Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

895 results about "Secure transmission" patented technology

In computer science, secure transmission refers to the transfer of data such as confidential or proprietary information over a secure channel. Many secure transmission methods require a type of encryption. The most common email encryption is called PKI. In order to open the encrypted file an exchange of keys is done.

AI dynamic secure transmission system based on SASE framework

The invention relates to the technical field of integration of artificial intelligence security and network security, and discloses an AI dynamic security transmission system based on an SASE framework, which realizes security access control based on AI dynamic identity verification through an SASE integration access module, acquires and predicts network performance change in real time by using a network state sensing module, and transmits the network performance change to a network server. Equipment, environment and data content are subjected to multi-dimensional analysis by means of a security risk assessment module, a quantitative risk score is generated, and a transmission protocol, parameters and encryption strength are dynamically adjusted according to a network state and the risk score by means of a dynamic transmission optimization module and a self-adaptive encryption module; the problem that safety protection and transmission efficiency are difficult to cooperate in a traditional architecture is effectively solved, low-delay and high-reliability data transmission service can be provided for AI application in a complex network environment, meanwhile, self-adaptive dynamic protection of the whole data transmission process is achieved, and data safety is comprehensively guaranteed.
Owner:BEIJING XINDA WANGAN INFORMATION TECH CO LTD

Information integration management method and system supporting real-time updating

The invention belongs to the technical field of computers, and particularly relates to an information integration management method and system supporting real-time updating, and the method comprises the steps: accessing a heterogeneous data source through a distributed gateway, carrying out the adaptive analysis of a protocol, and standardizing a structure; adding a millisecond timestamp and a unique identifier, and generating a semantic data cluster through streaming engine sliding window association analysis; after multi-dimensional consistency verification is executed, writing and storing are carried out by adopting a double-buffering and snapshot isolation mechanism; and dynamically assembling the customized view according to the user role and the context and safely returning the customized view. The system correspondingly comprises a protocol analysis module, a time sequence marking module, a streaming association module, a semantic verification module, a double-buffer control module, an index updating module, a view assembling module and a secure transmission module. According to the invention, millisecond-level real-time convergence, conflict-free fusion and on-demand view output are realized, and the data access flexibility, the quality guarantee capability and the service adaptation flexibility are comprehensively improved.
Owner:HARBIN HONGCHENG NETWORK TECHNOLOGY CO LTD

Computer network data secure transmission system and method

The invention discloses a computer network data secure transmission system and method, and particularly relates to the technical field of network data secure transmission, and the system comprises a dynamic key management module which generates a key seed through a quantum random number generator, generates a dynamic key bound with a data packet in combination with a timestamp, and transmits the dynamic key to a server; after being encrypted by a receiving end public key, the data are transmitted through an independent verification channel; the dual-path transmission control module is used for establishing dual channels of a main path and a shadow path, a data packet of the main path is embedded into a random camouflage protocol header to simulate a non-sensitive protocol, and a blank data packet is filled in the shadow path to maintain traffic characteristics; according to the real-time verification engine, a receiving end constructs an encrypted hash tree to achieve fragment-level integrity verification, and meanwhile, requests key state three-state verification from the key management module. Through key dynamic generation and separation transmission, dual-path adaptive fragmentation distribution, fragmentation hash tree reconstruction and key linkage verification, and abnormal triggering fragmentation level retransmission, the problems of long-term effectiveness of a static key, predictable transmission path and verification lag are solved.
Owner:陈俊奕

Encryption-based power grid cross-domain operation and maintenance data secure transmission method and system

The invention relates to the technical field of data encryption and transmission, in particular to a power grid cross-domain operation and maintenance data secure transmission method and system based on encryption, and the method comprises the steps: pre-judging a current risk through a historical network security event, dividing a network environment into different risk intervals based on a risk level evaluation value, encryption strategies with different intensities are correspondingly matched, so that refined security management and control with higher risk and stronger protection are realized; a triple progressive identity authentication system of an equipment layer, a dynamic layer and a biological layer is constructed, a dynamic permission management and control mechanism driven by identity attributes and risk levels is constructed, a basic permission boundary is determined based on inherent identity attributes of an operation and maintenance terminal, and permission strength and validity period are dynamically adjusted in combination with a risk level evaluation value. And finally, generating an access control strategy only adapted to the current terminal, the current risk and the current access request, so as to perform data encryption and transmission through the target encryption strategy and the access control strategy, thereby ensuring the security of data transmission.
Owner:STATE GRID SIJI DIGITAL TECH (BEIJING) CO LTD +1

Image data secure transmission method, computing device and computer storage medium

The invention provides an image data secure transmission method, computing equipment and a computer storage medium. The method is applied to a data sender, and comprises the following steps: executing a first image encryption algorithm, and performing encryption processing on a transmission image through an image key to obtain a ciphertext of the transmission image; executing a first key encryption algorithm, and performing encryption processing on the image key through an encryption key to obtain an encrypted image key; the first image encryption algorithm is different from the first key encryption algorithm; and forming a transmission data packet from the ciphertext, the encryption key and the encrypted image key, and transmitting the transmission data packet to a data receiver. Therefore, a proper image encryption algorithm is adopted for the image data, and a proper key encryption algorithm is adopted for the image key, so that real-time performance and security are both considered in the image data encryption process through a mixed encryption mode.
Owner:HANGZHOU KANGBEI MOTOR

Road roller construction quality real-time monitoring system based on digital twinning

The invention discloses a road roller construction quality real-time monitoring system based on digital twinning, and relates to the technical field of road roller construction intelligent monitoring, and the road roller construction quality real-time monitoring system comprises a data acquisition module which uses a multi-modal fusion sensor network and edge calculation to comprehensively acquire and preprocess data; the digital twinborn model building module is used for modeling by combining physical-data dual drive with geological characteristics; the data transmission module is used for ensuring efficient and safe transmission by using a software defined network and a block chain; the real-time monitoring and analysis module is used for carrying out multi-scale space-time correlation analysis and generating virtual data; and the decision support module fuses deep reinforcement learning and a knowledge graph, supports man-machine cooperation decision, and provides intelligent suggestions for construction. According to the invention, the advantages are obvious, multi-modal acquisition and edge calculation ensure accurate and real-time data, a dual-drive model truly simulates construction, an advanced transmission technology ensures data safety, multi-scale analysis comprehensively evaluates quality, full-process coverage improves construction quality and management intelligence, and cost reduction and efficiency improvement are realized.
Owner:WEIFANG LEITENG POWER MASCH CO LTD +1

Safety transmission system based on multimedia short message

The invention discloses a secure transmission system based on a multimedia short message, and relates to the technical field of communication and network security, and the system comprises a protocol stack security reinforcement module which carries out the hierarchical reconstruction of an MMS protocol stack, comprises a preprocessing layer, is used for intercepting and filtering illegal characters, and verifies the legality of a message structure through a finite-state machine; the analysis layer is used for pre-judging memory requirements based on message types and lengths by adopting a dynamic memory allocation strategy; the execution layer is integrated with a null pointer checking mechanism, and the validity of a pointer is forcibly verified before a protocol stack calls a function; the encryption and signature module is used for carrying out end-to-end encryption on a message body and metadata by adopting a hybrid encryption algorithm and carrying out message integrity verification through a lightweight hash tree; and the vulnerability real-time monitoring module is embedded into an abnormal behavior detection model based on machine learning and is used for dynamically identifying memory occupation abnormity and illegal instruction calling high-risk operation when the protocol stack runs.
Owner:BEIJING XUNYIN TECH CO LTD

Safety management method for financial data synchronization

The invention relates to the technical field of data management, in particular to a safety management method for financial data synchronization, which comprises the following steps: acquiring an original financial data stream, and performing data fragmentation processing on the original financial data stream to obtain fragmented data packets and data fingerprints; performing storage node mapping on the redundant coded data packet according to the storage network to obtain a storage node address chain; and performing abnormal access behavior identification on the storage node address chain according to the security threshold model to obtain a security policy instruction, and deploying the financial scheduling model to a cloud edge collaboration platform to realize security management of financial data synchronization. According to the method, data fragmentation processing, encryption and identity binding are performed on the original financial data, so that the confidentiality of the data can be effectively protected, the data is prevented from being accessed or tampered by an unauthorized third party in a transmission process, and the encrypted data packet ensures secure transmission of the data.
Owner:SHANDONG VOCATIONAL COLLEGE OF ECONOMICS & TRADE +1

Symmetric encryption key secure transmission method and system

The invention relates to the field of information security, and provides a symmetric encryption key secure transmission method and system. The method comprises the following steps: acquiring a unique fingerprint of equipment and a system parameter, and deriving the unique fingerprint of the equipment and the system parameter through a Hash algorithm to generate a seed key; deriving an initial symmetric key through a Hash algorithm based on the seed key, and performing recursive calculation in combination with key update parameters to obtain a session key; generating a plurality of random components, equally dividing the session key, and then carrying out XOR operation on the session key and each random component to obtain a key fragment set; and carrying out encryption verification on the session key and the plurality of key fragments in the key fragment set, generating verification values corresponding to the plurality of key fragments, and respectively transmitting the plurality of key fragments and the corresponding verification values through a plurality of different transmission paths. According to the invention, dynamic derivation and secure fragmentation transmission of the symmetric key without hardware protection and asymmetric encryption are realized, and the system security is improved.
Owner:E-SURFING DIGITAL LIFE TECH CO LTD

Secure data transmission method for wireless communication system

The invention discloses a secure data transmission method for a wireless communication system, which relates to the technical field of secure data transmission and comprises three steps of key generation and synchronization, physical layer subcarrier encryption and key enhancement and authentication. The method comprises the following steps: firstly, extracting multi-dimensional features through channel detection to generate a dynamic initial key, and setting a trigger condition to realize key synchronization; then, a permutation matrix is generated by using a secret key to perform scrambling encryption on a data subcarrier position, and a receiving end performs descrambling and then performs feedback through CRC verification so as to guarantee data integrity; and finally, quantum noise is introduced to enhance the randomness of the secret key, and zero-knowledge authentication is adopted to verify the identity, so that the security and the anti-attack capability of wireless communication data transmission are effectively improved.
Owner:SHENZHEN XIAOPAN TECHNOLOGY CO LTD

Data sharing method, device and system

The present application relates to the technical field of computers, and provides a data sharing method, a device, and a system. Shared data and a data protocol set by a data owner are bound for encryption protection, ciphertext structured data and retrieval metadata are integrally digitally signed, an encapsulation signature and a signature public key certificate are bound on the ciphertext structured data and the retrieval metadata, so that the data authenticity can be verified during circulation and sharing of encapsulated data, and confidentiality and integrity protection of the shared data and the data protocol during circulation and sharing are realized. In addition, the encapsulated data is generated by a trusted device trusted by the data owner, a shared agent is trusted by a plurality of participants participating in data sharing, and data is transmitted between the trusted device and the shared agent through a secure transmission channel, so that the security, confidentiality and integrity protection of the shared data and the data protocol during exporting are realized.
Owner:HUAWEI TECH CO LTD

Big data security management system

The invention relates to a big data security management system, and provides a security management system covering a whole life cycle aiming at the problems of untrusted source end, link leakage, centralized storage of single points, extensive authorization, disposal lag and the like. The system comprises an acquisition security module, a transmission encryption module, a storage security module, an access control module, a threat detection module, a situation awareness module, a traceability module and an emergency response module. A session basis is generated through multi-factor authentication, a dynamic key is derived according to time slices, and data fragments are encrypted one by one; distributed storage is adopted, and metadata is chained to be non-tampered; implementing fine-grained authorization by taking the attribute as a core; utilizing a sequence model linkage knowledge graph to identify abnormity and calculate a risk index; and when the threshold is exceeded, automatically reconstructing a log chain and executing isolation, alarm or recording. According to the system, trusted acquisition, confidential transmission, traceable storage, fine authorization and automatic disposal are realized, and the safety and compliance are remarkably improved.
Owner:QINGYI DIGITAL TECH (BEIJING) CO LTD

Multi-band multi-channel unmanned aerial vehicle RID signal analysis system

The invention relates to the technical field of unmanned aerial vehicle supervision, and discloses a multi-band multi-channel unmanned aerial vehicle RID signal analysis system. According to the system, RID signals of 2.4 GHz, 5.2 GHz and 5.8 GHz frequency bands are collected in parallel through a multi-frequency-band antenna group and a multi-channel radio frequency receiving module, and real-time analysis and algorithm scheduling of the RID signals are achieved through an FPGA + ARM heterogeneous processing unit. Four modules of multi-sensor space-time alignment and cross validation, lightweight national secret encryption and data integrity verification, self-adaptive scheduling based on reinforcement learning and unmanned aerial vehicle behavior digital twinning and intrusion early warning are integrated in algorithm, and a closed-loop processing flow from RID signal receiving, data calibration and secure transmission to intelligent research and judgment is formed. The method effectively solves the problems of incomplete RID signal coverage, low data reliability, weak safety protection, insufficient early warning capability and the like in the prior art, has the advantages of high analysis precision, good safety, high resource utilization rate, accurate early warning and the like, and is suitable for low-altitude supervision scenes such as urban security and protection, border management and control and the like.
Owner:CHENGDU KONGYU TECH CO LTD

Internal and external network audio and video secure transmission method and system based on cloud platform

The invention relates to the technical field of audio and video transmission, in particular to an internal and external network audio and video secure transmission method and system based on a cloud platform. By combining the load balancing technology with the real-time load state and the audio and video stream characteristics of the cloud platform, the encrypted traffic can be dynamically distributed to a plurality of back-end servers, and the calculation overhead in the encryption process can be effectively reduced through selection of the lightweight asymmetric encryption algorithm and the optimized key exchange process; in a handshake stage, by optimizing a key negotiation process and adjusting a key exchange process according to segmentation characteristics, the execution efficiency of a protocol is further improved, and by dynamically adjusting the execution opportunity of encryption operation, it is ensured that the encryption operation is executed at a proper opportunity, and the encryption efficiency is improved. By monitoring and adjusting the load distribution strategy and the encryption parameters in real time, the system operation mode can be dynamically adjusted according to the distortion degree and the transmission state of the audio and video streams, and the distortion degree of the audio and video streams is effectively reduced.
Owner:HANGZHOU XUNCHUAN TECHNOLOGY CO LTD

Building construction safety monitoring system and monitoring method thereof

The invention discloses a building construction safety monitoring system and a monitoring method thereof. The building construction safety monitoring system comprises a sensing layer, a transmission layer, a data processing layer and an application layer. The sensing layer is composed of multi-dimensional sensor clusters of environment, structure, personnel and the like and can comprehensively collect various data of a construction site; the transmission layer adopts a wireless and wired combined mode, and ensures stable and safe transmission of data through encryption and redundancy transmission technologies; the data processing layer is deployed on a cloud platform, and performs data preprocessing, model training and risk decision making by using multiple algorithms; the application layer provides a monitoring center client and a mobile terminal APP for a user, and realizes data display, early warning and management functions. The system is high in intelligent degree, achieves the omnibearing, real-time and precise monitoring of the building construction process, improves the accuracy of safety risk assessment and the timeliness of early warning, provides a powerful guarantee for the safety of building construction, and has a higher practical value and a higher popularization prospect.
Owner:QINGDAO WANGCHANG CONSTRUCTION ENGINEERING CO LTD

Method and System for Sharing Online Accounts Without Security Credentials

This invention relates to a system and method for securely sharing online accounts without disclosing login credentials. The innovation introduces a comprehensive framework that includes a capture module for collecting session data, a duplication module for creating a duplicate account, a configuration module for customizing access settings, a communication module for securely transmitting access details, and an access control module to manage interactions with the target account. The system leverages web browser extensions for data capture, employs unique identifiers for account linkage, and utilizes a desktop application for centralized management. It facilitates secure account sharing by enabling the configuration of permissions, monitoring user activities within the duplicate account, and presenting these activities via a dedicated dashboard, all without compromising the original account's credentials. This approach ensures that authorized users can access shared online accounts securely, with defined restrictions on their actions, thereby enhancing privacy and security in digital interactions.
Owner:ALHOMSI YOUSSEF GHASSAN

Block chain consensus transmission method for shield construction data security

The invention discloses a block chain consensus transmission method for shield construction data security, and belongs to the technical field of tunnel engineering data security and block chains. According to the method, the shield construction data is classified and identified by defining identification dimensions including a data source, a data type, a tunneling ring number and a storage mode, a dimension identification tag is generated, and safe transmission of the data is realized by adopting a double-layer consensus mechanism. After shield tunneling machine construction data are collected, a structured data stream is obtained through edge computing node cleaning and feature extraction, an identification tag is determined according to identification dimensions, then hierarchical encryption is executed, and meanwhile, an improved SBNCM double-layer consensus mechanism is applied, and a network is dynamically scheduled through an SDN controller to guarantee transmission. The method can perform classified management according to the characteristics of the shield construction data, improves the data safety and transmission efficiency, and is suitable for a safe transmission scene of the shield construction data in tunnel engineering.
Owner:CHINA RAILWAY 14TH BUREAU GRP LARGE SHIELD ENG CO LTD +1

Campus security risk prevention and control cloud service platform

The invention provides a campus security risk prevention and control cloud service platform, and relates to the technical field of cloud platforms, and the platform comprises a data processing and transmission module which is used for carrying out data storage, processing and secure transmission based on a cloud platform architecture, and supporting the automatic reconnection and concurrency control of data transmission; the safety guarantee module is connected with the data processing and transmission module and is used for carrying out digital management on civil defense, object defense and technical guarantee information of the campus; the safety risk prevention and control module is connected with the data processing and transmission module and the safety guarantee module and is used for carrying out informatization processing and linkage on campus safety management, safety education and safety emergency processes; and the joint defense and joint control module is connected with the safety risk prevention and control module and is used for realizing data linkage and emergency response command between the multi-level education management department and the school based on a processing result of the safety risk prevention and control module. By constructing the campus safety risk prevention and control cloud service platform, the intelligence and collaboration level of campus safety management is remarkably improved.
Owner:YANCHENG TEACHERS UNIV

Taxi Internet of Vehicles data secure transmission method

The invention discloses a taxi Internet of Vehicles data secure transmission method, and relates to the technical field of Internet of Vehicles data transmission, and the method comprises the following components: a digital twin model construction step, a virtual environment data pre-transmission step, a transmission path security verification step, and a real data transmission and comparison detection step. According to the method, the digital twin model of the taxi is constructed, data pre-transmission verification is carried out in the virtual environment, problems possibly occurring in the data transmission process can be found and corrected in advance, meanwhile, a network node risk assessment algorithm based on fuzzy comprehensive evaluation is adopted to carry out safety verification on a data transmission path, and the safety of the data transmission path is improved. The security of a data transmission path is ensured, the security and the reliability of taxi Internet of Vehicles data transmission are remarkably improved through the measures, and the data are effectively prevented from being tampered or leaked in the transmission process.
Owner:BEIJING WUKONG TRAVEL TECH CO LTD

Cloud-side collaborative household arrhythmia early warning AI intelligent agent

The invention discloses a cloud-side collaborative household arrhythmia early warning AI agent, and relates to the technical field of AI agents. The system specifically comprises a data acquisition module, an edge computing module, a cloud computing module, an application module and a safety guarantee module, the data acquisition module acquires electrocardio and related physiological signals in real time through wearable equipment, and the edge computing module performs preprocessing and preliminary anomaly detection on data, quickly responds and screens key data and uploads the key data to a cloud; the cloud computing module carries out deep analysis and personalized model training; the application module converts a cloud result into real-time early warning and health suggestions and pushes the real-time early warning and health suggestions to the user and medical personnel; the security guarantee module runs through the whole process, and ensures the privacy and security of data in acquisition, transmission, storage and application. According to the invention, data processing is scientific and efficient, data can be comprehensively collected and preprocessed, meanwhile, real-time preliminary screening and secure transmission are realized, and the transmission pressure and privacy risk are reduced.
Owner:GENERAL HOSPITAL OF SOUTHERN THEATRE COMMAND OF PLA

API invoker authentication method and apparatus, communication device, and storage medium

A method for authenticating an application program interface (API) invoker enhances secure communication between API invokers and a Common Application Program Interface Framework (CAPIF). The method involves sending authentication information from the API invoker to the CAPIF function, which authenticates the invoker's identity. The process includes obtaining enrollment information to establish a secure transport layer security (TLS) connection with the CAPIF function. Advanced authentication mechanisms leverage an authentication and key management for applications (AKMA) anchor key, enabling secure derivation and verification of application function keys (KAF). Additionally, the CAPIF function uses received authentication data to retrieve API invoker configuration information, onboard signing keys, and certificates. These elements facilitate secure API access and interaction while ensuring compliance with authentication protocols.
Owner:BEIJING XIAOMI MOBILE SOFTWARE CO LTD

Micro-patch dynamic protection method, system and device for security partition of power monitoring system and medium

The invention discloses a micro-patch dynamic protection method, system, device and medium for a security partition of a power monitoring system, and belongs to the technical field of dynamic protection, and the method comprises the steps: achieving the secure transmission of a micro-patch through TPM offline signature and segmented verification, and completing atomization instruction replacement in TEE to achieve uninterrupted deployment; implementing multi-dimensional operation attitude measurement and dynamic threshold analysis by utilizing a hardware one-way channel synchronization strategy beacon and combining a hardware trust root; and meanwhile, a double-chain auditing system is deployed to realize automatic compliance evaluation. The method has the beneficial effects that patch integrity verification, credible loading, measurement during operation and closed-loop evidence obtaining are deeply embedded into a real-time link of the power monitoring system; the method has the following core beneficial effects that the vulnerability opening time is shortened, the contradiction between compliance and real-time performance is broken, the cross-regional defense cooperation efficiency is improved, the integrity protection during operation is enhanced, a legal-level credible auditing chain is constructed, meanwhile, heterogeneous equipment is compatible, and the hard real-time stability is kept.
Owner:GUIZHOU POWER GRID CO LTD

Intelligent printing task allocation and scheduling optimization method based on cloud collaboration

The invention relates to the technical field of cloud computing and intelligent office, in particular to an intelligent printing task allocation and scheduling optimization method based on cloud collaboration, which comprises the following steps of: constructing a multi-dimensional task feature set fusing task attributes, equipment states and network environments; generating an optimal task-equipment mapping relation by introducing a matching degree function and an improved genetic algorithm; when the equipment load fluctuates, a scheduling instruction is dynamically generated based on the equipment topological graph; performing attribute encryption and homomorphic encryption processing on the scheduling instruction to form a secure transmission unit; and through a cloud and edge collaborative verification mechanism, task execution security and consistency are ensured. The method has the advantages of high-adaptability scheduling, load-aware dynamic correction, privacy enhancement execution control and the like, and the text and print resource utilization efficiency and the system intelligence level are improved.
Owner:SHENZHEN LINGXIONG RENT SERVICE CO LTD

Gas meter information secure transmission method based on response function compensation

The invention relates to the technical field of data transmission, and discloses a gas meter information secure transmission method based on response function compensation, which comprises the following steps: collecting multi-source data and network signal quality information of a gas meter; according to a real-time network environment and physical conditions, data transmission parameters are dynamically adjusted through a response function compensation algorithm, when data transmission in a static time slot fails, a dynamic retransmission time slot is automatically allocated for retransmission, a retransmission frequency threshold value is set, and packet loss caused by channel errors or collision is compensated through a retransmission response function; a multi-layer encryption mechanism is adopted to encrypt transmission data, an optimal transmission channel is intelligently selected according to network conditions, adaptive hybrid communication is performed through star flash short-distance communication or Wi-Fi wide-area transmission, and a response compensation mechanism of multi-dimensional environmental parameters is established based on a signal transmission model; transmitting the encrypted data to a monitoring management platform through a secure channel; therefore, safety early warning decision is realized, and dynamic accurate transmission and active safety protection are realized.
Owner:HUNAN YINTONG TECH CO LTD

Secure transmission method and system for ultra-high-definition video

The invention belongs to the technical field of video secure transmission, and particularly relates to an ultra-high-definition video secure transmission method and system, and the method comprises the steps: carrying out the dynamic partitioning of a video frame based on a CNN, and marking a security level; the key region adopts a quantum key to distribute a dynamic key to carry out AES-256 encryption, and the non-key region implements chaotic stream encryption; distributing a low-delay dedicated channel for the key data through an SDN reinforcement learning model; the receiving end performs layered decryption on the recombined video after verifying the validity of the quantum key; the system correspondingly comprises an intelligent blocking module, a quantum encryption gateway, a self-adaptive transmission controller and a credible decryption terminal, the 8K video encryption delay is smaller than or equal to 9.8 ms, the key data packet loss rate is smaller than or equal to 0.3%, and quantum computing attack is resisted.
Owner:平阳县融媒体中心(平阳县广播电视台)

Methods and related devices for secure transmission of messages

This application provides a method for secure message transmission, a method for negotiating IPsec SAs, and related apparatus, applicable to wide area networks (WANs). In scenarios spanning multiple tunnel segments, by extending BGP routing and based on VRF granularity, an IPsec SA for end-to-end security protection is negotiated between a first edge and a second edge. After the first edge securely protects VPN service messages based on the IPsec SA, it sends the messages through the overlay end-to-end tunnel between the first and second edges. The second edge processes the messages based on the IPsec SA to obtain the VPN service messages. In this application, security protection only needs to be performed once at the first edge; intermediate nodes do not require encryption / decryption processing, thus ensuring secure message transmission while improving transmission efficiency and reducing transmission latency.
Owner:HUAWEI TECH CO LTD

Block chain evidence storage and secure transmission system for video data in Internet of Vehicles environment

The invention discloses a block chain evidence storage and secure transmission system for video data in an Internet of Vehicles environment, and particularly relates to the field of data security, comprising a data acquisition module, a data processing module, a data analysis module, a block chain evidence storage module and an application port, the data acquisition module acquires multi-source data through a vehicle-mounted high-definition camera, a sensor and a road side unit, the data processing module encrypts a video by adopting an SM4 algorithm, transmits a secret key and extracts the characteristics of a license plate, a track and the like in combination with an SM2 algorithm, and the data analysis module constructs a dynamic model based on a Markov decision process, detects abnormity through a sliding window and a fusion model, and sends the abnormity to the vehicle-mounted high-definition camera. The block chain evidence storage module builds a 7-node alliance chain, adopts a dual hash mechanism to store evidence, and provides data query and verification services for traffic management, insurance claim settlement and vehicle manufacturers through an application port. According to the system, the security, integrity and traceability of the video data are guaranteed, the cross-domain sharing efficiency is improved, and the multi-field application requirements are met.
Owner:NANTONG ZHIYONG ELECTRONICS CO

Communication terminal information acquisition method and system

The invention relates to the technical field of communication security, and particularly discloses a communication terminal information acquisition method and system. The method comprises the following steps: acquiring an original data stream of a communication terminal, and generating a task queue through data source marking, dynamic load balancing and protocol packaging; performing desensitization, metadata annotation and lightweight encryption on the task data to form an encrypted data block; secure transmission is realized through transmission channel selection and quality monitoring; decrypting the received data to generate a time sequence database record; generating a rule update package based on invalid data detection and machine learning analysis; and finally, outputting a standardized data set through filtering and verification. According to the invention, efficient acquisition, secure transmission and intelligent processing of mass communication data are realized, and the real-time performance and accuracy of data processing and the load balancing capability of the system are effectively improved.
Owner:GLADIOLUS TECH (CHONGQING) CO LTD

Channel secure transmission method for protecting data privacy of edge gateway of Internet of Things

The invention discloses a channel security transmission method for protecting data privacy of an edge gateway of the Internet of Things, and relates to the technical field of security and privacy protection of the Internet of Things, and the method comprises the steps: constructing an edge gateway security architecture, generating a quantum key through a QKD module based on the constructed edge gateway security architecture, and generating sensitivity data through an IPS vNSF; calculating noise based on the sensitivity data, generating disturbance data based on the noise, calculating a shared key, generating an encryption key in combination with the quantum key and the shared key, segmenting the encryption key through Shamir secret sharing, and encrypting and decrypting the key; encrypting the noise by using the decrypted key, generating global noise based on the encrypted noise, and calculating secondary disturbance data based on the global noise; and generating coded data based on the secondary disturbance data, and generating reconstruction data based on the coded data. According to the invention, the comprehensive security authority of the edge gateway in the aspects of key security and privacy protection intensity is improved.
Owner:ZHEJIANG IND POLYTECHNIC COLLEGE +1

Electrical drawing safety collaborative management method, system and equipment based on cloud computing technology and medium

The invention discloses an electrical drawing security collaborative management method, system and device based on a cloud computing technology and a medium. The method comprises the steps that an initial key is generated through a quantum key distribution device, the key is divided into a plurality of sub-blocks, and a dynamic session key is generated; encrypting data blocks divided by the electrical drawing file according to the logic structure through the dynamic session key, and transmitting the encrypted data blocks to a cloud computing platform for storage; generating a temporary key to encrypt the modified content, adding a digital signature and position information, and combining the modified content after the cloud verifies the signature to generate a new electrical drawing; synchronizing the new electrical drawing full-text security operation credential update record to the block chain, and verifying the consistency of the data on the chain and the cloud drawing version; and splitting the dynamic session key into a plurality of fragments and storing the fragments in different cloud nodes. According to the invention, safe transmission, efficient collaborative management and accurate data tracing of the electrical drawings are realized, and the safety, reliability and efficiency of full-life-cycle management of the electrical drawings are remarkably improved.
Owner:GUIZHOU POWER GRID CO LTD