Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

100 results about "Security compliance" patented technology

The Security Compliance Manager (SCM) is a free tool from Microsoft that enables you to quickly configure, and manage the computers in your environment using Group Policy and Microsoft System Center Configuration Manager.

IT asset intelligent management system and implementation method thereof

The invention relates to the technical field of informatization processing, and provides an IT asset intelligent management system and an implementation method thereof, and the system comprises an asset discovery subsystem which outputs a standardized asset list through a feature comparison and deduplication fusion program; the unified modeling subsystem forms an asset topological graph by processing association and dependence between information technology assets; the intelligent analysis and prediction subsystem outputs insight results and prediction indexes about resource capacity prediction, anomaly detection, cost optimization suggestions, risk trends and the like; the life cycle management subsystem drives an automatic operation and maintenance workflow through a strategy engine to realize closed-loop management of the information technology asset state; the security and compliance subsystem generates an alarm, a repair suggestion or executes an automated repair policy. According to the invention, intelligence, automation and safety compliance of information technology asset management are realized, and the efficiency and reliability of information technology operation, maintenance and management are significantly improved.
Owner:SHENZHEN MAGIC NUMBER INTELLIGENT ARTIFICIAL INTELLIGENCE CO LTD

Heterogeneous data processing optimization system based on intelligent edge computing

The invention relates to the technical field of intelligent edge computing, and discloses a heterogeneous data processing optimization system based on intelligent edge computing. Comprising a heterogeneous data acquisition module, an edge preprocessing module, an intelligent optimization scheduling module, a heterogeneous fusion analysis module and a self-adaptive feedback control module. According to the system, data streams of different formats and protocols can be collected from a plurality of heterogeneous data sources in real time, and multi-modal correlation analysis is carried out after preprocessing and intelligent scheduling. Meanwhile, the system performance is optimized through self-adaptive feedback control, and a resource efficiency evaluation module and a safety compliance verification module are further arranged. According to the method, the problems of delay, accuracy, resource allocation, safety compliance and the like in heterogeneous data processing are effectively solved, the data processing efficiency and the system stability are improved, and the method is suitable for heterogeneous data processing scenes in the fields of industry, traffic, medical treatment and the like.
Owner:NANJING UNIV OF SCI & TECH

Decision engine and method based on risk control strategy

The invention discloses a risk control strategy-based decision engine and method, and relates to the technical field of financial risk control, and the decision engine comprises a strategy warehouse module, a mapping service module, an execution engine module, a data management module, a version rollback module, a security scale module, and a monitoring alarm module. According to the invention, function decoupling is realized through collaborative design of the seven modules, and the modules interact through a unified interface, support strategy dynamic loading, gray release, distributed parallel execution, version governance and security compliance capabilities, and ensure high cohesion and low coupling of the system; through unique strategy version management, intelligent mapping and gray release, plug-in parallel execution, multi-version consistency view, block chain audit rollback, security compliance management and control, intelligent monitoring and other technical innovations, a complex, dynamic and high-concurrency risk control business scene is effectively supported; the security, the flexibility, the expandability and the auditing performance of the decision engine are remarkably improved, and the technical advancement and the industry creativity are high.
Owner:XIAN QUANSUTONG FINANCIAL TECH CO LTD

Large model memory management method and device and medium

The invention discloses a large model memory management method and device and a medium, and relates to the technical field of artificial intelligence, and the method comprises the steps: obtaining a new knowledge unit and a partition parameter corresponding to the new knowledge unit; according to the partition parameter, determining a storage partition corresponding to the new knowledge unit in the knowledge base; calculating the similarity between the new knowledge unit and each existing knowledge unit, and taking the existing knowledge unit of which the similarity is greater than a preset similarity threshold as a candidate conflict object; calculating the conflict degree between each candidate conflict object and the new knowledge unit, and processing the new knowledge unit according to the conflict degree to obtain a first processing result; and injecting the first processing result into the corresponding storage partition. According to the management method, catastrophic forgetting can be effectively prevented and controlled, long-term retention and safety compliance of key knowledge are guaranteed, and technical support is provided for application of a large model in a complex and continuous evolution scene.
Owner:BEIJING DIGITAL CHINA CLOUD COMPUTING CO LTD

Accelerated security for real-time detection of suspicious transactions

A device, system and method for accelerated compliance testing for real-time detection of suspicious transactions in a transaction stream. A machine learning model may determine a global trend of cumulative transaction behavior based on all, a majority or a representative subset, of the stream of transactions. For each transaction in the stream, a skip rule engine may sort each security compliance test to be skipped or not skipped based on the test's relevance to the global trend of the cumulative transaction behavior. The not skipped security compliance tests may be executed in real-time for each transaction in the stream to generate real-time partial security assessments therefore comprising real-time suspicious transaction alerts. The remaining tests may be skipped in real-time and executed, at a time delay after transaction times, to generate time delayed supplemental security assessments therefore comprising time delayed suspicious transaction alerts to complete all compliance testing.
Owner:NICE LTD

Power grid production data access method and device based on deep action determination and risk budget for power grid data sharing security compliance

The application relates to a power grid production data access method and device for power grid data sharing security compliance based on deep action determination and risk budget. The method comprises the following steps: in response to an access request for power grid production data sent by a terminal, inputting a context feature vector corresponding to the access request into a pre-constructed deep action determination model to obtain a target access action corresponding to the access request; in the case that the target access action is a preset access action, determining a current privacy budget value corresponding to the target access action; in the case that the current privacy budget value does not exceed a current remaining privacy budget value, performing differential privacy protection processing on the power grid production data according to the current privacy budget value to obtain processed power grid production data, and returning the processed power grid production data to the terminal. By using the method, the security of power grid production data access can be improved.
Owner:GUANGZHOU KETENG INFORMATION TECH

System and method for security screening

Provided is a system and method for security screening, the method including: matching, by at least one of at least one processor, a passenger name of a passenger in a baggage source message (BSM) with a passenger name in a manifest, wherein the BSM comprises travel data of a first mode of travel of a luggage item of the passenger on an air carrier; extracting, by at least one of the at least one processor, an International Air Transport Association (IATA) license plate number from the BSM for the luggage item; accessing, by at least one of the at least one processor, security screening image and related data captured during a first mode of travel security screen of the luggage item using the IATA license plate number; displaying, by at least one of the at least one processor, a graphical user interface (GUI) on a display device to analyze the screening image and related data; and obtaining via a scanning device, by at least one of the at least one processor, a mark representative of the analysis result in response to scanning an IATA license plate barcode affixed to the luggage item, wherein the analysis result is representative of one of: a security compliance of the luggage item to cross a border or to transfer to a second mode of travel, and a non-security compliance of the luggage item.
Owner:MATEER CRAIG

Master data automatic governance method and system based on large model and Dores

The invention provides a main data automatic governance method and system based on a large model and Dores, and belongs to the field of data governance. The method comprises the following steps: constructing an RAG main data management knowledge base stored in Dores, and exploring multi-source heterogeneous data by utilizing federated query and MCP service of the Dores; driving an end-to-end process from main data automatic identification, asset checking, source layer modeling and data access, and main data standard model definition and gold attribute set generation by using a large language model; deep cleaning is carried out on the data by adopting a rule and AI cooperation mode, and heterogeneous data mapping and ETL task generation and arrangement are completed; finally, in combination with a graph database and an authority system, intelligent data security sharing based on dynamic desensitization is realized. According to the method, automation, intelligence and adaptive optimization of the whole process of main data management are realized, and the problems of dependence on manpower, low efficiency, incomplete coverage and insufficient safety compliance of a traditional scheme are solved.
Owner:南京中孚信息技术有限公司

Material collection contract file whole-process collection system based on large model agent

The invention relates to the technical field of archive management, in particular to a material collection contract archive whole-process collection system based on a large model agent. The system comprises a data access layer, an intelligent processing layer, a knowledge service layer, an application layer and a security compliance layer which are in communication connection in sequence. The data access layer is used for collecting multi-source heterogeneous contract data and pushing a collection result to the intelligent processing layer; and the intelligent processing layer realizes intelligent analysis, verification, state tracking and knowledge association of contract data based on a large model agent. The objective of the invention is to provide a material collection contract archive full-process collection system based on a large model agent, and by constructing a technical architecture integrating data collection, intelligent processing, knowledge precipitation and closed-loop management, automatic and intelligent management of a full life cycle from generation to archiving of contract archives is realized.
Owner:FUJIAN YIRONG INFORMATION TECH

Data detection method and device, computer equipment, storage medium and program product

The invention relates to a data detection method and device, computer equipment, a storage medium and a computer program product. The method comprises the following steps: receiving a domain name data detection request triggered for a form trigger, and obtaining a form filling address associated with the form trigger and target domain name data carried by the domain name data detection request; analyzing the form filling address to obtain a form identifier carried by the form filling address, and obtaining a workflow identifier associated with the form identifier and workflow structure data associated with the workflow identifier; and analyzing the workflow structure data, obtaining a plurality of workflow tasks carried by the workflow structure data and an execution sequence of the plurality of workflow tasks, sequentially executing the plurality of workflow tasks according to the execution sequence, and carrying out multiple items of security compliance detection on the target domain name data to obtain a detection result. By adopting the method, tedious operation in the data detection process and misoperation in different links can be reduced, and the safety compliance detection processing efficiency of the domain name data is improved.
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

Artificial intelligence-driven safe TLS certificate full-automatic and multi-scene updating and deploying method

The invention provides a full-automatic and multi-scene TLS certificate updating and deploying method driven by artificial intelligence. According to the method, an encryption storage library, a token operator and a general operator are deployed in a Kubernetes environment, automatic application, storage and distribution of certificates are realized, and multi-environment adaptation is supported. A centralized log management and large language model is introduced, and logs are analyzed in real time to complete fault diagnosis and self-healing decision. Through the built-in adapter of the general operator, the new environment can be driven to work only by adding a configuration statement. The method has the technical highlights of dynamic token management, a universal adapter expansion mechanism, AI drive fault rating and the like, cross-environment unified management can be realized, the management cost is reduced, the safety compliance is improved, manual intervention of operation and maintenance is reduced, and the overall cost of ownership is reduced by more than 40% compared with that of a traditional scheme.
Owner:YINGBO ZHIYUN (CHENGDU) TECH CO LTD

Systems, methods, and computer programs (dynamic resource compliance determination for containerized systems)

For crypto assets mounted to pods as files or environment variables, security and compliance can be complex and therefore may be inadequately managed. [Solution] The system may include memory and a processor that communicates with the memory. The processor may be configured to perform operations. The operations may include steps to monitor network actions between resources in a network and steps to extract encrypted data from the network actions. The operations may include steps to detect connection security data from the encrypted data and steps to obtain resource health reports for the resources in the network. The operations may include steps to merge the connection security data with the resource health reports and steps to generate security compliance reports.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Insurance policy information transfer system and method, electronic equipment and storage medium

The invention discloses an insurance policy information management system and method, electronic equipment and a storage medium, and the system comprises an insurance policy information query module which carries out the unified authentication and routing arrangement of an insurance policy query request, and generates a target request; according to a configuration rule, obtaining insurance policy data from a plurality of data sources through the target request, and executing field filtering, field mapping, data desensitization and result sorting on the insurance policy data to generate a standardized query response; the configuration management module is used for carrying out visual configuration, storage and distribution management on the configuration rules; the security management module is used for carrying out encryption and decryption and signature verification on the transmission message and managing an encryption key and an algorithm suite; and the log auditing module is used for recording the operation logs and carrying out centralized storage and retrieval. According to the method, the problems of different query calibers, slow cross-system joint query, insufficient configuration and weak security compliance are solved, the query response speed and experience consistency are improved, the system reusability and configuration flexibility are enhanced, and the security compliance capability is enhanced.
Owner:SUNSHINE LIFE INSURANCE CO LTD

Generation method and device of containerized application arrangement engine, equipment and storage medium

The invention belongs to the technical field of artificial intelligence, and discloses a generation method, device and equipment of a containerized application orchestration engine and a storage medium, and the method comprises the steps: creating a declarative application model which describes the overall configuration and deployment requirements of a containerized application; based on the application model, an automatic assembly line from code construction to environment deployment is triggered and executed through a unified arrangement engine, safety strategies are integrated in the automatic assembly line, and safety check and compliance verification are automatically executed; in response to a change event of the Git warehouse, synchronizing the application model to a plurality of target computing clusters based on a GitOps principle; and collecting execution data of the automatic assembly line and the production environment runtime indexes, and associating the execution data of the automatic assembly line to generate delivery efficiency measurement and release decision support. According to the method, the problems of inconsistent deployment process, lack of security compliance verification, difficulty in multi-cluster state synchronization and lack of data support for delivery efficiency in containerized application deployment are solved.
Owner:PING AN TECH (SHENZHEN) CO LTD

Sensitive word detection method and device, electronic equipment and medium

The embodiment of the invention provides a sensitive word detection method and device, electronic equipment and a medium, belongs to the field of data monitoring, can be applied to business scenes related to finance and insurance, and can also be applied to business scenes related to intelligent medical treatment. Client equipment continuously monitors text setting interface calling of the client equipment and obtains a corresponding target text when the interface is called, and text collection points can be converted into automatic obtaining during operation from later manual inspection. The target text is detected, and the first detection result indicating whether the sensitive word is contained or not is obtained, so that whether the copywriting has a safety compliance risk or not can be judged at the first time, and low efficiency and error proneness of manual detection are avoided; and when the detection result shows that the sensitive words are contained, the detection report is generated based on the sensitive words in the target text and is sent to the operation end equipment, so that the abnormal information is reported and handled in time, and the automation degree, the detection efficiency and the response timeliness of sensitive word detection are improved.
Owner:CHINA PING AN PROPERTY INSURANCE CO LTD

A hybrid encrypted data transmission and storage method and system adapted to a creative environment

This invention relates to the field of information security technology and proposes a hybrid encrypted data transmission and storage method and system adapted to the domestically developed IT environment. The method includes: training an adaptive neural network based on the hardware information of the domestically developed CPU to output a capability feature vector; using a cache prediction network based on the capability feature vector to predict the performance of national cryptographic algorithms and output a performance prediction matrix; using a deep reinforcement learning network based on the performance prediction matrix to detect resource conflicts between combinations of national cryptographic algorithms, filtering the combinations, and outputting the optimal combination of national cryptographic algorithms; encrypting the data to be transmitted and outputting encrypted transmission data; transmitting the encrypted transmission data to the target node, decrypting the encrypted transmission data, re-encrypting and storing it, and outputting securely stored data. This invention improves the security and adaptability of data transmission and storage in the domestically developed IT environment, and meets the security compliance requirements of the domestically developed IT environment through a complete transmission verification and storage re-encryption process.
Owner:WUHAN ID TECH CO LTD

Microservices Based Simultaneous Execution via Multiple Cloud Service Providers

A system and method for dynamically selecting, executing, and optimizing microservices across multiple cloud service providers is disclosed. A workload management system receives a microservice execution request, retrieves metadata from a microservices catalog, and selects an optimal cloud provider using a weighted cost function based on execution performance, cost, security compliance, and availability. A machine learning model refines provider selection using historical execution data. An API abstraction layer formats and encrypts execution requests before transmission. A performance monitoring module tracks execution, while a fault detection module identifies failures and triggers automated failover via a failover module that preemptively replicates execution state data. A response processing module validates execution results before returning them to the requesting application. The system ensures dynamic, cost-efficient, and secure workload distribution while maintaining seamless failover resilience. By leveraging real-time performance metrics, historical data, and predictive analytics, the system optimizes microservice execution across diverse cloud environments.
Owner:BANK OF AMERICA CORP

A multi-agent collaboration method and system for a domestic operating system

This invention discloses a multi-agent collaboration method and system for domestically developed operating systems, belonging to the field of intelligent technology for domestically developed desktop operating systems. It aims to solve the core problems of existing solutions, such as lack of collaboration standards, black-box decision-making, and difficulty in reusing experience. The method establishes a collaboration system by building an MCP protocol stack and a native DBus mapping, generating a structured inference chain through the System-2 inference engine, and achieving a closed loop through dynamic task distribution, three-level memory reuse, and visual auditing. The system includes a main agent, a cluster of sub-agents, and multiple core modules to collaboratively support the implementation of the method. This solution enables plug-and-play intelligent agents, full traceability of decision-making, and improves the execution efficiency of similar tasks by more than 30%. It is deeply adapted to multiple versions of openKylin and domestically developed hardware, meeting the security compliance and efficient collaboration needs of key scenarios such as government affairs and finance.
Owner:NAT UNIV OF DEFENSE TECH

Data flow compliance evaluation method and system

The invention relates to the technical field of data security, in particular to a data flow compliance evaluation method, which comprises the following steps of: constructing a data service information model through a data service model definition module; constructing a safety compliance risk assessment model through a safety compliance risk model definition module; establishing an association relationship between the data service information model and the security compliance risk assessment model, and importing the acquired data service information into the data service information model through a data service information acquisition module; a data service security compliance evaluation module is used for carrying out data service security compliance evaluation to obtain a security compliance evaluation result and manual and intelligent evaluation suggestions; the evaluation report generation module generates an evaluation report. According to the invention, by integrating a plurality of functional modules, accurate modeling of data service information, scientific assessment of risks, reliable verification of data and efficient generation of assessment reports are realized, so that the comprehensiveness, accuracy and flexibility of data service security compliance assessment are improved.
Owner:SHANGHAI BIG DATA INC

Adaptive AI Cybersecurity System for Threat Identification, Prevention, and Device Monitoring

The present invention relates to an AI-driven cybersecurity system that provides adaptive protection by identifying, mitigating, and preventing cyber threats in real-time. The system leverages advanced machine learning algorithms to detect anomalies in network traffic, enabling the identification of potential threats, which are then neutralized through automatic adjustments to firewall rules and network configurations. The system includes a tracing module capable of locating the source of cyberattacks by analyzing IP addresses and other network metadata, allowing for comprehensive incident reporting. Additionally, the invention logs and monitors all devices connecting to the network, both via Wi-Fi and hardline access, ensuring security compliance and detecting unauthorized activity. The system's adaptive approach ensures continuous protection by automatically updating security measures and reporting detailed findings to security personnel for future prevention.
Owner:DAVIS ALEXANDER

Endpoint assessment deduplication

Security compliance may be facilitated for multiple endpoints associated with a network. Multiple batch endpoint assessments may be performed. Each batch endpoint assessment of the multiple batch endpoint assessments may include receiving multiple status indicators associated with at least a subset of endpoints of the multiple endpoints. For each batch endpoint assessment of the multiple batch endpoint assessments, a status may be assigned to each endpoint of the multiple endpoints based on the plurality of status indicators. A state may be generated for each endpoint of the multiple endpoints based on the statuses assigned to the multiple endpoints.
Owner:IVANTI INC

A file transmission method and device, electronic equipment and storage medium

This application discloses a file transfer method, apparatus, electronic device, and storage medium, relating to the field of financial technology. The method includes: parsing the current file transfer task to obtain the address of the source device, the address of the target device, task attribute information, and security compliance information; filtering multiple initial transfer strategies based on the security compliance information to obtain multiple candidate transfer strategies; determining the file transfer link based on the address of the source device and the address of the target device; determining the comprehensive suitability of each candidate transfer strategy based on the task attribute information, the real-time link quality information of the file transfer link, the real-time resource information of the source device, and the real-time resource information of the target device; and determining the target transfer strategy from the multiple candidate transfer strategies based on the comprehensive suitability; and executing the current file transfer task according to the target transfer strategy, enabling the transfer strategy to adapt to the complex and dynamically changing intranet environment of financial institutions, thereby improving file transfer efficiency and success rate.
Owner:AGRICULTURAL DEVELOPMENT BANK OF CHINA

Adaptive configuration method and system for energy storage system communication interface

The application discloses a kind of self-adapting configuration method and system of energy storage system communication interface, including obtaining the communication protocol data information of energy storage equipment to be accessed;Protocol characteristic vector of the energy storage equipment to be accessed is calculated;Initial interface configuration parameter of the energy storage equipment to be accessed is generated;Integrity, timing and safety compliance verification are carried out to initial interface configuration parameter, and the interface configuration parameter of the energy storage equipment to be accessed is obtained;According to the interface configuration parameter obtained, the update of protocol rule library is carried out, and the self-adapting configuration of the communication interface of the energy storage equipment to be accessed is completed.The application not only realizes the self-adapting configuration of energy storage system communication interface, but also has higher reliability, better accuracy and higher efficiency.
Owner:ECONOMIC TECH RES INST STATE GRID HUNAN ELECTRIC POWER +2

Security detection method, server, storage medium and program product

The embodiment of the invention provides a security detection method, a server, a storage medium and a program product. The method is applied to a central server and comprises the steps that a security detection instruction is acquired and analyzed, detection element information is obtained, and the detection element information comprises a server type and detection standard information and detection items corresponding to the server type; according to the server type, generating an atomic detection command corresponding to each detection item; sending detection standard information and an atomic detection command to a target server corresponding to the server type, so that the target server executes detection according to the detection standard information and the atomic detection command to obtain a security detection result; and receiving a security detection result sent by the target server. According to the invention, the efficiency of server security compliance detection can be improved.
Owner:SHANGHAI JIACHE INFORMATION TECH CO LTD

Security protection method and device of smart home gateway, electronic equipment and medium

The invention provides a security protection method and device for a smart home gateway, electronic equipment and a medium. The method comprises the following steps: performing access security protection on a smart home terminal and a remote control platform through identity authentication; performing data security protection on communication data among the smart home terminal, the smart home gateway and the remote control platform based on an encryption algorithm; performing privacy security protection on the sensitive data of the user based on a local priority processing strategy; the method comprises the following steps of: performing security protection on a firmware remote upgrading process by combining a digital signature and an integrity verification mechanism on the basis of a security channel constructed by an HTTPS (Hyper Text Transfer Protocol over Secure Secure) protocol; and performing security protection on the communication traffic based on a network traffic anomaly detection algorithm. According to the application, a multi-protocol and multi-level security mechanism and a privacy protection strategy are adopted, security risks such as illegal access, data leakage and privacy abuse are effectively prevented, the overall security of the smart home system and the user privacy protection capability are remarkably improved, and meanwhile, the domestic security compliance requirement is met.
Owner:BWEETECH ELECTRONICS TECH (SHANGHAI) CO LTD

Card punching method and system based on multifunctional safety helmet UWB high-precision positioning

The invention discloses a card punching method and system based on multifunctional safety helmet UWB high-precision positioning, and the method comprises the steps: deploying at least three UWB positioning base stations in a preset card punching region, and enabling each base station to be in communication connection with a background server; detecting the moving state of a person based on an acceleration sensor, and dynamically adjusting the ranging frequency of the UWB tag; when a person enters a card punching area, distance measurement data are interacted with at least three UWB positioning base stations according to the current frequency through a UWB tag and are sent to a background server, the distance measurement data are preprocessed by adopting Kalman filtering, and then the real-time position is calculated through a triangulation positioning algorithm to judge whether the person is in an effective card punching area or not; if the position is valid, verifying correct wearing of the safety helmet based on the wearing detection sensor; and matching the tag identifier with the personnel identity through the background server, and generating and storing a card punching record. The method is used for solving the technical problems of insufficient precision, lack of safety compliance, unbalanced power consumption and identity matching distortion of the existing card punching technology.
Owner:ZHUHAI XINCHU TECHNOLOGY CO LTD

A multi-dimensional evaluation method for Xinxing environment migration

The application discloses a kind of multi-dimensional evaluation methods of Xinyuan environment migration, specifically related to evaluation field;The application is built by constructing the evaluation index system covering infrastructure, application system, data resources and security compliance, and is realized by instruction set detection, binary analysis and equal protection compliance inspection comprehensive scanning;AHP-entropy weight hybrid model is used to dynamically calculate weight, and weight rebalancing is triggered based on volatility rate;By combining static scanning and dynamic probe, compatibility, performance and security difference are quantitatively analyzed;Finally, a visual risk assessment report is generated, which integrates data from each stage to calculate compatibility score, performance loss rate and security level, provides instruction level difference comparison, performance flame chart and vulnerability attack path interactive view, and outputs migration suggestions including priority modification list, NEON instruction optimization scheme and phased reinforcement plan.
Owner:ZHONGCHUANG GUOKE (SHANXI) TECH CO LTD

Recommendation system privacy memory forgetting method driven by large language model

The invention discloses a recommendation system privacy memory forgetting method based on large language model driving, and belongs to the technical field of machine forgetting and intelligent recommendation. The method comprises the following steps: firstly, realizing semantic decoupling of privacy information and non-privacy information through comparative learning, and constructing distinguishable privacy feature subspaces; and then performing structured pruning or weight weakening on the positioned privacy-related parameters, and introducing a selective regulation and control mechanism to realize differentiated forgetting strength. A multi-index evaluation system including a privacy leakage rate, a privacy inference rate, a utility retention rate and a link exposure rate is constructed, quantitative detection is performed on a forgetting effect, a training-forgetting-evaluation closed loop is formed in combination with an iterative optimization strategy, and privacy removal and recommendation performance balance is realized. The privacy memory forgetting method can realize privacy memory forgetting without performing complete retraining on a large model, has the advantages of controllability, low cost and high universality, and can be applied to sensitive information management and model privacy security compliance requirements in scenes such as education, e-commerce and finance.
Owner:GUILIN UNIV OF ELECTRONIC TECH

A natural language to SQL closed-loop generation method and system for a power business system

This invention discloses a closed-loop generation method and system for natural language to SQL in power business systems. The method involves inputting natural language query data and context data into a large SQL model to generate candidate SQL queries. The candidate SQL queries undergo security governance processing to obtain controllable SQL. The controllable SQL is then subjected to case backfilling and structural alignment to obtain aligned SQL. The aligned SQL is then executed on the database to obtain execution data. If the execution data is the execution result, it is encapsulated with the aligned SQL to obtain a structured success response and end the current query process. If the SQL execution fails, a repair process is initiated, using a large SQL repair model to attempt repairs multiple times based on the error type, forming an automatic closed loop and improving the execution success rate. This invention offers systematic engineering advantages in executability, self-healing capabilities, security compliance, and domain adaptability.
Owner:NARI INFORMATION & COMM TECH

AI-Based Rule Validation for Network Changes

PendingUS20260254858A1Security complianceEngineering
An artificial intelligence-driven system and method for validating network rule changes ensures security compliance, mitigates risks, and prevents misconfigurations. The system receives proposed rule changes, validates format and structure, and simulates rule interactions within an existing security configuration. A conflict detection module identifies misconfigurations, while a threat intelligence module retrieves real-time threat data. A risk assessment module extracts risk factors, and an artificial intelligence model computes a risk score to determine automatic approval, rejection, or manual review. A virtualized environment simulates flagged rule changes using synthetic traffic to assess security impact. A feedback module generates a security impact report for administrator review. Approved rules are enforced, while all decisions are logged for compliance tracking. A self-adaptive security module dynamically updates policies based on emerging threats. A machine learning module continuously refines AI-driven risk assessment. This system optimizes network security validation by integrating automation, AI-driven decision-making, and real-time security intelligence.
Owner:BANK OF AMERICA CORP