Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

763 results about "Security level" patented technology

In cryptography, security level is a measure of the strength that a cryptographic primitive — such as a cipher or hash function — achieves. Security level is usually expressed in "bits", where n-bit security means that the attacker would have to perform 2 operations to break it, but other methods have been proposed that more closely model the costs for an attacker. This allows for convenient comparison between algorithms and is useful when combining multiple primitives in a hybrid cryptosystem, so there is no clear weakest link. For example, AES-128 (key size 128 bits) is designed to offer a 128-bit security level, which is considered roughly equivalent to 3072-bit RSA.

Method and system for realizing USB flash disk equipment interaction based on flash memory encryption technology

The invention relates to the technical field of cores, and discloses a method and a system for realizing USB flash disk equipment interaction based on a flash memory encryption technology, which comprises the following steps of: dividing an encryptable data block of a flash memory controller, and determining a dynamic entropy weight of the encryptable data block by utilizing an equipment interaction instruction and a random noise characteristic signal; generating a self-adaptive key generation sequence capable of encrypting data blocks through an address allocation mode and a dynamic entropy weight of a flash memory controller; calculating a side channel leakage risk index of the flash memory controller, and setting a security level label of an encryptable data block in combination with a self-adaptive key generation sequence; the method comprises the following steps: setting a differentiated security protection mechanism of an encipherable data block by constructing an access control matrix of the encipherable data block and an encryption risk area of a flash memory controller; and generating a secure interaction scheme of the USB flash disk equipment based on the self-adaptive key generation sequence in combination with the differential security protection mechanism and the access control matrix. According to the invention, the interaction safety and reliability of the USB flash disk equipment can be improved.
Owner:SHENZHEN LINGCHUANG IND CO LTD

Industrial Internet of Things equipment data encryption transmission method based on edge computing

The invention discloses an edge computing-based industrial Internet of Things equipment data encryption transmission method, which comprises the following steps of: constructing an edge node alliance comprising at least two cross-regional edge gateways, completing bidirectional identity authentication through an alliance root certificate, and establishing an encrypted communication link; industrial equipment collects original data and then transmits the original data to an edge gateway which the industrial equipment belongs to, and the gateway extracts data features and divides the data features into a core control level, a process parameter level, a common monitoring level and a security level; differential encryption strategies are adopted for different levels of data; each edge gateway uploads the encrypted data to a distributed key management node, and obtains and synchronizes a periodically updated key chain; during cross-region transmission, performing secondary packaging and encryption to generate a data packet containing identifications such as a security level and the like; and the receiving end verifies the legality of the node, decrypts and verifies the integrity of the data, distributes the data if the decryption is passed, and blocks the alarm if the decryption The method is suitable for scenes such as single-area monitoring and multi-area manufacturing, data security and transmission efficiency balance are achieved, and all-weather stable transmission is guaranteed.
Owner:HEFEI UNIV OF ECONOMICS

Data encryption method, encryption equipment and storage medium

The invention relates to the technical field of data encryption, and discloses a data encryption method, encryption equipment and a storage medium. In the method, an encryption device obtains to-be-encrypted data uploaded by a terminal, and extracts a plurality of data features from the to-be-encrypted data, the data features including a data sensitive feature, a business risk feature and a user behavior feature; performing quantitative scoring on the plurality of data features to obtain a plurality of feature scores, and calculating a total data score according to the plurality of feature scores; inputting the total data score into a preset trained decision tree model to determine the security level of the to-be-encrypted data; according to the security level, determining a target encryption algorithm from a preset corresponding relationship between the security level and the encryption algorithm; and encrypting the to-be-encrypted data according to the target encryption algorithm and the dynamically generated encryption key. By means of the method, the problems that differential protection is difficult to achieve according to data characteristics in a related encryption method, and security risks are caused by key management staticization are solved.
Owner:SHANGHAI TELECOMM ENG

Switch security protocol interaction method, device and equipment and storage medium

The invention provides a switch security protocol interaction method and device, equipment and a storage medium, and the method comprises the steps: carrying out the protocol type recognition of a received network data frame, and generating first intermediate data according to the recognized protocol type; according to the protocol type identifier of the first intermediate data, converting the format of the network data frame through a protocol mapping rule to generate second intermediate data; determining a security processing strategy corresponding to a preset strategy rule set according to the strategy identification field of the second intermediate data; reconstructing the original content of the second intermediate data into a target data frame conforming to a target protocol format according to a security processing strategy; and according to the security level field and the communication direction of the target data frame, performing path screening through the trusted path list, and determining a target interaction path. According to the scheme, the trusted interaction path can be dynamically screened based on the protocol type and the security level field of the target data frame, and controllable data transmission between switches under security protocol cooperation is realized.
Owner:SHENZHEN SCODENO TECH CO LTD

Computer file protection method

The invention discloses a computer file protection method, which relates to the technical field of computer information security, and comprises the following steps of: S1, classifying files and marking security levels based on content characteristics and sensitivity; s2, dividing system user permission levels and configuring a multi-factor authentication mechanism; s3, constructing a file access control matrix and setting a fine-grained operation authority rule; s4, deploying an access behavior monitoring module, and recording a file operation behavior log in real time; s5, performing dynamic risk analysis based on behavior modeling and an anomaly recognition algorithm; s6, performing hierarchical response according to the risk level, wherein the hierarchical response comprises measures such as warning, limiting, network disconnection and locking; and S7, encrypting and storing the log information, and providing an auditing interface for behavior traceability. According to the method, static permission control and a dynamic behavior recognition mechanism are fused, full-process intelligent protection of files from creation, access, transmission to storage is achieved, and the method has the advantages of being high in safety, timely in response, capable of achieving self-adaptive evolution of strategies and the like.
Owner:JIANGSU INST OF ECONOMIC & TRADE TECH

Intelligent generation and closed-loop optimization method for aviation airborne software test case

The invention discloses an aviation airborne software test case intelligent generation and closed-loop optimization method, which comprises the following steps of: knowledge graph construction: analyzing a DO-178C standard document and a related field document, extracting entities and relationships defined in the DO-178C standard document and the related field document, and constructing a field knowledge graph fused with DO-178C standard knowledge; initial test case generation: based on the domain knowledge graph, combining a static analysis result of the source code of the tested airborne software, and utilizing a large language model to drive and generate an initial test case set; and closed-loop iterative optimization: executing the test case, evaluating whether the structural coverage rate reaches the standard or not, automatically identifying uncovered codes when the structural coverage rate does not reach the standard, generating a supplementary test case for iterative optimization, and outputting a final test case set until a coverage rate target corresponding to the software security level is met. According to the method, the test quality and efficiency of the aviation airborne software can be improved.
Owner:YANGZHOU UNIV

Molecular identity authentication system and method based on layered assembly of DNA origami framework

The invention provides a molecular identity authentication system and method based on DNA origami framework layered assembly. The molecular identity authentication system comprises a disclosed skeleton chain and a plurality of shared staple chains, the shared staple chain comprises staple chains shared by three groups of single bodies and staple chains shared in pairs, and the staple chains are used as secret keys to be distributed to three participants so as to prepare the three groups of single bodies respectively, and then the three groups of single bodies are combined and spliced into a tripolymer with a dot matrix pattern, so that multi-user collaborative layered chain type assembly is realized. According to the molecular identity authentication system based on DNA origami framework layered assembly, the system combination complexity is improved to the information theory security level, so that the biological information security protection capability is improved, and brute force cracking is prevented.
Owner:SHANGHAI JIAOTONG UNIV +1

Multi-level Internet of Things equipment security management and access control method

The invention belongs to the technical field of Internet of Things security, and particularly relates to a multi-level Internet of Things equipment security management and access control method, which comprises the following steps of: performing bidirectional verification on a digital certificate and a hardware fingerprint through an edge node when equipment is accessed; calculating credibility in real time and dynamically dividing security levels by using a hybrid evaluation algorithm based on equipment operation context data; a fine-grained access strategy is generated in combination with equipment attributes and environmental risks, and cross-level collaboration is realized through a lightweight protocol; abnormal behaviors are detected in real time in the access process, and high-risk operation is blocked within milliseconds; and strategy conflict resolution and adaptive optimization are realized through formalized verification and deep reinforcement learning. According to the technical scheme, the identity authentication reliability, the authority dynamic adaptability, the strategy consistency and the threat response speed of the Internet of Things equipment are remarkably improved, and a systematic security guarantee is provided for large-scale Internet of Things applications with high security requirements.
Owner:XIANNING YUCHUANG TECHNOLOGY CO LTD

Cloud storage method and system of Internet of Things equipment data

The invention provides a cloud storage method and system for Internet of Things equipment data, and relates to the technical field of Internet of Things data storage and processing, and the method comprises the steps: collecting metadata of a plurality of Internet of Things equipment in an Internet of Things environment; performing tagging processing on the metadata to form a standardized data packet; performing hierarchical compression processing on the standardized data packet, and extracting multi-dimensional features from the data packet after the hierarchical compression processing; inputting the multi-dimensional features into a multi-modal neural network model based on deep learning, analyzing the multi-dimensional features through the multi-modal neural network model, generating a target storage priority index, and determining a corresponding security level according to the target storage priority index; and based on the security level, performing differential encryption processing on the data packet after hierarchical compression processing by using a lightweight encryption algorithm, and transmitting the encrypted data packet to a storage area corresponding to the cloud. According to the invention, the efficiency and security of Internet of Things data storage are improved.
Owner:南京职豆豆智能科技有限公司

Intelligent ai routing advisory platform with synthetic injection testing, bias detection digital twin, zero-copy pipeline, cryptographic compliance verification, and autonomous multi-tier coordination for heterogeneous ai provider ecosystems

A computer-implemented system for routing artificial intelligence (AI) queries. The system utilizes a zero-copy data pipeline, which processes prompts in memory-mapped buffers to eliminate at least one memory copy operation, thereby reducing latency relative to conventional serialization pipelines. The system continuously verifies AI provider compliance by injecting synthetic prompts containing invisible, Ed25519-signed Unicode watermarks. Algorithmic bias is detected by generating counterfactual “digital twin” prompts and applying Fisher exact statistical testing.Routing decisions for multi-tier autonomous systems are governed by safety-level requirements (ASIL-D, ASIL-B, QM) and may be constrained by external routing directives received via a meta-identifier. A hash-chained manifest, cryptographically signed using Ed25519 and consumed by downstream gateways, is generated for each routing decision, with its Merkle root asynchronously anchored to a blockchain to create a tamper-evident audit trail for regulatory compliance.
Owner:WEBER AXEL

Adaptive key pool and real-time key collaborative resource optimization method and device

The invention belongs to the technical field of optical communication, and relates to an adaptive key pool and real-time key collaborative resource optimization method and device, and the method comprises the steps: generating a key on a time slot of a quantum signal channel between every two adjacent quantum nodes, and storing the key in a quantum key pool; generating a communication path for each service request, and when the service security level of the service request is the highest, generating a real-time key on a time slot of a quantum signal channel between every two adjacent quantum nodes in the communication path; when the service security level of the service request is enhanced, a key is obtained from a quantum key pool between every two adjacent quantum nodes in a communication path of the service request, and when the number of keys in the quantum key pool is smaller than the key demand quantity of the service request, the service security level of the service request is enhanced; a real-time key is generated on a time slot of a quantum signal channel between every two adjacent quantum nodes in a communication path; and when the service security level of the service request is based on the service security level, a key is acquired from a quantum key pool between every two adjacent quantum nodes in a communication path of the service request.
Owner:SUZHOU UNIV

Quantum key dynamic management method and system of power wireless communication network

The invention discloses a quantum key dynamic management method and system of a power wireless communication network. The method comprises the following steps: constructing a three-level service security model: dividing power services into high, middle and low three-level security levels, and differentially configuring key basic parameters; secondly, proposing a dynamic key updating algorithm, adjusting a key updating period and a quantum key window in real time based on a communication state and a flow load, and dynamically expanding the updating period and the size of the key window according to the change of throughput; and finally, setting an attack response strategy, automatically shortening an update period and enhancing key strength when an anomaly is detected, and improving the security of a power wireless communication scene. According to the quantum key dynamic management method disclosed by the invention, the problem of security risk caused by the fact that a traditional fixed quantum key update period cannot meet the communication state of a power wireless communication network and the real-time change of traffic load is solved.
Owner:STATE GRID ANHUI ELECTRIC POWER CO LTD +1

Foundation pit early warning method based on multi-source monitoring data and dynamic evaluation

The invention discloses a foundation pit early warning method based on multi-source monitoring data and dynamic evaluation, which relates to the technical field of foundation pit safety early warning and comprises the steps of S1, multi-element monitoring, S2, data processing and normalization, S3, dynamic safety level establishment, S4, dynamic weight and credibility calculation, S5, evidence fusion and safety level judgment and S6, dynamic risk evaluation and calibration. According to the method, all-dimensional data acquisition and high-quality data processing are formed through the steps S1 and S2, all-dimensional information capture of foundation pit engineering characteristics, geological conditions, surrounding environments and body states is achieved, data quality is guaranteed through data cleaning, normalization and validity verification, and the problems of monitoring data fragmentation and uneven quality are avoided; through the steps S3 and S5, a security level judgment system of dynamic probability allocation and multi-source evidence fusion is constructed, limitation of a static threshold method is prevented, and scientificity and accuracy of security level judgment are improved.
Owner:ZHENJIANG SURVEYING & MAPPING RES INST CO LTD

Security level penetration data management system and method of multi-model collaborative engine

The invention discloses a security hierarchy penetration data management system and method of a multi-model collaborative engine, relates to the field of data management, and is used for solving the problems that provincial data is difficult to efficiently directly reach a base layer and base layer data cannot be fully reflowed and added due to a hierarchy barrier existing in a traditional data management mode. The system comprises a large model layer, a basic service layer, a service governance layer and an application layer. According to the method, a hierarchical barrier is broken, provincial-level data can directly reach a base layer, safe and ordered flow of the data is ensured through authority control and access queue control of the MCP gateway, and meanwhile, a data asset pool shared by the whole province is formed through backflow and increment of the base layer data. The large model is enabled, through multi-model pipelined cooperation and cross-system data association, the advantages of the large model in the aspects of data cleaning, semantic understanding, early warning and prediction and the like are fully played, and the intelligent level of government affair data processing is improved.
Owner:NANYANG NORMAL UNIV +1

Baseboard management controller firmware integrity verification method and electronic equipment

The invention discloses a substrate management controller firmware integrity verification method and electronic equipment, and relates to the technical field of server management, and the method comprises the steps: building a tree structure layered according to a storage path prefix through obtaining the storage path and content data of each function module, the full-coverage verification of all functional modules of the firmware of the baseboard management controller is realized; according to the method, the security level labels in the structured description information are screened, and the verification path is determined for the target function module, so that the redundant operation of full firmware mirror image hash calculation is avoided, and the calculation amount and time consumption in the verification process are reduced; hash is recalculated based on the target function module and path consistency is verified, whether the target function module is tampered or not can be rapidly judged, all firmware data does not need to be traversed, verification comprehensiveness and efficiency are both considered, and bandwidth resource consumption is reduced; all function modules are associated through a storage path and content data, tree structure verification logic is combined, and refinement of firmware verification from a full mirror image level to a function module level is achieved.
Owner:INSPUR SUZHOU INTELLIGENT TECH CO LTD

Encryption access control method and platform for industrial security data

The invention provides an encryption access control method and platform for industrial security data, and relates to the technical field of data encryption access, and the method comprises the steps: carrying out the attribute classification and code identification of an industrial system data set; performing security level division on the industrial system data set according to the data security quantitative index system; performing matching analysis on the multi-level industrial security data set based on the data encryption algorithm list; encrypting and storing the industrial system data set based on the industrial data identification code set by adopting a multi-stage data encryption algorithm to generate an industrial encrypted data warehouse; and establishing a fine-grained access mechanism and a decryption interaction mechanism according to the user role library, and performing access authority distribution and encryption access control on the industrial encrypted data warehouse based on the fine-grained access mechanism and the decryption interaction mechanism. According to the invention, the technical problem that the comprehensive requirements of high safety, high precision and high flexibility in a modern industrial system are difficult to meet in the prior art can be solved.
Owner:BEIJING RONGSHUAN TECH CO LTD

Secure transmission method and system for ultra-high-definition video

The invention belongs to the technical field of video secure transmission, and particularly relates to an ultra-high-definition video secure transmission method and system, and the method comprises the steps: carrying out the dynamic partitioning of a video frame based on a CNN, and marking a security level; the key region adopts a quantum key to distribute a dynamic key to carry out AES-256 encryption, and the non-key region implements chaotic stream encryption; distributing a low-delay dedicated channel for the key data through an SDN reinforcement learning model; the receiving end performs layered decryption on the recombined video after verifying the validity of the quantum key; the system correspondingly comprises an intelligent blocking module, a quantum encryption gateway, a self-adaptive transmission controller and a credible decryption terminal, the 8K video encryption delay is smaller than or equal to 9.8 ms, the key data packet loss rate is smaller than or equal to 0.3%, and quantum computing attack is resisted.
Owner:平阳县融媒体中心(平阳县广播电视台)

Identity authentication method and system based on national secret algorithm

The invention discloses an identity authentication method and system based on a national secret algorithm, and the method comprises the steps: building a hierarchical key management system based on a national secret IBE framework, generating a system master key pair through employing an SM2 algorithm, and achieving a decentralized key distribution mechanism; constructing a domain perception differential privacy protection module, defining a privacy budget allocation strategy according to the security level, and adding calibrated Laplace noise to the user identity feature vector; designing a distributed batch matrix multiplication protocol, and decomposing the distributed batch matrix multiplication protocol to a plurality of computing nodes for parallel processing through a secret sharing technology; a zero-knowledge proof verification mechanism is implemented, and identity verification is completed through a commitment scheme based on an SM3 hash algorithm; deploying a self-adaptive key updating strategy, and analyzing threat level change through a threat situation evaluation function; and establishing a secure communication channel based on SM4 symmetric encryption, and performing encryption processing by using the temporary session key. The security and expandability of the system are improved, the privacy of the user is effectively protected, and the system adapts to a dynamically changing network threat environment.
Owner:GUIZHOU BLUESKY INNOVATIVE SCI & TECH CO LTD

Configurable module-lattice post-quantum cryptography processor for key-encapsulation mechanism

Disclosed is a reconfigurable module-lattice-based key encapsulation mechanism (ML-KEM) post-quantum cryptography system and method using memory-based numbers theoretic transform (NTT). A post-quantum cryptography method of a post-quantum cryptography system including a plurality of internal submodules includes reconfiguring the plurality of internal submodules by variably selecting one security level from among the plurality of security levels; reconfiguring execution of the plurality of internal submodules to be changed through a main controller; and variably processing data according to the selected security level to perform key generation, encapsulation, and decapsulation through the reconfigured plurality of internal submodules.
Owner:INHA UNIV RES & BUSINESS FOUNDATION

Safety management method and system based on artificial intelligence and big data

The invention relates to the technical field of safety monitoring artificial intelligence, and discloses a safety management method and system based on artificial intelligence and big data. The method comprises the steps that multi-modal real-time monitoring data is collected through a distributed sensor array, and a standardized sequence is generated after preprocessing; the system accesses a historical security event library, adaptively divides risk category clusters by using an unsupervised clustering algorithm, and extracts key risk features and influence domains for each cluster. On the basis, a plurality of special self-adaptive security analysis engines are configured to perform parallel analysis on real-time data to generate a plurality of security analysis feature maps. And carrying out weighted fusion and enhancement on the feature maps through a feature fusion network to obtain a unified security situation feature vector, and finally outputting a security level and a management and control instruction through a decision model. According to the method, autonomous identification, dynamic evaluation and accurate response of complex risks are realized, and the intelligent level of safety management and the decision accuracy are improved.
Owner:SHENYANG UNIV

Safety design device, safety design method, and safety design program

To provide a safety design device, a safety design method, and a safety design program capable of deriving a security parameter whose safety is guaranteed in encryption design based on a Reused-A-LWE problem using a discrete Gaussian distribution as an error distribution.SOLUTION: A safety design device 1 includes: an inputting portion 11 that receives input of parameters n, m, q, s1, s2 of a Reused -A-LWE problem with a discrete Gaussian distribution as an error distribution; a calculation portion 12 that calculates a parameter sb of the LWE problem with the discrete Gaussian distribution as the error distribution from the parameter s1 and a constant C; an acquiring portion 13 that acquires a security parameter λ of the LWE problem by a calculation formula that guarantees predetermined safety; and an outputting portion 14 that outputs the acquired security parameter λ as a security parameter of the Reused -A-LWE problem.SELECTED DRAWING: Figure 1
Owner:KDDI CORP

Security optimization encryption method, system and device for data in facility agriculture scene and medium

The invention provides a security optimization encryption method, system and device for data in a facility agriculture scene and a medium, and belongs to the technical field of agricultural informatization security, and the method comprises the steps: carrying out the dynamic division of security levels of data collected in a facility agriculture environment according to the data source device type, data content sensitivity and real-time requirements; distributing an encryption algorithm for the collected data according to a mapping relation between the security level and the encryption algorithm; secret keys are generated and managed based on an identity encryption mechanism, and then secret key fragmentation storage is carried out in combination with a trusted execution environment; when encryption is needed, whether the current trusted execution environment is safe or not is judged, and when the current trusted execution environment is safe, secret keys of the fragments are recombined, the multi-source heterogeneous data are encrypted through the distributed encryption algorithm, and encrypted data are generated; and carrying out secure transmission on an adaptive communication protocol after packaging the encrypted data. According to the method, the data security level is dynamically divided, the encryption algorithm is flexibly selected, the resource consumption is reduced, and the real-time performance and security are improved.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

Dynamic data security requirements in a network

Systems, methods and / or computer program products for dynamically adjusting levels of data security, encryption enforcement, confidentiality, network policies and other parameters within a network and at processing nodes thereof, implementing heightened levels of security and encryption as needed, based on the type of datasets being processed. Enforcement and removal of data security, encryption requirements, confidentiality, network policies and other parameters at the nodes of the network is performed using headers and footers added to the source dataset. Headers prescribe the heightened level of security or encryption being enforced at each node of the network along the source dataset's flow trajectory, while footers follow the completed processing of the source dataset and indicates to the nodes along the data flow trajectory the conditions for removing the heightened level of security, encryption, confidentiality, network policies and other parameters prescribed by the headers.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Sensitive information automatic detection and shielding method, device, equipment and medium

The invention relates to the technical field of artificial intelligence, can be applied to business scenes such as financial science and technology and medical health, and discloses a sensitive information automatic detection and shielding method, device and equipment and a medium. Generating a shielding instruction based on the set, executing shielding processing, and generating a shielding text containing a shielding symbol; encrypting the sensitive fragment set and writing the sensitive fragment set into a controlled storage space; processing record information is generated and written into an audit storage space; receiving the decryption request and generating an authorization verification result; if the verification is passed, decrypting and recovering the content; and if not, generating a rejection prompt and updating the record information. According to the method, sensitive information detection, shielding processing, encryption storage, decryption recovery and audit recording are constructed into an automatic closed-loop process, so that accurate extraction, security isolation and authorized controllable access of sensitive contents are realized, and the processing efficiency and the security level are improved.
Owner:PING AN TECH (SHENZHEN) CO LTD

Internet of vehicles security authentication and data encryption transmission system integrated with IPv6 technology

The invention discloses an Internet of Vehicles security certification and data encryption transmission system integrated with an IPv6 (Internet Protocol Version 6) technology. According to the invention, the key strategy can be automatically optimized according to the dynamic environment in the actual operation of the Internet of Vehicles, and the dynamic balance between the security protection and the communication efficiency is realized. The system can intelligently judge the cracking risk faced by a current key by combining real-time data such as a vehicle driving state and network environment characteristics, so as to flexibly adjust the key length and the updating frequency: when the network environment is safe and the vehicle is in a low-risk area, the key service cycle is properly prolonged, and the basic key length is maintained to reduce the communication overhead; when a potential threat is detected or a vehicle enters a complex road section, the secret key security level is automatically improved, and the rotation period is shortened to enhance the protection capability. The system burden cannot be increased due to excessive encryption, potential safety hazards cannot be left due to insufficient protection, and key management better meets the actual requirements of high-speed movement of vehicles and rapid change of scenes in the Internet of Vehicles.
Owner:XIANGTAN TECHNICIAN COLLEGE

Data transmission method and system for meteorological satellite communication system

The invention discloses a data transmission method for a meteorological satellite communication system, and relates to the technical field of data transmission. Receiving original meteorological data, performing security level analysis on the original meteorological data, determining a security level, and processing the key change parameter by using the master key based on a preset key derivation function to obtain an encrypted session key; performing encryption processing on the original meteorological data based on the encrypted session key to obtain first ciphertext data; combining the key change parameter with the communication identification information to obtain first associated data; performing message authentication code calculation on the first associated data and the first ciphertext data to obtain a message authentication code; assembling the security level, the first associated data, the first ciphertext data and the message authentication code based on a preset format to obtain a target data frame; and sending the target data frame to a meteorological data center so as to decrypt the target data frame to obtain original meteorological data. By implementing the technical scheme provided by the invention, the security in the transmission process is ensured.
Owner:ZHONGMAN TECH (BEIJING) CO LTD

Attribute-based encryption system for selective document security

The present disclosure provides a method for selectively encrypting and decrypting portions of a document. The method includes receiving a document containing plaintext, analyzing the document using an artificial intelligence system to identify portions containing sensitive information, assigning predefined security levels or attributes to the identified portions, sending an encrypt file content request to a cryptographic engine, receiving an encrypted file content response, building an encrypted document by replacing portions with masking symbols and storing encrypted portions as metadata, and sending the encrypted document to a client device. The artificial intelligence system uses machine learning models trained on domain-specific data and employs pattern recognition and contextual analysis to identify sensitive content based on semantic understanding and classification rules.
Owner:NTT RESEARCH INC

Mobile terminal dynamic key generation method and electronic signature system

The invention discloses a mobile terminal dynamic key generation method and an electronic signature system, and the method comprises the steps: activating a multi-sensor data collection module, obtaining data through an accelerometer, a gyroscope and a magnetometer of a mobile device, and obtaining a sensor data matrix through noise filtering and preprocessing; detecting a network environment and an equipment moving state, analyzing a security level of a signature document, determining a security policy according to a document type and a signature mode, and generating an environment evaluation parameter matrix; based on the sensor data matrix and the environment evaluation parameter matrix, using a data fusion algorithm and a hash function to generate a dynamic key, determining key update frequency and encryption strength according to an environment risk level, and establishing an encryption channel; electronic signature operation is executed, whole-process safety monitoring is implemented, and authenticity and integrity of the signature are ensured through a multi-verification mechanism. According to the invention, the safety, reliability and applicability of the mobile electronic signature system are comprehensively improved.
Owner:广西壮族自治区信息中心 +1