Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

82 results about "Physical access" patented technology

Physical access is a term in computer security that refers to the ability of people to physically gain access to a computer system. According to Gregory White, "Given physical access to an office, the knowledgeable attacker will quickly be able to find the information needed to gain access to the organization's computer systems and network."

Distributed one-time-use entry code generation for physical access control method of operation and mobile systems

Embodiments of a physical access control system may grant authorized portal entry upon receiving a physical access request by generating a temporal credential based on the elapsed time from a prior access request. The controller processes multiple physical access requests from various mobile application devices. For each mobile application device, embodiments may authenticate an initial (predecessor) access request. For subsequent (successor) access requests, embodiments may use monotonic nonces to advance the range of temporal code matches. Entry code generation is decentralized to distributed application devices and remains unpredictable until a subsequent (successor) access request is initiated by the same mobile application device.
Owner:BRIVO INC

Methods and systems for detecting a discrepancy between access rules of access control equipment and an access policy

Methods, systems, and computer-readable media are described herein for receiving access events from access control equipment controlling physical access to a secured premises, comparing each access event to an access policy, detecting that a particular access event violates a clause of the access policy, and generating a compensatory action item for the particular access event that violates the access policy. The access control equipment includes a door controller and one or more readers in communication with the door controller. The door controller is configured to receive requests from the one or more readers, to control access to the secured premises based on access rules for the secured premises, and to generate the access events based on the requests from the one or more readers.
Owner:GENETEC

Systems, apparatus, and methods for access resolution based on situational awareness

PendingUS20250316122A1Individual entry/exit registersPrivacy protectionBinary outcome
Systems, apparatus, and methods for access resolution based on situational awareness. The system adapts to the behaviors of users and provide more secure, more natural operation. Unlike existing solutions that are focused on a single factor / multi-factor authentication and binary outcomes (grant / deny), the exemplary “physical access resolution” system assesses the entire access event (not just identity) and may responsively launch multiple resolutions at points throughout the access event (not just a binary decision). Various entities employ layers of abstraction and integration between logical layers to allow for integration across nodes. Information collection may be staged and handled with varying levels of privacy protections. Access resolution may be implemented according to multi-modal and / or confidence-based metrics.
Owner:DURIN INC

Verified physical access of telecommunications network subscribers at third-party events or venues

The verification of individuals entering controlled locations such as events and venues is improved by using wireless devices as the entry tickets themselves, verifiable by a telecommunications network. The wireless device provides a network subscriber's identification information (e.g., a phone number) to an access point terminal, in response to an identification / authentication request from the access point terminal. In order to obtain the identification information to provide to the terminal, the wireless device verifies itself via the telecommunications network, which is capable of verifying the device's subscriber identity module (SIM) via cryptographic protocols. Thus, by verifying the device's SIM, the telecommunications network verifies the identity of the network subscriber operating the device, for purposes of sharing a phone number as an entry ticket. Because entry is controlled according to the device's own network-verifiable identity, third-parties that operate events or venues need not distribute entry tickets (e.g., physical or electronic) to individuals.
Owner:T MOBILE US INC

Context-aware elm security analysis and response

An improved context-aware security system may include an artificial intelligence (Al) reasoning security system. The context-aware security system may be configured to receive security input data from a plurality of input sources, generate a contextual security analysis, identify a security response, and send instructions to a security system output device to execute the security response. The context-aware security system may include a plurality of security input sources configured to provide security inputs and contextual data, including credential readers, physical access controllers, security sensors, environmental sensors, or external information sources. The context-aware security system may include a directive input subsystem configured to receive security directives from an authorized user interface. A plurality of security system output devices may be configured to execute the security response, including credential reading systems, biometric systems, alerting systems, logging systems, or notification systems.
Owner:HID GLOBAL CORP

Multipath link optimization for private mobile network

ActiveUS12549948B2Network topologiesConnection managementInternet networkStation
Some embodiments of the invention provide a method for link optimization in an SD-PMN defined over at least a first site of a first entity and a second site of a PMN-provider. The method configures a first portion of the SD-PMN deployed at the first entity's first site, the first portion of the SD-PMN including at least one or more physical access points for connecting user devices at the first entity's first site to the SD-PMN and one or more control plane components of the SD-PMN. The method configures a first edge router deployed at the first entity's first site to use multiple links including at least one commercial Internet network link between the first edge router and a gateway router deployed in the PMN-provider second site to reach the PMN-provider second site and to perform a multi-link optimization process on the multiple links to establish a secure tunnel for use in communicating with the gateway router.
Owner:VELOCLOUD NETWORKS LLC

A safety protection device

This invention relates to the field of industrial safety technology, and in particular to a safety protection device, comprising a cabinet with an installation port. Baffles are installed on the inner walls of both sides of the installation port near the inner side of the cabinet, and an openable door is provided on the inner wall of the installation port near the outer side of the cabinet. A first type of sensor is disposed between the door and the baffles to detect the opening and closing state of the door and output a first state signal. A second type of sensor is disposed at the installation port to detect intrusion into the area of ​​the installation port and output a second state signal. A safety controller is mounted on the baffles. This invention integrates physical access control sensing and open area photoelectric sensing through the first and second types of sensors, achieving comprehensive protection with both contact and non-contact warnings, thus achieving a dual warning effect to prevent personnel from entering dangerous areas.
Owner:KUNSHAN SEAGEAR AUTOMATION SYST CO LTD

Context-tagged access credentials for physical access control

In one example, a method for context-tagging access credentials for physical access control includes receiving, by an access control device associated with a locking device for a controlled area and from a computing device, an access request including one or more access credentials and contextual information indicating one or more activities being performed by a user of the computing device, and determining, by the access control device, whether the contextual information satisfies one or more contextual conditions. The method may further include determining, by the access control device, whether the one or more access credentials are valid, and, responsive to determining that the one or more access credentials are valid and responsive to determining that the contextual information satisfies the one or more contextual conditions, changing, by the access control device, a state of the locking device.
Owner:GOOGLE LLC

Systems and methods for determining possession of mobile devices holding digital credential

A method of operating a seamless physical access control (PAC) system includes receiving, by a verification device of the PAC system, credential information from a credential device; receiving inertial measurement unit (IMU) information from the credential device; receiving video data from another device different from the credential device, the video data including images of one or more persons; and correlating movement of the one or more persons detected in the video data with the received IMU information to identify a person in the video data as a holder in possession of the credential device.
Owner:HID GLOBAL CORP

Intelligent asset management method and system based on multi-modal interaction and intent understanding

The application discloses an intelligent asset management method and system based on multi-modal interaction and intention understanding, and belongs to the technical field of Internet of Things and artificial intelligence interaction. The method comprises the following steps: collecting a voice instruction of a user in response to the passing of user identity authentication; performing intention recognition and slot filling on the voice instruction, and extracting structured operation information containing an operation intention, an asset identifier and an operation quantity; generating a structured business record based on the structured operation information; performing authority decision according to the structured business record, and controlling to open a storage door after the decision passes. The system comprises an identity authentication module, a voice collection module, a sensor array, an edge computing main control, an electronic lock control module and a communication module. The application automatically maps a physical access operation into a structured business record, realizes in-process compliance control and multi-modal data cross verification, has a delay record degradation path, and solves the technical problems of log hollowing and low compliance data collection rate of existing asset management equipment.
Owner:周乐熙

Real-time broadcast program emergency processing system and method

The invention discloses a real-time broadcast program emergency processing system and method, and the system comprises a hardware layer which completes signal physical access, computing power support and data storage; the data acquisition and preprocessing layer is used for uniformly acquiring and processing multi-source heterogeneous monitoring signals, mainly realizing demodulation, descrambling and demultiplexing of the signals, code stream trimming and IP multicast, and realizing radio frequency monitoring, TS stream monitoring, environment monitoring and EFD intrusion alarm; the core algorithm layer is used for completing feature modeling, multi-channel signal comparison, abnormal classification positioning and continuous model iteration; the application service layer is used for realizing business logic processing, fault warning and automatic handling, and data query and analysis; and the user interaction layer realizes man-machine interaction, state display, model management and compliance auditing. In the aspect of broadcast program degradation identification, the accuracy and the response speed can be improved, so that the aims of reducing the error rate and the accident level of safe broadcast and improving the operation and management level of the safe broadcast are fulfilled.
Owner:SHANGHAI MEDIA & ENTERTAINMENT TECH DEV CO LTD

Object hierarchy to support device configuration in physical access control systems

Example implementations include a method, apparatus, and computer-readable medium for configuring a device in a physical security system via an open architecture. The device receives a command from an application via a publish-and-subscribe broker. The command includes: a type field indicating the command, a source field indicating the application, a timestamp, and a payload including a list of objects, each object including one or more parameters defined by a field name, a datatype, one or more possible values, and a mandatory status. The device transmits an event message to the application via the publish-and-subscribe broker, the event message includes a type field identifying the event message, a source field identifying the device, a timestamp, and a payload including a type field identifying a type of event.
Owner:TYCO FIRE & SECURITY GMBH

Offline mode NFC-based FIDO2 Authentication System for Door / Turnstile Access Control

The present invention relates to an offline mode Near Field Communication (NFC)-based FIDO2 authentication system for door and turnstile access control. This system comprises a FIDO2 security key, an NFC reader, and a door controller. The FIDO2 security key stores user credentials and performs cryptographic operations, while the NFC reader communicates with the key to authenticate users. The door controller, connected to the NFC reader, controls the door lock mechanism based on authentication results. The system operates without continuous network connectivity, providing secure offline authentication. The NFC reader performs several operations: it receives credential data from the FIDO2 security key, generates and transmits a cryptographic challenge, receives and verifies a signed response using a pre-stored public key, extracts a Physical Access Control (PAC) number upon successful authentication, and transmits the PAC number to the door controller to grant or deny access.
Owner:SINGH SHASHI PRAKASH +1

Physical security system and method for effecting a temporary access permission change

A physical security system and method for effecting a temporary access permission change are disclosed. The method includes analyzing context information, corresponding to a defined and applied, time-limited video redaction, to responsively define the temporary access permission change impacting a physical access control system of the physical security system. The method also includes effecting the temporary access permission change to at least make entry via an at least one entry barrier of the physical access control system more restricted than before the effecting of the temporary access permission change.
Owner:MOTOROLA SOLUTIONS INC

Beacon and device location verification using additional generated codes

A method of operating a physical access control system (PACS) includes detecting, by a credential device of the PACS, a beacon signal associated with a physical access portal of the PACS; reading, by the credential device, beacon authentication information for the beacon signal; authenticating the beacon signal using the beacon authentication information; proceeding with a process of authentication of the credential device when the beacon signal is authenticated, and ending the process of authentication of the credential device when the beacon signal is not authenticated; and initiating access to a physical access portal conditional on authentication of the credential device.
Owner:ASSA ABLOY AB

Thermal imaging for room-level real-time location service

PendingUS20260253470A1RoombaPhysical access
A method of operating a real-time location services (RTLS) system includes obtaining, by a processing device of the RTLS system, location information identifying an object or person and a building-area location of the object or person; obtaining, by the processing device, access-event information of a access of a physical access portal associated with the building-area location; and matching the location information of the identified object or person and the access-event information and generating an indication of the building-area location of the object or person using the processing device in response to the matching.
Owner:HID GLOBAL CORP +1

Forta Vault™— Sovereign Hybrid Infrastructure Harvest, Conversion, and Enforcement Platform

A secure apparatus and method for harvesting, validating, storing, and conditionally releasing physical resources are disclosed. The apparatus includes an environmental harvesting assembly configured to physically collect energy or other resources from multiple environmental domains, a conversion module that transforms the collected resources into a usable output, and a storage module that physically retains the output. A dual-meter validation module independently measures harvested or stored quantities to detect physical discrepancies beyond predefined tolerance thresholds. A hardware security module maintains sealed operational statesgts, performs cryptographic signing, and enforces encoded physical release conditions, including zeroization upon detection of tampering. A tamper-detection module identifies unauthorized physical access or modification. An escrow-validation engine restricts physical release of stored resources until cryptographically verified authorization, compliance, or continuity conditions are satisfied, enabling autonomous, tamper-resistant, and auditable physical resource control across distributed infrastructure.
Owner:FRANKLIN TYSALAH FLOYD

PHY training parameter prediction method and device based on machine learning model

The invention relates to the technical field of data storage, and discloses a PHY (Physical Layer) training parameter prediction method and device based on a machine learning model, which are applied to enterprise-level SSD (Solid State Disk) master control firmware. According to the method, the PHY register is read to replace a time-consuming NAND physical read-write operation, so that the physical access delay in the PHY training process is eliminated, the PHY training time is compressed from a millisecond level to a microsecond level, the training speed is greatly improved, and the technical problem that the PHY training time is long is effectively solved; pHY training parameters are directly predicted by using a machine learning model, so that the risk of boundary misjudgment caused by eye pattern closing in a high-speed mode is avoided, the eye pattern jitter interference resistance is high, and the training precision and robustness are improved; the machine learning model can learn and adapt to characteristic differences of NAND particles of different manufacturers, PHY training parameter prediction of the NAND particles of different manufacturers can be realized, and compatibility and adaptability are high.
Owner:成都芯忆联信息技术有限公司

Intelligent control of physical access to restrcted areas

Examples provide a system for controlling physical access to a restricted area. The system includes an electronic processor configured to receive, from a system user, a natural language input relating to an expected event at a physical access device, and generate, using an artificial intelligence (AI) model, a configuration file for the physical access device based on the natural language input. The configuration file defines a set of actions and a set of conditions for performing the set of actions. The electronic processor activates the configuration file in response to determining that the system user has sufficient user permissions. The electronic processor detects, via an input device, activity in proximity to the restricted area, and, in response to determining that the activity satisfies at least one condition defined by the configuration file, executes the set of actions. At least one action controls the physical access device.
Owner:MOTOROLA SOLUTIONS INC

Multimodal communication system with physical access unit (QR code, NFC or RFID), PIN-protected web access and modular messaging function for everyday use

Multimodal communication system for everyday use, consisting of - a physical access unit in the form of a QR code, an NFC tag or an RFID transponder, - a digital communication area uniquely assigned to the physical access unit, characterized by that a PÜ4 authentication unit is assigned to the digital communication area and that the digital communication area is accessible exclusively via this PIN authentication unit, wherein the physical access unit is connected to an access trigger unit which enables PIN-protected access to the digital communication area.
Owner:INTZEN LUCY

A cost auxiliary accounting and risk prediction system for construction engineering

This invention relates to the field of information management technology for construction projects, and discloses a cost-assisted accounting and risk prediction system for construction projects. The system includes a multi-source heterogeneous data sensing and access module, an atomic work unit construction module, a topology network adaptive reconstruction module, a cost sensitivity cascade analysis module, and a risk damping and reverse potential energy control module. The invention achieves physical-level accounting by using the atomic work unit construction module to calculate real-time reconstruction costs based on the measured values ​​of physical quantities of resource consumption and the mapping between real-time library unit prices. The topology network adaptive reconstruction module dynamically adjusts the network structure. The cost sensitivity cascade analysis module quantifies the impact of upstream node schedule deviations on downstream node costs, simulates risk cascade diffusion, and predicts accumulated risk energy. The risk damping and reverse potential energy control module generates virtual resource tokens for reverse transmission, and executes physical access control when the reverse locking signal strength exceeds a threshold, achieving automated risk blocking.
Owner:ZHEJIANG DEGUANG CONSTRUCTION ENGINEERING CO LTD

Secure resource control using object recognition

A system for combining augmented reality (AR), machine learning (ML), and Light Detection and Ranging (LiDAR) technologies to create an efficient and accurate access to secure resources. An AR component is used with an integrated ML model trained to detect physical access control (PAC) or PAC system (PACS) readers or devices. When a user opens the application and points their mobile device camera at a reader, the ML model identifies the reader, triggering BLE communication and, in some cases, without relying on RSSI measurements to obtain access to the secure resource.
Owner:ASSA ABLOY AB

Integrated circuit physical security device

ActiveCN115292759BCircuit security detailsDigital data protectionComputer architecturePhysical security
Integrated circuit physical security devices are disclosed, specifically devices and methods for physical chip security. In at least one embodiment, a security module is affixed to a board to restrict physical access to an integrated circuit mounted on the security module and provide one or more contacts that enable data access to the integrated circuit.
Owner:NVIDIA CORP

Firewall policy generation method and device, electronic equipment, medium and program product

The invention provides a firewall policy generation method and device, electronic equipment, a medium and a program product, and can be applied to the technical field of cloud computing and the field of distributed technologies. The method comprises the following steps: acquiring architecture asset data, wherein the architecture asset data is used for describing application nodes and corresponding calling information in a service system; determining an access relation type based on the architecture asset data, and constructing a logic access relation based on an access mode matched with the access relation type; obtaining resource information of a running environment, and generating a corresponding physical access relation based on the logic access relation and the resource information; and obtaining network management and control information of an operation environment, determining an access link needing to implement firewall control based on the physical access relationship and the network management and control information, and generating the firewall policy according to the access link.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Microcontroller-based method for resource isolation and data security assurance of android container

The application discloses a microcontroller-based Android container resource isolation and data security guarantee method, relates to the field of hardware-assisted embedded container security technology, and comprises the following steps: loading a special firmware to build a transparent isolation layer on a microcontroller; generating a dynamic resource configuration vector in response to an application startup request and writing the vector into a non-volatile register group, locking the physical access paths of processor cache channels, memory bandwidth and peripheral interfaces; splitting a data stream into transmission frames with encryption labels when cross-container data interaction occurs, and routing the transmission frames to target containers through a hardware bus arbitrator; monitoring the space-time correlation of container kernel instruction streams and peripheral level jumps, freezing the container clock domain when the security model is violated, and triggering a hardware interrupt to perform state snapshot forensics; and sending a specific pulse sequence to a memory particle to trigger capacitor active discharge and reset the processor branch predictor history record when the container is terminated. The application realizes the resource exclusivity, data security and threat defense capability of the Android container.
Owner:GUANGDONG WEIPINEN NETWORK TECHNOLOGY CO LTD

Building system with credential and temperature verification functionality

A building system (1), such as an elevator system, a physical access control system or a combination elevator and physical access control system, has a controller system (18) for controlling the building system (2) to perform a building action and a credential acquisition unit (24a) for acquiring a credential presented by a user (2), wherein the credential determines whether the user (2) is an authorized user (2) within the building. The building system (1) further comprises a camera system (24) having a thermal imaging camera (24b) that generates an infrared image of a face of the user (2) and an image processing system (6) communicatively connected to the camera system (4) and the controller system (1). The image processing system (6) processes the infrared image to determine whether the face of the user displays a temperature value that is above a set threshold temperature value and generates a first result signal indicating whether the temperature value is above the threshold temperature value. The controller system (18) enables or disables the building action in dependence on the acquired user credential and the result signal.
Owner:INVENTIO AG

Power grid special AI-NVR composite encryption security monitoring system

The application provides a power grid special AI-NVR composite encryption security monitoring system, and belongs to the technical field of security monitoring, which comprises a composite encryption security monitoring system with fused software and hardware cooperative protection logic, integrated key hardware configuration and identity authentication activation system, AI intelligent processing and data real-time encryption mechanism, double-SIM card isolation transmission and data interaction rule, hardware level interface security control module, intelligent screening and trusted environment decryption module, and realizes full-process security control from device physical access, identity authentication to data identification, storage, transmission and decryption. Through integrated design of four key modules of double-SIM card isolation transmission, composite encryption protection, AI intelligent processing and hardware control, the safety protection of the whole process of power grid monitoring data collection, identification, storage and transmission is realized, the AI identification accuracy and data transmission stability are improved, and the high security level and intelligent demand of the power grid scene are met.
Owner:DTI (SHANGHAI) CO LTD

Computing block system

Modular computing systems can include a plurality of computing blocks, a frame to physically support the computing blocks, and an interconnection infrastructure. The interconnection infrastructure can provide power, cooling, and communications for the computing blocks. Each computing block can include a housing, a computing portion within the housing, a cooling portion within the housing to extract heat from the computing portion, a power infrastructure to power the computing portion, a communications infrastructure to facilitate communications between the computing portion and an external network, a cooling infrastructure to transfer heat from within the housing to outside the housing, and a service corridor within the housing to provide physical access to at least the computing portion.
Owner:VERTIV CORP