Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

262 results about "Quantum cryptography" patented technology

Quantum cryptography is the science of exploiting quantum mechanical properties to perform cryptographic tasks. The best known example of quantum cryptography is quantum key distribution which offers an information-theoretically secure solution to the key exchange problem. The advantage of quantum cryptography lies in the fact that it allows the completion of various cryptographic tasks that are proven or conjectured to be impossible using only classical (i.e. non-quantum) communication. For example, it is impossible to copy data encoded in a quantum state. If one attempts to read the encoded data, the quantum state will be changed (no-cloning theorem). This could be used to detect eavesdropping in quantum key distribution.

Configurable number-theory transformation parallel computing acceleration method and device for post quantum cryptography algorithm

The invention discloses a configurable number-theory transformation parallel computing acceleration method and device for a post quantum cryptographic algorithm, and relates to the technical field of cryptographic algorithms. The number theory transformation is a calculation bottleneck in lattice-based post-quantum cryptography and PQC; a hardware accelerator specially designed for number theory transformation (NTT) is an effective solution for improving the execution speed. At present, a mainstream design neglects the influence of the scale of a calculation array, so that the design of an NTT calculation circuit is poor in flexibility and low in memory utilization rate, and a two-dimensional reconfigurable number theory transformation acceleration circuit is provided; the method is applied to a key generation stage, an encryption stage and a decryption stage of the post-quantum cryptographic algorithm. The NTT reconfigurable computing circuit provided by the invention can keep the utilization rate of hardware resources, and is suitable for mobile terminal equipment with limited resources; the NTT circuit adopts a low-complexity memory mapping scheme, so that the address control logic is greatly simplified, and the hardware overhead is reduced.
Owner:BEIJING INST OF TECH +1

Vehicle-gauge-level rear quantum cryptography acceleration and side channel protection device

The invention relates to the technical field of vehicle-gauge-level password protection, and discloses a vehicle-gauge-level post quantum password acceleration and side channel protection device. The device comprises a quantum key injection unit, a quantum noise analysis unit, a post quantum cryptography acceleration engine, a side channel feature extraction unit and a protection strategy generator. The quantum key injection unit performs format standardization processing on input quantum key information; the quantum noise analysis unit collects a power consumption time sequence signal and an electromagnetic radiation signal of the cryptographic operation chip, and extracts a quantum noise characteristic spectrum through a quantum Fourier transform algorithm; the post quantum cryptographic acceleration engine adopts a lattice-based cryptographic algorithm to implement layered acceleration operation on the target encrypted message data; a side channel feature extraction unit constructs a space-time joint side channel feature tensor according to the quantum noise feature spectrum; the protection strategy generator identifies the physical fragile area according to the tensor and generates a corresponding protection strategy instruction. The device integrates a quantum cryptography acceleration function and a side channel protection function, and is suitable for a vehicle-specification-level scene.
Owner:SHANGHAI UNI SENTRY INTELLIGENT TECH CO LTD

Dynamic key generation system and method based on multi-source QRNG and QKD

The invention relates to the technical field of quantum cryptography, in particular to a dynamic key generation system and method based on multi-source QRNG and QKD, and the system comprises an interface registration method, a calling method, related equipment and a storage medium, is used for generating a high-security quantum key, and is a quantum key service system with a layered architecture. By abstracting, integrating and managing bottom-layer multi-source QRNG and QKD equipment and fully utilizing the flexible scheduling of quantum equipment, the security of key generation is ensured, so that the key service has higher performance, usability and security, and unified, dynamic and high-security quantum key generation and supply services are provided for various applications of the upper layer. The method is widely applied to the industries and fields of government, finance, energy, traffic, electric power and the like, meets the requirements of quantum key acquisition of various business applications in cloud computing and non-cloud environments, and ensures information security and business continuity.
Owner:CHINA SOUTHERN POWER GRID DIGITAL GRID GROUP (GUIZHOU) CO LTD

Anti-quantum cryptography migration method and system for power system

The invention relates to the technical field of data security, in particular to a quantum cryptography migration resisting method and system for a power system, and the method comprises the steps: carrying out the quantum threat risk assessment of a communication link based on the layering and partitioning architecture features of the power system; obtaining attribute data of the encryption component, and performing parallel migration risk analysis on the encryption component in combination with a quantum threat risk assessment result to generate an anti-quantum migration risk matrix; carrying out compatibility evaluation on a traditional public key algorithm and an anti-quantum cryptography algorithm based on algorithm features, and constructing a double-track encryption migration strategy; dynamically adjusting a double-track weight ratio, and constructing a double-track encryption hierarchical migration strategy based on a control hierarchy to which a communication link belongs; and executing the double-track encryption layered migration strategy and monitoring the migration effect, and performing self-adaptive correction on the double-track encryption layered migration strategy based on the migration effect. According to the method, a quantum threat assessment and double-track encryption layered migration mechanism is constructed, so that safe and smooth migration of the power system under the threat of quantum computing is realized.
Owner:NANJING NANZI DIGITAL SECURITY TECH CO LTD +1

Distributed quantum security encryption method, system and device

The invention provides a distributed quantum security encryption method, system and device. The method comprises the following steps: monitoring the quality of a quantum key distribution link in real time, and dynamically selecting a quantum key, a post-quantum session key or a fusion key of the quantum key and the post-quantum session key as a working key; and when the node cannot be directly reached, the trusted relay node generates an end-to-end key seed by using a quantum key and a post-quantum cryptography shared key which are respectively established with the two ends, the end-to-end key seed is encrypted and distributed by a public key and then a session key is independently derived by the two communication parties, and the relay node cannot decrypt. The system adopts a distributed Mesh network architecture supporting a terminal / relay dual mode. The device integrates a quantum random number generator, a post quantum cryptography coprocessor and a mixed key engine. The method integrates the advantages of quantum physical security and post quantum cryptography, has high security and availability, and is suitable for constructing a key infrastructure security communication network resisting quantum computing attack.
Owner:INFORMATION & COMMNUNICATION BRANCH STATE GRID JIANGXI ELECTRIC POWER CO

Reconfigurable multi-channel polynomial multiplier architecture and implementation method thereof

The invention relates to a reconfigurable multi-channel polynomial multiplier architecture and an implementation method thereof, and belongs to the technical field of post-quantum cryptography hardware acceleration. The architecture comprises a scheduler, a twiddle factor memory bank, a bank address routing module, a bank array and a reconfigurable butterfly unit array. According to the architecture, a cyclic decoupling multi-channel NTT / INTT / PWM algorithm is used, flexible configuration of the degree of parallelism and the flow line depth can be supported, and the adaptability of a memory access control strategy is improved; a conflict-free memory mapping scheme based on interleaved storage is adopted, so that storage and read-write of polynomial coefficients are irrelevant to polynomial length and a calculation stage, NTT / INTT / PWM access modes are unified, and hardware resource overhead is greatly reduced; and a conflict-free detection algorithm oriented to multi-channel assembly line design is adopted, so that the utilization rate of hardware resources is remarkably improved.
Owner:NAT UNIV OF DEFENSE TECH

Configurable module-lattice post-quantum cryptography processor for key-encapsulation mechanism

Disclosed is a reconfigurable module-lattice-based key encapsulation mechanism (ML-KEM) post-quantum cryptography system and method using memory-based numbers theoretic transform (NTT). A post-quantum cryptography method of a post-quantum cryptography system including a plurality of internal submodules includes reconfiguring the plurality of internal submodules by variably selecting one security level from among the plurality of security levels; reconfiguring execution of the plurality of internal submodules to be changed through a main controller; and variably processing data according to the selected security level to perform key generation, encapsulation, and decapsulation through the reconfigured plurality of internal submodules.
Owner:INHA UNIV RES & BUSINESS FOUNDATION

File encryption method and device based on quantum cryptography resisting technology

The invention discloses a file encryption method and device based on an anti-quantum cryptography technology, and the method comprises the steps: selecting a target encryption algorithm and a target signature algorithm from a preset anti-quantum cryptography algorithm library in response to a file encryption instruction; generating an asymmetric key pair corresponding to the target encryption algorithm through a secure random number generator; the asymmetric key pair comprises a target public key and a target private key, and the target private key is stored in the protected area; dividing a to-be-encrypted original data file into a plurality of file data blocks; using the target encryption algorithm and the target public key to perform hybrid encryption processing on the file data blocks in sequence to generate encrypted data blocks; performing signature processing on the encrypted data block by using a target signature algorithm to generate a digital signature corresponding to the encrypted data block; and performing data packaging on the encrypted data block and the digital signature to determine an anti-quantum encryption file corresponding to the original data file. And the encryption efficiency is considered while the file resists the quantum computing attack.
Owner:SHANDONG CHAOYUE DATA CONTROL ELECTRONICS CO LTD

Power business anti-quantum cryptography migration progressive control method based on risk perception

The invention provides a power business anti-quantum cryptography migration progressive control method based on risk awareness, and belongs to the technical field of migration control, and the method comprises the steps: collecting key parameters of all to-be-migrated businesses in a power system, carrying out the standardization preprocessing of the collected key parameters, and constructing a business feature matrix; acquiring relevant parameters of quantum attacks in real time, and calculating a real-time quantum attack risk value of each service to be migrated; based on the service feature matrix and the real-time quantum attack risk value, constructing a dynamic migration rhythm adaptation model, and calculating a migration priority, a migration rate and a migration interval of each service to be migrated; and constructing a migration fault-tolerant and recovery model, monitoring the migration process in real time, calculating a fault influence range and recovery cost based on fault information, and executing corresponding adjustment operation. Accurate, dynamic and high-reliability control of anti-quantum password migration of the power business is realized, safe and stable operation of the power business in the migration process is guaranteed, and the migration efficiency and the anti-quantum attack capability are improved.
Owner:NANJING NANZI DIGITAL SECURITY TECH CO LTD +1

Key distribution method and device for quantum security infrastructure, equipment and medium

The invention provides a key distribution method, device and equipment for quantum security infrastructure and a medium, and relates to the technical field of quantum secure communication and post quantum cryptography, the method comprises the following steps: in a key distribution process, confirming the credibility of a mobile terminal through a first new person strategy, and using a temporary encryption public key to securely transmit a key pair, the security of key transmission is improved, the flexibility is improved through automatic certificate online signing and issuing of an agent, and the password book can be securely transmitted through the use of the certificate and the key pair and the construction of a secure transmission channel, so that the terminal of the quantum security infrastructure can obtain the corresponding core key key elements based on an online mode, and the security of the key transmission is improved. The application expansibility of the quantum security infrastructure is greatly improved, and the security strength of the system is guaranteed.
Owner:中电信量子信息科技集团有限公司

High-speed hardware acceleration system for Kyber anti-quantum cryptography algorithm and implementation method

The invention discloses a high-speed hardware acceleration system for a Kyber anti-quantum cryptography algorithm and an implementation method, and relates to the technical field of hardware acceleration of the anti-quantum cryptography algorithm, the high-speed hardware acceleration system comprises a dynamic resource management and scheduling center, a reconfigurable NTT computing cluster unit, a streaming polynomial coefficient cache network and a runtime security scheduler; and the dynamic resource management and scheduling center is respectively connected with the reconfigurable NTT computing cluster unit, the streaming polynomial coefficient cache network and the runtime security scheduler. According to the high-speed hardware acceleration system for the Kyber anti-quantum cryptography algorithm and the implementation method, the overall operation throughput rate and the response speed of the system are effectively improved, idle loss caused by fixed resource allocation or data waiting is reduced, the flexible reconstruction and reuse capability of hardware resources is improved, and the implementation efficiency is improved. Therefore, the same set of physical unit can efficiently adapt to different core operation modes in the Kyber algorithm, and the hardware utilization efficiency is improved.
Owner:XIAN DEAN INFORMATION TECH CO LTD

Private key full-life-cycle security management system and method based on mobile terminal anti-quantum cryptography algorithm

The invention provides a private key full-life-cycle security management system and method based on a mobile terminal anti-quantum cryptography algorithm. The method comprises the following steps: generating a key pair based on the anti-quantum cryptography algorithm; acquiring a certificate containing a public key in the key pair; calling a mobile terminal key management system to generate a symmetric encryption key, encrypting a private key in the key pair by using the symmetric encryption key, storing the encrypted private key into a sandbox, and storing a certificate into the sandbox; extracting a private key and a certificate in the encrypted key pair from the sandbox, calling the hardware-level key management system, and decrypting the private key by using the symmetric encryption key to obtain a decrypted private key; calling an interface matched with the purpose of the private key through a preset anti-quantum algorithm library, and executing signature, signature verification or key exchange operation by using the decrypted private key; and after the operation is completed, clearing the memory area for storing the private key plaintext. According to the method, the life cycle of the anti-quantum private key can be safely managed on the premise of not depending on the native support of a mobile system.
Owner:DONGFENG MOTOR GRP

Quantum cryptography multi-algorithm collaborative acceleration system after dynamic reconstruction

The invention relates to the technical field of post quantum cryptography, and discloses a multi-algorithm collaborative acceleration system for dynamically reconstructing post quantum cryptography. The system comprises a dynamic parameter library, a password graph indexer, a vectorization scheduling engine and a collaborative execution unit. And after dynamic parameter inventory, the quantum cryptography algorithm operates the parameter set in real time, and feedback update is performed according to the collaborative execution unit. A dynamic cryptographic algorithm index graph is constructed by a cryptographic graph indexer, nodes are algorithm instances, edges are in a cooperative relation, and edge weights are fed back and adjusted according to vectorization scheduling engine path weights. The vectorization scheduling engine carries out vectorization coding on a user password task request to generate a task semantic vector, calculates the similarity between the task semantic vector and an index map node embedding vector, and generates an algorithm selection instruction. And the collaborative execution unit receives the instruction, calls a corresponding algorithm instance for operation, and feeds back the parameter change to the dynamic parameter library. According to the system, dynamic optimization and efficient collaboration of the post-quantum cryptography algorithm are realized, and the adaptability to complex scenes is enhanced.
Owner:SHANGHAI UNI SENTRY INTELLIGENT TECH CO LTD

Data security protection method, device and system based on anti-quantum cryptography algorithm

The invention provides a data security protection method, device and system based on an anti-quantum cryptography algorithm, and the method comprises the steps: setting a security storage agent node, enabling the security storage agent node to divide original data into hot data or cold data according to the security level of the original data and access data, the hot data and the cold data are encrypted by adopting different encryption modes, so that the data processing performance is optimized under the condition of ensuring the data security; besides, the data encryption key is subjected to fragmentation encryption, a separated secure storage mode is adopted, the traditional key trusteeship single-point risk is broken through, the data security is further improved, the data encryption key is subjected to fragmentation encryption by adopting a post-quantum encryption algorithm, quantum attack can be effectively resisted, and long-term data security can be guaranteed.
Owner:HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO LTD

Security key generation and authentication method based on microfluidic DNA detection

The invention discloses a micro-fluidic DNA detection-based security key generation and authentication method, which comprises the following steps: S1, carrying out DNA detection on a biological sample through a micro-fluidic chip to obtain SNP and STR feature data; s2, performing unified coding on the SNP and STR feature data to form stable bit string representation; s3, processing the bit string representation by using a fuzzy extraction mechanism, and generating a consistent key material under the condition of permitting a detection error; s4, deriving a final symmetric key from the key material by using a key derivation function; and S5, performing security packaging, transmission and authentication on the final symmetric key by adopting a post-quantum cryptography mechanism. According to the security key generation and authentication method based on microfluidic DNA detection, a set of key generation and identity authentication scheme with instantaneity, high specificity and anti-quantum security is constructed.
Owner:GUANGDONG UNIV OF TECH

Anti-quantum cryptography agile migration method of dynamic adaptive algorithm

The invention relates to the field of digital certificates and certificate application, and discloses an anti-quantum cryptography agile migration method capable of dynamically adapting to an algorithm, which is cooperatively executed by a strategy server, a certificate server and an application terminal: the strategy server monitors a migration progress and dynamically generates and issues a migration strategy; the application terminal analyzes the strategy and applies for a specified type of certificate from the certificate server; the certificate server carries out processing and issues a certificate; and the application terminal dynamically selects an algorithm compatible with the target application to establish secure connection according to the strategy during communication. According to the method, through automatic certificate management driven by a strategy and terminal self-adaptive algorithm selection, agile and smooth migration of the cryptographic algorithm is realized, and the problems of compatibility and safety management in the migration process are effectively solved.
Owner:KOAL SOFTWARE CO LTD

Reverse decomposition of intermediate values in cryptographic applications

Disclosed aspects and implementations are directed to systems and techniques for efficient execution of post-quantum cryptographic applications and protection of cryptographic computations against side-channel attacks. In one example, techniques for performing a cryptographic operation include generating a first value and computing, by the processing device, a second value. A low part of the second value is mapped to a high part of a product of a public value and the first value and a high part of the second value is mapped to a low part of the product of the public value and the first value. The techniques further include computing, using the second value, an output of the cryptographic operation that includes a digital signature for an input into the cryptographic operation or a ciphertext encrypting the input into the cryptographic operation.
Owner:CRYPTOGRAPHY RESEARCH INC

Combination of cryptography schemes

Examples relate to acquiring a message at a signing device, determining a combined authentication information by applying an asymmetric key pre-quantum cryptography scheme or an asymmetric key post-quantum cryptography scheme to the message to generate a first authentication output, the asymmetric key post-quantum cryptography scheme being quantum secure, and applying a symmetric key cryptography scheme to the message to generate a second authentication output, the symmetric key cryptography scheme being quantum secure; and sending the message and the combined authentication information to a verifying device.
Owner:HEWLETT PACKARD DEVELOPMENT COMPANY LP

Low-cost masking for post-quantum cryptography

Devices, systems, and methods for secure modular addition and subtraction are provided. A modular adder and subtractor circuit with masking circuit includes an arithmetic to Boolean (A2B) conversion operator configured to convert (i) a second sum and (ii) a value determined based on a first sum, to Boolean resulting in first and second Boolean values, a shifter configured to (i) make a most significant bit of the first Boolean value a least significant bit resulting in a shifted first Boolean value and (ii) make the most significant bit of the second Boolean value a least significant bit resulting in a shifted second Boolean value, and a Boolean to arithmetic (B2A) conversion operator, configured to convert a representation of the shifted first Boolean value and a representation of the shifted second Boolean value to arithmetic representation resulting in first and second arithmetic values, respectively.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Message encryption method and device based on improved digital signature algorithm, and electronic equipment

The invention discloses a message encryption method and device based on an improved digital signature algorithm, and electronic equipment, and relates to the field of privacy computing or financial science and technology, and the method comprises the steps: carrying out the calculation through employing a hash function and a pre-generated random bit string, and obtaining a preprocessed message, the sum of chain length parameters of positions of all chains in the signature is equal to a natural number parameter, constructing a Hash forest by using an FORS algorithm, generating a one-time signature for each tree, and combining two signatures by using an upper-layer key to obtain a WOTS + signature; and encrypting the financial transaction message and the preprocessed message based on the final signature result, and transmitting an encryption result and the final signature result to the target terminal for verification. According to the method and the device, the technical problems that the encryption speed is low and the encryption operation cannot be completed in time due to the complex algorithm when the financial transaction message is encrypted by adopting a post quantum cryptography encryption mode in the related technology are solved.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Method and apparatus for protecting cryptographic keys in the process of migration to post-quantum cryptography

A method and apparatus for securing a device to operate in a post quantum computing environment is disclosed. In one embodiment, the method comprises a first stage of performing a secure boot of the processor, using the pre-provisioned, protected symmetric boot key, a second stage of generating, by the processor, at least one post quantum cryptography (PQC) key pair having a PQC private key and a PQC public key; encrypting the PQC private key according to the pre-provisioned protected symmetric key, storing the encrypted PQC private key in the secure memory, generating a request having the PQC public key; and transmitting the request to an agency external to the processor. A third stage of deploying PQC safe applications is also disclosed.
Owner:ARRIS ENTERPRISES LLC

Quantum key distribution system and method

The invention discloses a quantum key distribution system and method. According to the system, a phase coherence monitoring mechanism is innovatively introduced, and early attack detection is realized through a dynamic consensus sampling protocol; a zero-trust relay network is constructed by adopting a wavefront fragmentation principle, and trust dependence on relay nodes is eliminated; self-adaptive safety monitoring is realized based on a finite state automaton, and a system safety strategy is dynamically adjusted. According to the method, the problems of resource consumption type attack, relay trust dependence, static protocol limitation and the like faced by an existing QKD system are solved through a strict mathematical framework, and long-distance quantum key distribution with efficient resources, endogenous security and elasticity and physical layer security guarantee is realized. Experiments show that compared with a traditional scheme, the detection delay of the system is reduced by about 38%, the resource waste is reduced by about 40%, and the availability of the system reaches 99.995% or above.
Owner:CHIZHOU JIAYIN MOTOR & CONTROL SYSTEM CO LTD

Data transmission method and system based on quantum encryption

The embodiment of the invention provides a data transmission method and system based on quantum encryption, the method is suitable for being executed in the data transmission system based on quantum encryption, and the system comprises a first communication node, a second communication node, a communication platform and a quantum cryptography service platform. The method comprises the following steps: a first communication node requests a quantum cryptography service platform to obtain a session key; the first communication node encrypts the service data by using the session key and uploads the encrypted data to the communication platform; the second communication node obtains the encrypted data from the communication platform and requests a quantum cryptography service platform to obtain a session key; and the second communication node decrypts the encrypted data according to the session key to obtain plaintext data.
Owner:TIBET CHUANGBO GENERAL AVIATION TECHNOLOGY CO LTD

A dual-mode multiplicative congruential transformation system and method based on an FPGA platform

The application discloses a dual-mode multiplier number theory transformation system and method based on an FPGA platform, relates to the field of post-quantum cryptography, and comprises a control module, eight butterfly execution units and 24 storage units, wherein each butterfly execution unit is equipped with three storage units and is connected with the control unit, and has two modular multiplication modules which are selectable for common modulus and special modulus. A host computer generates relevant data and sends the data to the 24 storage units of the FPGA, different modular multiplication modules are selected according to different requirements, and each butterfly execution module reads data and executes data conversion calculation. The application has the advantages of flexibility, high efficiency and reusability, can improve the efficiency of NTT execution, and further improve the efficiency of post-quantum cryptography execution, can be used in various encryption schemes which need to execute NTT, can also be used in identity authentication, key management and other cryptographic products, and effectively resists the threat brought by quantum computing.
Owner:SOUTH CHINA NORMAL UNIV

Anti-quantum method and system based on stateless signature and execution isomorphism

This invention discloses a quantum-resistant method and system based on stateless signatures and execution isomorphism, belonging to the field of quantum-resistant cryptography. First, the sender generates an mKEM broadcast payload based on a modulus error rounding algorithm and signs it using a stateless hash signature algorithm. The receiver performs microsecond-level verification of the signature at the network card driver layer; if verification fails, the signature is silently discarded. After successful verification, a dedicated PQC hardware engine decapsulates the signature, implicitly outputting a pseudo-random scrap key if verification fails. The operating system executes an I / O-aware microarchitecture with isomorphic execution, forcing subsequent processes to maintain physical isomorphism in system calls, memory accesses, and peripheral bus activities, regardless of whether the key is real or scrap. This invention eliminates the risk of private key leakage caused by cloud-based state management through stateless signatures and completely eliminates distinguishable side-channel fingerprints across the entire link through physical-level execution isomorphism, achieving system-level quantum-resistant security in high-concurrency scenarios.
Owner:BEIJING LANGKONG QUANTUM TECHNOLOGY CO LTD

Hybrid signature method, signature verification method, and electronic device

Embodiments of the present application provide a hybrid signature method, a signature verification method, an electronic device and a computer readable storage medium. In the method, the target message to be signed is input into the first trusted execution environment to perform a signature operation based on a traditional cryptographic algorithm, to obtain a first digital signature, and then the target message and the first digital signature are input into the second trusted execution environment to perform a signature operation based on a post-quantum cryptography, to obtain a second digital signature, and finally the first digital signature and the second digital signature are spliced to obtain a hybrid digital signature. Based on different cryptographic algorithms, the signature operation is performed to obtain a hybrid digital signature, which can significantly improve the security of message transmission.
Owner:HONOR DEVICE CO LTD

Vehicle security starting method and system based on post-quantum cryptography

The application provides a vehicle security starting method and system based on post-quantum cryptography, and relates to the technical fields of vehicle electronic control and vehicle network security. The method is applied to an ECU of a vehicle, the ECU is pre-stored with public key information based on a post-quantum cryptographic algorithm and stores an image package containing a post-quantum cryptographic digital signature; the method comprises the following steps: in response to the power-on of the ECU, loading the image package, separating original image data and the digital signature therefrom; determining a cryptographic hash value of the original image data; based on the public key information, performing a signature verification operation of the post-quantum cryptographic algorithm on the hash value and the digital signature; and controlling the starting process of the ECU according to the result of the signature verification operation. The application reconstructs the trust chain of the vehicle by using the post-quantum cryptographic algorithm, and implements quantum security signature verification at the vehicle end, which effectively ensures that the software integrity and authenticity can still be effectively verified under the quantum computing environment, thereby providing full-life-cycle security protection for intelligent networked vehicles.
Owner:ZHEJIANG GEELY HLDG GRP CO LTD +1

Binomial sampling circuit for side-channel attack resistance in post-quantum cryptography

The application discloses a binomial sampling circuit applied to post-quantum cryptographic algorithm and resisting side channel attacks, comprising a random number generation unit, a binomial sampling unit and a control logic unit; the random number generation unit is used for generating pseudo random numbers according to input data; the pseudo random numbers comprise true data and false data; the binomial sampling unit is used for synchronously performing binomial sampling on the true data and the false data; and the control logic unit is used for controlling the random number generation unit and the binomial sampling unit to operate according to external instructions. The binomial sampling circuit applied to post-quantum cryptographic algorithm and resisting side channel attacks disclosed by the application increases the difficulty of analysis of attackers by generating pseudo random numbers, synchronously samples the true data and the false data to interfere with the attackers, and jointly realizes the protection against side channel attacks, thereby effectively improving the security of a Kyber cryptographic system and reducing the risk of being attacked by side channels.
Owner:HUAZHONG UNIV OF SCI & TECH +1

High-load image security authentication method based on quantum cryptography and reembedding matrix

The invention discloses a high-load image security authentication method based on quantum cryptography and a reembedding matrix. The method comprises the following steps: carrying out preprocessing operation on an original image; constructing a quantum key distribution system, and generating and distributing a shared key and a derived key; selecting an index unit by using the derived key, and constructing a reembedding matrix; constructing a quantum hash model, mapping image blocks in an original image, and generating an index record table, an address mapping table, a reverse mapping table and a tag table; constructing detection information and recovery information; according to the derived key, disturbing the embedded data through modular lattice operation, and embedding the disturbed bit stream into the original image to generate a watermark image; after the receiver obtains the image to be authenticated, the shared key is reconstructed, a derived key is generated, and a tampering detection result image is detected and generated; and performing self-recovery on the tampered region to generate a self-recovered image. According to the method, information theory level confidentiality characteristics are provided for image authentication, and highly reliable image authentication and recovery are realized.
Owner:ANHUI POLYTECHNIC UNIV MECHANICAL & ELECTRICAL COLLEGE

Method and system for securely reporting and storing computer security profiles

A method for secure storage of cybersecurity data in a blockchain includes: identifying, by a processor of a processing server, a device profile for a computing device; encrypting, by the processor of the processing server, the device profile into an encrypted device profile using a public key of a first cryptographic key pair; encrypting, by the processor of the processing server, the encrypted device profile into a converted device profile via quantum cryptography using a first configuration key; and transmitting, by a transmitter of the processing server, the converted device profile to a blockchain node in a blockchain network.
Owner:MASTERCARD INT INC