Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

70 results about "Secure state" patented technology

A secure state is an information systems security term to describe where entities in a computer system are divided into subjects and objects, and it can be formally proven that each state transition preserves security by moving from one secure state to another secure state. Thereby it can be inductively proven that the system is secure. As defined in the Bell–LaPadula model, the secure state is built on the concept of a state machine with a set of allowable states in a system. The transition from one state to another state is defined by transition functions.

Method and apparatus for dynamic encryption of communication channels

The application relates to the technical field of network communication, and discloses a communication channel dynamic encryption method and device, which comprises the following steps: collecting communication scene related information and security state related information to obtain an evaluation result; selecting a corresponding encryption scheme based on the evaluation result to establish an encryption link; transmitting an updated key library by using the encryption link to complete seamless updating of the key library; and binding the encryption scheme and session information and optimizing session parameters based on the encryption link and the updated key library to obtain encrypted transmission of communication data. The communication channel dynamic encryption method and device are characterized in that, through three-dimensional evaluation of data sensitivity, network security level and historical interaction security record and dynamic adaptation of the encryption scheme, high-sensitivity data, dangerous network environment and other scenes can be subjected to high-intensity encryption with high pertinence, low-sensitivity data and safe network environment can be subjected to moderate encryption strength, transmission efficiency caused by excessive encryption is avoided, and security risks caused by insufficient encryption strength are reduced.
Owner:CHONGQING COLLEGE OF ELECTRONICS ENG

A power network vulnerability analysis system and method based on virtual attack and defense deduction

The application discloses to the technical field of power network, specifically is a kind of power network vulnerability analysis system and method based on virtual attack and defense deduction, comprising: data acquisition module, for responsible collection various data of power network, the various data include network topology structure data, equipment configuration data, operating state data, security log data;Threat intelligence integration module is used to collect, integrate network security threat intelligence from the world, and with threat intelligence platform establishes data interface, realizes the automatic synchronization and update of threat intelligence.The application can simulate new attack means, monitor power network security state in real time by continuous virtual attack and defense deduction, combined with machine learning algorithm optimization attack and defense strategy.Even if there is unprecedented attack mode, the application can quickly identify potential threats through attack and defense confrontation, greatly improve the discovery ability of new and unknown vulnerabilities, and respond to network security risks in time.
Owner:CEPO BEIJING INFORMATION TECH CO LTD +1

Orientation fault detection system

PCT designated stageWO2026143215A1Control systemSecure state
An orientation fault detection system is configured to detect improper installation of the dynamic active control system (DACS) controller / software module by receiving data output from a plurality of sensors to determine whether an orientation fault is detected corresponding to an improper installation of the controller / software module. Such determination is made based upon sensor data when corresponding environmental and operational conditions are met, so the orientation fault detection system is further configured to determine whether the requisite conditions are met for orientation fault detection based upon the sensor data. If an orientation fault is detected, the orientation fault detection system initiates a safe state protocol that renders the vessel safe to operate.
Owner:SEAKEEPER INC

An adaptive autonomous driving decision-making method fusing user preferences and traffic rules

ActiveCN120942370BPathPingFeature vector
The application relates to a kind of adaptive automatic driving decision-making methods of fusing user preference and traffic rules, comprising the following steps: extracting automatic driving scene information and user instruction;Traffic rule knowledge base is constructed, rule violation is identified, safety state is judged, and observation space feature vector is output;Three-stage memory retrieval mechanism is used, the most similar historical memory unit in memory bank is matched with current scene, if matching is successful, the corresponding multi-objective weight adjustment vector is extracted, otherwise, the observation space feature vector and user instruction are input into large language model, and multi-objective weight adjustment vector is generated based on large language model, and memory bank is updated;The weight in the comprehensive cost function is adjusted based on multi-objective weight adjustment vector, and the optimal path is generated based on the adjusted comprehensive cost function;The above steps are repeatedly executed at a fixed period to continuously update the optimal path.Compared with the prior art, the application has the advantages of higher safety, stronger applicability and the like.
Owner:TONGJI UNIV

File access control method, and electronic device

The present application provides a file access control method, and an electronic device. In the method, in response to a first operation performed by a user on an opened first file, a device usage permission risk of a first electronic device is detected, and first security status information of the first electronic device is determined. The device usage permission risk comprises at least one of a device privilege-escalation risk, a connection status risk, a network environment risk, or a geographic location risk. When the device usage permission risk of the first electronic device indicated by the first security status information increases, a file access permission of the first file is adjusted to a restricted file access permission, the restricted file access permission being restricted compared to the file access permission of the first file before the user performs the first operation. By means of the described solution, when a file is opened, if the device usage risk of the electronic device increases, the file access permission of the file can be promptly adjusted, thereby ensuring the security of the file.
Owner:HUAWEI TECH CO LTD

An automatic inspection method and system for server security self-check

PendingCN122372311ASecure stateSecurity check
This invention discloses an automatic inspection method and system for server security self-testing. The method includes the following steps: S1, acquiring distributed node information and initial security configuration parameters of a server group, and establishing a global security inspection topology; S2, deploying an adaptive inspection agent on each server node, wherein the agent initializes a local inspection strategy based on the global security configuration parameters; S3, through a distributed computing architecture, each adaptive inspection agent independently performs local security checks and generates node security status data. This invention relates to the field of server security technology. This automatic inspection method and system for server security self-testing, through collaborative communication between agents, enables the system to share threat information, vulnerability remediation suggestions, and system status data in real time, constructing a global security data pool, and deriving a global security posture value based on weighted calculation. This allows the system to promptly understand the security status of the entire server group and provide accurate security posture awareness.
Owner:SHANGHAI ZHIZHONGLIAN INTELLIGENT TERMINAL CO LTD

A safety monitoring system and method for a building curtain wall

The application relates to the technical field of safety monitoring, in particular to a safety monitoring system and a monitoring method for a building curtain wall, which comprises a non-invasive sensor array composed of multiple independent monitoring nodes, each monitoring node comprising a sensing module for collecting curtain wall physical state parameters and a connecting interface for realizing physical connection with the curtain wall surface, the connecting interface adopts a reversible connection mode based on adsorption force or magnetic force, so that the whole monitoring node can be installed and removed without damaging the curtain wall structure; a data aggregation and communication gateway for receiving monitoring data from the non-invasive sensor array and performing preliminary packaging and protocol conversion on the data; and a cloud or local data analysis platform for receiving data from the data aggregation and communication gateway, executing a safety state analysis algorithm, and generating visual results and early warning information. The application improves the deployment universality, maintainability and historical building applicability of the system.
Owner:BEIJING URBAN CONSTR GROUP

Distribution network grounding operation safety state intelligent early warning and measurement and control system and method

The invention discloses a distribution network grounding operation safety state intelligent early warning and measurement and control system and method. The system comprises an intelligent jointing clamp, an intelligent grounding pin and a visual monitoring platform. The intelligent jointing clamp is integrated with a pressure sensing module used for sensing the hooking state of the intelligent jointing clamp and a wire, a positioning module used for conducting grounding point space positioning, and a safety authentication module used for equipment identity authentication. The intelligent grounding pin is integrated with a posture sensing module used for monitoring the embedding posture of the grounding pin, a depth measuring module used for measuring the embedding depth of the intelligent grounding pin, and a vibration sensing module used for identifying the impact characteristic in the embedding process of the intelligent grounding pin. And the visual monitoring platform is used for receiving the multi-modal sensing data uploaded by the intelligent jointing clamp and the intelligent grounding pin, and performing diagnosis and early warning of the grounding operation state according to the multi-modal sensing data. According to the invention, by constructing an end-edge-cloud collaborative system architecture, the operation and maintenance security of the power system is improved.
Owner:SHENZHEN SMARTCHIP MICROELECTRONICS TECH CO LTD +1

A network asset security analysis method and device, a storage medium and an electronic device

The application provides a network asset security analysis method and device, a storage medium and an electronic device. The method is applied to the technical field of computers and includes the following steps: determining a target network asset in a network system, obtaining asset attribute information of the target network asset, obtaining related vulnerability data of the target network asset based on the asset attribute information, performing context analysis and processing on the related vulnerability data based on global assets of the network system, and determining a security state level of the target network asset. The method can comprehensively detect the vulnerability of the target network asset by performing context analysis on the related vulnerability of the target network asset based on the global assets, thereby improving the accuracy of the obtained security state level.
Owner:BEIJING HONGTENG INTELLIGENT TECH CO LTD

A 3D visualized cryptographic device security demonstration method

The present application relates to a kind of 3D visual cryptographic device security display method, it is related to cryptographic security application technical field, including the division 3D model component based on the physical structure of cryptographic device;The present application is based on the division 3D model component of the physical structure of cryptographic device, independent encryption is carried out using symmetric encryption algorithm, according to the current security state result of cryptographic device, and establish periodic confirmation mechanism and connect with cryptographic device, when communication connection is interrupted, the decryption key held by client is automatically invalid, the 3D model loaded is switched to grey frozen state, according to dynamic security state data, corresponding component is added on the surface of corresponding component model on corresponding component, according to user authority level, the component range required to be loaded is decrypted, according to current security state result, automatically trigger decryption loading of corresponding sensitive component, component model after adding visual special effect is rendered in 3D engine and is exhibited, form the complete 3D visual security posture view of cryptographic device.
Owner:BEIJING CATHAY INTERNET INFORMATION TECH CO LTD +1

Graphics processor, computer system, resource allocation method and related apparatus

Embodiments of the present application provide a graphics processor, a computer system, a resource allocation method and related devices. The graphics processor comprises: a trusted computing block; and a security management module configured to, when determining that a current processing computing task is a confidential computing task, determine a matching resource usage according to a task requirement of the confidential computing task, at least re-allocate a corresponding allocated trusted virtual shared memory of the trusted computing block to obtain an adjusted trusted virtual shared memory, and determine a corresponding mapped physical shared memory, configure the determined physical shared memory as a security state, so that the physical shared memory in the security state is the adjusted trusted physical shared memory for processing the confidential computing task, and virtual shared memory that is not re-allocated as the trusted virtual shared memory is non-trusted virtual shared memory for processing a non-confidential computing task. The technical solution provided by the embodiments of the present application can improve the flexibility of resource allocation.
Owner:HYGON INFORMATION TECH CO LTD

A security inlay for a security document field of

The present invention relates to a security inlay for a security document, such as an RFID-enabled security document, the security inlay comprising: an inlay substrate; an antenna provided in or on the inlay substrate and configured to communicate with a reader; a chip module integrated into the inlay substrate and coupled to the antenna; and at least one security feature configured to burn in one or more portions, when exposed to microwave radiations, so as to identify a security status of the security inlay, for example a disabled status. The present invention also relates to the security document, such as an RFID-enabled security document, comprising one or more of such security inlays and to the method for authenticating such security document.
Owner:LINXENS HOLDING SAS

Resource access control method, medium and electric device based on an authentication request

The present disclosure provides a resource access control method, an apparatus, a medium, and an electronic device, the method is to acquire historical resource access information and historical security status information of a target object from a business system according to identity information of the target object, and determine access permission information of the target object for the target resource according to the historical resource access information and the historical security status information, and then send the access permission information to the business system, to enable the business system to determine the operation for the resource access request according to the access permission information.
Owner:BEIJING VOLCANO ENGINE TECH CO LTD

An ap platform management system and method

PendingCN122310512ASecure stateTerm memory
This application provides an AP platform management system and method. In this system, after receiving a startup request from an in-vehicle application, the EM module directly triggers the HSM module to verify the application's legitimacy. After successful application verification, the EM module triggers the runtime monitoring module to perform security monitoring on the application's real-time runtime data, enabling timely identification of abnormal behaviors caused by memory injection and malicious code execution. Simultaneously, the policy analysis module performs risk analysis based on a preset security policy library and outputs response strategies. The EM module then executes the corresponding security response operations, thereby establishing a complete application security status management system and a closed loop for security incident handling. This achieves deep collaboration between the EM and hardware security modules, providing stable security support covering the entire application lifecycle for the AP platform and effectively enhancing the AP platform's ability to respond to various cybersecurity threats.
Owner:NEUSOFT REACH AUTOMOBILE TECH (SHENYANG) CO LTD

Abnormality detection time determination method and apparatus, electronic device, and storage medium

The application discloses an abnormality detection time interval determination method and device, electronic equipment and a readable storage medium. The method comprises the following steps: acquiring a first time interval between a failure of a target unit in a vehicle and a target module where the target unit is located entering a safe state; and determining an abnormality detection time interval corresponding to the target unit according to the first time interval and an abnormality response time interval corresponding to the target unit. According to the method, the inaccuracy of the abnormality detection time interval is reduced, the frequency of the situation that the vehicle triggers the safety mechanism incorrectly and does not trigger the safety mechanism in time is reduced, and the accuracy of the vehicle triggering the safety mechanism is improved.
Owner:GUANGZHOU AUTOMOBILE GROUP CO LTD

A power information physical system active defense method and system

This invention discloses a proactive defense method and system for a power cyber-physical system, comprising: acquiring the current state information of each node in the power cyber-physical system; determining a target defense node set based on the current state information of each node under defense resource constraints, and deploying corresponding types of decoys for the nodes in the target defense node set; determining a target diversified node set from real nodes that have not deployed decoys and are in a safe state, and implementing operating system diversity configuration for the nodes in the target diversified node set; updating the security state and vulnerability of each node according to the attack results of the nodes to obtain the system state at the next moment; and repeatedly executing decoy deployment and operating system diversity configuration based on the updated system state to achieve dynamic proactive defense of the power cyber-physical system. This invention improves the attack capture rate, reduces the risk of critical nodes being compromised, and takes into account defense costs under the condition of limited defense resources.
Owner:GUANGZHOU UNIVERSITY

system

We provide the system. [Solution] Information review means for receiving data and reviewing the format and content of said data, A malware detection means for detecting viruses in the data, A supplier evaluation means for evaluating data providers and determining their reliability, A security monitoring means that monitors the security status of the entire system and detects anomalies, A data encryption method that enhances security by hashing transaction data, Approval management means for approving or rejecting data-based transactions, A system that includes this.
Owner:SOFTBANK GROUP CORP

A method, system, device, and medium for high-voltage live display interlocking with contact input.

This invention discloses a high-voltage live display interlocking method, system, device, and medium with contact input, relating to the field of safety monitoring and control technology for high-voltage equipment in power systems. It includes acquiring the live information of the high-voltage equipment under test through non-contact sensing and outputting a sensing signal; extracting signal features from the sensing signal to obtain criterion information characterizing whether the high-voltage equipment is live and generating a live status signal; receiving the live status signal, contact input signals from external devices, and the status signal of the anti-misoperation key; performing comprehensive logical judgment to generate control commands; executing status operations according to the control commands; and displaying and recording the live status, the control command execution result, and the device's own status; and driving the transition between safe states based on the results. This invention achieves a comprehensive improvement in high-voltage equipment anti-misoperation protection, moving from single-judgment to systematic, intelligent, and reliable protection.
Owner:GUIZHOU POWER GRID CO LTD

A method for generating safety constraint trajectories for autonomous vehicles

PendingCN122090646ADealing with Uncertainty EffectivelyImprove robustnessRoad vehicles traffic controlControl engineeringSecure state
This invention discloses a method for generating a safety constraint trajectory for an autonomous vehicle, belonging to the field of autonomous driving technology. The method includes the following steps: S1, acquiring environmental state information, sensor observation information, and the vehicle's current state information; S2, constructing a safety constraint topology based on the risk uncertainty state vector, wherein the safety constraint topology includes a set of safe state nodes and a set of safe reachable state transition edges; S3, dynamically evolving the safety constraint topology based on the risk uncertainty state vector to update the set of safe state nodes and the set of safe reachable state transition edges; S4, generating the trajectory of the autonomous vehicle within the dynamically evolved safety constraint topology. This invention can effectively address uncertainties in the traffic environment, such as changes in the behavior of surrounding traffic participants and changes in the reliability of sensor information, thereby improving the robustness of the system.
Owner:KUNMING UNIV OF SCI & TECH

A safety state monitoring method and system for urban slow traffic

ActiveCN122116645BDigital dataSimulation
The application discloses a kind of safety state monitoring method and system of urban slow traffic, it is related to traffic space-time data processing technical field, including to the electronic data of urban slow traffic, constructs slow scene topology graph and generates time-varying visibility matrix.Slowness scene topology graph and time-varying visibility matrix are used to establish double memory state and generate candidate continuous trajectory.Based on candidate continuous trajectory, identity correlation score is calculated, identity corresponding relationship is determined, and subject level safety state value is output.The application constructs continuous data processing chain of synchronous modeling, double memory maintenance, associated output around urban slow traffic electronic data, realizes the unified organization and unified update of topological constraint, visibility constraint, negative evidence constraint and state value calculation.Compared with the distributed processing mode, the application can convert multi-source space-time objects into indexable, associated, accumulative digital data objects.
Owner:SHANDONG EXPRESSWAY PLANNING & DESIGN CO LTD

Trust-driven blockchain consensus method for internet of vehicles

PendingCN122293318ADistributed key generationSecure communication
This invention belongs to the field of vehicle-to-everything (V2X) secure communication and blockchain consensus technology, specifically disclosing a trust-driven V2X blockchain consensus method. This method achieves decentralized management of the master key through a distributed key generation protocol, eliminating the traditional Root-TA single-point trust problem. Combining a dynamic trust evaluation mechanism based on Beta distribution with incentive contract design based on a delegate-agent game model, it constructs a trust-driven dynamic PoW consensus mechanism, achieving two-layer dynamic control of global security state and individual reputation level. This invention significantly improves the decentralization, consensus fairness, and operational efficiency of V2X systems while ensuring security and privacy.
Owner:ANHUI UNIV

File access control method and electronic equipment

The invention provides a file access control method and electronic equipment. In the method, in response to a first operation of a user on an opened first file, a first electronic device detects a device use permission risk, and first security state information of the first electronic device is determined; the device use permission risk comprises at least one of a device unauthorized risk, a connection state risk, a network environment risk or a geographic position risk. When the equipment use permission risk, indicated by the first safety state information, of the first electronic equipment is improved, the file access permission of the first file is adjusted to be limited file access permission, and the limited file access permission is limited compared with the file access permission of the first file before the user executes the first operation. Through the scheme, when the file is opened, if the equipment use risk of the electronic equipment is improved, the file access permission of the file can be adjusted in time, and then the file security is ensured.
Owner:HUAWEI TECH CO LTD

Method and systems for network security analysis and management using graph distance

A system for network analysis is provided. The system includes a computer device in communication with a computer network. The computer device programmed to: a) analyze a plurality of devices and a plurality of connections between the plurality of devices on the computer network; b) determine values for each of the plurality of connections between the plurality of devices, wherein the plurality of values are determined based on a security posture of two devices of the plurality of devices on ends of the corresponding connection; c) determine a plurality of paths between a first device of the plurality of devices and a second device of the plurality of devices; d) calculate a security value for each of the plurality of paths; and e) determine at least one secure path of the plurality of paths based on a comparison of the plurality of security values for the plurality of paths.
Owner:CABLE TELEVISION LAB INC

Machine learning based intelligent evaluation system for reservoir dam safety

The present application relates to the technical field of intelligent evaluation of water conservancy dam, in particular to a reservoir dam safety intelligent evaluation system based on machine learning, comprising a data acquisition module, a preprocessing module, a multi-source feature analysis module, a state fusion evolution module and a dynamic evaluation output module. The data acquisition module acquires multiple types of monitoring time series data, the preprocessing module aligns multiple dimensions of data, and generates a unified time scale record sequence containing three types of exclusive sequences; the multi-source feature analysis module extracts structural behavior deep features, comprehensive load state spectrum and abnormal event feature coding respectively; the state fusion evolution module generates a safety comprehensive state atlas through feature fusion network interaction evolution; and the dynamic evaluation output module constructs an evaluation network based on the atlas to complete dynamic scoring and form a graded safety state list. The present application realizes accurate characterization and dynamic evaluation of dam safety state through multi-dimensional data regularization and multi-feature interaction fusion.
Owner:YELLOW RIVER CONSERVANCY TECHN INST +1

Classroom camera device privacy filtering and event output methods

PendingCN122310584ASecure stateCode table
This invention discloses a method for privacy filtering and event output on the side of a classroom camera device. The method establishes isolated observation and outgoing domains within the device. Original image frames, original audio, and intermediate observed objects reside only in the observation domain, while the business outgoing interface connects only to the outgoing domain. Before any outgoing object enters the outgoing domain, it must undergo verification by a unified outgoing interception layer calling a compiled outgoing template to execute field identifier tables, type code tables, prohibited outgoing field tables, and reconstructed reference blocking tables. Only when the object completes event encapsulation and does not contain prohibited outgoing fields or reconstructable references is its state changed from pending verification to outgoing domain and written into the outgoing domain. When unauthorized output, sensitive object outgoing domain, template verification failure, or interception anomalies are detected, the device switches to a locked fail-safe state, retaining only health status reporting.
Owner:HANGZHOU GAOSHEN INTELLIGENT EQUIPMENT CO LTD

Power transmission line icing monitoring method and device, electronic equipment and storage medium

ActiveCN122067366BSatellite dataSecure state
The application relates to a power transmission line icing monitoring method and device, electronic equipment and a storage medium, and relates to the technical field of power transmission line safety early warning, which comprises the following steps: acquiring reference satellite data of a target power transmission line in an unicing state, and acquiring real-time satellite data of the target power transmission line in an icing state; comparing and analyzing the real-time satellite data and the reference satellite data, and obtaining icing parameters of the target power transmission line through inversion; performing mechanical simulation processing on the target power transmission line according to the icing parameters, and obtaining mechanical safety evaluation parameters of the target power transmission line in the current icing state; evaluating the safety state of the target power transmission line according to the mechanical safety evaluation parameters and / or the icing parameters, and generating corresponding early warning information according to the safety state of the target power transmission line. Through the application, a large amount of manpower and time is not consumed, and effective real-time monitoring can be implemented in complex terrain and rarely-visited areas.
Owner:EAST CHINA BRANCH OF STATE GRID CORP +1

Method and apparatus for operating a control unit for safety-critical applications in a motor vehicle

PendingCN122374211AControl cellSecure state
The present invention relates to a computer-implemented method for operating a vehicle system (1), the method comprising the following steps: - when a security objective (S1) is violated, a security mechanism (S2) is invoked; - when a fault (S4) is detected during the execution of the security mechanism, a backup security mechanism assigned to the security objective is invoked; - when a fault is detected in the backup security mechanism, the vehicle system is brought into a safe state; - according to an activation restriction description associated with the violated security objective, the invocation of the backup security mechanism is prevented (S12).
Owner:ROBERT BOSCH GMBH

Blockchain-based OTA update method and system

PendingCN122331921APathPingSoftware engineering
This invention discloses an OTA update method and system based on blockchain. The system includes a cloud server, an in-vehicle T-Box, and a key ECU, forming a three-level collaborative architecture: the cloud server includes a software compilation and analysis module, a hierarchical Merkel tree construction module, a digital signature service module, and an update package assembly module; the in-vehicle T-Box includes a secure communication module, a signature verification module, a path calculation module, and an instruction flow scheduling module; the key ECU includes a secure environment initialization module, an instruction parser module, a lightweight verification module, a secure state machine module, and an exception handling module. This invention, through its three-level collaborative architecture design (cloud, T-Box, ECU), combined with targeted protection of key code segments, a hierarchical verification mechanism, and a lightweight execution scheme, achieves multi-dimensional technological breakthroughs compared to existing technologies.
Owner:LISHEN (QINGDAO) NEW ENERGY CO LTD