device when the beacon signal is authenticated, and ending the process of authentication of the credential device when the beacon signal is not authenticated; and initiating access to a physical access portal conditional on authentication of the credential device.
Owner:ASSA ABLOY AB

Forta Vault™— Sovereign Hybrid Infrastructure Harvest, Conversion, and Enforcement Platform

A secure apparatus and method for harvesting, validating, storing, and conditionally releasing physical resources are disclosed. The apparatus includes an environmental harvesting assembly configured to physically collect energy or other resources from multiple environmental domains, a conversion module that transforms the collected resources into a usable output, and a storage module that physically retains the output. A dual-meter validation module independently measures harvested or stored quantities to detect physical discrepancies beyond predefined tolerance thresholds. A hardware security module maintains sealed operational statesgts, performs cryptographic signing, and enforces encoded physical release conditions, including zeroization upon detection of tampering. A tamper-detection module identifies unauthorized physical access or modification. An escrow-validation engine restricts physical release of stored resources until cryptographically verified authorization, compliance, or continuity conditions are satisfied, enabling autonomous, tamper-resistant, and auditable physical resource control across distributed infrastructure.
Owner:FRANKLIN TYSALAH FLOYD

PHY training parameter prediction method and device based on machine learning model

The invention relates to the technical field of data storage, and discloses a PHY (Physical Layer) training parameter prediction method and device based on a machine learning model, which are applied to enterprise-level SSD (Solid State Disk) master control firmware. According to the method, the PHY register is read to replace a time-consuming NAND physical read-write operation, so that the physical access delay in the PHY training process is eliminated, the PHY training time is compressed from a millisecond level to a microsecond level, the training speed is greatly improved, and the technical problem that the PHY training time is long is effectively solved; pHY training parameters are directly predicted by using a machine learning model, so that the risk of boundary misjudgment caused by eye pattern closing in a high-speed mode is avoided, the eye pattern jitter interference resistance is high, and the training precision and robustness are improved; the machine learning model can learn and adapt to characteristic differences of NAND particles of different manufacturers, PHY training parameter prediction of the NAND particles of different manufacturers can be realized, and compatibility and adaptability are high.
Owner:成都芯忆联信息技术有限公司

Intelligent control of physical access to restrcted areas

Examples provide a system for controlling physical access to a restricted area. The system includes an electronic processor configured to receive, from a system user, a natural language input relating to an expected event at a physical access device, and generate, using an artificial intelligence (AI) model, a configuration file for the physical access device based on the natural language input. The configuration file defines a set of actions and a set of conditions for performing the set of actions. The electronic processor activates the configuration file in response to determining that the system user has sufficient user permissions. The electronic processor detects, via an input device, activity in proximity to the restricted area, and, in response to determining that the activity satisfies at least one condition defined by the configuration file, executes the set of actions. At least one action controls the physical access device.
Owner:MOTOROLA SOLUTIONS INC

Multimodal communication system with physical access unit (QR code, NFC or RFID), PIN-protected web access and modular messaging function for everyday use

Multimodal communication system for everyday use, consisting of - a physical access unit in the form of a QR code, an NFC tag or an RFID transponder, - a digital communication area uniquely assigned to the physical access unit, characterized by that a PÜ4 authentication unit is assigned to the digital communication area and that the digital communication area is accessible exclusively via this PIN authentication unit, wherein the physical access unit is connected to an access trigger unit which enables PIN-protected access to the digital communication area.
Owner:INTZEN LUCY

A cost auxiliary accounting and risk prediction system for construction engineering

This invention relates to the field of information management technology for construction projects, and discloses a cost-assisted accounting and risk prediction system for construction projects. The system includes a multi-source heterogeneous data sensing and access module, an atomic work unit construction module, a topology network adaptive reconstruction module, a cost sensitivity cascade analysis module, and a risk damping and reverse potential energy control module. The invention achieves physical-level accounting by using the atomic work unit construction module to calculate real-time reconstruction costs based on the measured values ​​of physical quantities of resource consumption and the mapping between real-time library unit prices. The topology network adaptive reconstruction module dynamically adjusts the network structure. The cost sensitivity cascade analysis module quantifies the impact of upstream node schedule deviations on downstream node costs, simulates risk cascade diffusion, and predicts accumulated risk energy. The risk damping and reverse potential energy control module generates virtual resource tokens for reverse transmission, and executes physical access control when the reverse locking signal strength exceeds a threshold, achieving automated risk blocking.
Owner:ZHEJIANG DEGUANG CONSTRUCTION ENGINEERING CO LTD

Secure resource control using object recognition

A system for combining augmented reality (AR), machine learning (ML), and Light Detection and Ranging (LiDAR) technologies to create an efficient and accurate access to secure resources. An AR component is used with an integrated ML model trained to detect physical access control (PAC) or PAC system (PACS) readers or devices. When a user opens the application and points their mobile device camera at a reader, the ML model identifies the reader, triggering BLE communication and, in some cases, without relying on RSSI measurements to obtain access to the secure resource.
Owner:ASSA ABLOY AB

Integrated circuit physical security device

ActiveCN115292759BCircuit security detailsDigital data protectionComputer architecturePhysical security
Integrated circuit physical security devices are disclosed, specifically devices and methods for physical chip security. In at least one embodiment, a security module is affixed to a board to restrict physical access to an integrated circuit mounted on the security module and provide one or more contacts that enable data access to the integrated circuit.
Owner:NVIDIA CORP

Firewall policy generation method and device, electronic equipment, medium and program product

The invention provides a firewall policy generation method and device, electronic equipment, a medium and a program product, and can be applied to the technical field of cloud computing and the field of distributed technologies. The method comprises the following steps: acquiring architecture asset data, wherein the architecture asset data is used for describing application nodes and corresponding calling information in a service system; determining an access relation type based on the architecture asset data, and constructing a logic access relation based on an access mode matched with the access relation type; obtaining resource information of a running environment, and generating a corresponding physical access relation based on the logic access relation and the resource information; and obtaining network management and control information of an operation environment, determining an access link needing to implement firewall control based on the physical access relationship and the network management and control information, and generating the firewall policy according to the access link.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Microcontroller-based method for resource isolation and data security assurance of android container

The application discloses a microcontroller-based Android container resource isolation and data security guarantee method, relates to the field of hardware-assisted embedded container security technology, and comprises the following steps: loading a special firmware to build a transparent isolation layer on a microcontroller; generating a dynamic resource configuration vector in response to an application startup request and writing the vector into a non-volatile register group, locking the physical access paths of processor cache channels, memory bandwidth and peripheral interfaces; splitting a data stream into transmission frames with encryption labels when cross-container data interaction occurs, and routing the transmission frames to target containers through a hardware bus arbitrator; monitoring the space-time correlation of container kernel instruction streams and peripheral level jumps, freezing the container clock domain when the security model is violated, and triggering a hardware interrupt to perform state snapshot forensics; and sending a specific pulse sequence to a memory particle to trigger capacitor active discharge and reset the processor branch predictor history record when the container is terminated. The application realizes the resource exclusivity, data security and threat defense capability of the Android container.
Owner:GUANGDONG WEIPINEN NETWORK TECHNOLOGY CO LTD

Building system with credential and temperature verification functionality

A building system (1), such as an elevator system, a physical access control system or a combination elevator and physical access control system, has a controller system (18) for controlling the building system (2) to perform a building action and a credential acquisition unit (24a) for acquiring a credential presented by a user (2), wherein the credential determines whether the user (2) is an authorized user (2) within the building. The building system (1) further comprises a camera system (24) having a thermal imaging camera (24b) that generates an infrared image of a face of the user (2) and an image processing system (6) communicatively connected to the camera system (4) and the controller system (1). The image processing system (6) processes the infrared image to determine whether the face of the user displays a temperature value that is above a set threshold temperature value and generates a first result signal indicating whether the temperature value is above the threshold temperature value. The controller system (18) enables or disables the building action in dependence on the acquired user credential and the result signal.
Owner:INVENTIO AG

Power grid special AI-NVR composite encryption security monitoring system

The application provides a power grid special AI-NVR composite encryption security monitoring system, and belongs to the technical field of security monitoring, which comprises a composite encryption security monitoring system with fused software and hardware cooperative protection logic, integrated key hardware configuration and identity authentication activation system, AI intelligent processing and data real-time encryption mechanism, double-SIM card isolation transmission and data interaction rule, hardware level interface security control module, intelligent screening and trusted environment decryption module, and realizes full-process security control from device physical access, identity authentication to data identification, storage, transmission and decryption. Through integrated design of four key modules of double-SIM card isolation transmission, composite encryption protection, AI intelligent processing and hardware control, the safety protection of the whole process of power grid monitoring data collection, identification, storage and transmission is realized, the AI identification accuracy and data transmission stability are improved, and the high security level and intelligent demand of the power grid scene are met.
Owner:DTI (SHANGHAI) CO LTD

Computing block system

Modular computing systems can include a plurality of computing blocks, a frame to physically support the computing blocks, and an interconnection infrastructure. The interconnection infrastructure can provide power, cooling, and communications for the computing blocks. Each computing block can include a housing, a computing portion within the housing, a cooling portion within the housing to extract heat from the computing portion, a power infrastructure to power the computing portion, a communications infrastructure to facilitate communications between the computing portion and an external network, a cooling infrastructure to transfer heat from within the housing to outside the housing, and a service corridor within the housing to provide physical access to at least the computing portion.
Owner:VERTIV CORP

Physical security system and method to temporarily revoke a portion of access control credentials during an incident

A physical security system and method to temporarily revoke a portion of access control credentials during an incident is disclosed. The method includes determining a defined area with respect to which one or more protected assets therein have respective one or more asset securities potentially compromised due to one or more occurrences of respective one or more security-impacting access control events. The method also includes automatically and temporarily revoking a portion of access control rights possessed by at least some of a plurality of users registered with access control credentials for the physical access control system. The portion of the access control rights being temporarily revoked corresponds to physical entry rights via one or more access control points bordering or within the defined area.
Owner:MOTOROLA SOLUTIONS INC

A hardware and software collaborative protection method and system for vehicle-mounted T-BOX JTAG interface

This invention relates to the field of automotive electronic information technology security, and provides a hardware and software collaborative protection system and method for the JTAG interface of an in-vehicle T-BOX. The system includes: a microcontroller unit (MCU), a JTAG interface, and at least one controllable physical isolation circuit disposed between the MCU and the JTAG interface. The controllable physical isolation circuit is used to selectively connect or disconnect at least one standard forced JTAG signal path between the MCU and the JTAG interface according to a control signal. The MCU is used to output a first control signal to the controllable physical isolation circuit after the T-BOX enters the mass production operation stage, to control it to disconnect the at least one standard forced JTAG signal path, thereby physically preventing unauthorized access to the MCU through the JTAG interface. This technical solution prevents unauthorized physical access through the JTAG interface through hardware physical isolation; the added physical isolation layer can effectively confuse attackers, causing them to misjudge the problem as a fault in the JTAG interface or the MCU itself, thus abandoning their attack.
Owner:M2MOTIVE TECH INC +1

Computer software and hardware security monitoring device for nuclide imaging

The invention provides a computer software and hardware security monitoring device for nuclide imaging, and relates to the technical field of software and hardware monitoring. The computer software and hardware security monitoring device for nuclide imaging comprises a host, a plurality of heat dissipation mechanisms are fixedly arranged on one side of the host, a fan tester is fixedly arranged at the upper end of the host, and cables are fixedly connected between the heat dissipation mechanisms and the fan tester. When host hardware is monitored, the rotating speed of the fan of the heat dissipation mechanism can be monitored in real time through the fan tester, and meanwhile, the temperature of the host hardware can be monitored in real time through the infrared temperature measurement sensor; a written virus detection program and a permission key detection program accessed by a user are transmitted into detection hardware, and connected user equipment is directly detected through the detection hardware, so that malicious viruses in peripheral physical access downloading equipment are greatly prevented from entering a host.
Owner:NANCHANG HUALIANG PHOTOELECTRIC CO LTD

Artificial intelligence badge issuing system

The invention discloses an artificial intelligence badge issuing system. A new badge for a user of the facility may be generated to physically access one or more regions of the facility. Access to one or more databases associated with a facility may be provided to a large language model (LLM). The LLM may be prompted to automatically complete at least a portion of a badge application form for a new badge or renewal badge for a user of the facility, where, once completed and approved, the badge application form authorizes activation of the new badge or renewal badge for the user of the facility. The LLM may automatically populate at least a portion of the badge application form by extracting corresponding information from one or more databases associated with the facility.
Owner:HONEYWELL INTERNATIONAL INC

Fttr-based internal and external network cooperative access control and security isolation system, method, device and medium

This application discloses a system, method, device, and medium for collaborative access control and security isolation between internal and external networks based on FTTR. The system includes: a main gateway establishing a three-dimensional dynamic role model for access devices based on physical access location, device type, and time window; receiving access behavior information reported by the secondary gateway, determining dimensional matching, and triggering a deviation flag when a mismatch occurs; using a sliding time window to weightedly sum the deviation flags to obtain a weighted deviation degree, and calculating the deviation density; triggering an anomaly determination when the weighted deviation degree exceeds a first threshold and the deviation density is greater than a second threshold; issuing port isolation commands and spoofing configuration files to the corresponding secondary gateway; the secondary gateway modifying the port PVID to classify the device into a shadow VLAN, and returning a protocol success response to subsequent access within it. This application provides real-time protection upon access, requires no historical data, achieves closed-loop isolation without the attacker's awareness, and does not increase the processing burden on the main gateway.
Owner:TECHNICOLOR (CHINA) TECH CO LTD

Cash handling device operation for physical cash payouts

Physical actions across a variety of cash based systems, such as cash handling devices (CHDs) and register tills, within an establishment may be remotely monitored, tracked, and initiated based at least in part on simulated interactions generated by a monitoring server. These actions may facilitate a user's physical access to cash for securely handling physical cash payouts. Payout data is received for a physical cash payout for a user that includes an identifier for a register till within an establishment. A simulated interaction is generated based at least in part on the payout data. The simulated interaction includes a simulated pick-up and payout transaction between the identified register till and a CHD. The register till is then caused to dispense cash to satisfy the physical cash payout or unlock access to cash stored within the at least one register till.
Owner:G4S RETAIL SOLUTIONS USA INC