Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

88 results about "Security guarantee" patented technology

A security guarantee is a type of guarantee where the guarantor provides real estate as additional security for the borrower’s loan.

Data control method and system, electronic equipment and storage medium

The invention relates to the technical field of computers, and discloses a data control method and system, electronic equipment and a storage medium, and the method comprises the steps: receiving a data control strategy defined by a data owner, and the data control strategy is constructed based on a quintuple framework and comprises a subject, an object, an environment condition, an operation behavior and an effect; compiling the data control strategy into an intelligent contract code, and generating a source code based on an intelligent contract template; deploying the smart contract code to a block chain network to form a decentralized strategy decision point; intercepting the data access request, triggering the smart contract to verify the access request, and generating an access credential when the verification is passed; and allowing data access based on the access credential, and monitoring a data use behavior to ensure consistency with the data control strategy. According to the method, the fine granularity and the whole-process coverage of data control can be improved, the auditing credibility can be improved, the automation level and the efficiency of a control system can be improved, and the end-to-end safety guarantee capability is enhanced.
Owner:TONGFANG KNOWLEDGE DIGITAL PUBLISHING TECH CO LTD

Cloud-side collaborative household arrhythmia early warning AI intelligent agent

The invention discloses a cloud-side collaborative household arrhythmia early warning AI agent, and relates to the technical field of AI agents. The system specifically comprises a data acquisition module, an edge computing module, a cloud computing module, an application module and a safety guarantee module, the data acquisition module acquires electrocardio and related physiological signals in real time through wearable equipment, and the edge computing module performs preprocessing and preliminary anomaly detection on data, quickly responds and screens key data and uploads the key data to a cloud; the cloud computing module carries out deep analysis and personalized model training; the application module converts a cloud result into real-time early warning and health suggestions and pushes the real-time early warning and health suggestions to the user and medical personnel; the security guarantee module runs through the whole process, and ensures the privacy and security of data in acquisition, transmission, storage and application. According to the invention, data processing is scientific and efficient, data can be comprehensively collected and preprocessed, meanwhile, real-time preliminary screening and secure transmission are realized, and the transmission pressure and privacy risk are reduced.
Owner:GENERAL HOSPITAL OF SOUTHERN THEATRE COMMAND OF PLA

Federal recommendation privacy protection method and system based on ring signature and selective aggregation

The invention discloses a federal recommendation privacy protection method based on ring signature and selective aggregation, which realizes anonymization privacy protection and selective aggregation in a federal learning process through an innovative double-server architecture and a hierarchical security mechanism. The method comprises the following steps: 1) deploying an aggregation server and a security server in a system initialization stage, and completing parameter initialization and key distribution; 2) the client executes local model training, and anonymization privacy protection uploading is realized by adopting a ring signature technology; 3) the security server performs selective aggregation of credibility verification, and completes grouping and parameter fusion based on user similarity; and 4) ensuring the completeness and source credibility of model updating through a hierarchical security parameter distribution mechanism. While the recommendation precision is ensured, the user identity leakage and privacy tracking are effectively prevented, the comprehensive security guarantee is provided for the federal recommendation system, and the method has the advantages of low calculation overhead and high communication efficiency.
Owner:SOUTHEAST UNIV

Financial private network optimization method and system oriented to AI large model

The invention discloses an AI large model-oriented financial private network optimization method and system, and relates to the technical field of communication networks. According to the method, an exclusive path strategy is generated for AI training, reasoning and sensitive data traffic by collecting AI service requirements and network states and utilizing the SID programming capability of SRv6; the load of the computing power node is monitored in real time, the computing power state is linked with network scheduling, and network-computing power collaborative optimization is realized; a hop-by-hop path authentication mechanism based on a dynamic authentication segment identifier Auth-SID is introduced, so that the security of a data transmission path is enhanced; and end-to-end visual operation and maintenance and closed-loop feedback of the service flow are realized by adopting a flow-following detection technology. According to the invention, the problems of mismatching of flow scheduling and AI service requirements, insufficient network and computing power collaboration, lack of path security guarantee and weak operation and maintenance visualization capability in the prior art are solved, deep adaptation of network resources and the AI service requirements is realized, and the computing power collaboration efficiency, the path security and the operation and maintenance intelligence level are improved.
Owner:SHANDONG CITY COMMERCIAL BANK COOP ALLIANCE CO LTD

Zero-trust gateway single packet authentication method and system for new energy fan control system, computing equipment, computer storage medium, computer program product and chip

The invention discloses a zero-trust gateway single packet authentication method and system for a new energy fan control system, computing equipment, a computer storage medium, a computer program product and a chip. The authentication method comprises the steps of generating an authentication material; exchanging and deriving a mixed key; binding Hash calculation is carried out; encrypting and assembling the message; receiving and verifying by the gateway; and binding verification and registration are carried out. The invention relates to a zero-trust gateway single packet authentication method combining a post quantum cryptography algorithm and a national commercial cryptography algorithm. The method is applied to secure communication between a wind power plant and a centralized control center, an SM2, SM3 and SM4 combined algorithm in a national secret system is combined with a post-quantum key agreement algorithm CRYSTALS-Kyber512, identity authentication, encryption and integrity verification are completed through a single message, confidentiality protection and anti-quantum security guarantee under one-time interaction are achieved, and the security of the wind power plant is improved. The method is especially suitable for new energy scenes with wide fan distribution, complex links and high real-time requirements.
Owner:DATANG HUAXIAN WIND POWER GENERATION CO LTD

Quantum key distribution system and method

The invention discloses a quantum key distribution system and method. According to the system, a phase coherence monitoring mechanism is innovatively introduced, and early attack detection is realized through a dynamic consensus sampling protocol; a zero-trust relay network is constructed by adopting a wavefront fragmentation principle, and trust dependence on relay nodes is eliminated; self-adaptive safety monitoring is realized based on a finite state automaton, and a system safety strategy is dynamically adjusted. According to the method, the problems of resource consumption type attack, relay trust dependence, static protocol limitation and the like faced by an existing QKD system are solved through a strict mathematical framework, and long-distance quantum key distribution with efficient resources, endogenous security and elasticity and physical layer security guarantee is realized. Experiments show that compared with a traditional scheme, the detection delay of the system is reduced by about 38%, the resource waste is reduced by about 40%, and the availability of the system reaches 99.995% or above.
Owner:CHIZHOU JIAYIN MOTOR & CONTROL SYSTEM CO LTD

Insurance customer cross-institution credit risk assessment system based on federal learning

InactiveCN121504632AFinanceDigital data protectionEvaluation resultRisk appraisal
The invention provides an insurance customer cross-institution credit risk assessment system based on federated learning, and relates to the technical field of credit risk assessment, and the system comprises a data preprocessing module, a federated training module, a privacy protection module, a block chain excitation module, an interpretability enhancement module, a model optimization module and a risk assessment module. Through federal learning, available and invisible collaboration of cross-mechanism data is realized, exclusive risk features of the insurance industry are extracted, training strategies and privacy protection intensity are dynamically adjusted, mechanism contributions are quantified, automatic excitation is performed, compliance interpretable evaluation results are generated, and an insurance service cycle optimization model is adapted. According to the invention, comprehensive improvement of risk assessment accuracy, business scene adaptability, privacy security guarantee and supervision compliance is realized through cooperation of multiple modules, and an efficient, safe and feasible integrated technical scheme is provided for cross-institution credit risk assessment in the insurance industry.
Owner:CHINA LIFE INSURANCE CO LTD INNER MONGOLIA AUTONOMOUS REGION BRANCH

Instruction tamper-proofing device for traffic information board system

The invention discloses an instruction tamper-proofing device for a traffic information board system, relates to the field of traffic information security, and solves the three technical problems of key clone risk, high computing power dependence and poor environmental adaptability of a traditional encryption scheme. A tamper-proof system is constructed through a triple cooperation mechanism: a unique unclonable physical feature is extracted based on a physical unclonable circuit, efficient integrity verification is realized through a segmented cascade parity check circuit, and a timestamp is accurately compared in combination with a temperature compensation clock; and multi-dimensional features are fused, spliced and integrated, tampering recognition is performed through feature comparison, and ultimate protection is formed if irreversible hardware is triggered to fail if tampering recognition is performed. The device achieves pure hardware millisecond-level response, thoroughly eliminates software dependence, maintains zero misjudgment rate in an extreme environment, ensures full-life-cycle safety of instructions through physical-level protection, and provides unduplicated safety guarantee for an information board system.
Owner:YUNNAN YUNLING EXPRESSWAY TRAFFIC TECH

Knowledge asset traceability tracking method based on digital watermarking

The invention provides a knowledge asset traceability tracking method based on digital watermarking, and the method comprises the steps: obtaining to-be-protected knowledge assets, and extracting the multi-modal feature representation of the knowledge assets; according to the method, spatial intensity mapping is dynamically generated by combining a prediction model, intelligent embedding is realized, a DWT-SVD mixed domain core technology is adopted, the multi-resolution analysis capability of discrete wavelet transform and algebraic stability of singular value decomposition are fully played, tracing anchor points are provided for watermarks, and meanwhile, a multiple security guarantee system is constructed, so that the security of the watermarks is improved. And finally, an asset identification module, a watermark generation module, an intelligent embedding module, a traceability verification module and an audit report module are integrated through end-to-end systematic design, so that a complete management closed loop is formed, and the system universality is improved. The full-life-cycle management function enables intellectual property risk management and control through log auditing and a visual report, so that the concealment and safety of the digital watermark are improved.
Owner:INFORMATION & COMMUNICATION BRANCH STATE GRID JIBEI ELECTRIC POWER CO LTD +3

Multi-stage security task unloading optimization method for low-altitude intelligent network

The invention discloses a low-altitude intelligent network-oriented multi-stage security task unloading optimization method, and belongs to the technical field of low-altitude intelligent network edge computing. The method aims at solving the problems that exploration and development of a traditional task unloading method in a low-altitude dynamic heterogeneous network environment are unbalanced, optimization precision is insufficient, and safety guarantee is insufficient. The method comprises the following steps: constructing a network architecture containing communication, calculation and security models based on basic information of low-altitude intelligent network equipment; configuring a multi-constraint optimization problem; after the initial population is generated, searching a globally optimal solution by adopting an improved escape optimization algorithm; and executing calculation energy consumption optimization configuration according to the optimal solution. According to the method, algorithm innovation and security constraint design are combined, task unloading efficiency, resource allocation rationality and data transmission security are cooperatively improved, and dynamic heterogeneous features of the low-altitude intelligent network are adapted.
Owner:EAST CHINA JIAOTONG UNIVERSITY

An information project whole process supervision management platform

The application provides a kind of information project whole process supervision management platform, comprising: data acquisition layer, core supervision layer, intelligent analysis layer, application display layer, data storage layer and security guarantee layer.A kind of information project whole process supervision management platform provided by the application, through data acquisition layer, core supervision layer, intelligent analysis layer, application display layer, data storage layer and security guarantee layer etc. Structure mutual cooperation, when using, data acquisition layer realizes multi-source data automatic convergence and standardization, without manual integration scattered data, so as to improve the degree of supervision informationization;Core supervision layer covers the whole life cycle of project, solidifies unified supervision standard, intelligent analysis layer realizes risk real-time early warning through algorithm, application display layer provides personalized mobile operation, data storage layer and security guarantee layer guarantee data security traceable.
Owner:BEIJING LIANHAI INFORMATION SYST CO LTD

Monitoring management module and method, microcontroller, computer program and storage medium

ActiveCN115755665BMicrocontrollerWorkload
The application provides a monitoring management module and method, a microcontroller, a computer program and a storage medium. The monitoring management module uniformly runs a security mechanism irrelevant to a virtual machine function or also runs a security mechanism corresponding to a started virtual machine. When a security mechanism monitoring error occurs, if the security mechanism is irrelevant to the virtual machine function, a global response or a partition response is executed; if the security mechanism is relevant to the virtual machine function, a fault response of the corresponding virtual machine is executed. It can be seen that by uniformly managing each security mechanism, the safe running environment of each virtual machine can be maximally ensured, the virtual machine does not need to perform security guarantee by itself, the development workload of the virtual machine monitoring software is reduced, and the hardware resources in the microcontroller and the computing resources of the central processing unit are saved, so that the cost is effectively reduced. In addition, the fault responses are separately managed, so that the virtual machines irrelevant to the fault can be ensured to normally run, and the system availability is improved while the system security is ensured.
Owner:UNITED AUTOMOTIVE ELECTRONICS SYST

Block chain fragmentation system error fragmentation security guarantee method and system

The invention discloses a block chain fragmentation system error fragmentation security guarantee method and system, and the method comprises the steps: transmitting a request message to other nodes in an entrance fragment if a node is a node in the entrance fragment after a security guarantee trigger condition and a round trigger condition are satisfied, and determining a random fragment; after the leader node receives the request message with the preset proportion, a forwarding message is generated and sent to all nodes in the random fragment; after receiving the forwarding message of the leader node, the node in the random fragment generates a state message and feeds back the state message to the leader node; the leader node generates a new cycle message after receiving a preset proportion of consistent state message in the random fragment, and sends the new cycle message to all nodes in the entry fragment; and after receiving the new cycle message, the node in the entry fragment executes a conflict processing operation. According to the method, the situation that the security or activity of transactions in the fragments is threatened due to the fact that error nodes possibly exceed a threshold value in part of the fragments can be handled.
Owner:TSINGHUA UNIVERSITY

Adjustable disposable endoscope

The utility model relates to the technical field of endoscopes, in particular to an adjustable disposable endoscope which comprises a grip, a switch and a connecting wire are arranged on the lower side of the grip, an inner assembly is arranged on the upper side of the grip and fixed to the grip through a fixing assembly, and the inner assembly is connected with the grip through a connecting wire. The inner mechanism is provided with a positioning assembly used for positioning the fixing assembly, through collaborative design of the fixing assembly and the positioning assembly, through the fixing assembly, stable installation of the inner assembly is ensured, meanwhile, convenient operation of rapid disassembly and assembly is achieved, and the maintainability of equipment is greatly improved; the positioning assembly and the fixing mechanism are matched to realize a double locking mechanism, so that the safety guarantee is improved, the accidental falling risk in clinical operation is effectively prevented, the inner assembly can be quickly replaced after single operation by adopting a disposable scheme, next detection is carried out, and the replacement efficiency in a high-frequency use scene is improved.
Owner:YANTAI DINGJUN NEW MATERIAL TECH CO LTD

Method, device, blockchain network and storage medium for controlling data access

The application discloses a data access control method, device, blockchain network and storage medium. The method comprises: a client initiates a registration request to a password device, the registration request comprising identification information; receiving signature data and a first key, wherein the signature data is obtained by the password device signing the first key and the identification information based on a private key of a first public-private key pair of a blockchain network, and the first key is an access password of the password device; generating a second key based on the signature data, the second key being a root key for generating a second public-private key pair, and the second public-private key pair being a key of an extended network of the blockchain network. In this way, the access password and the client identification information are signed by the private key of the first public-private key pair of the blockchain network to obtain the signature data, which has high randomness and high security, thereby providing a security guarantee for subsequently generating the root key of the key pair of the extended network of the blockchain network.
Owner:CHINA MOBILE (SUZHOU) SOFTWARE TECH CO LTD +1

A database synchronization method and system supporting virtual machine and container deployment

The application relates to the technical field of database synchronization, in particular to a database synchronization method and system supporting virtual machine and container deployment, which comprises the following steps: architecture design, task definition and configuration, automatic deployment and intelligent scheduling, service discovery and load balancing, monitoring and alarming, security guarantee, and has the beneficial effects that the database synchronization method and system supporting virtual machine and container deployment are combined with the advantages of distributed scheduling of Nomad and containerization or virtualization technology, and through automatic deployment, intelligent scheduling and elastic expansion and other means, efficient and reliable execution of a database synchronization task is realized.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

A data space construction method and device

The application discloses a data space construction method and device, wherein the method comprises the following steps: distributing a data security engine, a data management terminal and a data space user terminal at the bottom layer of a data space system; performing data service analysis on the protection of the bottom layer data based on the data security engine, the data management terminal and the data space user terminal; wherein the data security engine comprises an access control model, a data desensitization algorithm, a data structure model, a data control flow model and an identity recognition model; accessing a plurality of data sources by using a data access module; accessing the data sources corresponding to the data management terminal, the data user terminal and the data security engine into the data space of the data space system to obtain the data sources of the data space; and constructing a security protection layer based on the data security engine according to the data sources of the data space to form a secure data space. The application is used for providing security guarantee for data with high confidentiality and security requirements.
Owner:TSINGHUA UNIVERSITY

A distributed energy and load intelligent management and control system based on a smart home

PendingCN122639157ANew energyBattery capacity
The application discloses a kind of distributed energy and load intelligent management and control system based on wisdom family, including energy router host control unit, mains access module, family photovoltaic interface module, direct current energy storage interface module, new energy automobile charging interface module and household electricity interface module.Mains, photovoltaic, new energy automobile charging and household electricity interface module are connected with host control unit through direct current control type solid state relay.Direct current energy storage interface module is connected with host control unit through overcharge relay control circuit containing opto-coupler isolation device and switching triode, and integrates hardware level undervoltage protection circuit, provides double security guarantee of software and hardware.The host control unit of the application executes intelligent scheduling logic, according to illumination, energy storage battery capacity, power grid state and other information, preferentially allocates photovoltaic power supply, coordinates energy storage charging and discharging and power grid energy supplement, and guarantees core load power supply when power grid is powered off.
Owner:褚航

End-to-end verified trusted execution environments

Disclosed herein is a formalized programming framework using memory compartmentalization and other properties of certified compilers to provide that security guarantees verified at the source level also hold on the compiled code. A trusted execution environment formulated as a collection of objects that access separate memory locations and conform to a public interface.
Owner:CARNEGIE MELLON UNIV

Cross-border data security identification method and system based on streaming short object

The invention relates to a cross-border data security identification method and system based on a streaming short object, and belongs to the technical field of electric digital data processing, and the method comprises the following steps: generating a service identifier, recording outbound data by an enterprise, and generating a data content ID by using a plug-in; the method comprises the following steps: sampling and generating a streaming short label, firstly carrying out key communication between an injection device and an identification device, then generating a streaming short label data packet by the injection device in a pre-generation and dynamic generation combined mode, and carrying out real-time injection in a data transmission process; in the data packet generation process, equipment ID hash, subkey derivation, flow attribute abstract and data encryption are completed; when a data packet is identified, outbound security identification equipment monitors a data stream, extracts stream-following short identification information through feature bit matching and decryption operation, and analyzes and obtains corresponding stream attributes and transmission information. According to the invention, the traceability and security of the cross-border data flow are guaranteed, the risk of sensitive data leakage is avoided, and the compliance and controllability of cross-border data management are improved.
Owner:UNIV OF ELECTRONICS SCI & TECH OF CHINA

Charging pile Internet of Things communication security protection system with charging protocol encryption

The invention discloses a charging-protocol-encrypted charging pile Internet of Things communication security protection system, and relates to the field of new energy charging infrastructure and Internet of Things security. In order to solve the problems that an existing charging pile communication protocol is insufficient in encryption and prone to attack and information leakage, the system integrates the functions of charging protocol end-to-end encryption, two-way security authentication, key dynamic management, abnormal communication detection and a security operation and maintenance platform, and whole-process security guarantee of communication is achieved. Through trial verification, the communication data stealing and tampering event is zero, the attack detection blocking success rate reaches 98%, the operation and maintenance response time is shortened by 40%, and the user complaint rate is reduced by 35%. The system meets compliance requirements, has been popularized in multiple operating enterprises, significantly improves communication security and reliability, prevents network attack risks, and has significant security benefits.
Owner:SHAANXI KANGFU ELECTRONIC TECH CO LTD

Homomorphic encryption-based security assurance system for big data computation and analysis

The present application relates to the technical field of data processing, and more particularly to a big data computing and analysis security guarantee system based on homomorphic encryption, comprising a data feature extraction module for generating a structured feature label; a knowledge base driven encryption module for generating a homomorphic evolution signature structure ciphertext with traceable ciphertext operation state; a triple simulation calculation module for outputting three sets of calculation results; an arbitration verification module for executing a multi-level provable verification protocol based on the evolved signature structure, checking data structure integrity, constraint calculation result consistency and analysis vector similarity, and outputting a ciphertext with trusted credentials or an error code; a verifiable decryption module for analyzing the trusted credentials to generate an attribute-based decryption key, performing homomorphic decryption, and then generating an auditable result using zero-knowledge range proof technology and returning the authorized terminal. The dynamic evolution of the signature structure provides calculation process integrity evidence, multi-path cross verification realizes real-time tampering detection, and the auditable result completes end-to-end verification closed loop.
Owner:CHINA ACADEMY OF INFORMATION & COMM

Industrial data endogenous security method and system based on physical unclonable function and dynamic entropy pool

The invention discloses an industrial data endogenous security method, system and equipment based on a physical unclonable function and a dynamic entropy pool. The method comprises the following steps: generating an unclonable device root key at an industrial device end by using a PUF technology; constructing a dynamic entropy pool fusing the environment, the data and the service entropy; deriving a one-time session key based on the device root key and the dynamic entropy value; encrypting the industrial data by adopting a post quantum cryptography and symmetric cryptography hybrid mechanism; and carrying out dynamic slicing and confusion processing on the ciphertext to generate a data packet containing a mixed slice and an encryption mapping table. And at the access end, authority verification is performed through the block chain smart contract, a temporary access token is issued, and data recombination and decryption are completed by using the token. According to the invention, internal generation of the security slave device is realized, a full-link, self-adaptive and anti-quantum computing security guarantee from slave device identity and data generation to storage access is provided, and the method is especially suitable for a high-value and high-sensitivity industrial manufacturing environment.
Owner:NINGBO INTELLIGENT MFG TECH RES INST CO LTD

An operating device for a game for the elderly

ActiveCN224540943Uflexible designAdapt to different usage needsOlder peopleFixed frame
The utility model discloses an operation device for old -age game, including first support module, second support module, display module and operation module, first support module includes fixed frame and moving frame, the fixed frame is equipped with a plurality of fixed holes and first installation end, and one end of moving frame with first installation end swing joint, second support module includes middle part subassembly, upper assembly and lower assembly, and middle part subassembly is equipped with second installation end and second installation end with the other end of moving frame swing joint. The utility model discloses an operation device for old -age game, aims at solving the problem that present device support is not flexible, and the display effect is poor, and the operation is inconvenient and lacks the security guarantee, and the comfort and security of old people using game device are improved.
Owner:CHUZHOU ADVANCED FLEXIBLE CHIP RESEARCH INSTITUTE +1

Multi-security guarantee identifier issuing method based on identifier analysis

The invention discloses a multi-security guarantee identifier issuing method based on identifier analysis, which comprises the following steps: S1, identity authentication: issuing a unique identity certificate to a client needing to apply for an identifier by using an offline certificate issuing mode, and solving a string of unique identity authentication keys of the client through an encryption and decryption algorithm, the server stores the same secret key; step S2, identification quantity determination: the server calculates a redundant identification quantity according to the secret key quantity applied by the client, and finally sends an identifier to the client according to the redundant identification quantity; s3, the identifiers enter an identifier pool, the identifier pool divided into a normal identifier area and a redundant identifier area is established at the client, and the identifiers sent by the server are respectively put into the normal identifier area and the redundant identifier area according to the normally used identifiers and the remaining identifiers; and S4, identifier binding: randomly selecting one identifier from the normal identifier area in the identifier pool to complete binding of the identifier and the product. According to the invention, the security and authenticity of the identification are ensured.
Owner:SUZHOU XIAOLING INTERNET TECH CO LTD

Block chain data processing method and security guarantee system

The invention discloses a block chain data processing method and a security guarantee system, and the method comprises the following steps: calculating an optimal operation precision value through a multi-objective optimization algorithm according to an operation request of a protocol layer and to-be-processed data in combination with a precision strategy template library; according to the optimal operation precision value, an arithmetic logic unit data path is recombined through a multiplexer tree and a precision switching controller, and a hardware ready signal and a precision switching delay index are generated; according to the hardware ready signal and the current precision, performing analog-to-digital operation on the to-be-processed data to obtain an encrypted intermediate result, and calculating a security-efficiency product of the encrypted intermediate result; according to the safety efficiency product index and the operation side channel trace, the leakage risk is judged through correlation analysis, and the safety risk level is output; and according to the security risk level and historical data, obtaining global security configuration through variable coefficient and compatibility intersection analysis. According to the method, the security of the block chain in a quantum computing environment is enhanced by adopting an analog-to-digital operation technology with dynamic adjustable precision.
Owner:BEIJING NORTH KOCHIN INFORMATION TECH CO LTD +1

Data protection method of fusing quantum key in tls protocol 0-rtt

The application discloses a data protection method for fusing quantum keys in TLS protocol 0-RTT, and comprises the following steps: before a client and a server perform TLS handshake, the client performs integrity protection and one-time-one-encryption on initial application data by using a first quantum key set to obtain early data ciphertext; the client sends a Client Hello message and the early data ciphertext to the server; the server obtains a second quantum key set according to the received Client Hello message, decrypts and performs integrity verification on the early data ciphertext to obtain the initial application data, and marks all used quantum keys; the server sends a Server Hello message, and the client stops sending the early data ciphertext after confirmation, and completes forward security handshake; the data protection method adopts the one-time-one-encryption mode of the quantum key technology to realize stronger security guarantee.
Owner:UNIV OF SCI & TECH OF CHINA +1

Safety belt hook anti-falling device for high-place operation

The utility model discloses a high-altitude operation safety belt hook anti-falling device which comprises a mounting frame with two ends bent downwards, two hooks are arranged at the top of the mounting frame, one end of each hook is fixed to the top of the mounting frame, a connecting shaft is arranged between the hooks, and the ends of the connecting shaft are fixed to the ends of the hooks respectively. A guide shaft is arranged in the cavity of the mounting frame, two ends of the guide shaft are respectively fixed with the mounting frame, two connecting pieces are sleeved on the guide shaft, the connecting pieces can move along the guide shaft, a lifting hook is arranged between the connecting pieces, and the lifting hook is connected with the connecting pieces. The anti-falling device provides effective anti-falling measures for high-place operation, and strengthens the weakest contact part of safety guarantee measures, so that the safety belt is indirectly prevented from being damaged during sliding, and the high-place operation safety of an operator is improved.
Owner:CHINA MCC 2 GRP CO LTD

A large-scale examination proposition security risk prevention and control software platform based on proposition thinking reconstruction and an implementation method thereof

Based on the reconstruction of propositional thinking, the large-scale examination proposition security risk prevention and control software platform and its implementation method is a comprehensive system combining technology and management, aiming to ensure the security, confidentiality and fairness of the large-scale examination proposition process. Focusing on the core links of the whole life cycle of proposition, a closed-loop security guarantee system is constructed. In the proposition stage, hierarchical control of authority is implemented, and the operation authority of personnel is clearly defined according to the level. Real-time traces are recorded for the whole process of proposition to ensure the traceability of operation. In the test entry stage, manual entry and self-generation of reference examples based on multi-dimensional detailed table, special algorithm model and offline storage of core parameters are supported. In the test group stage, local intelligent test group, manual test group and parallel test group are supported, and the test can be grouped according to the preset difficulty distribution, proportion of test type, etc. AI intelligent risk monitoring runs through the whole process of proposition, accurately identifies security risks, and the functions of each link are coordinated to build a security protection barrier for examination proposition.
Owner:YUNSHANG (GUIZHOU) EDUCATION TECHNOLOGY CO LTD