Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

348 results about "Quantum cryptography" patented technology

Quantum cryptography is the science of exploiting quantum mechanical properties to perform cryptographic tasks. The best known example of quantum cryptography is quantum key distribution which offers an information-theoretically secure solution to the key exchange problem. The advantage of quantum cryptography lies in the fact that it allows the completion of various cryptographic tasks that are proven or conjectured to be impossible using only classical (i.e. non-quantum) communication. For example, it is impossible to copy data encoded in a quantum state. If one attempts to read the encoded data, the quantum state will be changed (no-cloning theorem). This could be used to detect eavesdropping in quantum key distribution.

Big data auxiliary key generation method and system in communication data encryption transmission

The invention discloses a big data auxiliary key generation method and system in communication data encryption transmission, and relates to the technical field of big data analysis and processing. The dynamic entropy source processing module is used for generating a high-randomness entropy pool by combining an information entropy quantification model and adopting a Shannon entropy and minimum entropy fusion algorithm; the anti-quantum key generation module is used for generating a dynamic variable-length key seed based on an entropy pool driven post-quantum cryptographic algorithm; the hierarchical key negotiation module adopts a clustering Diffie-Hellman protocol, dynamically divides negotiation according to network topology, and precomputes and reduces the load of a core network through edge nodes; and a lightweight verification and update module. According to the method, high-entropy sources such as environmental noise, user behaviors and equipment hardware fingerprints are fused with low-entropy sources such as network messages and sensor data, and an intelligent acquisition strategy and a nonlinear decorrelation technology are combined, so that the anti-quantum dynamic entropy pool is generated, and the randomness of a secret key and the reliability of the entropy sources are improved.
Owner:COLLEGE OF MOBILE TELECOMM CHONGQING UNIV OF POSTS & TELECOMM

Distributed intelligent authentication method based on dynamic multi-modal fusion

A distributed intelligent authentication method based on dynamic multi-modal fusion relates to the field of network security, and adopts an alliance chain + DAG hybrid block chain architecture, combines a threshold signature to realize secret key fragment management, and switches among PBFT, Raft and probabilistic algorithms through a dynamic consensus mechanism to improve authentication efficiency. The multi-mode authentication module is based on a dynamic weight distribution algorithm, integrates biological characteristics, behavior analysis, equipment fingerprints and environmental factors, and combines an LSTM-GAN model and a quantum random number driven challenge-response mechanism to realize zero-trust verification under environmental perception. The session management module generates a session key by using a chaotic mapping algorithm. In the aspect of privacy protection, CKKS homomorphic encryption, zero-knowledge proof and attribute-based encryption are fused. According to the method, the block chain technology, the secure multi-party computing technology, the machine learning technology and the quantum cryptography technology are fused, and a high-performance, high-security and strong-privacy-protection distributed authentication solution is provided.
Owner:JINLING INST OF TECH

Industrial internet data security communication method based on hybrid anti-quantum cryptography

The invention discloses an industrial internet data security communication method based on hybrid anti-quantum cryptography, which relates to the technical field of data communication, and comprises the following steps: acquiring a key pair and an anti-quantum security certificate; sending a connection request to data receiver equipment to complete certificate credibility authentication, and sending an anti-quantum security certificate of the equipment; receiving a shared key seed sent by the data receiver equipment; decrypting the encapsulated ciphertext to obtain a shared key seed, and generating a corresponding shared key according to the same shared key generation algorithm as the data receiver equipment; the method comprises the following steps of: signing original data by using a signature private key, splicing a signature and the original data to obtain spliced data, encrypting the spliced data by using a shared key based on an AES-256-GCM algorithm to obtain an encrypted ciphertext and an ML-DSA signature, and sending the encrypted ciphertext to data receiver equipment. According to the method, the key distribution step is simplified, the signature verification calculation overhead is optimized, and the data communication efficiency is improved.
Owner:SICHUAN UNIV +1

Internet of Things test platform adaptation method, system and device based on post quantum cryptography

The invention discloses an Internet of Things test platform adaptation method, system and device based on post quantum cryptography. The method comprises the following steps: constructing a quantum threat perception model; establishing a multi-dimensional adaptive decision matrix, and generating a candidate post-quantum cryptography algorithm set; dynamic injection of a cryptographic protocol is executed, and lossless replacement of a communication layer encryption suite is achieved; deploying a runtime performance monitoring engine, and collecting encryption and decryption delay, memory occupancy rate and electromagnetic radiation characteristic data in real time; and constructing an algorithm switching decision tree based on reinforcement learning, and when a quantum attack feature or an equipment performance threshold is detected to break through, triggering cryptographic algorithm dynamic migration. A quantum threat perception driven Internet of Things security adaptation system is constructed, and by introducing a dynamic password switching mechanism, a hardware acceleration optimization scheme and a trusted execution environment, the security upgrading problem of traditional Internet of Things equipment in the post-quantum era is solved. According to the invention, the execution efficiency of the PQC algorithm of the resource-constrained equipment can be improved, and the key updating delay is reduced.
Owner:HANGZHOU YUNXIANG NETWORK TECH

SSL VPN security gateway communication method fused with post quantum cryptography

The invention discloses an SSL VPN security gateway communication method fused with a post quantum cryptography technology. Comprising the following steps: S1, a client and a server respectively configure a serial hybrid signature digital certificate containing an SM2 algorithm and a serial hybrid encryption digital certificate containing a PQC algorithm, and a corresponding PQC encryption key pair private key, a PQC signature key pair private key, an SM2 encryption key pair private key and an SM2 signature key pair private key; s2, newly adding a hybrid algorithm password suite using an SM2 algorithm and a PQC algorithm in a password suite list of the client, and forcibly jacking the priority of the hybrid algorithm password suite; and S3, a message structure in a handshake protocol is transformed to use a series hybrid encrypted digital certificate to realize that PQC algorithm processing is added on the basis of an original national cryptographic algorithm to realize quantum key negotiation resistance. According to the method, the PQC algorithm is added on the basis of the original national secret algorithm, and the handshake protocol is transformed, so that anti-quantum-attack key agreement and identity authentication can be realized, the communication security is remarkably improved, and meanwhile, the interoperability with the standard SSL VPN is kept.
Owner:HEBEI PRIME NUMBER INFORMATION SECURITY CO LTD +1

Key management device, quantum cryptography communication system, and computer program product

A key management device according to an embodiment includes one or more hardware processors configured to function as a determination unit, a generation unit, and a supply unit. The determination unit determines a type of request data requested by a request message transmitted from an application that performs encrypted data communication. The generation unit generates a response message including at least one of a random number and an encryption key shared by quantum key distribution (QKD) via a communication network according to a type of the request data. The supply unit supplies the response message to the application.
Owner:KK TOSHIBA

Configurable number-theory transformation parallel computing acceleration method and device for post quantum cryptography algorithm

The invention discloses a configurable number-theory transformation parallel computing acceleration method and device for a post quantum cryptographic algorithm, and relates to the technical field of cryptographic algorithms. The number theory transformation is a calculation bottleneck in lattice-based post-quantum cryptography and PQC; a hardware accelerator specially designed for number theory transformation (NTT) is an effective solution for improving the execution speed. At present, a mainstream design neglects the influence of the scale of a calculation array, so that the design of an NTT calculation circuit is poor in flexibility and low in memory utilization rate, and a two-dimensional reconfigurable number theory transformation acceleration circuit is provided; the method is applied to a key generation stage, an encryption stage and a decryption stage of the post-quantum cryptographic algorithm. The NTT reconfigurable computing circuit provided by the invention can keep the utilization rate of hardware resources, and is suitable for mobile terminal equipment with limited resources; the NTT circuit adopts a low-complexity memory mapping scheme, so that the address control logic is greatly simplified, and the hardware overhead is reduced.
Owner:BEIJING INST OF TECH +1

Vehicle-gauge-level rear quantum cryptography acceleration and side channel protection device

The invention relates to the technical field of vehicle-gauge-level password protection, and discloses a vehicle-gauge-level post quantum password acceleration and side channel protection device. The device comprises a quantum key injection unit, a quantum noise analysis unit, a post quantum cryptography acceleration engine, a side channel feature extraction unit and a protection strategy generator. The quantum key injection unit performs format standardization processing on input quantum key information; the quantum noise analysis unit collects a power consumption time sequence signal and an electromagnetic radiation signal of the cryptographic operation chip, and extracts a quantum noise characteristic spectrum through a quantum Fourier transform algorithm; the post quantum cryptographic acceleration engine adopts a lattice-based cryptographic algorithm to implement layered acceleration operation on the target encrypted message data; a side channel feature extraction unit constructs a space-time joint side channel feature tensor according to the quantum noise feature spectrum; the protection strategy generator identifies the physical fragile area according to the tensor and generates a corresponding protection strategy instruction. The device integrates a quantum cryptography acceleration function and a side channel protection function, and is suitable for a vehicle-specification-level scene.
Owner:SHANGHAI UNI SENTRY INTELLIGENT TECH CO LTD

SPA single packet authentication method based on quantum cryptography

The invention belongs to the technical field of network communication, and particularly relates to an SPA single packet authentication method based on quantum cryptography, which comprises the following steps: a client and a server establish a shared quantum key pool, and the quantum key pool comprises a plurality of quantum key segments with different life cycles; the client selects one key segment in the quantum key pool, and generates a dynamic key according to the session ID and the random number seed; acquiring a data abstract according to the single packet data; generating an authentication label containing a quantum watermark according to the data abstract and the quantum random number; the client sends a data packet containing the single packet data, the authentication tag and the key fragment index to the server; the server obtains a local key fragment from a local quantum key pool according to the key fragment index, generates a local dynamic key in combination with the same session ID and the random number seed, and performs hash operation on single packet data to obtain a local authentication tag; and the server carries out authentication comparison on the local authentication tag and the received authentication tag.
Owner:CHINA NAT INST OF STANDARDIZATION

Dynamic key generation system and method based on multi-source QRNG and QKD

The invention relates to the technical field of quantum cryptography, in particular to a dynamic key generation system and method based on multi-source QRNG and QKD, and the system comprises an interface registration method, a calling method, related equipment and a storage medium, is used for generating a high-security quantum key, and is a quantum key service system with a layered architecture. By abstracting, integrating and managing bottom-layer multi-source QRNG and QKD equipment and fully utilizing the flexible scheduling of quantum equipment, the security of key generation is ensured, so that the key service has higher performance, usability and security, and unified, dynamic and high-security quantum key generation and supply services are provided for various applications of the upper layer. The method is widely applied to the industries and fields of government, finance, energy, traffic, electric power and the like, meets the requirements of quantum key acquisition of various business applications in cloud computing and non-cloud environments, and ensures information security and business continuity.
Owner:CHINA SOUTHERN POWER GRID DIGITAL GRID GROUP (GUIZHOU) CO LTD

Multiple post-quantum cryptography key encapsulations with authentication and forward secrecy

A server and a device can conduct mutually authenticated post-quantum cryptography (PQC) key encapsulation mechanisms (KEM) that also support forward secrecy. The device can store a trusted server public key (PK.server) and the server can store a trusted device public key (PK.device). The device can generate (i) a first KEM ciphertext and (ii) a first key with PK.server and encrypt an ephemeral public key (ePK.device) using the first key. The server can generate (i) a second KEM ciphertext and (ii) a second key with ePK.device. The server can generate (i) a third KEM ciphertext and (ii) a third key with PK.device. The server can encrypt an ephemeral public key (ePK.server) using the first, second, and third keys. The device can generate (i) a fourth KEM ciphertext and (ii) a fourth key with ePK.server. The device can encrypt application data using at least the first, second, third, and fourth keys.
Owner:ADEIA EMERGING TECHNOLOGIES INC

Anti-quantum cryptography migration method and system for power system

The invention relates to the technical field of data security, in particular to a quantum cryptography migration resisting method and system for a power system, and the method comprises the steps: carrying out the quantum threat risk assessment of a communication link based on the layering and partitioning architecture features of the power system; obtaining attribute data of the encryption component, and performing parallel migration risk analysis on the encryption component in combination with a quantum threat risk assessment result to generate an anti-quantum migration risk matrix; carrying out compatibility evaluation on a traditional public key algorithm and an anti-quantum cryptography algorithm based on algorithm features, and constructing a double-track encryption migration strategy; dynamically adjusting a double-track weight ratio, and constructing a double-track encryption hierarchical migration strategy based on a control hierarchy to which a communication link belongs; and executing the double-track encryption layered migration strategy and monitoring the migration effect, and performing self-adaptive correction on the double-track encryption layered migration strategy based on the migration effect. According to the method, a quantum threat assessment and double-track encryption layered migration mechanism is constructed, so that safe and smooth migration of the power system under the threat of quantum computing is realized.
Owner:NANJING NANZI DIGITAL SECURITY TECH CO LTD +1

Power grid data secure transmission system and method based on quantum cryptography, and medium

The invention relates to the technical field of electric power communication security, in particular to a power grid data secure transmission system and method based on quantum cryptography and a medium, comprising: a power grid data access module extracts identities of a power grid data request end and a target response end; the quantum key distribution module obtains an original shared key pre-stored by the two communication parties, and generates a quantum key according to the one-time session password and the original shared key; the communication security management module analyzes the shared key information from the quantum key received by the target response end to obtain analyzed shared key information, and performs communication security verification on the original shared key and the analyzed shared key information; and the power grid security communication module encrypts the to-be-transmitted power grid data when the communication security verification result is that the verification is passed, and transmits the power grid encrypted data to the target response end. Through cooperation mechanisms such as quantum key dynamic distribution and security verification, security protection of power grid data transmission is realized, and power grid data communication security is improved.
Owner:GUANGZHOU POWER SUPPLY BUREAU GUANGDONG POWER GRID CO LTD

Distributed quantum security encryption method, system and device

The invention provides a distributed quantum security encryption method, system and device. The method comprises the following steps: monitoring the quality of a quantum key distribution link in real time, and dynamically selecting a quantum key, a post-quantum session key or a fusion key of the quantum key and the post-quantum session key as a working key; and when the node cannot be directly reached, the trusted relay node generates an end-to-end key seed by using a quantum key and a post-quantum cryptography shared key which are respectively established with the two ends, the end-to-end key seed is encrypted and distributed by a public key and then a session key is independently derived by the two communication parties, and the relay node cannot decrypt. The system adopts a distributed Mesh network architecture supporting a terminal / relay dual mode. The device integrates a quantum random number generator, a post quantum cryptography coprocessor and a mixed key engine. The method integrates the advantages of quantum physical security and post quantum cryptography, has high security and availability, and is suitable for constructing a key infrastructure security communication network resisting quantum computing attack.
Owner:INFORMATION & COMMNUNICATION BRANCH STATE GRID JIANGXI ELECTRIC POWER CO

Quantum cipher migration resisting method and system, electronic equipment and storage medium

The invention relates to an anti-quantum password migration method and system, electronic equipment and a storage medium, and belongs to the technical field of anti-quantum data transmission. The method comprises the following steps: carrying out adaptive expansion on a transport layer security protocol; the encryption end and the decryption end perform secure transmission of the application data based on the expanded transport layer security protocol, and the secure transmission process of the application data comprises the following steps: generating a master key, a multi-level sub-key and a path key chain according to a chain type post-quantum key generation mechanism based on the expanded cipher suite; the encryption end generates an encryption key through a part of the sub-keys, encrypts application data in a symmetric encryption mode to generate a ciphertext, and sends the ciphertext and a path node key at the tail end of the path key chain to a decryption end; and the decryption end verifies the path node key, generates a decryption key by using part of the sub-keys after the verification of the path node key is passed, and decrypts the ciphertext. According to the invention, the security and high efficiency of data transmission in the anti-quantum cryptography migration process are realized.
Owner:RELATED (BEIJING) TECHNOLOGY CO LTD

Electric power Internet of Things equipment identity authentication method and system based on quantum cloud code

The invention relates to the technical field of electric power data transmission, and discloses an electric power Internet of Things equipment identity authentication method and system based on quantum cloud codes. The method comprises the following steps: acquiring quantum state information through a quantum random number generator, generating a power authentication seed and converting the power authentication seed into a quantum cloud code initial seed; collecting an electrical equipment identifier and a characteristic parameter to generate a characteristic vector; expanding the initial seed of the quantum cloud code into a sub-key sequence, and generating an authentication quantum cloud code through quantum entanglement coding and error correction; executing quantum evolution in the authentication time window to generate a dynamic authentication code; after the challenge sequence is received, quantum measurement is carried out, and authentication response data is constructed; and finally, determining an authentication state through block chain storage and an intelligent contract. According to the invention, quantum cryptography and a block chain technology are combined, so that a high-security, low-overhead and extensible device identity authentication mechanism is realized.
Owner:GUO WANG ZHE JIANG SHENG DIAN LI YOU XIAN GONG SI YU YAO SHI GONG DIAN GONG SI +2

Sparse polynomial multiplication accelerator applied to HQC algorithm

The invention discloses a sparse polynomial multiplication accelerator circuit applied to an HQC algorithm, and belongs to the field of post quantum cryptography algorithm hardware acceleration. Comprising a sparse polynomial non-zero coefficient index register set, a state register set, a multiplication and addition unit, a control state machine and an address generation module. The sparse polynomial non-zero coefficient index register set is used for storing indexes of sparse polynomial non-zero coefficients and providing the indexes for the control state machine, and the control state machine further inputs the obtained indexes to the address generation module; the state register group is used for configuring and representing the working state of the accelerator, storing information of registers and providing information for the address generation module and the control state machine; the address generation module is used for calculating address information and feeding back a result to the control state machine; and the control state machine reads the coefficient of the dense polynomial from the external RAM and inputs the coefficient into the multiplication and addition unit for calculation, and after the multiplication and addition unit completes calculation, the control state machine writes a calculation result into the external RAM.
Owner:ZHEJIANG UNIV

Reconfigurable multi-channel polynomial multiplier architecture and implementation method thereof

The invention relates to a reconfigurable multi-channel polynomial multiplier architecture and an implementation method thereof, and belongs to the technical field of post-quantum cryptography hardware acceleration. The architecture comprises a scheduler, a twiddle factor memory bank, a bank address routing module, a bank array and a reconfigurable butterfly unit array. According to the architecture, a cyclic decoupling multi-channel NTT / INTT / PWM algorithm is used, flexible configuration of the degree of parallelism and the flow line depth can be supported, and the adaptability of a memory access control strategy is improved; a conflict-free memory mapping scheme based on interleaved storage is adopted, so that storage and read-write of polynomial coefficients are irrelevant to polynomial length and a calculation stage, NTT / INTT / PWM access modes are unified, and hardware resource overhead is greatly reduced; and a conflict-free detection algorithm oriented to multi-channel assembly line design is adopted, so that the utilization rate of hardware resources is remarkably improved.
Owner:NAT UNIV OF DEFENSE TECH

Configurable module-lattice post-quantum cryptography processor for key-encapsulation mechanism

Disclosed is a reconfigurable module-lattice-based key encapsulation mechanism (ML-KEM) post-quantum cryptography system and method using memory-based numbers theoretic transform (NTT). A post-quantum cryptography method of a post-quantum cryptography system including a plurality of internal submodules includes reconfiguring the plurality of internal submodules by variably selecting one security level from among the plurality of security levels; reconfiguring execution of the plurality of internal submodules to be changed through a main controller; and variably processing data according to the selected security level to perform key generation, encapsulation, and decapsulation through the reconfigured plurality of internal submodules.
Owner:INHA UNIV RES & BUSINESS FOUNDATION

File encryption method and device based on quantum cryptography resisting technology

The invention discloses a file encryption method and device based on an anti-quantum cryptography technology, and the method comprises the steps: selecting a target encryption algorithm and a target signature algorithm from a preset anti-quantum cryptography algorithm library in response to a file encryption instruction; generating an asymmetric key pair corresponding to the target encryption algorithm through a secure random number generator; the asymmetric key pair comprises a target public key and a target private key, and the target private key is stored in the protected area; dividing a to-be-encrypted original data file into a plurality of file data blocks; using the target encryption algorithm and the target public key to perform hybrid encryption processing on the file data blocks in sequence to generate encrypted data blocks; performing signature processing on the encrypted data block by using a target signature algorithm to generate a digital signature corresponding to the encrypted data block; and performing data packaging on the encrypted data block and the digital signature to determine an anti-quantum encryption file corresponding to the original data file. And the encryption efficiency is considered while the file resists the quantum computing attack.
Owner:SHANDONG CHAOYUE DATA CONTROL ELECTRONICS CO LTD

Compilation system for post quantum cryptography algorithm

The invention discloses a compiling system for a post-quantum cryptography algorithm, and relates to the technical field of post-quantum cryptography, the compiling system receives a C / C + + program compiled according to an algorithm library, generates a software operator intermediate representation through a front-end compiling module, carries out related optimization through a machine-independent optimization module, reduces redundant codes, and then, carries out compiling on the C / C + + program through a machine-independent optimization module. The software operator intermediate representation is converted into a hardware operator intermediate representation through a machine-related optimization module, optimization oriented to a specific hardware architecture is carried out, and finally, the hardware operator intermediate representation selects a corresponding target code generation module according to different target hardware to generate a file which can be executed on the target hardware. Through the system provided by the invention, a programmer can deploy various post quantum cryptography algorithms to different hardware architectures under the condition that a source program is slightly modified.
Owner:SHANGHAI JIAOTONG UNIV

System and method for scalable stream encryption and decryption

Information security systems and methods are presented including synchronized state machines operating with private data and tamper-evident identifiers that expand the problem space of attacks by unauthorized consumers of data in flight or rest to near infinity. A quantum cryptography-resistant distribution network for identity, trust relationship, encryption, and transcoding of valuable information is described where a priori knowledge of the hardware or software is irrelevant to the safe time for the data protected and modified as needed within a multikey encryption and data control and availability assurance domains. Due to its low compute design, the methods described within are well suited for a variety of tasks including real-time data streams such as video and audio distribution.
Owner:NEURSCIENCES LLC

Power business anti-quantum cryptography migration progressive control method based on risk perception

The invention provides a power business anti-quantum cryptography migration progressive control method based on risk awareness, and belongs to the technical field of migration control, and the method comprises the steps: collecting key parameters of all to-be-migrated businesses in a power system, carrying out the standardization preprocessing of the collected key parameters, and constructing a business feature matrix; acquiring relevant parameters of quantum attacks in real time, and calculating a real-time quantum attack risk value of each service to be migrated; based on the service feature matrix and the real-time quantum attack risk value, constructing a dynamic migration rhythm adaptation model, and calculating a migration priority, a migration rate and a migration interval of each service to be migrated; and constructing a migration fault-tolerant and recovery model, monitoring the migration process in real time, calculating a fault influence range and recovery cost based on fault information, and executing corresponding adjustment operation. Accurate, dynamic and high-reliability control of anti-quantum password migration of the power business is realized, safe and stable operation of the power business in the migration process is guaranteed, and the migration efficiency and the anti-quantum attack capability are improved.
Owner:NANJING NANZI DIGITAL SECURITY TECH CO LTD +1

Key distribution method and device for quantum security infrastructure, equipment and medium

The invention provides a key distribution method, device and equipment for quantum security infrastructure and a medium, and relates to the technical field of quantum secure communication and post quantum cryptography, the method comprises the following steps: in a key distribution process, confirming the credibility of a mobile terminal through a first new person strategy, and using a temporary encryption public key to securely transmit a key pair, the security of key transmission is improved, the flexibility is improved through automatic certificate online signing and issuing of an agent, and the password book can be securely transmitted through the use of the certificate and the key pair and the construction of a secure transmission channel, so that the terminal of the quantum security infrastructure can obtain the corresponding core key key elements based on an online mode, and the security of the key transmission is improved. The application expansibility of the quantum security infrastructure is greatly improved, and the security strength of the system is guaranteed.
Owner:中电信量子信息科技集团有限公司

Equipment communication method and device and related equipment

The invention provides an equipment communication method and device and related equipment, and relates to the technical field of communication. The method comprises the following steps: respectively determining a target security level, a target anti-quantum cryptography algorithm and a target communication protocol from security levels, anti-quantum cryptography algorithms and communication protocols of a first device and a second device based on computing power levels of the first device and the second device; determining a target parameter set used by the target anti-quantum cryptography algorithm based on the target security level; according to the category of the target communication protocol, performing protocol enhancement on the target communication protocol by using the target anti-quantum cryptography algorithm and the target parameter set; and communicating with the second equipment according to the target communication protocol after protocol enhancement. Through the technical means, the problem that industrial equipment is difficult to adapt to the anti-quantum cryptography algorithm due to the limitation of computing power in the prior art is solved.
Owner:CHINA TELECOM CORP LTD +1

High-speed hardware acceleration system for Kyber anti-quantum cryptography algorithm and implementation method

The invention discloses a high-speed hardware acceleration system for a Kyber anti-quantum cryptography algorithm and an implementation method, and relates to the technical field of hardware acceleration of the anti-quantum cryptography algorithm, the high-speed hardware acceleration system comprises a dynamic resource management and scheduling center, a reconfigurable NTT computing cluster unit, a streaming polynomial coefficient cache network and a runtime security scheduler; and the dynamic resource management and scheduling center is respectively connected with the reconfigurable NTT computing cluster unit, the streaming polynomial coefficient cache network and the runtime security scheduler. According to the high-speed hardware acceleration system for the Kyber anti-quantum cryptography algorithm and the implementation method, the overall operation throughput rate and the response speed of the system are effectively improved, idle loss caused by fixed resource allocation or data waiting is reduced, the flexible reconstruction and reuse capability of hardware resources is improved, and the implementation efficiency is improved. Therefore, the same set of physical unit can efficiently adapt to different core operation modes in the Kyber algorithm, and the hardware utilization efficiency is improved.
Owner:XIAN DEAN INFORMATION TECH CO LTD

System and methods for secure communication using post-quantum cryptography

A server and a device can conduct a secure session with (i) multiple post-quantum cryptography (PQC) key encapsulation mechanisms (KEM) and (ii) forward secrecy. The device can store a server static public key (PK.server) before establishing a secure session with the server. The device can use PK.server to encrypt a device ephemeral public key (ePK.device) into a first ciphertext. The first ciphertext can also include a device digital signature. The server can receive and decrypt the first ciphertext. The server can use the ePK.device to encrypt a server ephemeral public key (ePK.server) into a second ciphertext. The second ciphertext can also include a server digital signature. The device can receive and decrypt the second ciphertext. The device can encrypt application data into a third ciphertext using both PK.server and ePK.server. PK.server can support a first PQC algorithm and ePK.server can support a different, second PQC algorithm.
Owner:ADEIA EMERGING TECHNOLOGIES INC

Financial-level secure transmission system based on quantum encryption communication

The invention discloses a financial-level secure transmission system based on quantum encryption communication, and the system comprises a terminal quantum key distribution module, a cloud trusted node cluster, and a dynamic key agreement protocol engine. The terminal quantum key distribution module, the cloud trusted node cluster and the dynamic key agreement protocol engine are used for generating a shared key of anti-quantum computing through quantum key division, and realizing end-to-end encrypted transmission of a transaction instruction between a terminal and a cloud; according to the invention, by constructing a quantum key dynamic distribution and hybrid encryption system and creatively fusing quantum teleportation and trusted execution environment technologies, the performance bottleneck of an existing quantum communication system in a financial scene is broken through, and end-to-end secure transmission resisting quantum computing attack is realized.
Owner:INSPUR FINANCIAL INFORMATION TECHNOLOGY CO LTD

Private key full-life-cycle security management system and method based on mobile terminal anti-quantum cryptography algorithm

The invention provides a private key full-life-cycle security management system and method based on a mobile terminal anti-quantum cryptography algorithm. The method comprises the following steps: generating a key pair based on the anti-quantum cryptography algorithm; acquiring a certificate containing a public key in the key pair; calling a mobile terminal key management system to generate a symmetric encryption key, encrypting a private key in the key pair by using the symmetric encryption key, storing the encrypted private key into a sandbox, and storing a certificate into the sandbox; extracting a private key and a certificate in the encrypted key pair from the sandbox, calling the hardware-level key management system, and decrypting the private key by using the symmetric encryption key to obtain a decrypted private key; calling an interface matched with the purpose of the private key through a preset anti-quantum algorithm library, and executing signature, signature verification or key exchange operation by using the decrypted private key; and after the operation is completed, clearing the memory area for storing the private key plaintext. According to the method, the life cycle of the anti-quantum private key can be safely managed on the premise of not depending on the native support of a mobile system.
Owner:DONGFENG MOTOR GRP

Information sending method, receiving method and equipment based on quantum key

The invention belongs to the technical field of information communication, and discloses an information sending method, an information receiving method and equipment, and the information sending method comprises the steps: receiving the designation of one or more encryption segments in to-be-sent communication information, generating a key application, and sending the key application to a quantum cryptography service platform, the key application comprises quantum key quantity required by each encryption segment; obtaining a quantum key generated for each encryption segment and identification information of the quantum key from a quantum cryptography service platform; in response to an information sending confirmation instruction, encrypting each encryption segment by using a corresponding quantum key, generating an encryption guide, and sending the encrypted communication information and the encryption guide; the encryption guidance comprises the position information of each encryption segment and the identification information of the corresponding quantum key, so that the receiver terminal obtains the quantum key from the quantum cryptography service platform based on the identification information. The encryption granularity can be finely controlled, high flexibility is achieved, and the customized encryption requirement of a user can be met.
Owner:QUANTUMCTEK CO LTD +1