Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

16 results about "Security compliance" patented technology

The Security Compliance Manager (SCM) is a free tool from Microsoft that enables you to quickly configure, and manage the computers in your environment using Group Policy and Microsoft System Center Configuration Manager.

Power grid production data access method and device based on deep action determination and risk budget for power grid data sharing security compliance

PendingCN122451939AAccess methodSecurity compliance
The application relates to a power grid production data access method and device for power grid data sharing security compliance based on deep action determination and risk budget. The method comprises the following steps: in response to an access request for power grid production data sent by a terminal, inputting a context feature vector corresponding to the access request into a pre-constructed deep action determination model to obtain a target access action corresponding to the access request; in the case that the target access action is a preset access action, determining a current privacy budget value corresponding to the target access action; in the case that the current privacy budget value does not exceed a current remaining privacy budget value, performing differential privacy protection processing on the power grid production data according to the current privacy budget value to obtain processed power grid production data, and returning the processed power grid production data to the terminal. By using the method, the security of power grid production data access can be improved.
Owner:GUANGZHOU KETENG INFORMATION TECH

Systems, methods, and computer programs (dynamic resource compliance determination for containerized systems)

PendingJP2026091795ATransmissionNetwork activityDynamic resource
For crypto assets mounted to pods as files or environment variables, security and compliance can be complex and therefore may be inadequately managed. [Solution] The system may include memory and a processor that communicates with the memory. The processor may be configured to perform operations. The operations may include steps to monitor network actions between resources in a network and steps to extract encrypted data from the network actions. The operations may include steps to detect connection security data from the encrypted data and steps to obtain resource health reports for the resources in the network. The operations may include steps to merge the connection security data with the resource health reports and steps to generate security compliance reports.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

A hybrid encrypted data transmission and storage method and system adapted to a creative environment

This invention relates to the field of information security technology and proposes a hybrid encrypted data transmission and storage method and system adapted to the domestically developed IT environment. The method includes: training an adaptive neural network based on the hardware information of the domestically developed CPU to output a capability feature vector; using a cache prediction network based on the capability feature vector to predict the performance of national cryptographic algorithms and output a performance prediction matrix; using a deep reinforcement learning network based on the performance prediction matrix to detect resource conflicts between combinations of national cryptographic algorithms, filtering the combinations, and outputting the optimal combination of national cryptographic algorithms; encrypting the data to be transmitted and outputting encrypted transmission data; transmitting the encrypted transmission data to the target node, decrypting the encrypted transmission data, re-encrypting and storing it, and outputting securely stored data. This invention improves the security and adaptability of data transmission and storage in the domestically developed IT environment, and meets the security compliance requirements of the domestically developed IT environment through a complete transmission verification and storage re-encryption process.
Owner:WUHAN ID TECH CO LTD

A multi-agent collaboration method and system for a domestic operating system

PendingCN122086421ABiological modelsInference methodsOperational systemSecurity compliance
This invention discloses a multi-agent collaboration method and system for domestically developed operating systems, belonging to the field of intelligent technology for domestically developed desktop operating systems. It aims to solve the core problems of existing solutions, such as lack of collaboration standards, black-box decision-making, and difficulty in reusing experience. The method establishes a collaboration system by building an MCP protocol stack and a native DBus mapping, generating a structured inference chain through the System-2 inference engine, and achieving a closed loop through dynamic task distribution, three-level memory reuse, and visual auditing. The system includes a main agent, a cluster of sub-agents, and multiple core modules to collaboratively support the implementation of the method. This solution enables plug-and-play intelligent agents, full traceability of decision-making, and improves the execution efficiency of similar tasks by more than 30%. It is deeply adapted to multiple versions of openKylin and domestically developed hardware, meeting the security compliance and efficient collaboration needs of key scenarios such as government affairs and finance.
Owner:NAT UNIV OF DEFENSE TECH

A file transmission method and device, electronic equipment and storage medium

PendingCN122340090AFile transmissionSecurity compliance
This application discloses a file transfer method, apparatus, electronic device, and storage medium, relating to the field of financial technology. The method includes: parsing the current file transfer task to obtain the address of the source device, the address of the target device, task attribute information, and security compliance information; filtering multiple initial transfer strategies based on the security compliance information to obtain multiple candidate transfer strategies; determining the file transfer link based on the address of the source device and the address of the target device; determining the comprehensive suitability of each candidate transfer strategy based on the task attribute information, the real-time link quality information of the file transfer link, the real-time resource information of the source device, and the real-time resource information of the target device; and determining the target transfer strategy from the multiple candidate transfer strategies based on the comprehensive suitability; and executing the current file transfer task according to the target transfer strategy, enabling the transfer strategy to adapt to the complex and dynamically changing intranet environment of financial institutions, thereby improving file transfer efficiency and success rate.
Owner:AGRICULTURAL DEVELOPMENT BANK OF CHINA

Adaptive configuration method and system for energy storage system communication interface

ActiveCN121771005BTransmissionCommunication interfaceSecurity compliance
The application discloses a kind of self-adapting configuration method and system of energy storage system communication interface, including obtaining the communication protocol data information of energy storage equipment to be accessed;Protocol characteristic vector of the energy storage equipment to be accessed is calculated;Initial interface configuration parameter of the energy storage equipment to be accessed is generated;Integrity, timing and safety compliance verification are carried out to initial interface configuration parameter, and the interface configuration parameter of the energy storage equipment to be accessed is obtained;According to the interface configuration parameter obtained, the update of protocol rule library is carried out, and the self-adapting configuration of the communication interface of the energy storage equipment to be accessed is completed.The application not only realizes the self-adapting configuration of energy storage system communication interface, but also has higher reliability, better accuracy and higher efficiency.
Owner:ECONOMIC TECH RES INST STATE GRID HUNAN ELECTRIC POWER +2

A natural language to SQL closed-loop generation method and system for a power business system

PendingCN122364243ASecurity complianceSoftware engineering
This invention discloses a closed-loop generation method and system for natural language to SQL in power business systems. The method involves inputting natural language query data and context data into a large SQL model to generate candidate SQL queries. The candidate SQL queries undergo security governance processing to obtain controllable SQL. The controllable SQL is then subjected to case backfilling and structural alignment to obtain aligned SQL. The aligned SQL is then executed on the database to obtain execution data. If the execution data is the execution result, it is encapsulated with the aligned SQL to obtain a structured success response and end the current query process. If the SQL execution fails, a repair process is initiated, using a large SQL repair model to attempt repairs multiple times based on the error type, forming an automatic closed loop and improving the execution success rate. This invention offers systematic engineering advantages in executability, self-healing capabilities, security compliance, and domain adaptability.
Owner:NARI INFORMATION & COMM TECH

Audit method, device and apparatus for vulnerability mechanism

PendingCN122333490ASecurity complianceStructure equation
This application discloses a method, apparatus, and device for auditing vulnerability mechanisms, relating to the field of software security technology. The method includes: extracting vulnerability causal elements and sorting out causal relationships from multi-source evidence associated with vulnerabilities, which is linked to corresponding nodes in a causal graph through globally unique evidence citation identifiers; obtaining a causal graph with vulnerability causal elements as nodes and causal dependencies as edges; extracting observed variables from the multi-source evidence based on the causal graph and constructing a structural equation model based on causal dependencies; solving the structural equation model to obtain the quantitative contribution of each vulnerability causal element to the occurrence of the vulnerability; performing a bidirectional mapping match between the vulnerability causal elements and a pre-set security compliance clause library based on the quantitative contribution to obtain a bidirectional mapping relationship; and integrating multi-source evidence, quantitative contribution, and bidirectional mapping relationship to obtain a structured audit report. This enables complete tracing and accountability for the explanation of vulnerability mechanisms.
Owner:ZHEJIANG HUADIAN EQUIP TESTING INST +1

Data classification model with key store for import, storage, export and security compliance end points checks

A method of applying a corporate secure compliance end-point check matched to a user authentication with an Encryption Key Store for each data source application data feed used within a web application, including applying data classification levels and masking of sensitive data, thereby allowing for multiple export keys to multiple third-party applications.
Owner:VIGNA DAVID MICHAEL

Dynamic resource compliance determination for containerized systems

PendingUS20260149740A1Securing communicationDynamic resourceSecurity compliance
A system may include a memory and a processor in communication with the memory. The processor may be configured to perform operations. The operations may include monitoring network actions between resources within a network and extracting encryption data from said network actions. The operations may include detecting connection security data from said encryption data and obtaining a resource health report for a resource in said network. The operations may include merging connection security data with said resource health report and generating a security compliance report.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Method and system for protecting instructions of a large model based on four-layer cooperative closed loop

The application discloses a kind of big model instruction security protection method, system and storage medium based on four-layer cooperative closed-loop protection mechanism, belong to artificial intelligence security and trusted computing field.The application is deployed non-intrusive independent protection layer between user input layer and big model inference execution layer, through instruction weight dynamic control, context integrity check, multi-modal public power subject credible verification, four big links cooperative linkage of security rule priority rigid locking, combined with shared semantic label library, dynamic threshold value synchronization mechanism and cross-layer abnormal feedback channel constructs whole-link closed-loop protection system.The application realizes high semantic weight content attenuation by instruction weight system, resists split bypass attack by context governance, guarantees public power identity credible by multi-modal double verification, realizes permission control and algorithm transparent by rule priority rigid locking, built-in global multi-jurisdiction compliance rule library, adapt to global regulatory requirements and have anti-black-box auditable characteristics.The application does not need to modify model bottom code, supports hardware-level isolation and national encryption algorithm acceleration, can be widely applied to government, finance, military industry and other high-end security scene, provides non-intrusive, global, high-security compliance protection solution for big model.
Owner:高鹏

Method for detecting and assessing the security compliance of base software

PendingCN122346860ADigital dataSecurity compliance
The application discloses a kind of basic software security compliance detection evaluation methods, it is related to electric digital data processing technical field, including based on network security data security related regulations and industry specifications, constructs multilevel security compliance detection benchmark library, supports benchmark library incremental update and rule version management;Full amount acquisition target basic software static data and complete structured analysis, collect software running full-dimensional dynamic behavior data in sandbox environment;Extract multidimensional compliance detection features and complete pre-processing;Detection features are matched with benchmark library rules, identify hierarchical risk points and locate corresponding basis;Quantitative evaluation system is constructed to calculate compliance comprehensive score, and compliance level is divided;Generation detection evaluation report, complete rectification regression detection and compliance closed-loop verification.The application improves the precision and execution efficiency of basic software security compliance detection, realizes full-dimensional compliance risk dead angle coverage, and can adapt to the security compliance control needs of multi-industry basic software.
Owner:HUNAN CONGMAO TECH CO LTD

A federated learning-based vehicle-mounted network intrusion detection method

A federated learning-based intrusion detection method for vehicular networks, relating to the field of vehicular network security technology, combines PKI key distribution, ring signature, and Paillier homomorphic encryption to protect vehicular CAN bus data and model gradient information throughout the entire process, preventing data leakage, tampering, and illegal abuse at the source, and meeting the data privacy protection and security compliance requirements of the Internet of Vehicles. By dynamically calculating feature weights, posterior probabilities, and adaptive step sizes using the FA-BDS-FEA algorithm, CAN bus attack features can be accurately extracted, reducing interference from invalid features. Combined with second-order gradient optimization and Softmax probability output, the intrusion detection accuracy is effectively improved, and the false positive and false negative rates are reduced.
Owner:SHANDONG JIANZHU UNIV

System and Methods for Scanning and Profiling Data for Security Compliance

PendingUS20260147924A1Digital data protectionMachine learningSecurity complianceInternet traffic
Techniques are disclosed for performing scanning and profiling of stored data to identify the location of data entries that comprise sensitive data that require storage in accordance with enhanced security requirements. The techniques advantageously move a portion of the scanning and profiling operations closer to the data storage locations, and involve deploying processing resources near the locations at which the data is stored rather than relying solely upon centralizing processing at a separate location. This approach has the advantages of reducing network traffic and latency, which can help improve performance and reduce costs, and may also facilitate organizations to better take advantage of distributed computing architectures, which can scale more effectively than centralized processing.
Owner:CAPITAL ONE SERVICES LLC

Feature fusion and data asset management method based on multi-source digital footprint

This invention provides a feature fusion and data asset management method based on multi-source digital footprints, including: acquiring and preprocessing multiple types of digital footprint data; constructing a DPU node topology; extracting heterogeneous features at the node and link levels and mapping them to the topology; fusing multi-source features through weighted aggregation and attention mechanisms, and obtaining a comprehensive feature vector by combining context and historical pattern calibration; mapping the feature vector to three-layer contribution score vectors of system, node, and link, and generating a data asset management map and state feature vectors through hierarchical decomposition; and inputting the data into a policy network to generate resource allocation, task scheduling, or data migration strategies. This invention achieves deep fusion of multi-source information and dynamic state awareness, improves the refinement of data asset management, reduces energy consumption, enhances security and compliance, and is suitable for the full lifecycle management of complex data systems.
Owner:INTELLIGENT COMPUTING MATRIX (SHENZHEN) DATA TECHNOLOGY CO LTD

A real-time split recording and cloud storage method and system for VoLTE high-definition video call

This invention relates to the field of information processing technology, and in particular to a method and system for real-time streaming recording and cloud storage of VoLTE high-definition video calls. The system includes a media resource server receiving audio and video streams and performing real-time streaming to generate a preview stream and a storage stream; performing content-aware analysis on the storage stream to identify sensitive information segments and generate tagged data; persistently storing the storage stream and the associated sensitive tagged data separately; and dynamically implementing desensitization processing such as audio muting or video region blurring on the tagged sensitive segments according to user permissions during video playback. The system includes a media resource server, an intelligent identification module, cloud storage, and a dynamic desensitization engine. This invention achieves low-latency recording and efficient storage of high-definition video, and through content-aware dynamic desensitization, it meets the refined access control and security compliance requirements of industries such as finance while ensuring smoothness.
Owner:ZHEJIANG HAIGAOSI COMM TECH CO LTD