Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

1096 results about "Plaintext" patented technology

In cryptography, plaintext usually means unencrypted information pending input into cryptographic algorithms, usually encryption algorithms. Cleartext usually refers to data that is transmitted or stored unencrypted ('in the clear').

Data ownership verification and authorization control method based on zero knowledge proof

The invention discloses a data ownership verification and authorization control method based on zero knowledge proof. The method comprises the following steps: constructing a traceable Merk tree structure on a block chain or a distributed account book; a data owner calculates data fingerprints and packages the data fingerprints into declaration nodes to be inserted into the traceable Merk tree; storing the ownership zero knowledge proof and the traceable Merk tree root hash into a block chain together; the verification party executes the zero-knowledge verifier contract on the chain to complete ownership verification without reading original data or identity plaintext; access control is realized after on-chain verification of the service party; triggering local heavy hash to update the traceable Merk tree root hash, and broadcasting a revocation event on a chain; and confirming legality of evolution and authorization change of all nodes. According to the method, the historical traceability and structural consistency of the data ownership and authorization relationship are ensured, and efficient traceability and anomaly detection of the node evolution chain are also realized.
Owner:SHENZHEN ENAIDA TECHNOLOGY DEVELOPMENT CO LTD

Ciphertext decryption method and related equipment

The application discloses a ciphertext decryption method and related equipment applied to ciphertext encrypted according to an RSA algorithm, and the method comprises the following steps: acquiring a large number in ciphertext and a public key of the ciphertext; selecting a number smaller than the large number as a base of a discrete logarithm problem, selecting 1 as a modulus power operation result corresponding to the base, and converting the base and the modulus power operation result into an initial quantum state; inputting the initial quantum state into a quantum computing module for solving the discrete logarithm problem to obtain a first target quantum state in which a solution result of the discrete logarithm problem is stored; extracting the solution result from the first target quantum state, and calculating a private key of the ciphertext based on the solution result; and decrypting the ciphertext based on the private key to obtain plaintext of the ciphertext. Through the technical scheme, the private key can be recovered according to the disclosed information in the case that the private key is not disclosed, and then the ciphertext is decrypted, so that the related technical blank is filled.
Owner:ORIGIN QUANTUM COMPUTING TECH (HEFEI) CO LTD

Network information data transmission security method based on advanced encryption standard (AES)

The invention relates to network information security and cryptography, and provides an AES-based network information data transmission security method, which comprises the following steps of: generating an information key, namely generating a round key through loop iteration; the encryption process of information data transmission comprises the following steps: encrypting a plaintext after preprocessing, and generating an intermediate ciphertext and an integrity verification label; in the information data decryption process, the plaintext is recovered through reverse operation after the label is verified; the data security constraint of the information is carried out, and a multi-level defense system is constructed; aP I mapping for information transmission, and calling an interface to realize encryption, decryption and authentication verification; information data encryption complexity is controlled, complexity is optimized, and big data are encrypted in a blocking mode; the information data security is guaranteed, and the transmission security is ensured. The method significantly enhances data security, improves transmission efficiency, constructs multi-level security defense, provides flexibility and adaptability, simplifies implementation and management, conforms to the future security trend, and provides an efficient, reliable and easy-to-use solution for network information security.
Owner:GUANGDONG UNIV OF SCI & TECH

Large model service security verification method and device, medium, equipment and product

A security verification method, apparatus, medium, device and product for a large model service relate to the technical field of computers, receive an encryption service request, acquire a private key of a client from a key management service running in a trusted execution environment through an encryption and decryption service running in the trusted execution environment, decrypt the encryption service request based on the private key, and verify the security of the encryption service request. The method comprises the following steps: decrypting a service request of a user, sending the decrypted service request to a large model service to obtain a reasoning result of the large model service, encrypting the reasoning result through a public key of a client, and returning the encrypted reasoning result to the client, so that the service request of the user can be visible in a plaintext in a trusted execution environment; the security of the user data is greatly ensured, and the problem of user data leakage can be avoided through the public and private key pair of the user dimension. In addition, the key management service and the encryption and decryption service both run in the trusted execution environment, so that attacks from an IaaS layer can be shielded.
Owner:BEIJING VOLCANO ENGINE TECH CO LTD

Forward security strategy hidden attribute-based keyword search method

The invention relates to the technical field of information security, in particular to a forward security policy hidden attribute-based keyword search method, which is used for access control and search of sensitive information and comprises the following steps: acquiring a public parameter and a master key; attribute processing is performed on an attribute set submitted by a data user, a user private key is constructed, and a puncture key is output; the method comprises the following steps: randomly selecting a symmetric key, performing symmetric encryption on a plaintext through the symmetric key to obtain an initial ciphertext, sequentially performing strategy hidden encryption, keyword encryption and label binding on the plaintext to obtain a corresponding output representation, and integrating the initial ciphertext and the output representation to obtain a complete ciphertext; when the constraint condition is met, the puncture key is updated; establishing a keyword set according to the data user demand content, generating a trap door, and initiating a search request; matching the trap door with the complete ciphertext according to the search request to obtain a matching result, and decrypting the initial ciphertext by integrating the updated puncture key and the user private key to obtain a corresponding plaintext; and the forward safety is effectively improved.
Owner:NANJING UNIV OF POSTS & TELECOMM

On-cloud semi-homomorphic encryption method capable of resisting private key tracking

The invention discloses an on-cloud semi-homomorphic encryption method capable of resisting private key tracking, which comprises the following steps of: S1, generating a blind identity based on the real identity of a data user, and performing identity de-association processing; s2, the attribute authority generates a binding key pair based on the blind identity and returns the binding key pair; s3, the data user discloses a real identity and a public key to the data owner; s4, the data owner encrypts the plaintext after verifying the public key to form a ciphertext set; s5, uploading the ciphertext set to a cloud service provider, and performing classified storage; s6, the cloud service provider receives the analysis request and performs homomorphic addition aggregation on the ciphertext set to generate an aggregated ciphertext; and S7, the data user uses the private key to decrypt the aggregated ciphertext, and a plaintext analysis result is recovered. According to the method, the identity privacy of the user is protected while encrypted data analysis is realized, and the method has the characteristics of untraceability and lightweight deployment.
Owner:SHANXI TAIYIAN CRYPTOGRAPHIC TESTING CENTER CO LTD

Data storage security protection method and system based on solid state disk

The invention relates to the field of computer security, and discloses a data storage security protection method and system based on a solid-state hard disk, which comprises the following steps: identifying the inherent physical difference of a flash memory chip in the solid-state hard disk so as to calculate the read-write time sequence micro-deviation of the solid-state hard disk; performing hash operation on the device root key and the unique identifier of the controller corresponding to the solid state disk to obtain a bound master control key; generating a temporary encryption key of the write-in operation to encrypt plaintext data of the host system to obtain ciphertext data; writing the ciphertext data into a flash memory physical page corresponding to the physical page address to obtain a ciphertext physical page address; when the access mode is a hostile attack mode, secretly updating the ciphertext physical page address into a new physical page address, and deleting the ciphertext physical page address; and when the access mode is a secure access mode and the verification key is consistent with the bound master control key, normal loading and data access requests of the solid state disk are allowed. According to the invention, the security and integrity of data storage can be improved.
Owner:深圳市彦胜科技有限公司

Access authentication method and device, satellite network system and storage medium

The invention discloses an access authentication method and device, a satellite network system and a storage medium. The method comprises the following steps: receiving an authentication request containing an access request plaintext of a user terminal sent by at least one first node in a previous layer of a network node through a non-secure channel; performing multiple verification on each received authentication request; wherein the multiple verifications comprise verifying the timeliness and the non-tampering property of the authentication request received by the network node, and verifying the legality of each node in the access request path before the access request plaintext reaches the network node; and aggregating all the authentication requests passing the multiple verifications into a new authentication request, and sending the new authentication request to a second node in the next layer of the network node until the request plaintext reaches the network control center, so that the network control center generates unified authentication response information for all the user terminals corresponding to the authentication requests passing the multiple verifications in the network control center. And the session keys are distributed to the corresponding user terminals, so that the corresponding user terminals generate the session keys.
Owner:CHINA TELECOM CORP LTD

Power encryption database fine-grained access control method based on quantum key

The embodiment of the invention provides a power encryption database fine-grained access control method based on a quantum key, and relates to the technical field of quantum communication. The access control method comprises the following steps: performing identity authentication on a data user applying for data access; after the data user passes the identity verification, verifying the user attribute of the data user, and issuing a dynamic access token; after identity verification and attribute verification, establishing a QKD channel between the data center and the data user, and generating a quantum key; the data center defines an access strategy according to the user attribute corresponding to the plaintext; encrypting a plaintext and an access strategy through the generated quantum key to obtain a ciphertext; storing the ciphertext in a distributed database of the data center; verifying whether the user attribute of the data user is consistent with the access strategy in the ciphertext according to the access token; under the condition of consistency, the data center distributes the secret key to the data user through the QKD channel; and the data user decrypts the ciphertext according to the distributed key to obtain a plaintext.
Owner:STATE GRID ANHUI ELECTRIC POWER CO LTD +1

Encryption communication method and system used between EtherCAT slave station nodes

The invention is suitable for the field of communication technology improvement, and provides an encryption communication method and system used between EtherCAT slave station nodes, an OTP / nonvolatile storage, an encryption scrambling unit and a decryption descrambling unit are integrated in an EtherCAT slave station chip of a coupler and an I / O module, and encryption / decryption of an EtherCAT message is achieved on the hardware level; xOR operation or an AES algorithm is adopted for encryption, and a secret key is stored in an unmodifiable storage unit; and meanwhile, a parallel architecture of an encrypted network and a standard network is constructed, so that the standard interaction between the slave station node and the master station is not influenced by encrypted communication. The system solves the contradiction of poor real-time performance of a private protocol and easy plaintext communication plagiarism in the prior art, realizes the effects of no real-time performance loss, strong communication exclusiveness and flexible compatibility, and is suitable for an EtherCAT high-speed backplane bus system under industrial 4.0.
Owner:ANXIN MICRO SEMICON TECH (SHENZHEN) CO LTD

Password plaintext risk monitoring system and method based on traffic analysis and large model

The invention discloses a password plaintext risk monitoring system and method based on traffic analysis and a large model. The method comprises the following steps: collecting related basic information based on a traffic background environment to construct a knowledge base; analysis is carried out based on the pre-collected traffic, marking analysis is carried out on field information identified in the traffic, and a prompt word library is generated; the method comprises the following steps: collecting environment traffic, performing traffic analysis on the collected traffic, extracting interaction information in the traffic, performing cleaning and structural processing, and submitting the interaction information to a password plaintext risk identification agent; and the intelligent agent performs analysis through large model capability according to submitted content in combination with a knowledge base and cue words, judges a password plaintext state in the traffic information, and finally generates a risk report and returns the risk report. According to the method, the accuracy of password plaintext risk identification is improved through the intelligent analysis capability of the large model.
Owner:FUJIAN FUJITSU COMM SOFTWARE CO LTD

Encryption service and key authorization method with encrypted data not out of domain

The embodiment of the invention provides an encryption service and key authorization method for preventing encrypted data from going out of a domain. The method comprises the following steps: a data owner applies for a key from an encryption service, manages key authorization, and authorizes a corresponding key ID to a data user; during encryption, the data user generates random pseudo data; the encryption service carries out encryption by using the authorization key according to random pseudo data given by a data user and returns a first encryption result; and the data user carries out calculation according to the first encryption result and the plaintext data to generate a corresponding ciphertext and a message identification code. During decryption, the encryption service performs encryption calculation on partial data and random pseudo data of the first encryption result by using the authorization key and returns a second encryption result; the data user performs calculation according to the second encryption result and the ciphertext data to generate an initial plaintext; if the initial plaintext passes the data verification, outputting the plaintext data, otherwise, decrypting mistakenly.
Owner:ZHEJIANG ELECTRONIC INFORMATION PROD INSPECTION & RES INST (ZHEJIANG INFORMATIZATION & INDUSTRIALIZATION INTEGRATION PROMOTION CENT)

Identity verification method and system based on homomorphic encryption

The invention discloses an identity verification method and system based on homomorphic encryption. The method comprises the steps that a server side generates a public key and a private key, during registration, a client side obtains the public key, a unique identifier input by a user and a password, and the public key is used for encrypting the password to obtain a first ciphertext; storing the first ciphertext and the unique identifier in a database of a server; during login, the client obtains a unique identifier and a password input by a user, the server generates a random challenge value and sends the random challenge value to the client, the client encrypts the password by using the public key to obtain a second ciphertext, and a third ciphertext is calculated according to the second ciphertext and the random challenge value; the server obtains the third ciphertext and the unique identifier, and obtains the first ciphertext from the database according to the unique identifier; calculating according to the first ciphertext and the random challenge value to obtain a fourth ciphertext; obtaining a difference ciphertext according to the third ciphertext and the fourth ciphertext; and if the difference ciphertext is 0, the user identity authentication is passed. According to the method, the server side cannot acquire the plaintext, and privacy is guaranteed.
Owner:LINGSHU TECH CO LTD

Big data network security data transmission method

The invention relates to the field of data encryption transmission, in particular to a big data network security data transmission method. Setting a plurality of encryption algorithms and corresponding decryption algorithms associated with the data volume interval, the sequence sequence, the time interval and the number sequence, selecting the encryption algorithm to encrypt the plaintext based on the data volume of the plaintext to be sent to obtain an encrypted ciphertext, and splitting the encrypted ciphertext into a plurality of ciphertext segments based on the number sequence associated with the encryption algorithm, and encrypting each ciphertext segment through a public key, sending the encrypted ciphertext segments to a disguise receiving end according to a sequence and a time interval, selecting a decryption algorithm associated with the matched data volume interval, calling the ciphertext segments based on the sequence and the time interval associated with the decryption algorithm, decrypting through a private key, and combining to obtain an encrypted ciphertext, and the plaintext is obtained after the encrypted text is decrypted through the decryption algorithm, so that the security of data transmission in the network is improved.
Owner:BEIJING KECHUANG XINYANG TECHNOLOGY CO LTD

Block chain data security storage method based on verifiable secret sharing

The invention discloses a blockchain data security storage method based on verifiable secret sharing. The method comprises the following steps executed by computer hardware: receiving to-be-stored data, performing encryption processing on the to-be-stored data to obtain a ciphertext, storing the ciphertext to a distributed file system, obtaining a storage address, and calculating a hash value of the ciphertext; dividing the encryption key into a plurality of sub-key fragments according to set parameters, and calculating a hash value of each sub-key fragment; packaging the sub-key fragment, the sub-key fragment hash value and the ciphertext hash value into a transaction unit, and writing the transaction unit into the block chain; receiving a decryption request, and reconstructing an encryption key when the number of submitted effective sub-key fragments reaches a threshold value; and acquiring the ciphertext from the distributed file system, verifying the hash value of the ciphertext, and decrypting by using the reconstructed encryption key to obtain the plaintext. According to the invention, the security management and control of the full life cycle of the data are realized, the integrity, confidentiality and authenticability of the data and the secret key are ensured, and the security of the data in the processes of storage, transmission, secret key management and the like is ensured.
Owner:GUIZHOU UNIV

Authenticated encryption apparatus, authenticated decryption apparatus, authenticated encryption system, method, and non-transitory computer readable medium

A plaintext division unit divides a plaintext into a first plaintext and a second plaintext at a predetermined ratio. A first encryption unit acquires a first ciphertext by an encryption function by using a mask value obtained based on a first value and a plurality of plaintext blocks, respectively. A second encryption unit acquires a second ciphertext by using, among encryption results output from the encryption function in the encryption of the first plaintext, a value other than a value used for the encryption of the first plaintext and a second plaintext. An authentication tag generation unit generates a first tag. The authentication tag generation unit generates a second tag. The authentication tag generation unit generates an authentication tag.
Owner:NEC CORP

Data encryption and decryption method and device, equipment and storage medium

The embodiment of the invention provides a data encryption and decryption method and device, equipment and a storage medium, and relates to the technical field of data security. The method comprises the following steps: generating a corresponding encryption public key, an encryption private key and a mask parameter according to a public parameter, encrypting target data by using the encryption public key to obtain encrypted data, sending the mask parameter, the encryption public key and the encrypted data to server equipment, expanding the encrypted data by using the encryption public key by the server equipment to obtain an expanded ciphertext, and sending the expanded ciphertext to the server equipment. And performing homomorphic addition calculation on the extended ciphertext based on the encryption public key and the mask parameter, sending an obtained addition ciphertext to the user side equipment, and performing partial decoding on the addition ciphertext by using the encryption private key to obtain a decoded plaintext. According to the multi-key encryption method, each user side device generates a corresponding mask parameter, in the homomorphic addition process, the mask parameters are utilized to ensure that ciphertexts from different sources can be safely combined, a calculation result keeps semantic security, sensitive information is prevented from being leaked, and the security of a multi-key encryption system is enhanced.
Owner:PENG CHENG LAB

Security data isolation and information exchange method and system based on lightweight protocol

The invention relates to a security data isolation and information exchange method and system based on a lightweight protocol, belongs to the technical field of industrial automation control system security, and solves the technical problems of low transmission efficiency, high analysis overhead, high security risk and high resource consumption of an existing method. Comprising the following steps: collecting and preprocessing original plaintext data at an industrial control network side; an external unit identifier, a timestamp and a pre-shared key on the industrial control network side are used as encryption factors, lightweight stream cipher encryption and packaging are carried out on the preprocessed data, and a lightweight protocol data packet is generated; through a special physical isolation device, the light-weight protocol data packet subjected to deep detection is unidirectionally isolated and ferried from an industrial control network side to an internal network side; performing post-processing on the received lightweight protocol data packet at the intranet side to restore original data; and delivering the restored original plaintext data to an intranet service application. And safe and efficient information data exchange is realized.
Owner:BEIJING JINGHANG COMPUTING & COMM RES INST

Quantum security signature method and device, equipment, medium and program product

The invention provides a quantum security signature method which can be applied to the technical field of quantum communication. The quantum security signature method comprises the following steps: in response to a received quantum security signature request for target plaintext data, performing risk assessment on the quantum security signature request according to a preset security policy, and determining a risk level corresponding to the quantum security signature request; determining a target post-quantum signature algorithm and an algorithm parameter set corresponding to the quantum security signature request according to the risk level; according to the algorithm parameter set, performing dynamic function reconstruction on the computing resource for executing the signature operation to obtain the reconstructed computing resource; and performing quantum security signature on the target plaintext data by using the reconstructed computing resources and a target post-quantum signature algorithm to obtain a quantum security signature result. The invention further provides a quantum security signature device and equipment, a storage medium and a program product.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Power communication resource data encryption method, system and equipment based on multi-algorithm fusion

The invention relates to the technical field of data encryption transmission, in particular to an electric power communication resource data encryption method, system and equipment based on multi-algorithm fusion, and the method comprises the steps: dividing data into a core control class, an equipment state class and a resource information class according to the purpose of electric power communication resources, a security label containing data sensitivity, transmission timeliness and storage cycle information is distributed to each type of data; an initial quantum key is generated by adopting a quantum key distribution protocol, an asymmetric key pair is generated in combination with an SM2 algorithm, and the quantum key is signed by using an SM2 private key and then transmitted; the dynamic secret key update is triggered based on the timestamp or the data volume threshold value; encrypting core control type data, dynamically generating confusion layer parameters, and meanwhile, generating a message digest in combination with an SM3 hash algorithm; and the receiver decrypts the confusion layer parameter, decrypts to obtain the plaintext, and verifies the SM3 hash value to confirm the data integrity. And the limitations of a single algorithm on efficiency, strength and aggressiveness resistance are made up.
Owner:INSPUR ARTIFICIAL INTELLIGENCE RES INST CO LTD SHANDONG CHINA

Block chain-based electronic contract signing method and related device

The invention relates to the technical field of block chains, in particular to an electronic contract signing method based on a block chain and a related device, which are used for improving the security of electronic contract signing. The method comprises the following steps: a contract initiator encrypts a plaintext of a to-be-signed electronic contract by using a symmetric key to obtain a ciphertext of the to-be-signed electronic contract; and encrypting the symmetric key by using the respective public key of each contract signing party of the to-be-signed electronic contract, generating a key envelope list, calling the smart contract, and storing the ciphertext and the key envelope list to the block chain account. The contract signing party calls the smart contract, and obtains the ciphertext of the to-be-signed electronic contract in the blockchain account book and the key envelope of the contract signing party; decrypting the secret key envelope by using the private key to obtain a symmetric secret key; decrypting the ciphertext by using the symmetric key to obtain a plaintext; and generating a digital signature for the plaintext to obtain a signed electronic contract, calling an intelligent contract, and storing the signed electronic contract to a block chain account book.
Owner:AISINO CORPORATION

Unmanned aerial vehicle control method and device based on random key stream, and medium

The invention discloses an unmanned aerial vehicle control method and device based on a random key stream, and a medium, and relates to the technical field of aircraft control. The method comprises the following steps: presetting a chaos initial value for a main chaos system of an encryption end; selecting a switching strategy according to the current state component of the main chaotic system so as to switch the auxiliary chaotic system; generating a random key stream coefficient through a seed random number generator, and combining the random key stream coefficient with the chaotic initial value to obtain a private key; acquiring an aircraft measurement data plaintext, injecting the plaintext into the chaotic system, and generating a ciphertext in combination with the random key stream coefficient; transmitting the ciphertext to a decryption end, synchronizing the private key and the switching strategy at the decryption end, and restoring the plaintext; the restored plaintext is input into a state feedback controller, an anti-saturation control instruction is generated, and the state feedback controller comprises a nonlinear compensation function. According to the method, the measurement data of the aircraft is encrypted and decrypted by the chaotic system key stream, the length of the private key is expanded, and the security is improved.
Owner:INSPUR GENERSOFT CO LTD

Methods and systems for building rich context for effective password detection in plaintext

The disclosure relates generally to methods and systems for building rich context for effective password detection in plaintext. Detecting and securing plaintext passwords on hard-disk or storage device is difficult as humans generate passwords in a variety of idiosyncratic ways which results in high false negatives and involves a high computation cost. In the present disclosure, a stepped context analysis is performed which applies different context discovery strategies in sequential manner. In scenarios, where a potential password is unable to find in a file using simple detection method, but if the context likelihood of the file is higher than the configured threshold then the file is searched again with more detailed techniques for detecting presence of a potential password. This selective second pass for a few files helps in reducing the false negatives while balancing the proposed solution's performance.
Owner:TATA CONSULTANCY SERVICES LTD

Method and apparatus with homomorphic encryption operation

A method and apparatus for a homomorphic encryption operation are disclosed. A bootstrapping method for a homomorphically encrypted ciphertext includes generating a first ciphertext of a plaintext corresponding to a ciphertext modulus of a third value, based on an input ciphertext of the plaintext corresponding to a ciphertext modulus of a first value and corresponding to a ciphertext modulus of a second value, generating a second ciphertext corresponding to the ciphertext modulus of the second value and corresponding to the ciphertext modulus of the third value, based on the first ciphertext, the second value, and the third value, and generating a third ciphertext of an evaluation result of a target function for the plaintext corresponding to a plaintext modulus of a fourth value, based on the second ciphertext and the target function.
Owner:SAMSUNG ELECTRONICS CO LTD +1

Vehicle OTA upgrading method and device, electronic equipment and storage medium

The invention discloses an in-vehicle OTA upgrading method and device, electronic equipment and a storage medium, and relates to the technical field of computers, the method comprises the following steps: calculating a plaintext hash check value of an upgrade package; encrypting the plaintext hash check value by using a public key of the vehicle end to generate a ciphertext hash check value; encrypting plaintext signature information of the cloud platform by using a private key of the cloud platform to generate ciphertext signature information; wherein the plaintext signature information comprises a plaintext hash check value and the information of the upgrade package; and transmitting the upgrade package, the ciphertext hash check value and the ciphertext signature information to the vehicle end, so that the vehicle end can upgrade by using the upgrade package. According to the method and the device, the hash check value and the encrypted signature information are adopted, so that dual security verification is realized, the risk that the OTA process is attacked and tampered can be reduced, and the security of OTA upgrading is improved.
Owner:FIFTH ELECTRONICS RSCH INST OF MINISTRY OF IND & INFO TECH

Data secrecy method, device, equipment, medium and program product

The invention provides a data secrecy method which can be applied to the technical field of information security. The data secrecy method comprises the following steps: acquiring an internal master key plaintext, a first external key plaintext and a second external key plaintext from a local table; based on the internal master key plaintext, the first external key plaintext and the second external key plaintext, an internal encryption key ciphertext is decrypted to obtain an internal encryption key plaintext, and the first external key and the second external key are generated by an external device; and encrypting disk data based on the internal encryption key plaintext to obtain storage data. The invention further provides a data secrecy device and equipment, a storage medium and a program product.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Solid state disk controller circuit and solid state disk

The invention relates to the technical field of electric digital data processing, and discloses a solid state disk controller circuit and a solid state disk. The controller circuit comprises a physical unclonable function unit based on an SRAM (Static Random Access Memory), which is used for dynamically generating a stable hardware trust root key during power-on; the secure boot and firmware decryption engine is used for deriving a firmware decryption authentication key and a data key packaging key by using the key, and carrying out decryption and integrity verification on the encrypted firmware; the runtime firmware execution monitoring unit is used for detecting illegal jump in real time and triggering safe shutdown through a hardware-level control flow diagram; and the dynamic data encryption key management unit recovers the plaintext data key and sends the plaintext data key to the encryption engine only during operation, and power failure disappears. By means of the scheme, end-to-end security protection of firmware and data is achieved, and the risks of static key leakage and firmware tampering are eradicated.
Owner:深圳市彦胜科技有限公司

Data forwarding method and device, network equipment and SRv6 data forwarding system

The embodiment of the invention provides a data forwarding method and device, network equipment and an SRv6 data forwarding system, and relates to the technical field of IPv6 forwarding. The method comprises the following steps: a network device receives a shared key generated and issued by a controller based on network topology information of the SRv6 data forwarding system, encrypts a preset header field of an original message based on the shared key when the shared key is used as a source node of data forwarding, and forwards the encrypted message; when serving as an intermediate node for data forwarding, verifying and re-encrypting a preset header field of the received message based on the shared key, and forwarding; and when the received message is used as a destination node for data forwarding, the preset header field of the received message is verified and decrypted based on the shared key to obtain the original message, so that an attacker is prevented from obtaining path information through a plaintext, and network topology exposure is avoided.
Owner:MAIPU COMM TECH CO LTD

Security encryption sorting method and system, computer equipment, readable storage medium and program product

The invention relates to a security encryption sorting method and system, computer equipment, a computer readable storage medium and a computer program product. The method comprises the following steps: realizing key processing and data set encryption based on a preset Paillier encryption algorithm; the server performs matrix coding and comparison operation on the encrypted data set and outputs a sorting result matrix; and the two servers cooperate with each other to complete decryption of the sorting result matrix, and a plaintext sorting result is fed back to the data holder. By adopting the method, the encrypted data is sorted, the privacy leakage risk is avoided, the approximate error in the traditional technology is eliminated, and the encrypted data analysis capability which supports any data scale, is higher in accuracy and is better in calculation efficiency is realized by designing a matrix coding technology and a security comparison protocol.
Owner:ELECTRIC POWER RES INST CHINA SOUTHERN POWER GRID CO LTD +1

Multi-language broadcasting method and system for ETC, storage medium and program product

The invention provides a multi-language broadcasting method and system for ETC, a storage medium and a program product, and the method comprises the steps that a microcontroller receives a transaction request instruction, a language parameter reading instruction and a random number obtaining instruction sent by a road side unit through a wireless communication module, and returns a vehicle state data frame, language parameter information and a random number; receiving an event information ciphertext and an authentication code returned by the road side unit; the event information ciphertext is obtained by encrypting the event information by the roadside unit through adoption of an encryption key, and the authentication code is obtained by encrypting the random number and the event information ciphertext through adoption of an authentication key by the roadside unit; the third initial key performs identification operation on the random number and the event information ciphertext to obtain a target identification code, and when the target identification code is equal to the identification code, the fourth initial key is used for decrypting the event information ciphertext to obtain an event information plaintext; and the event information plaintext and the control instruction are sent to a voice synthesis chip to decode and compress the event information plaintext, and voice broadcast is carried out after voice synthesis is carried out to obtain a voice signal.
Owner:BEIJING YILUHANG TECH CO LTD +1