Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

213 results about "Security enhancement" patented technology

Internal and external network security service passing method and system based on edge computing

The invention discloses an internal and external network security service passing method and system based on edge computing, and belongs to the technical field of network security, and the method comprises the steps: obtaining multi-dimensional attribute information of an edge node, generating a security policy basic data set, generating a traffic feature fingerprint and a self-adaptive environment adaptive fingerprint, and calculating a fusion matching degree; edge security entity nodes are generated in combination with service scene adaptive threshold clustering, and then a security policy meta-model with a security policy blueprint as a core is constructed; analyzing the security policy meta-model through a multi-modal semantic analysis engine, generating a dynamic security enhancement model, and mapping the dynamic security enhancement model to a hierarchical security control model; based on the hierarchical model, outputting edge node internal and external network safety passage configuration and a corresponding safety passage ledger through a scenarized configuration generation algorithm; according to the method, adaptive generation, dynamic optimization and accurate execution of the security policy are realized, and the security, the automation level and the operation and maintenance efficiency of internal and external network passing in the edge computing environment are effectively improved.
Owner:HANGZHOU XUNCHUAN TECHNOLOGY CO LTD

Methods and Systems for Security Enhancement in Artificial Intelligence Model Interactions via Automated Injection and Proxy Server Implementation

The present technology relates to a computer-implemented method for enhancing enterprise-wide security when using Artificial intelligence (AI) models. Embodiments involve a JavaScript injection process facilitated by a proxy server. This process does not require manual installation as it is automatically injected during operation. The JavaScript injection process operates by intercepting unsecured AI input and output data provided by users interacting with AI websites. The input and output data are sent to a security Application Programming Interface (API) which applies an enterprise security policy to the data in real-time, thereby transforming unsecured input and output into secure data. Embodiments provide a robust framework for safe interaction with Artificial intelligence models while mitigating the risks associated with the transmission of sensitive information over the internet.
Owner:WITNESSAI INC

Action strategy security enhancement method and device, equipment and medium

The invention relates to the technical field of artificial intelligence, can be applied to business scenes such as agent autonomous decision making, financial science and technology and medical health, and discloses an action strategy security enhancement method, device and equipment and a medium. And generating an initial action strategy through a strategy generation module based on the task target and the fused security perception feature, projecting the initial action strategy to a security constraint space to obtain a security action strategy, monitoring state data of the controlled object in an execution process, and executing an intervention measure when the state data triggers a monitoring threshold. And collecting execution process data and updating a strategy generation module based on the execution process data. According to the method, the initial action strategy is generated through fusion of the multi-modal sensing information and the task target, and the safety of task execution of the robot in a complex environment is improved by combining the safety constraint space projection, the state monitoring and the data feedback updating strategy generation module.
Owner:PING AN TECH (SHENZHEN) CO LTD

Public multi-mode cloud network resource software security enhancement method based on neural symbol fusion reasoning

The invention relates to a public multi-mode cloud network resource software security enhancement method based on neural symbol fusion reasoning, which comprises the following steps: an intermediate representation generation stage: generating and optimizing an intermediate representation of a program through a fine-tuned large language model, and establishing semantic mapping from a source code to a structured logic representation; in the symbol language conversion stage, the intermediate representation generated by the large language model is converted into a domain-specific language fact set which can be recognized in the symbol logic reasoning stage, and formal and logic expression of program semantics is achieved; and a symbol logic reasoning stage: matching the fact set with the rule base through a symbol logic reasoning engine, performing detection and verification according to the safety rule, generating a structured report, and feeding back a result for optimization. The method is suitable for security enhancement of various core software systems in a public cloud network multi-modal network environment, high-precision security analysis is carried out on cross-modal and cross-subsystem fragmented codes in a compiling-free environment, and verifiable technical support is provided for public cloud network security control.
Owner:PEKING UNIV

Dynamic double-layer hidden watermark and encryption binding file protection method and system based on deep learning

The invention relates to a dynamic double-layer hidden watermark and encryption binding file protection method and system based on deep learning, and belongs to the technical field of digital content security. The problems of attack resistance, traceability obstruction and key-watermark unhooking in document cross-platform circulation are solved. According to the scheme, the method comprises the following steps of: extracting semantic fingerprints by using a sentence vector model Sentence-BERT; the fuzzy extractor generates a master key and derives a time key chain; the authentication encryption algorithm AEAD encrypts and binds the source and the timestamp load; container layer structure rearrangement and document layer zero-width character double embedding are carried out; the generative adversarial network or diffusion model adversarial training improves the optical character recognition and transcoding resistance; version binding and tracing are achieved through the watermark hash chain. The technical effects cover anti-counterfeiting migration, cross-layer fault-tolerant guarantee recoverability, rearrangement attack resistance, full-period accurate traceability and post-quantum security enhancement.
Owner:SOUTHWEST UNIV

Large model content security multi-level defense method

The invention provides a large-model content security multi-level defense method. The method comprises the steps that an input-processing-output full-link multi-stage cooperative defense framework is constructed, and the full-link multi-stage cooperative defense framework receives to-be-detected user input data and transmits sensitive word detection passing content to an intention recognition module; the intention identification module judges the risk level of the user input data, and routes the user input data identified as medium and high risks to the risk label classification module; the risk label classification module performs risk category classification on the user input data, and transmits the user input data subjected to risk category classification to the security enhancement module; and the security enhancement module generates compliant system response content through a domain fine tuning and reinforcement learning strategy, and returns the system response content to the user after performing security interception processing on the system response content. Through hierarchical defense, dynamic routing and security enhancement module training, a large model security enhancement scheme covering the whole process of input, reasoning and output is constructed.
Owner:BEIJING ZERO ONE EVERYTHING INFORMATION TECHNOLOGY CO LTD

Policy control security enhancement method and device, computer equipment and storage medium

The invention relates to a policy control security enhancement method and device, computer equipment, a computer readable storage medium and a computer program product. The method comprises the following steps: acquiring a policy request initiated by an external entity to a policy control plane in a cross-multi-cloud or cross-domain environment; extracting multi-dimensional features from request data carried in the strategy request, and constructing a multi-dimensional feature map according to the multi-dimensional features; performing anomaly detection on the strategy request according to the multi-dimensional feature map to generate a threat judgment result; under the condition that the threat judgment result shows that the strategy request is normal, performing semantic, resource and authority triple verification on the strategy request to generate a verification judgment result; and under the condition that the verification judgment result shows that the strategy request is verified successfully, issuing the strategy to the target execution point and enabling the strategy to take effect, thereby completing strategy life cycle management. By adopting the method, the security robustness, privacy compliance and cross-domain cooperation efficiency of the strategy control system can be improved.
Owner:CHINA TELECOM CORP LTD TECHNOLOGY INNOVATION CENTER +1

Quantum-resistant security enhancement method for transport layer security protocol

A quantum-resistant security enhancement method for a transport layer security protocol, comprising: (011) acquiring a first quantum key and a quantum key identifier from a serving node; (012) performing post-quantum cryptographic encryption on the quantum key identifier to obtain a first encryption result, and sending the first encryption result to a network device; (013) decrypting a received second encryption result to obtain a second decryption result; (014) obtaining a first terminal handshake key and a first network device handshake key on the basis of the first encryption result and the second decryption result; and (015) generating a second terminal handshake key and a second network device handshake key on the basis of the first quantum key, the first terminal handshake key, the first network device handshake key, the first encryption result and the second decryption result, so as to encrypt communication between the terminal and the network device.
Owner:CHINA TELECOM QUANTUM INFORMATION TECH GRP CO LTD

Cloud instance privacy security enhancement method based on security channel dynamic measurement

The invention discloses a cloud instance privacy security enhancement method based on security channel dynamic measurement, and the method comprises the steps: building a secure and credible communication channel through a secure communication client, and connecting the communication channel to a local user side through the Internet; a local user side deploys a TPCM secure communication module which is responsible for secure communication with the multi-cloud service rental instance. And the trusted software base is responsible for maintaining a measurement strategy and performing measurement judgment and control when a user process runs in the cloud service lease instance. The system specifically comprises a judgment mechanism module, a control mechanism module, a measurement mechanism module and a credible reference library. On the premise that infrastructures of cloud service providers are not trusted, in order to achieve safety and credibility of user remote cloud service lease instance data and application during operation and privacy protection of users, a measurement agent and a safety communication client are deployed in a cloud service lease instance; meanwhile, the tenant can perform deep monitoring on the process in the cloud instance, and it is ensured that sensitive information such as a monitoring strategy and reference data is not exposed to a cloud service provider.
Owner:BEIJING UNIV OF TECH

Methods and systems for security enhancement in artificial intelligence model interactions via automated injection and proxy server implementation

The present technology relates to a computer-implemented method for enhancing enterprise-wide security when using Artificial intelligence (AI) models. Embodiments involve a JavaScript injection process facilitated by a proxy server. This process does not require manual installation as it is automatically injected during operation. The JavaScript injection process operates by intercepting unsecured AI input and output data provided by users interacting with AI websites. The input and output data are sent to a security Application Programming Interface (API) which applies an enterprise security policy to the data in real-time, thereby transforming unsecured input and output into secure data. Embodiments provide a robust framework for safe interaction with Artificial intelligence models while mitigating the risks associated with the transmission of sensitive information over the internet.
Owner:WITNESSAI INC

Systems and methods for financial risk assessment and digital security enhancement

Provided are methods, systems, and devices for financial risk assessment and digital security enhancement. This includes receiving, at the host processor via the computing network, a plurality of input signals from a plurality of primary systems, the input signals corresponding to a client identifier to generate a corresponding first record; analyzing the corresponding first record, to extract a corresponding second record by implementing a plurality of predefined tags and generating a categorized record; receiving physical asset signals, associated to the client identifier, from an external asset system; generating a qualifier score based on a predictive algorithm applied to the categorized record and the physical asset signals, the predictive algorithm assigning weights to the plurality of data categories in the categorized record; and determining whether the qualifier score meets a one or more threshold range.
Owner:CLOSERLY INC

Dynamic cybersecurity scoring and operational risk reduction assessment

A system and method for operational and cyber risk assessment that utilizes a data-driven approach to evaluate the current security posture and identify areas for improvement based on the user's desired target profile. This process involves estimating the costs and benefits associated with various security program enhancements, increased, hiring, and control uplifts. The system and method then quantify these benefits in terms of reduction in tail value at risk, expected losses, cyber insurance premiums, and the amount of risk capital set aside. The system simulates attack paths associated with various risk scenarios and uses a risk scenario model to compute losses associated with each attack path for each risk scenario. The results of the simulation may be used to determine one or more business outcomes associated with the costs and benefits of implementing security enhancements.
Owner:QOMPLX INC

TLS1.3 protocol security enhancement method and system based on homologous cryptographic algorithm

The invention discloses a TLS1.3 protocol security enhancement method and system based on a homologous cryptographic algorithm, and the method comprises the steps: 1), certificate generation: signing and issuing a certificate through an SQISign signature algorithm, and guaranteeing the verification and use of a post-quantum security signature algorithm through the certificate; and 2) protocol design: the client and the server complete identity verification through certificate verification based on an SQISign signature algorithm in a handshake stage of a TLS 1.3 protocol. And the server uses a FleS public key encryption algorithm to carry out key encapsulation and send the key encapsulation to the client, completes key exchange and establishes secure encryption connection with the client. The step 1) and the step 2) comprise compatibility design, and a homology-based post-quantum algorithm and a traditional cryptographic algorithm are allowed to coexist, so that the compatibility of an existing system is ensured. Through the method provided by the invention, the TLS 1.3 protocol can effectively resist security threats brought by quantum computing, the security of network communication in the quantum era is ensured, and meanwhile, the smooth transition of the existing system is ensured.
Owner:WUHAN UNIV

Semantic communication security enhancement system based on SIM (Subscriber Identity Module) card quantum key presetting

The invention relates to the technical field of mobile communication, and particularly provides a semantic communication security enhancement system based on SIM card quantum key presetting, comprising an SIM card security base module configured to generate physical unclonable function characteristics and preset quantum security keys by using SIM card hardware characteristics; the lightweight authentication protocol module is in communication connection with the SIM card security base module and is configured to realize dynamic identity authentication based on physical unclonable function characteristics and a quantum security key; the semantic security enhancement module is configured to perform privacy protection processing on the semantic communication data; the trusted execution environment optimization module is in communication connection with the SIM card safety base module and the lightweight authentication protocol module and is configured to construct a hardware-software collaborative trusted execution environment; the quantum security enhancement module is integrated on the SIM card security base module and is configured to provide quantum attack resistance and dynamic key management; according to the invention, the real-time performance and anti-quantum computing capability of key distribution are significantly improved.
Owner:CHINA MOBILE INTERNET CO LTD +1

Anti-quantum security enhancement method for SSL VPN protocol

An anti-quantum security enhancement method for an SSL VPN protocol of a communication network. The method comprises: (011) acquiring a first quantum key and a quantum key identifier from a first network node that has accessed a network device; (012) performing post-quantum cryptographic encryption processing on the quantum key identifier, and sending a first encryption result of the post-quantum cryptographic encryption processing to a terminal; (013) decrypting a received second encryption result sent by the terminal, so as to obtain a second decryption result; (014) obtaining a first master key on the basis of the first encryption result and the second decryption result; and (015) generating and obtaining a second master key on the basis of the first master key, the first encryption result, the second decryption result, and the first quantum key, so as to encrypt communication between the network device and the terminal.
Owner:CHINA TELECOM QUANTUM INFORMATION TECH GRP CO LTD

Large model security enhancement method and system based on trusted computing

The invention provides a large model security enhancement method and system based on trusted computing, and the method comprises the steps: controlling a module through a built-in trusted platform in a terminal device in a starting process of the terminal device; verifying the current software downloaded by the trusted platform control module, the input / output system, the boot loader, the operating system, the large model and the terminal equipment from the trusted management center based on the preset verification information, and determining whether the running state of the current software is abnormal or not based on the preset permission information in the running process of the terminal equipment; and performing a preset response operation when the running state of the current software is abnormal, and performing a data encryption and decryption operation and / or an identity authentication operation based on a true random number generated by the quantum random number generator and an encryption and decryption algorithm stored in the trusted cryptographic module, thereby running the large model in the trusted execution environment. By adopting the method, the security of deployment and operation of the large model can be improved, the security of encryption and decryption operation is enhanced, and the efficiency and fairness of an encryption and decryption algorithm are improved.
Owner:CEC CYBERSPACE GREAT WALL

Robot control method and device based on security enhancement, equipment and medium

The invention relates to the technical field of artificial intelligence, and provides a robot control method, device and equipment based on security enhancement and a medium, which can be applied to financial and medical health care service scenes, and can construct a security knowledge system of a target environment to provide comprehensive and structured security basic knowledge. Task disassembling is carried out according to the control instruction, then a security constraint label is added to each sub-task in a sub-task sequence according to a security knowledge system to obtain a sub-task label sequence, and thus security elements are fused into the sub-tasks; according to the method, the subtask labeling sequence is input into the security risk assessment model, and the security optimization is performed on the subtask sequence according to the risk prediction data, so that the subtask sequence can be adjusted in a targeted manner after the security risk in the subtask sequence is accurately identified, the security risk is effectively reduced, and the security and feasibility of the subtask sequence are ensured; and the robot is controlled to execute the safety subtask sequence, so that the safety and rationality of the robot control process are improved.
Owner:PING AN TECH (SHENZHEN) CO LTD

Communication link analysis for false-alarm detection and security enhancement using enhanced codes

Systems, apparatuses and methods provide technology that identifies a codeword associated with a fluid cooling system and a network system, generates a status update with the network system, embeds the codeword as a repeating cyclic codeword in a message containing the status update, transmits the message from the network system to the fluid cooling system over a data link, receives the message at the fluid cooling system, and determines, with the fluid cooling system, whether interference is inserted into the message based on the repeating cyclic codeword in the message.
Owner:META PLATFORMS INC

A method for enhancing security strength of quantum key distribution

The application provides a quantum key distribution security strength enhancement method. The method comprises the following steps: step 1: when the security parameter epsilon of the generated original key X is greater than the security parameter required by the actual application, a new key Y is generated; step 2: a self-defined security enhancement function is used, the key X and the key Y are input as independent variables into the security enhancement function for operation, and the operation result is used as the final key Z. When the security parameter of the generated original key is greater than the security parameter required by the actual application, the security strength is enhanced by using M independent original keys, and the specific operation comprises: the M independent original keys are input as independent variables into the security enhancement function for operation, and the operation result is used as the final key Z.
Owner:Chinese People's Liberation Army Cyberspace Force Information Engineering University

Method and system for transforming security advisories into targeted mitigation strategies

A computer-implemented method for transforming security advisories into targeted actionable mitigation strategies is provided. The method includes receiving a security advisory describing a vulnerability, processing the security advisory using a first language learning model (LLM) to extract vulnerability characteristics, generating an interaction model of sub-systems within a target system based on a topology of the target system, generating at least one actionable mitigation strategy for the vulnerability using a fine-tuned second LLM based on the extracted vulnerability characteristics and the interaction model, and outputting the actionable mitigation strategy as a security enhancement implementable on the target system. The method enables customized security enhancements for systems lacking official patches or manufacturer support.
Owner:SIEMENS INDUSTRY INC

Domain name resolution security enhancement method and device, equipment, medium and program product

The invention provides a security enhancement method and device for domain name resolution, equipment, a medium and a program product, and the method comprises the steps: querying whether a first NS record list corresponding to a to-be-verified domain name exists in a parent domain server, and verifying the validity of parent domain authorization of the to-be-verified domain name; a first NS record corresponding to a domain name to be verified is inquired from a sub-domain server indicated by the first NS record, a second NS record corresponding to the domain name to be verified is inquired from a sub-domain server indicated by the first NS record, whether the NS record of the domain name to be verified is credible or not is judged by comparing the first NS record with the second NS record, and a local credible NS database is constructed based on a strict data verification process, so that a technical basis is provided for real-time domain name resolution; and the domain name resolution result is returned to the user terminal in combination with the query result of the credible NS record and the real-time NS record, so that the accuracy of domain name resolution can be guaranteed to the greatest extent, and domain name resolution abnormity and network attacks caused by the problems of conflict authorization, invalid authorization, cyclic authorization and the like are effectively reduced.
Owner:CHINA ACADEMY OF INFORMATION & COMM

Smart home configuration method, system and equipment based on CUI control

The invention relates to the technical field of smart home, and discloses a smart home configuration method, system and device based on CUI control, and the method comprises the steps: generating an executable control instruction of a smart home device responding to original voice data; performing task allocation on the executable control instruction to obtain a to-be-processed instruction subset, and optimizing the to-be-processed instruction subset into a time sequence adjustment instruction sequence based on a conflict detection algorithm; carrying out localization processing on the time sequence adjustment instruction sequence to obtain an anti-interference sound wave instruction stream, and carrying out offline two-dimensional code packaging on the anti-interference sound wave instruction stream; performing preliminary security enhancement processing on the anti-interference sound wave instruction stream, and performing OTA security upgrading processing on the firmware mirror image; and respectively carrying out scene instruction execution operation and scene execution feedback processing on the time sequence adjustment instruction sequence. The invention aims to realize high-precision, low-delay, off-line available, safe and reliable smart home automatic configuration through a terminal-cloud collaborative voice interaction link.
Owner:HARBIN SAISI TECH CO LTD

Intelligent roadside terminal security processing method and system based on multimode communication cooperation and dynamic key chain

The invention provides an intelligent roadside terminal security processing method and system based on multimode communication collaboration and a dynamic key chain, and relates to the technical field of intelligent traffic and network space security crossover, and the method comprises the steps: obtaining a master key based on a trusted mechanism, and carrying out the registration of a roadside terminal through the master key, distributing a unique identification roadside terminal ID and an initial key for each roadside terminal; a secure link is established through an initial key, a roadside terminal collects 3D spatial position information of the roadside terminal and an accessed vehicle and forms a 3D point set to determine the spatial association priority of the vehicle and each roadside terminal, and meanwhile, the channel quality of a communication mode is evaluated in real time to obtain an evaluation result. The key message delay is less than or equal to 30ms, the cross-terminal authentication time is less than or equal to 10ms, the key leakage risk is reduced, and the vehicle-road collaborative real-time performance and security enhancement requirements are met.
Owner:XIAMEN JINLONG CAR ACCESSORIES CO LTD

A method and system for network traffic anomaly supervision protection

The application provides a method and system for network traffic anomaly supervision protection, comprising: collecting original traffic data in a network in real time, determining network response behavior corresponding to the original traffic data and a corresponding traffic execution object, using a preset supervision rule to perform anomaly identification on the network response behavior and the traffic execution object respectively, obtaining a traffic anomaly level corresponding to each original traffic data, inputting the original traffic data into a level protection model for anomaly optimization, eliminating anomaly characteristics of each original traffic data, then performing backtracking analysis on the original traffic data to obtain an anomaly reason corresponding to the original traffic data, performing corresponding security enhancement processing on the network according to the anomaly reason, compensating for network security vulnerabilities from the root cause, improving the resistance of the network to similar anomalies, continuously improving the network security protection level, and effectively responding to changing network security threats.
Owner:深圳市生态环境智能管控中心

Intelligent Security Situation Awareness Method and System Based on Multidimensional Data Analysis

This application provides an intelligent security situation awareness method and system based on multidimensional data analysis, relating to the field of network security technology. The method includes: classifying, filtering, and fusing attack event databases of wireless communication networks to determine multidimensional attack drill schemes; conducting attack drills on virtual communication networks according to the multidimensional attack drill schemes; performing attack and defense situation fusion modeling based on the multidimensional drill dataset to obtain a multidimensional drill attack and defense confrontation model; introducing a security situation assessment index system to conduct security situation awareness on the multidimensional drill attack and defense confrontation model, constructing a multidimensional drill security situation profile; and performing enhanced security management of the wireless communication network. This application solves the technical problem in existing technologies where the disconnect between attack and defense drills and the actual network environment leads to the inability to timely identify complex new attacks, affecting the accuracy of security situation awareness. It comprehensively improves attack identification capabilities, enhances the practicality of attack and defense drills, and improves network security protection efficiency.
Owner:ZHEJIANG CHUANGZHI TECH CO LTD

Security enhancement method, device, equipment and system for application data migration of terminal equipment and storage medium

The invention relates to the technical field of communication security. The invention discloses a security enhancement method, device, equipment and system for migrating application data by terminal equipment and a storage medium, which can ensure the security of application data transmission, prevent the permission abuse phenomenon of the equipment and balance the security of data transmission and the experience feeling of a user. The method comprises the following steps: generating symmetric key information based on user account information of a first service application program, wherein the first service application program is any service application program in first terminal equipment; performing encryption processing on to-be-moved data of the first service application program by adopting the symmetric key information to obtain a first ciphertext; and when the first relocation application program of the first terminal device transmits the application data of the terminal manufacturer in the first terminal device to a second terminal device of the security enhancement system of the terminal device migration application data through the transmission channel, the first ciphertext is transmitted to the second terminal device.
Owner:深圳开鸿数字产业发展有限公司

Quantum-resistant security enhancement method for openid connect

The present application discloses a quantum-resistant security enhancement method for OpenID Connect in a communication network. The method comprises: when communication preprocessing is completed, receiving quantum-resistant token request information sent by a client; generating an access token and an identity token on the basis of the quantum-resistant token request information; generating a temporary key pair associated with the client; acquiring a quantum key identifier; processing the access token to generate a quantum-resistant access token; obtaining a quantum-resistant identity token on the basis of the temporary key pair, the quantum key identifier, post-quantum cryptography and the identity token; sending the quantum-resistant access token and the quantum-resistant identity token to the client; and receiving a resource access request generated on the basis of the quantum-resistant access token and the quantum-resistant identity token, and confirming an access permission to a corresponding resource, such that the client performs resource access on a server. The server and the client encrypt communications by means of post-quantum cryptography and quantum key distribution, thereby significantly enhancing the ability to resist quantum computing attacks.
Owner:CHINA TELECOM QUANTUM INFORMATION TECH GRP CO LTD

AI and security enhancements to a secure, compliant electronic trading platform using the open outcry methodology

A secure, compliant trading platform for securities exchange using the open outcry methodology within a secure electronic exchange environment that reduces or eliminates unfairness and opportunities for fraud within the marketplace. Enhancements to the system include the addition of an exchange blockchain for recording all trade events, smart contracts that allow the use of digital currencies for monetary transactions associated with trades, and an intelligent exchange assistant that monitors the exchange member's activity and offers contextual notifications and makes recommendations in real-time to assist the exchange member. The system assures that private information is retained private and the blockchain records immutable data that is used for compliance checking and performance analytics.
Owner:MELKOMIAN RAYMOND MICHAEL

Quantum-resistant security enhancement method for open authorization protocol

Disclosed in the present application is a quantum-resistant security enhancement method for an open authorization protocol in a communication network. The method comprises: sending an authorization request to a second network device; receiving an authorization code generated by the second network device on the basis of the authorization request; on the basis of the authorization code, acquiring a first quantum key from a first network node; on the basis of the first quantum key and a post-quantum cryptography algorithm, performing encryption processing on parameter information of an initial token request, so as to obtain quantum-resistant parameter information, and sending the quantum-resistant parameter information to the second network device; receiving a quantum-resistant token sent by the second network device; and on the basis of the quantum-resistant token, sending a resource access request to the second network device, and the second network device confirming an access permission for a resource on the basis of the resource access request, such that a first network device performs resource access on the second network device. The first network device and the second network device perform encrypted communication by using a post-quantum cryptography algorithm and a quantum key distribution technique, thereby significantly enhancing the capability of resisting quantum computing attacks.
Owner:CHINA TELECOM QUANTUM INFORMATION TECH GRP CO LTD

Closed-loop watchdog security enhancement method, device and equipment and storage medium

The invention provides a closed-loop watchdog security enhancement method and device, equipment and a storage medium, and relates to the technical field of computers. A closed-loop watchdog security enhancement method is applied to a multi-core processor system, and comprises the following steps: in response to a situation that any processor in the multi-core processor system successfully completes a watchdog feeding operation, sending a monitoring signal to an adjacent next processor based on the processor; a plurality of processors in the multi-core processor system are configured to be a closed-loop structure for sequentially transmitting monitoring signals; in response to the situation that each processor does not receive a monitoring signal sent by an adjacent previous processor within the target timeout time, determining that the previous processor is an abnormal processor; and reading the abnormal information of the abnormal processor, and sending the abnormal information to the cloud platform. Therefore, the coverage rate and the sensitivity of fault detection are improved.
Owner:SHANDONG YUNHAI GUOCHUANG CLOUD COMPUTING EQUIP IND INNOVATION CENT CO LTD