Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

29 results about "Security specification" patented technology

Offshore platform special operation interactive terminal virtual simulation training teaching method and system

The invention discloses an offshore platform special operation interactive terminal virtual simulation training teaching method and system, and the system comprises a safety education module, an immersive teaching module, a teaching management module and an industrial-grade terminal, and all the modules cooperate through a multi-layer architecture. The method comprises the following steps: authenticating an identity through an interaction token, performing virtual platform roaming on a display screen of an industrial-grade interaction terminal, and learning regional safety specifications; selecting a homework type through an interactive screen, completing a practice task in a three-dimensional scene, and verifying operation and feeding back in real time by a system; an approval process is triggered through the interaction token, and the system generates a score and evaluation report according to the operation data; and the teaching management module analyzes the weak link, and pushes customized training content or updates a resource package. According to the invention, the training immersion is improved, and the continuity of marine environment training is guaranteed through a low-bandwidth hot update technology; the AI analysis realizes personalization, optimizes the training quality, and adapts to the harsh working environment.
Owner:CNOOC SAFETY & TECH SERVICES CO LTD

Model iteration training method, sample expansion method, equipment, medium and product

One or more embodiments of the invention provide a model iterative training method, a sample expansion method, equipment, a medium and a product. The model iterative training method comprises the steps of obtaining a target data set, and splitting the target data set into a training set and a verification set; the target data set comprises a plurality of questions and replies conforming to preset safety specifications; training the to-be-trained language model based on the training set to obtain a trained target language model; generating to-be-evaluated replies of the questions in the verification set by using the target language model; using the trained reply evaluation model to evaluate whether the reply to be evaluated accords with a preset safety specification, and outputting analysis information used for describing violation content in the reply to be evaluated when a conclusion that the reply to be evaluated does not accord with the preset safety specification is obtained; generating a question and answer pair sample capable of avoiding illegal content described by analysis information by utilizing a trained sample generation model; and updating the target data set based on the question and answer pair sample to be used for next iterative training for the target language model.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

A ship-to-shore information communication method and device

ActiveCN116346421BImprove data integrityimprove privacyData packOriginal data
This application discloses a ship-to-shore information communication method and apparatus, relating to the technical field of coastal communication. The method includes: responding to receiving an encrypted data packet from a ship-based or shore-based IPSec security gateway device; if the packet's message structure is an ESP protocol message, then searching for an encryption algorithm and security specification according to the security parameter index; after verifying the integrity of the ESP message in the data packet according to the encryption algorithm and security specification, detecting whether the data packet is a replay attack; if the data packet is not a replay attack, then decrypting the data packet in reverse according to the encryption algorithm and security specification, obtaining and sending the original IP data to the core network layer for subsequent processing and forwarding. This method ensures the integrity and privacy of transmitted data in high-security scenarios such as ship-to-shore communication.
Owner:THE QUARTERMASTER RES INST OF THE GENERAL LOGISTICS DEPT OF THE CPLA +1

A method for large model security detection and code auditing

PendingCN122653672ASecurity specificationData mining
The embodiment of the application provides a kind of big model safety detection and code audit method, belong to big model technical field.The method includes: the safety specification data of electric power industry is collected, and the code data about electric power industry is collected, to build safety evaluation set and code specification constraint library, the safety evaluation set includes evaluation problem subset and corresponding standard answer subset and code problem subset;Obtain evaluation problem subset request and corresponding code request, and enter corresponding detection channel based on request type;According to evaluation problem subset request, the content of corresponding evaluation problem subset is sent into big model safety detection channel, obtains big model generation result subset, and evaluates generation result subset according to the standard answer subset obtained.The method can carry out text safety detection and code audit.
Owner:ANHUI JIYUAN TESTING TECH CO LTD

Method and apparatus for evaluating application installation suitability based on vehicle security profiles

PendingJP2026116675AApplication program softwareSecurity specification
The present invention provides an application installation suitability evaluation method and application installation suitability evaluation apparatus that mitigate potential security threats that may arise from the installation and operation of application software before the application software is installed in a vehicle. [Solution] The application installation suitability evaluation method based on the vehicle's security profile includes the steps of: downloading application software to be installed on the vehicle; comparing the minimum security requirements of the application software with the vehicle's security specification profile to evaluate the installation suitability of the application software; and, if the installation suitability of the application software is determined, installing the application software on the vehicle.
Owner:AUTOCRYPT CO LTD

Dual-mode online anti-error communication switching method and system

The invention provides a dual-mode online anti-misoperation communication switching method and system, and aims to improve the operation efficiency and safety of a power system. The system architecture is composed of an intelligent anti-misoperation host and an on-site anti-misoperation device, integrates core functions of sequential control operation, anti-misoperation checking and the like, and constructs a whole-process anti-misoperation system. Under the normal working condition of communication, the comprehensive intelligent anti-misoperation host is used as an instruction center to accurately control each module of the system; when abnormal conditions such as communication interruption occur, the system starts a dual-redundancy guarantee mechanism: on one hand, an intelligent key is linked with a related subsystem to complete emergency unlocking operation; and on the other hand, the edge intelligent anti-misoperation agent device automatically triggers a control instruction to drive an intelligent lock control subsystem, a maintenance isolation subsystem and other subsystems to cooperatively execute switching operation, so that stable operation of the power system is ensured. According to the invention, refined management and control of multiple subsystems are realized through a dual-mode switching mechanism, the'five-prevention 'safety specification requirement of the power system is comprehensively met, and a solid guarantee is provided for safe operation of the power system.
Owner:GUODIAN HUNAN BAOQING COAL POWER CO LTD

Integrated security, analysis and high-performance computing chip with triple protection core and modular AI unit

(Main claim) 1. Integrated security and computing chip, comprising: a) a starter chip card module with an unalterable identity matrix, b) an attack protection module with local AI analysis hardware, c) a high-security specification module with a physically separate sandbox, d) a parallel computing unit (TRI-AI-CORE™) wherein all modules are hardware-separated but coupled via an isolated internal security bus, and wherein the chip operates entirely without a network connection.
Owner:HOGL PETER GEORG

Fuzzy question answer recommendation method for hydropower industry

The invention discloses a fuzzy question answer recommendation method for the hydropower industry, which is characterized in that a term dictionary of the hydropower specialty is preset in a Neo4j atlas database, and the following links are executed: S1, analyzing a natural language input by a user to generate a preliminary word sequence; s2, key entities are extracted from the initial word sequence for matching recognition; s3, performing rule engine processing, and triggering a predefined intention classification rule; s4, dynamically complementing missing context data from the Neo4j atlas database according to the entity list and the intention label; s5, based on the complemented context data, performing multi-hop inference engine processing to generate interpretable fault diagnosis logic; and S6, converting the reasoning result into a natural language answer readable by the user according to a preset template. The method is suitable for scenes with high data sensitivity and fixed terminologies in the hydropower industry, key entities can be accurately extracted from fuzzy problems, implicit information is automatically complemented, and a reasoning conclusion conforming to industry safety specifications is generated.
Owner:DONGFANG ELECTRIC GROUP DIGITAL TECHNOLOGY CO LTD +1

A GIS spatial data topology checking and fusion processing method for industrial pipe network

PendingCN122412878AData setSecurity specification
The application discloses a GIS spatial data topology checking and fusion processing method for an industrial pipe network, and comprises the following steps: constructing a four-dimensional topology rule library of the industrial pipe network; performing pre four-dimensional topology pre-checking, completing error repairing and standardization processing of a single data source, and outputting a standardized single-source data set; completing accurate matching and multi-source data fusion connection of pipe section and pipe point entities, and generating an initial fusion pipe network data set; performing full-dimensional closed-loop topology checking on the initial fusion pipe network data set, and outputting a hierarchical checking result set; and generating a final compliant pipe network data set. The application deeply binds four dimensions of geometric topology, safety specification, business logic and operation state, and realizes upgrading from "geometric correctness checking" to "full-dimensional compliant management and control" in view of high safety requirements of the industrial plant pipe network.
Owner:中核第七研究设计院有限公司

A processor branch prediction attack vulnerability formal verification method

This invention discloses a formal verification method for processor branch prediction attack vulnerabilities, comprising the following steps: S1, establishing the security attributes violated by the branch prediction attack, wherein the security attributes describe the security specifications that a secure branch predictor design should comply with; S2, establishing a branch prediction behavior model, describing the branch prediction attack as a combination of a series of abstract branch operations; wherein the branch operation is a quintuple consisting of operator, operation type, operation address, jump direction, and jump address, which is an abstract representation of a certain branch instruction; S3, modeling the branch predictor design as accepting branch prediction behavior instructions, and designing different variations of the branch prediction model state machine according to different input instructions, outputting the prediction result, checking the security specifications, and converting the branch prediction attack into a path specification on the state machine; S4, performing model verification on the state machine of the branch predictor design to determine whether it has a branch prediction attack vulnerability.
Owner:BEIJING UNIV OF POSTS & TELECOMM

An IPSec VPN security gateway access management system

ActiveCN121509060BSecurity specificationIPsec
The application discloses an IPSec VPN security gateway access management system and relates to the technical field of security gateways, and the technical solution points of the application include the following: an extraction module: extracting access subject information and target data identification of a data access request; setting a security access benchmark set, wherein the security access benchmark set contains protocol standards, key level rules and hardware acceleration configuration parameters, the protocol standards correspond to compliance intervals, the key level rules correspond to key life cycle thresholds, and the hardware acceleration configuration parameters correspond to computing power adaptation ranges; comparing and analyzing access characteristic parameters corresponding to the access subject information and the target data identification with the compliance intervals of the protocol standards and the key life cycle thresholds of the key level rules in the security access benchmark set respectively to obtain a target authentication mechanism in line with the protocol standards and a target key system in line with the key level rules; and the effect is to promote efficient operation of data access under security specifications.
Owner:WUHAN SANJIANG SPACE NETWORK COMM CO LTD

Adjudication for a build orchestration system

PendingUS20260252346A1Data setSecurity specification
A computing system can facilitate adjudication of updates to one or more job specifications for executing one or more tasks associated with a data processing workflow. The system can be configured to input one or more job specifications, such as originating from a build orchestration system, and one or more rules to generate an upgrade specification and a safest specification. The system can be configured to cause execution of the upgrade specification. The system can determine whether execution of the upgrade specification is successful. If execution of the upgrade specification is successful, the system can be configured to record one or more datasets generated via execution of the upgrade specification. If execution of the upgrade specification is not successful, the system may be configured to cause execution of the safest specification. The system may record one or more datasets generated via execution of the safest specification.
Owner:PALANTIR TECHNOLOGIES INC

Method and system for evaluating application installation suitability based on vehicle security profile

PendingEP4769191A1Particular environment based servicesPlatform integrity maintainanceApplication program softwareSecurity specification
A method of evaluating application installation suitability based on a vehicle security profile according to one embodiment of the present invention may include downloading application software to be installed in a vehicle, comparing the minimum security requirements of the application software with a vehicle security specification profile and evaluating installation suitability of the application software, and installing the application software in the vehicle when the installation suitability of the application software is approved.
Owner:AUTOCRYPT CO LTD

A domesticable human-robot co-adaptive intelligent agent system and its domestication and management method

PendingCN122655837Aprivacy protectionProtect data sovereigntyAdaptive learningLinguistic model
The application discloses a domesticable human-computer symbiotic intelligent agent system and a domestication and management method thereof, takes a large language model as a cognitive core, and comprises a three-button interaction domestication module, a hierarchical ethical rule management module, a scene adaptive learning module and a three-level data flow control module; the three-button interaction domestication module realizes an AI behavior adjustment mode with zero code and low cognitive load, so that ordinary users can directly adjust AI behavior through daily interaction like teaching young children, without needing to have professional programming and artificial intelligence knowledge, and the AI system has greatly improved usability and popularity. By constructing a four-level priority rule system containing absolute ethical bottom layer hard constraints, a rule conflict detection and decision arbitration mechanism is realized in the system kernel, the behavior boundary of the intelligent agent is defined, the behavior of the intelligent agent in violation of ethics and safety specifications is effectively prevented, and the safety and reliability of the system are improved.
Owner:SHANGHAI JIZHIXING EDUCATION TECHNOLOGY CO LTD

Database middleware development method and system based on reverse ORM

The invention discloses a database middleware development method based on reverse ORM. Database middleware is divided into a relational data structure management RSM module and a relational data operation engine ROE module. And when a business level needs to access a certain relational data table, if the structure of the relational data table does not exist in the memory, the RSM module is connected with and queries table establishment information of the relational data table, and updates the table establishment information to the universal relational data structure in the memory, and the structure of the relational data table is dynamically generated in the memory after updating. And the ROE module automatically converts an operation statement of a business level into a security standard SQL statement, and the generated SQL statement executes an operation on the underlying database. According to the application, hard coding of the object structure and the relational data structure in the software code is avoided when the business is changed or newly added every time.
Owner:SHANGHAI SHENGTENG DATA CO LTD +3

Method for Operating a Networked IoT Device in an Automation Network, IoT Device, and Automation Network

PendingUS20250238021A1Internal/peripheral component protectionTransmissionSecurity specificationDevice status
Various embodiments of the teachings herein include a method for operating a networked IoT device in an automation network with an application and with a security guideline implemented on the IoT device with a security specification. An example includes: selecting a security function for the application on the basis of a device state of the IoT device; and operating the IoT device with the application with the security function.
Owner:SIEMENS AG

Method and device for verifying concurrent system information flow security refinement relations

ActiveCN120763932BPlatform integrity maintainanceSafety propertySecurity specification
The application discloses a kind of concurrent system information flow safety refinement relationship verification method and device.This method relates to computer security field, especially the verification of information flow safety refinement relationship of concurrent system.Aiming at the technical defects that traditional refinement technology cannot guarantee the security of information flow, the method abstracts concurrent system at design level and implementation level into concurrent event system, and then proves that the concurrent event system at design level and implementation level satisfies the security preserving simulation relationship.It is proved that the security preserving simulation relationship ensures that if the concurrent system at design level satisfies the security specification, the concurrent system at implementation level also satisfies the security specification.In addition, the application provides a general programming language interface, so that the method is applicable to different programming languages.The application strictly verifies the information flow safety refinement relationship of concurrent system using formal verification and machine proof technology, which can be used to prove the information security of large-scale concurrent system and prevent problems from happening.
Owner:ZHEJIANG UNIV +1

Method for carrying out security upgrading on vehicle-mounted security element and application thereof

The invention discloses a method and a system for carrying out security upgrading on a vehicle-mounted security element, and relates to the technical field of vehicle-mounted network security. According to the method, a traditional local upgrading program is decoupled into a local client side and a cloud server side, wherein the client side is only responsible for SE hardware interaction and process control; the server side carries out centralized processing on all security key operations such as firmware management, key management, authentication authorization, encryption and decryption and the like, and provides services for the client side through an API. According to the method, sensitive data and operation are placed in the protected cloud, safety specifications such as GP are followed, safety risks in the upgrading process are effectively avoided, meanwhile, dependence on local encryption hardware is reduced, unification of safety and economical efficiency is achieved, and the method is particularly suitable for production of vehicle-mounted electronic products and OTA upgrading scenes.
Owner:LINKSCI

Method and related device for generating security components based on low-code development framework

ActiveCN115617323BDigital data protectionIntelligent editorsSecurity specificationSecurity parameter
The application provides a security component generation method based on a low-code development framework and related equipment, which comprises the following steps: selecting at least one security policy method associated with each front-end control from a pre-defined front-end security parameter table according to different security protection requirements of different front-end controls; meanwhile, selecting at least one security policy method associated with each back-end interface from a pre-defined back-end security parameter table according to different security protection requirements of different back-end interfaces; and generating a security component according to all security policy methods associated with all front-end controls and back-end interfaces involved in the software code in response to determining that the low-code development framework generates the software code, so that the software code finally output by the low-code development framework contains the security component, the risk of information of a service object being monitored, stolen and tampered with is reduced, and the security specification and security function of the software code finally output by the low-code development framework are improved.
Owner:FIBRLINK NETWORKS

Integrated joint test environment system based on hierarchical structure and construction method

The invention discloses an integrated joint test environment system based on a hierarchical structure and a construction method. The system comprises an LVC resource layer, a basic platform service layer, an integrated joint test application layer, a standard specification and a protection specification, wherein the LVC resource layer provides basic equipment, test data and simulation resources for the test system by integrating live, virtualizing and constructing resources; the basic platform service layer provides management and control services for the test system through designed and developed tool software; the integrated joint test application layer is connected with the basic platform service layer through a service interface and middleware, and supports an integrated joint test task scene; the standard specification formulates a unified interface protocol, a data format and a test flow in each layer and between layers according to a live equipment communication flow; a protection specification runs through the LVC resource layer, the basic platform service layer and the integrated joint test application layer to formulate a protection strategy. According to the scheme, from system framework design to equipment test application, efficient, safe and standard construction of an integrated joint test environment is achieved.
Owner:THE 28TH RES INST OF CHINA ELECTRONICS TECH GROUP CORP

Security specification verification method of mobile device and method for determining upper limit of transmission power thereof

PendingCN120224196APower managementElectrical measurementsSecurity specificationMobile device
A security specification verification method for a mobile device, the mobile device comprising an antenna module, the security specification verification method comprising: measuring a first transmission power of the antenna module at a trigger distance of a distance sensor of the mobile device; acquiring a power density design target profile based on the first transmit power on a selected surface at a predetermined distance from the mobile device; acquiring a range sensing plane coverage of the range sensor on the selected surface at a predetermined distance from the mobile device; comparing whether the range sensing plane coverage area surrounds the power density to design a target contour; and when the range sensing plane coverage of the range sensor fails to surround the power density design target profile, adjusting the first transmission power to a second transmission power until the range sensing plane coverage surrounds the power density design target profile. The method can be suitable for security authentication of the FR2 and increase the upper limit of the transmission power as much as possible.
Owner:MEDIATEK INC

Multi-mechanical-arm collaborative task privacy protection framework based on zero-knowledge proof

The invention discloses a privacy protection framework based on zero knowledge proof. The privacy protection framework is used for a plurality of mechanical arms to cooperate to complete tasks. The method comprises the steps that S1, position data, speed data, angle data and the like of all the mechanical arms in the collaborative operation process are collected; s2, on the basis of an index mechanism of differential privacy, noise disturbance is carried out on the collected data according to privacy budget; s3, zero-knowledge proof is generated for the disturbed data, so that the learning end verifies the data on the premise of not obtaining the original data; s4, the learning end confirms that the transmitted data conforms to the security specification through zero-knowledge proof; s5, performing reconstruction processing on the noise data by adopting an auto-encoder, and reducing the influence of noise on model training and decision to the greatest extent; and S6, the reinforcement learning strategy is updated through the recovered data and issued to all the mechanical arms, and the mechanical arms are made to cooperatively complete the task. The method is good in performance effect on a multi-mechanical-arm simulation platform.
Owner:EAST CHINA UNIV OF SCI & TECH

Grate-based proxy re-encryption and keyword conjunctive search encryption method and system

The invention discloses a lattice-based proxy re-encryption and keyword combined search encryption method and system, and the method is based on lattice-based proxy re-encryption and keyword combined search encryption, can meet the requirements of a random oracle machine model, can be stipulated to an error learning (LWE, also called fault-tolerant learning) problem according to a security protocol, and can be used for solving the problem of the LWE, and can be used for solving the problem of the LWE. Therefore, quantum computer attacks can be resisted, and post-quantum security is met. By means of the keyword conversion method, the problem that according to an existing on-lattice scheme, combination search can be carried out only by exposing the positions of keywords can be solved, information privacy is protected, whether matching succeeds or not is judged through inner product operation, and retrieval efficiency is improved. By introducing a proxy re-encryption technology and an identity cryptosystem, the use of certificates can be reduced, and multi-user data sharing can be realized.
Owner:SOUTH CHINA AGRICULTURAL UNIVERSITY

IPSec VPN security gateway system

PendingCN121509060ANetwork connectionsSecuring communicationSecurity specificationIPsec
The invention discloses an IPSec VPN security gateway system, and relates to the technical field of security gateways, and the technical scheme is characterized in that an extraction module is used for extracting access subject information and a target data identifier of a data access request; a security access reference set is set, the security access reference set comprises a protocol standard, a key hierarchy rule and a hardware acceleration configuration parameter, the protocol standard corresponds to a compliance interval, the key hierarchy rule corresponds to a key life cycle threshold, and the hardware acceleration configuration parameter corresponds to a computing power adaptation range; performing comparative analysis on access characteristic parameters corresponding to the access subject information and the target data identifier with a compliance interval of a protocol standard in a security access reference set and a key life cycle threshold of a key hierarchy rule to obtain a target authentication mechanism conforming to the protocol standard and a target key system conforming to the key hierarchy rule; the method has the effect of promoting efficient operation of data access under a security specification.
Owner:WUHAN SANJIANG SPACE NETWORK COMM CO LTD

Implementing and verifying security measures in system design based on security specifications generated according to security requirements

A system enhances a system design to include security measures. The system receives a system design for processing through various stages of design using design tools, such as electronic design automation tools for introducing security features in circuit design. The system receives security requirements for the system design, the security requirements specifying security measures for the system design. The system generates security specifications from the security requirements, the security specifications storing a set of commands. The system generates the system design enhanced with the security measures. The enhanced system design is generated for at least a subset of a plurality of tools. The tools process the generated security specifications to implement the security measures in the system design according to the received security requirements.
Owner:SYNOPSYS INC

Formal Verification Method for Armv8-a Assembly Code

ActiveCN119415399BSoftware testing/debuggingSecurity specificationTerm memory
The present invention discloses a formal verification method for Armv8-a assembly code. The processor architecture and instruction set system of Armv8-a are analyzed, and each module component to be modeled is extracted, including exception levels, execution states, data values, register sets, memory, instruction sets, and assembly code. Each module component is modeled; according to the functions and security specifications of each assembly instruction in the assembly code, the informal requirements for the corresponding assembly instruction are determined, and then the formal logical expressions for each assembly instruction are generated in combination with the defined model, thereby obtaining a formal specification; finally, a theorem prover is used for formal verification. The present invention models each module component of the physical machine, then generates the formal logical expressions for each assembly instruction in the assembly code based on the constructed model, and uses the theorem prover to complete the formal verification of the Armv8-a assembly code.
Owner:UNIV OF ELECTRONICS SCI & TECH OF CHINA +1

Method and system for evaluating application installation suitability based on vehicle security profile

PendingUS20260186758A1Application program softwareSecurity specification
A method of evaluating application installation suitability based on a vehicle security profile according to one embodiment of the present invention may include downloading application software to be installed in a vehicle, comparing the minimum security requirements of the application software with a vehicle security specification profile and evaluating installation suitability of the application software, and installing the application software in the vehicle when the installation suitability of the application software is approved.
Owner:AUTOCRYPT CO LTD