Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

14 results about "SAFER" patented technology

In cryptography, SAFER (Secure And Fast Encryption Routine) is the name of a family of block ciphers designed primarily by James Massey (one of the designers of IDEA) on behalf of Cylink Corporation. The early SAFER K and SAFER SK designs share the same encryption function, but differ in the number of rounds and the key schedule. More recent versions — SAFER+ and SAFER++ — were submitted as candidates to the AES process and the NESSIE project respectively. All of the algorithms in the SAFER family are unpatented and available for unrestricted use.

Communication encryption method, computer equipment and storage medium

PendingCN121126333ASecurity arrangementKey serverSAFER
The embodiment of the invention provides a communication encryption method, computer equipment and a storage medium, relates to the technical field of information security, and can provide a safer communication process. Comprising the following steps: a server receives a first key acquisition request sent by a first terminal, and acquires a first composite key from a plurality of composite keys; wherein the composite key is a key obtained after fusion processing based on multiple types of quantum keys. And the server obtains a second composite key matched with the user information of the first terminal from the plurality of composite keys. And sending the second composite key to the server, so that the server encrypts the first composite key through the second composite key to obtain the encrypted first composite key. And the server sends the encrypted first composite key to the first terminal, so that the first terminal encrypts or decrypts communication data with the second terminal based on the first composite key after decrypting the encrypted first composite key.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Processor-based system employing encrypted cryptographic keys to improve data security and related methods

Data stored in a memory circuit may be encrypted using client keys that need to be available for high-speed data processing and yet held securely to avoid unauthorized access to the encrypted data. A secure processor circuit in a processor-based system obtains client keys associated with client applications and generates secure key-encryption keys that are used to encrypt the client keys so the client keys can be securely stored in the memory circuit. In some examples, data keys for encrypting data blocks associated with the client application may be generated from the client key, encrypted by a data key-encryption key generated in the secure processor circuit, and stored in the memory circuit. In such examples, because the client keys and data keys are encrypted while in memory, they are safer from software attacks on the memory circuit, which improves the security of the encrypted data blocks.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Method for encrypting and decrypting ipv6 message based on quantum key application mechanism

The application provides an IPv6 message encryption and decryption method based on a quantum key application mechanism, which is realized by a sending end and a receiving end in cooperation, and the sending end and the receiving end exchange roles when transmitting back to realize the encryption transmission of messages in the opposite direction by the same processing procedure; the messages are directly encrypted by using quantum keys, and the message encapsulation uses the extensible characteristics of the IPv6 protocol, and a new extension message header is added in the header of the IPv6 message to record the parameters used for message encryption. The combination of the quantum key encryption and the message of the IPv6 is the innovation point in the application, the quantum key is directly used for encryption when the message is encrypted and decrypted, other key negotiation methods are not needed, and other network protocol negotiation keys are not needed, so that the scheme is safer and simpler. The application encapsulates the encrypted message by using the extensible characteristics of the IPv6 protocol, so that the encrypted message is still a standard IPv6 message, and the messages of the whole scheme follow the IPv6 protocol without additional protocol overhead.
Owner:CAS QUANTUM NETWORK CO LTD

Processor-based system employing encrypted cryptographic keys to improve data security and related methods

Data stored in a memory circuit may be encrypted using client keys that need to be available for high-speed data processing and yet held securely to avoid unauthorized access to the encrypted data. A secure processor circuit in a processor-based system obtains client keys associated with client applications and generates secure key-encryption keys that are used to encrypt the client keys so the client keys can be securely stored in the memory circuit. In some examples, data keys for encrypting data blocks associated with the client application may be generated from the client key, encrypted by a data key-encryption key generated in the secure processor circuit, and stored in the memory circuit. In such examples, because the client keys and data keys are encrypted while in memory, they are safer from software attacks on the memory circuit, which improves the security of the encrypted data blocks.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Zero-trust security system and control method based on bidirectional authentication of subject and data

The application relates to the technical field of computer security, in particular to a zero-trust security system and control method based on bidirectional authentication of subjects and data, which comprises a decentralized identity management module, which is used for generating decentralized digital identities for access subjects and data assets, and bidirectionally verifying the identities of the access subjects and the data assets; an AI dynamic trust evaluation module, which is used for continuously collecting multidimensional real-time data streams, and generating a dynamically updated comprehensive trust score through a deep learning model; a dynamic strategy generation and execution module, which is used for generating real-time access control strategies based on the comprehensive trust score and data asset attributes, and executing the real-time access control strategies; and a closed-loop feedback optimization module, which is used for dynamically optimizing parameters of the deep learning model through a reinforcement learning algorithm according to strategy execution effect data. Through bidirectional decentralized authentication of subjects and data, AI dynamic trust evaluation and reinforcement learning closed-loop optimization, the application realizes safer, smarter and more flexible fine-grained access control.
Owner:SONGSHAN LAB

A fine-grained, controllable blockchain rewriting method with a hidden strategy for user tracking, revocation, and attribute cancellation under cloud computing.

This invention relates to a fine-grained, controllable blockchain rewriting method under cloud computing, featuring a hidden policy for user tracking, revocation, and attribute cancellation. The invention utilizes traceable and revocable ciphertext policy attribute-based encryption as its technical support. Only when the data modifier's attributes satisfy the access policy embedded in the transaction data written by the data owner in the block can the correct hash collision be found, thus modifying the data and achieving fine-grained, controllable, and rewriteable blockchain functionality. Secondly, by employing outsourced computing technology, some complex calculations are transferred to the data service manager under the cloud service provider, significantly improving algorithm efficiency and greatly reducing the burden on on-chain users. Simultaneously, the access policy written by the data owner in the block is partially hidden, making the controllable and rewriteable blockchain more secure and easier to expand in practical applications, effectively protecting privacy.
Owner:SHANXI UNIV

A security defense method, device and equipment for large language model against malicious queries

The present disclosure belongs to the field of artificial intelligence and specifically relates to a method, apparatus, and device for defending a large language model against malicious queries. The method comprises: obtaining a query; obtaining a set of candidate word-grams for the current word in the large language model's response to the query; adjusting the probability distribution of each word-gram in the candidate word-gram set toward a safer direction; and selecting the word-gram with the highest probability in the candidate word-gram set as the current word in the response. The present disclosure can provide a highly efficient method for defending against malicious queries without significantly impacting performance.
Owner:UNIV OF SCI & TECH OF CHINA

Information processing apparatus, quantum cryptographic communication system, information processing method, and program

To enable encrypted communication using a QKD network for a specific flow to be performed more securely and efficiently.SOLUTION: An information processing apparatus according to an embodiment includes a processing unit. The processing unit acquires, from at least one key management device that shares a second encryption key with another key management device by an encryption relay using a first encryption key, an accumulation amount of the second encryption key for each sharing destination. The processing unit thereafter notifies a control device of a specification rule for specifying a flow to be encrypted with the second encryption key, and acquires flow information of the flow to be encrypted from the control device. The processing unit also determines whether or not an accumulation amount of the second encryption key used between a first communication device and a second communication device is equal to or greater than the amount of communication data. When the accumulated amount of the second encryption key is equal to or greater than the amount of communication data, the processing unit issues an instruction to a key management device connected to the first communication device to provide the second encryption key to the first communication device.SELECTED DRAWING: Figure 6
Owner:KK TOSHIBA

Communication device, cipher communication method, program, and cipher communication system

To provide a communication device that can perform safer cipher communication.SOLUTION: A communication device comprises a control unit and a communication unit. The communication unit receives a cipher key and a key identifier of the cipher key, from a key management device that receives a cipher key from a quantum key delivery device via a closed network, transmits, via the closed network, the key identifier to a destination communication device connected to the closed network, and performs cipher communication with the destination communication device via a wide area network. The key management device may receive the cipher key from the quantum key delivery device through a leased line or closed network communication.SELECTED DRAWING: Figure 1
Owner:KYOCERA CORP

A data ciphertext buffer invalidation handling system and method for quantum communication networks

This invention discloses a data cache expiration handling system and method for quantum communication networks. The method includes: a client querying target data by inputting the primary key ID of the target data; comparing the expiration time of the primary key ID with the system time; if the expiration time of the primary key ID does not exceed the system time, returning the target data to the client; if the expiration time of the primary key ID exceeds the system time, obtaining a quantum key qk from the QK queue storing quantum keys to encrypt the target data to obtain encrypted target data; storing the quantum key qk and the encrypted target data in a database module, database R1, and database R2; and returning the encrypted target data to the client. This invention establishes synchronized data in databases R1 and R2, solving the memory overflow problem; it determines whether data is expired based on the expiration time of the quantum key, making cached data updates more reliable and secure; and it improves the user experience.
Owner:NAT QUANTUM COMM (GUANGDONG) CO LTD

Processor-based system employing encrypted cryptographic keys to improve data security and related methods

Data stored in a memory circuit may be encrypted using client keys that need to be available for high-speed data processing and yet held securely to avoid unauthorized access to the encrypted data. A secure processor circuit in a processor-based system obtains client keys associated with client applications and generates secure key-encryption keys that are used to encrypt the client keys so the client keys can be securely stored in the memory circuit. In some examples, data keys for encrypting data blocks associated with the client application may be generated from the client key, encrypted by a data key-encryption key generated in the secure processor circuit, and stored in the memory circuit. In such examples, because the client keys and data keys are encrypted while in memory, they are safer from software attacks on the memory circuit, which improves the security of the encrypted data blocks.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

A secure communication method based on train identity

The present invention discloses a secure communication method based on train identity, comprising: a key generation center generating public parameters based on security parameters; a train receiving the public parameters and ε1 and ε2, and generating a train pseudo-identity and a train private key based on t, ε1, ε2, the public parameters, and the train's true identity; the key generation center processing the legitimate train pseudo-identity, public parameters, and master key to obtain a train transmission key; processing the true identity, public parameters, and master key of the infrastructure to obtain a facility transmission key; offline processing of d, k, the public parameters, and the train transmission key to obtain offline stored partial ciphertext; the legitimate train receiving the offline stored partial ciphertext online and encrypting the information based on the train pseudo-identity, the offline stored partial ciphertext, the true identity of the infrastructure, and the public parameters to obtain ciphertext; and the trackside infrastructure decrypting the ciphertext based on the public parameters, the train pseudo-identity, and the facility transmission key to obtain plaintext. The present invention enables more secure and efficient transmission.
Owner:BEIHANG UNIV

Method for encryption authentication and data security transmission based on shamir threshold face information recognition

The present application relates to a method for Shamir threshold face information recognition encryption authentication and data security transmission, comprising the following steps: S11, encrypting the face information plaintext to form face information ciphertext; S12, dividing the encrypted face ciphertext using secret sharing technology to divide the encryption key, and dividing the user key into five key components according to the (3, 5) threshold scheme based on the threshold sharing strategy of polynomial; S13, sending the divided five key components to five key storage nodes through a key escrow system; further comprising: S21, sending a key component transmission request to the five key storage nodes through the key escrow system; S22, after receiving any three key components of the same key, the key is recovered using the Lagrange algorithm. The present application can greatly reduce the risk of key leakage, also makes the supervision department have a trace, and most importantly, the implementation of key recovery enables users to use their own keys more flexibly and safely in various application scenarios.
Owner:GUIZHOU ELECTRONIC CERTIFICATION TECH CO LTD