Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

630 results about "Secret code" patented technology

Securing secrets and their operation

Methods, systems, and apparatus, including computer programs encoded on computer storage media, for providing secure protection of secrets. In some implementations, a passphrase and data corresponding to an authenticatable entity are received. An entropy extender is generated based at least on the data associated with the authenticatable entity. A key pair is generated using the passphrase and the entropy extender, the key pair comprising a public key and a private key. An identifier is generated using data from the public key, wherein the identifier maps to a file for storing content related to the authenticatable entity.
Owner:CHANG MINGTAI +1

Authentication with dynamic user identification

An embodiment includes receiving, from a device, at an authentication service, a dynamic user identifier having a one-time password in an authentication message constructed to carry the dynamic user identifier in place of a pre-determined user identifier of a user. The embodiment locates in a profiles database, using a customized search query with a code based on the dynamic user identifier, a user profile. The embodiment receives at the authentication service, a secondary identification data of the user including a biometric information of the user. The embodiment validates the biometric information using the user profile and enables, when the validating is successful, the device to perform an operation. The enabling is not based on the authentication service validating an entirely static user identifier and is not based on the authentication service validating a manually typed password.
Owner:US BANK NATIONAL ASSOCIATION

Computer remote login identification system based on artificial intelligence

The invention discloses a computer remote login identification system based on artificial intelligence, and the system comprises a remote login request receiving and processing module which is responsible for receiving a remote login request of a user, and carrying out the preliminary processing and verification; the multi-mode identity authentication module adopts a three-factor verification matrix of biological characteristics, behavior characteristics and equipment fingerprints, and adjusts weights of different authentication dimensions according to security requirements and user requirements; the lock screen state sensing module is responsible for sensing a lock screen state; the dynamic behavior analysis engine is used for monitoring behavior characteristics of the user in real time and comparing the behavior characteristics with a preset abnormal behavior mode so as to find abnormal login behaviors in time; the intelligent unlocking decision tree is used for making an intelligent unlocking decision according to the authentication score, the equipment environment and the behavior abnormality; and the security execution module is responsible for automatically filling a password and executing an unlocking operation after the user identity authentication is passed, and monitoring an abnormal condition in the unlocking process in real time in combination with equipment environment monitoring and an abnormal detection model.
Owner:CHANGZHOU VOCATIONAL INST OF ENG

Systems and Methods for Password Management

Systems and methods are disclosed herein for a user to use a mobile device with a camera and a terminal device with a camera to manage and use passwords via QR (Quick Response) codes. The terminal device may generate and display a QR code for a user account or data. The user running a password manager app on the mobile device may scan the QR code of the user account or the QR code of the data to generate, store, and retrieve a password, and to display a QR code for the password. The terminal device may scan the QR code of the password to receive and use the password in sign-up, sign-in, data encryption, and data decryption procedures.
Owner:ZHOU HONGBO

Quantum threshold resistant digital signature method and system capable of tolerating high network delay

The invention belongs to the field of passwords, and discloses an anti-quantum threshold digital signature method and system capable of tolerating high network delay. The method comprises the following steps: in a secret key generation stage, a trusted third party randomly selects a secret key and performs Shamir secret sharing on the secret key, and distributes a secret sharing value to each signer; in a distributed signature stage, each signer carries out packaging and secret sharing on a secret sharing value, a proving sub-circuit of a public key is operated based on a secure multi-party computing protocol, and each participant outputs a signature through two rounds of interaction. The anti-quantum threshold digital signature scheme has function interchangeability, that is, the signature generated by the threshold scheme and the signature generated by the original signature scheme can be verified by the same verification algorithm; meanwhile, the threshold digital signature scheme is efficient and achievable, and a threshold signature protocol in a scene of two parties of a wide area network only needs 2 seconds; moreover, the method has a better number of rounds, and the signature algorithm only needs two rounds.
Owner:INST OF SOFTWARE - CHINESE ACAD OF SCI

Article label anti-counterfeiting authentication method and system and computer equipment

The invention relates to an article label anti-counterfeiting authentication method and system and computer equipment. Comprising the following steps: reading first label information containing an identification area, a coding area and a password area through an external network base station to realize data preliminary verification and label authentication; and the second label information only containing the coding area is read by the intranet base station for re-verification, so that data multiple verification and anti-counterfeiting verification are provided for electronic label data interaction in a network isolation environment, information comprehensiveness and security are considered, the accuracy and reliability of target object identification are improved, and the user experience is improved. And meanwhile, data security is guaranteed through partition information management.
Owner:CHANGSHA YINGXIN SEMICONDUCTOR TECHNOLOGY CO LTD

Code wheel combination lock

Disclosed in the present invention is a novel code wheel combination lock, comprising a knob and a face plate that can rotate with respect to each other, a lock tongue, and a code wheel assembly. The code wheel assembly comprises a base having an accommodation cavity, a code wheel shaft, several sets of bushings and code wheels, a reset mechanism, a positioning member, and a protection frame; the base is mounted on the face plate; the code wheel shaft passes through a movement cavity and can axially moves; the bushings are sleeved on the code wheel shaft and can rotate together with the code wheel shaft or with respect to the code wheel shaft; the code wheels are sleeved on the bushings and can rotate together with the bushings or with respect to the bushings; the reset mechanism is used for resetting the code wheels; the positioning member is used for limiting reset of the code wheels; the protection frame is used for changing the matching mode between the code wheels and the bushings; in the rotation of the knob and the face plate with respect to each other, there are a first position, a second position and a third position to respectively implement the functions of locking, automatic code wheel reset, and manual password setting. The present invention has a function of automatically resetting the code wheels after unlocking and before locking, thereby improving the product safety and preventing password exposure.
Owner:XIAMEN MAKE LOCKS MFGR CO LTD

Devices and methods to validating multiple different factor categories

A computer implemented method, device and computer program device are provided including a processor; a storage medium to store a user defined password (UDP) factor and program instructions accessible by the processor; wherein, responsive to execution of the program instructions, the processor to: generate a first machine generated indicia (MGI) code indicative of the UDP factor; and generate a second MGI code indicative of a time-based one-time password (TOTP) factor; and a display to display the first and second MGI codes during an authentication operation.
Owner:LENOVO (SINGAPORE) PTE LTD

Authentication apparatus and authentication method

An authentication apparatus holds: a combination of a concealment template generated from a secret key and biometric information through use of biometric cryptography and encrypted identity verification information obtained by encrypting identity verification information through use of the secret key; and biometric information on a user, and is configured to: extract the secret key from the concealment template through use of the biometric information on the user; acquire the identity verification information by decrypting the encrypted identity verification information through use of the extracted secret key; and verify identity of the user based on the acquired identity verification information.
Owner:HITACHI LTD

Multi-strategy fusion password detection method and system and medium

The invention provides a multi-strategy fusion password detection method and system and a medium, and relates to the technical field of data processing.The method comprises the steps that after an initial registration password submitted by a user is received, lightweight hash is calculated; performing weak password mark hit matching, and outputting a password state matching result; if not, parallel feature vectors are extracted through an SIMD instruction set; loading to a multi-strategy fusion model, carrying out multi-strategy password strength characteristic fusion evaluation, and outputting a real-time password strength label; matching an asynchronous scene, performing asynchronous dual-thread application scene risk detection, and outputting a heterogeneous scene risk report; randomly disturbing the initial registration password to obtain a temporary standby password library; and loading to a registration interface for visual display. The technical problems that in the prior art, password evaluation depends on a model with the large calculation amount, the evaluation speed is low, real-time password detection cannot be achieved, and then user experience and system efficiency are affected are solved.
Owner:SHANDONG WEIPING INFORMATION SECURITY EVALUATION TECH CO LTD

Coded lock capable of returning messy codes to zero

A messy code return-to-zero coded lock comprises a lock shell, a sliding cover provided with a rack, an unlocking plate, a plurality of code wheels and an alignment ring connected with the code wheels, the code wheels are provided with synchronous protrusions, the alignment ring is provided with synchronous recesses, the unlocking plate is provided with alignment protrusions matched with alignment notches of the alignment ring, and the lock shell is provided with a lock handle. A compression spring A used for keeping the alignment ring connected with the code wheels is arranged between the alignment ring and the lock shell, incomplete gears are arranged on the peripheral faces of the code wheels, the multiple code wheels are arranged in a row in the direction of the rack, the incomplete gears are meshed with the rack, and when notch parts of the incomplete gears face the rack, the incomplete gears are meshed with the rack. And the password wheel rotates to a zero position.
Owner:ZHEJIANG PUJIANG PLUM BLOSSOM LOCK IND GROUP

Method, apparatus, system, and non-transitory computer readable medium for user verification and authentication

A method, apparatus, system, and non-transitory computer readable medium for performing user verification and authentication may include receiving a network request from a client device associated with an online service in response to a user access attempt of the online service associated with a user, the network request including message recipient information for a mobile-terminated (MT) short message service (SMS) message and a unique one-time password or pin (OTP) code associated with the user, calculating at least one first signature based on the network request and a shared secret key, the shared secret key shared with the client device, the at least one first signature associated with the user, transmitting a network response to the client device, the network response causing the client device to transmit a call-to-action (CTA) message to at least one user device associated with the user, and determining a status of the user access attempt.
Owner:MUNOMO LLC

System and method for generating hidden biometrics-based passwords

A system for generating passwords in real-time based on biometric factors is disclosed. The system registers users by computing a Secret-Key from biometric samples, generating a Public-Key, and storing them securely. User authentication involves capturing a real-time biometric sample, generating a Secret-Key, and comparing a computed Real-Time-Unique-Number with a stored Unique-Number. For password setting, the system detects application requirements, authenticates the user, generates a password by computing a Unique-Number using a stored Random-Number and the Secret-Key, and submits the password. For login, the system authenticates the user, retrieves the stored Random-Number, computes the Unique-Number, regenerates the password, and submits it. This biometric-based password generation system provides secure, user-friendly access without requiring password memorization. The method offers a novel approach to password management, enhancing security and user experience.
Owner:DANGE AMOD ASHOK

PEEiRS: passive evaluation of endpoint identity and risk as a surrogate authentication factor

The password, a half century old concept that many depend on to preserve the confidentiality and integrity of data is badly broken, and accordingly places data and systems at great risk of loss or breach. This paper describes a passive and user independent means of applying concepts of identity, device trust, and risk based authentication to secure access to on-premise and cloud based resources; many of which rely solely on passwords. Additionally, this novel approach to authentication can further facilitate truly mobile computing, while maintaining, if not improving the overall user experience.
Owner:NUSSBAUM JARED

System and method to detect and prevent keylogging attacks

In an first aspect of the disclosure, there is a computer-implemented method which includes: obtaining, by a computing device, a password entered by an account user, placing, by the computing device, the password in memory of a device; generating, by the computing device, a fake password by randomly injecting characters into the password; storing, by the computing device, the fake password in a secure database; and deleting the password from the memory.
Owner:KYNDRYL INC

Password hint generation based on identifying password instructions and user information

An electronic device, a method, and a computer program product assist users in accessing password protected documents by automating password hint generation. The electronic device includes a controller communicatively coupled to input device(s), output device(s) including a display, and memory that stores user information. In response to detecting a password prompt to enter a password to perform one of password-encrypt or password-decrypt the computer-readable file, the controller is configured to cause the device to identify password instruction(s) associated with the password. The controller analyzes the user information for candidate segment(s) that comply with the password instruction(s). The controller assembles password hint(s) mapping the candidate segment(s) according to the password instruction(s). The controller renders a prompt containing the password hint(s) and modifies the output device(s) to present the password prompt containing the password hint(s), wherein the password prompt is associated with the computer-readable file and presented via the output device(s).
Owner:MOTOROLA MOBILITY LLC

Dynamic key protection method and system based on AI context awareness

The invention relates to the field of secret key data processing, in particular to a dynamic secret key protection method and system based on AI context awareness, and the method comprises the steps: firstly responding to a login credential input by a user at a platform end, then calling a preset AI scene recognition module to judge the legality of a platform end page, and if the platform end page is legal, judging whether the platform end page is legal or not; according to the method, a short-term token is generated and returned to the front end of the platform, and in the execution process of the process, the sensitive calling behavior can be recognized in real time, and a preset key interception module is called to intercept the sensitive calling behavior. Compared with the prior art, the method of the invention combines the AI technology to realize certificate encryption and abnormal operation interception, and solves the problem of low security of the existing password management technology.
Owner:GUANGZHOU TAIDONG TECH CO LTD

Mutual authentication system

Mutual authentication and CSR verification techniques are described in this patent document. When a first person calls a second person, neither of them know that the other person is who he or she says he or she is. After a second person receives the call, the second person can log into a provider portal using a user device. After the second person logs in, the second person can see a verification of the call, can input on the user device a time passcode, or can receive such as passcode from a central system to authenticate the first person. The first person can provide the passcode to the second person. Upon receiving the inputted passcode, the second person can use his or her user device to indicate that the time passcode is correct so that the second person can be authenticated to access the first person's account.
Owner:UNITED SERVICES AUTOMOBILE ASSOCIATION (USAA)

Private key hosting system and method for building construction data evidence storage system

The invention discloses a private key hosting system and method for a building construction data evidence storage system, and belongs to the technical field of block chain information security and digital identity management. Comprising the following steps: a client module generates a block chain account private key, performs encrypted storage by adopting a local password, executes two-factor verification of private key unlocking, and performs digital signature on a block chain operation request; the authentication server module verifies the authenticity of a user mobile phone number, issues a short message verification code, verifies a two-factor authentication result, and manages an account migration process; the block chain node module stores the mobile phone number and the hash value of the public key, executes an account migration operation and records a migration evidence; and the administrator auditing module audits the account retrieving request and coordinates data migration. The method is mainly used for a block chain evidence storage system of building construction data, the problem that usability and safety of a traditional secret key cannot be achieved at the same time is solved, and high-safety and high-restorability private key hosting service is achieved.
Owner:CHENGDU AERONAUTIC POLYTECHNIC

Temporary mode password return-to-zero mechanism of character wheel lock

The utility model discloses a temporary mode password return-to-zero mechanism of a character wheel lock, which can automatically reset a password as an initial password after unlocking, and comprises a fixed seat and an operation component, a return-to-zero driving lever is mounted in the fixed seat; a first check block and a first spring are arranged between the operation assembly and the zero-returning driving lever, the first check block is arranged in the fixing base in a sliding fit mode, and the first spring is arranged between the first check block and the fixing base or the character wheel lock shell; a zeroing boss and a linkage boss are arranged on the peripheral surface of the operation assembly; the zeroing driving lever is provided with a limiting convex block, and the first stop block is provided with a limiting stop block; the device further comprises a retainer, a second check block and a second spring. A code changing groove is formed in the peripheral surface of the operation assembly; the second stop block is arranged in the code changing groove and used for stopping movement of the end of the retainer, and the second spring is located between the second stop block and the side wall of the code changing groove; a compression inclined surface is arranged on one side of the second stop block, so that the retainer can extrude the second stop block; in the circumferential direction of the operation assembly, the two ends of the zeroing boss are located on the inner sides of the two ends of the code changing groove respectively.
Owner:XIAMEN MAKE LOCKS MFGR CO LTD

Authentication with dynamic user identification

An embodiment includes receiving, from a device, at an authentication service, a dynamic user identifier having a one-time password in an authentication message constructed to carry the dynamic user identifier in place of a pre-determined user identifier of a user. The embodiment locates in a profiles database, using a customized search query with a code based on the dynamic user identifier, a user profile. The embodiment receives at the authentication service, a secondary identification data of the user including a biometric information of the user. The embodiment validates the biometric information using the user profile and enables, when the validating is successful, the device to perform an operation. The enabling is not based on the authentication service validating an entirely static user identifier and is not based on the authentication service validating a manually typed password.
Owner:US BANK NATIONAL ASSOCIATION

Intelligent door lock safety management and control system based on Internet of Things

The invention discloses an intelligent door lock safety management and control system based on the Internet of Things, and relates to the technical field of door lock management and control. A sliding window is adopted to process data, and improved adaptive median filtering is used for noise reduction; environment parameter dynamic features are extracted, and a three-dimensional environment feature vector is constructed; handle pressure distribution is collected, the angle change rate and complexity are calculated, and behavior feature vectors are constructed; generating a 128-bit dynamic key in combination with environment and behavior characteristics; and mixing the dynamic key and the master key, encrypting and transmitting to the cloud for password authentication and instruction updating. Multi-dimensional environment parameters are collected in real time, space-time association fusion is carried out on the multi-dimensional environment parameters and user operation behaviors, a dynamic secret key is generated, it is ensured that each authentication process is bound with the current environment and user operation characteristics, the secret key cannot be predicted or copied through historical data, and the defense capacity for man-in-the-middle attacks and data stealing is improved.
Owner:NANJING FORESTRY UNIV

Security authentication request method and system based on remote high-voltage power-on of pure electric vehicle

The invention discloses a safety certification request method and system based on remote high-voltage power-on of a pure electric vehicle, and relates to the technical field of vehicle safety. The method comprises the steps that a user sends a remote control instruction to a vehicle-mounted terminal through an APP; after the vehicle-mounted terminal receives the remote control instruction, a security authentication mechanism is started; the security authentication mechanism carries out identity authentication and authorization on a user in a password authentication mode, and an advanced encryption algorithm technology is adopted in a random combination mode of a random number, a security code, a constant code and the like by means of a secret key written by a vehicle production line. Through primary safety certification and secondary safety certification of the vehicle-mounted terminal and the I MMO, the safety and confidentiality of vehicle communication are ensured, and the risk of vehicle theft or data leakage is effectively prevented. The user can operate the vehicle anytime and anywhere through the remote control instruction and does not need to go to the location of the vehicle by himself, so that the use convenience is greatly improved.
Owner:联友智连科技有限公司

Internet of Things intelligent terminal security password verification method, system, medium and equipment

The invention provides an Internet of Things intelligent terminal security password verification method and system, a medium and equipment, and the method comprises the steps: generating a user credential key based on a PIN code and an equipment feature value of a terminal where a client is located, storing the user credential key in the client, obtaining a random number D1 generated by the client, storing the random number D1 as a partial private key D1 in the client, and verifying the security password of the client based on the partial private key D1 and an agreed domain parameter. Calculating a partial public key P1, and sending the partial public key P1 to the server; the server side obtains a random number D2 generated by the server side, the random number D2 is stored in the server side as a partial private key D2, and a complete public key P is calculated and published based on the partial private key D2, the partial public key P1 and agreed domain parameters; performing collaborative signature on the to-be-signed data M through the partial private key D1 of the client and the partial private key D2 of the server, so that a data receiver performs signature verification based on the complete public key P; and carrying out collaborative decryption on the encrypted data C through the partial private key D1 of the client and the partial private key D2 of the server to obtain plaintext data.
Owner:TIANJIN DIGITAL CERTIFICATION CO LTD

Device rights authorization using remote attestation

The invention discloses device rights authorization using remote attestation. Apparatuses, systems, and techniques for issuing rights tokens to a root of trust allow the root of trust to take certain actions on its protected component, such as, for example, modifications affecting the software and / or functionality available to its protected component. In certain embodiments, a rights token issuing process may involve receiving an attestation report corresponding to a root of trust of a computing system, where the attestation report is cryptographically signed using a private key unique to the root of trust, verifying the attestation report using a public key corresponding to the private key, and issuing a rights token based at least on successful verification of the attestation report. A rights token is issued for the root of trust, allowing the root of trust to take one or more actions on system components protected by the root of trust.
Owner:NVIDIA CORP

Authentication with dynamic user identification

An embodiment includes receiving, from a device, at an authentication service, a dynamic user identifier having a one-time password in an authentication message constructed to carry the dynamic user identifier in place of a pre-determined user identifier of a user. The embodiment locates in a profiles database, using a customized search query with a code based on the dynamic user identifier, a user profile. The embodiment receives at the authentication service, a secondary identification data of the user including a biometric information of the user. The embodiment validates the biometric information using the user profile and enables, when the validating is successful, the device to perform an operation. The enabling is not based on the authentication service validating an entirely static user identifier and is not based on the authentication service validating a manually typed password.
Owner:US BANK NATIONAL ASSOCIATION

Method and system for constructing endogenous trusted container of Kylin system of cryptographic chip

The invention relates to the technical field of computer system security, in particular to a method and a system for constructing an endogenous trusted container of a Kylin system of a cryptographic chip. Comprising the following steps: integrating a domestic cryptographic chip to a hardware platform of a kylin system, establishing a high-speed secure communication channel between the domestic cryptographic chip and a CPU memory, and performing initialization configuration on the cryptographic chip when the system is started, including loading a key, setting a national cryptographic algorithm and configuring a security strategy; according to the method, the domestic cryptographic chip is deeply integrated on the hardware platform of the Kylin system, a hardware-level secure communication channel is established, initialization configuration is carried out, a hardware trust root based on the cryptographic chip is provided for trusted container construction, and the trusted reference of the system is improved from the bottom-layer architecture level.
Owner:SHENZHEN CHENXIANG INTELLIGENT TECH CO LTD

Entrance guard remote online control system and method based on property end access confirmation

The invention provides an access control remote online control system and method based on property end access confirmation, and the system replaces manual registration: paper registration / talkback confirmation is needed traditionally, and the system realizes non-contact electronic initiation; the cloud platform realizes active security upgrade: traditionally, the cloud platform depends on naked eye judgment of security personnel, and the system realizes intelligent risk early warning (such as abnormal wandering, multi-person following and the like) through AI behavior analysis; no tracing exists after door opening traditionally, but the system realizes double-link image retention during door opening and after door opening, so that the behavior tracing capability is enhanced; the system realizes full-link visualization: traditional process information is split, and the system realizes'request-approval-execution-recording 'full-process data penetration and real-time monitoring; according to the system, dynamic safety protection is realized, and a triple protection mechanism of geocoding binding, dynamic two-dimensional code (traditional static password is easy to leak) and encryption instruction transmission is adopted.
Owner:MIDA CLOUD COMPUTING (HANGZHOU) CO LTD

PCIE (Peripheral Component Interface Express) password card, communication method and device thereof and medium

The invention discloses a PCIE password card, a communication method and device thereof and a medium, and relates to the technical field of computer hardware. The password card comprises: a main PCIE chip device, which comprises a first PCIE endpoint port, a security algorithm engine, and a PCIE root complex port; the first PCIE endpoint port is used for communicating with an upper computer, and the security algorithm engine is used for performing operation acceleration of a security algorithm based on a random number generated in the quantum random number generator; the slave PCIE chip equipment comprises a second PCIE endpoint port and an anti-quantum algorithm engine; the second PCIE endpoint port is connected with the PCIE root complex port, and the anti-quantum algorithm engine is used for performing calculation in a quantum calculation environment based on a random number generated in the quantum random number generator; and the quantum random number generator is used for generating a random number based on the quantum mechanics principle. According to the technical scheme, quantum attacks can be resisted, and the safety and reliability of the password card are improved.
Owner:CCORE TECH CO LTD

Translation lookaside buffer (TLB) poisoning attacks on secure encrypted virtualization

TLB poisoning attacks take advantage of security issues of translation lookaside buffer (TLB) management on SEV processors in Secure Encrypted Virtualization (SEV) virtual machines (VMs). In various embodiments, a hypervisor may poison TLB entries between two processes of a SEV VM to compromise the integrity and confidentiality of the SEV VM. Variants of TLB poisoning attacks and end-to-end attacks are shown to be successful on both Advanced Micro Devices (AMD) SEV and SEV-Encrypted State (SEV-ES). Countermeasures for thwarting TLB poisoning attacks include hardware-enforced TLB flush processes and re-exec schemes that, among other things, prevent attackers from manipulating TLB entries and causing a privileged victim process to execute malicious code in an attempt to bypass a password authentication.
Owner:BAIDU USA LLC