Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

23 results about "Signcryption" patented technology

In cryptography, signcryption is a public-key primitive that simultaneously performs the functions of both digital signature and encryption. Encryption and digital signature are two fundamental cryptographic tools that can guarantee the confidentiality, integrity, and non-repudiation. Until 1997, they were viewed as important but distinct building blocks of various cryptographic systems. In public key schemes, a traditional method is to digitally sign a message then followed by an encryption (signature-then-encryption) that can have two problems: Low efficiency and high cost of such summation, and the case that any arbitrary scheme cannot guarantee security. Signcryption is a relatively new cryptographic technique that is supposed to perform the functions of digital signature and encryption in a single logical step and can effectively decrease the computational costs and communication overheads in comparison with the traditional signature-then-encryption schemes.

Lightweight certificateless signcryption method capable of proving security in Internet of Vehicles

The invention belongs to the field of secure communication in the Internet of Vehicles, and particularly relates to a lightweight certificateless signcryption method capable of proving security in the Internet of Vehicles, which comprises the following steps: constructing an Internet of Vehicles system consisting of a key generation center KGC, a roadside unit, a vehicle and a block chain, and initializing system parameters; the vehicle-mounted unit in the vehicle and the roadside unit outside the vehicle respectively register in the key generation center, and system parameters and pseudonyms are returned after KGC verification is passed; the KGC generates a part of keys for the pseudonym and returns the keys to the vehicle, and the vehicle calculates and generates a key and a public key according to the returned part of keys and the pseudonym, and uploads the public key and the pseudonym to the block chain; the vehicle signcrypts the message according to the key, obtains the public key of the receiver from the block chain according to the pseudonym of the opposite side, and then sends the signcryption message to the receiver; and the target vehicle or the roadside unit receives the message and performs message de-signcryption, and uploads a transaction record to the block chain for storage. According to the invention, while anonymous and secure communication of each entity in the Internet of Vehicles system is ensured, the communication efficiency is improved by reducing the vehicle calculation pressure and the communication overhead.
Owner:CHONGQING UNIV OF POSTS & TELECOMM

Internet of vehicles heterogeneous signcryption communication system and method based on double-layer block chain

The invention discloses an Internet of Vehicles heterogeneous signcryption communication system and method based on a double-layer block chain, relates to the technical field of Internet of Vehicles, and solves the technical problems that the Internet of Vehicles technology is insufficient in expansibility and poor in compatibility, safety and efficiency are difficult to consider, and use requirements are difficult to meet. The system comprises a private key generation center PKG, a secret key generation center KGC, an on-board unit OBU, a roadside unit RSU and a double-layer block chain device. The private key generation center PKG is used for generating and distributing a public key and private key pair of the identity signcryption IBC; the key generation center KGC is used for key updating and management of the certificateless signcryption CLC; the OBU is used for performing communication between the vehicle and other vehicles or the road side unit; the roadside unit RSU is used for communication support and data forwarding; and the double-layer block chain equipment is used for carrying out data storage and security verification in the communication system. According to the invention, the calculation overhead and communication cost of the system are obviously reduced, and safe, efficient and extensible authentication and data transmission in a high-dynamic and large-scale V2X environment is realized.
Owner:SHENZHEN SEG SCI NAVIGATIONS CO LTD

Cleanable certificateless signcryption method, device, equipment and system

The invention provides a cleanable certificateless signcryption method, a cleanable certificateless signcryption device, cleanable certificateless signcryption equipment and a cleanable certificateless signcryption system. Receiving a signcryption ciphertext which is sent by the data sending end and contains signature information and ciphertext information; verifying the signcryption ciphertext according to the public parameter and the key information; and after the verification is passed, re-randomizing signature information and ciphertext information in the signcryption ciphertext in an undecrypted state to obtain a purified signcryption ciphertext, and sending the purified signcryption ciphertext to a data receiving end to trigger the data receiving end to verify and decrypt the purified signcryption ciphertext to obtain plaintext information corresponding to the ciphertext information. According to the method and the device, the signcryption ciphertext can be re-random on the premise that the ciphertext is not unlocked, and meanwhile, the re-random signcryption ciphertext is ensured to still meet confidentiality and integrity and can be verified by a receiving end, so that leakage attack behaviors of a malicious data sender are effectively prevented.
Owner:BEIHANG UNIV +1

Certificateless signcryption method, system and device for resisting quantum attack in Internet of Vehicles

The invention discloses an anti-quantum attack certificateless signcryption method, system and device in the Internet of Vehicles, and relates to the technical field of Internet of Vehicles information security, and the method comprises the steps: generating a system public parameter, a main public key and a main private key through a system parameter and a security parameter preset by a vehicle Internet of Vehicles system by a key generation center; obtaining a partial private key based on the identity identifier of the sender, and combining the partial private key with a locally generated random vector to obtain a complete private key of the sender; the sender vehicle performs signcryption operation on the plaintext message by using the complete private key of the sender vehicle and the public key of the receiver, and generates a signcryption text containing a ciphertext and a link label; the receiver carries out decryption and signature verification on the received signcryption text by using a private key of the receiver; according to the method, the lattice cryptographic algorithm based on the error learning and short integer solution problem is introduced, so that the capability of resisting quantum attacks is realized, and the security requirement of the Internet of Vehicles for resisting quantum computing threats in the future is met.
Owner:CHANGZHOU SMART CLOUD NETWORK INFORMATION TECHNOLOGY CO LTD

PKI-to-IBC heterogeneous broadcast signcryption and key negotiation method oriented to Internet of Things communication equipment

The invention discloses a PKI-to-IBC heterogeneous broadcast signcryption and key negotiation method oriented to Internet of Things communication equipment. The method sequentially comprises six stages of system initialization, data collection base station registration, terminal sensing equipment registration, heterogeneous signcryption, de-signcryption and key negotiation. In a system initialization stage, a registration management mechanism generates elliptic curve parameters and a system master key, and issues system parameters including a system public key, a related hash function and the like; in the registration stage, a data collection base station obtains a digital certificate through a PKI mechanism, and terminal sensing equipment obtains a private key and public key reconstruction factor through an IBC mechanism; in the signcryption stage, the data collection base station signcrypts messages based on a broadcast mechanism and sends the messages to multiple devices at the same time; in the de-signcryption stage, the terminal sensing device verifies the message integrity and the source legality by using the own key; in the key negotiation stage, the data collection base station and the terminal sensing device cooperatively generate a shared session key and establish a secure communication channel.
Owner:WUHAN UNIV

A Cloud-Based Certificate-Free Cross-Domain Authentication Method

This invention discloses a certificate-free cross-domain authentication method in the cloud, comprising deploying key distribution centers in both the CLC domain and the trusted domain and generating system parameters; the user and the cloud service provider (CSP) each applying for partial private keys and combining them with secret values ​​to generate public-key and private-key pairs; the user calculating authentication information and sending an encrypted request; the CSP verifying the user's legitimacy and returning an encrypted response upon successful verification; the user receiving the response message, verifying the synchronized valid sequence number and the CSP; upon successful verification, saving the legitimate provider information, receiving cloud service resources, and establishing a cross-domain trust relationship and session negotiation key. This invention constructs a certificate-free cross-domain authentication method that abandons the complex certificate chain management of traditional PKI; it adopts a signature and signcryption-based primitive, balancing data confidentiality, integrity, and low computational complexity; and through session key negotiation and a local legitimate user list caching mechanism, it avoids duplicate authentication and improves processing efficiency.
Owner:GUANGDONG UNIV OF SCI & TECH

An adaptive signature and signcryption certificateless privacy protection method for internet of vehicles

The present application belongs to the field of vehicle safety communication, and particularly relates to a self-adaptive signature and signcryption vehicle networking certificateless privacy protection method, which comprises: initializing vehicle networking system parameters; a KGC generates a pseudo identity and a partial private key of a corresponding vehicle networking vehicle according to identity information submitted by the vehicle networking vehicle, and sends the pseudo identity and the partial private key to the vehicle networking vehicle terminal through a secure channel; the vehicle networking vehicle terminal generates a private key and a public key based on the received pseudo identity, the partial private key and the system parameters; a first vehicle networking vehicle generates a message tuple by using a self-adaptive signature and signcryption algorithm based on to-be-sent information and privacy requirements, a public key of a second vehicle networking vehicle and system parameters, and sends the message tuple to the second vehicle networking vehicle; after receiving the message tuple, the second vehicle networking vehicle executes a signature and signcryption verification algorithm according to a private key, system parameters and a public key of the first vehicle networking vehicle, restores original information and verifies the correctness of the original information, and realizes efficient message authentication of vehicle networking.
Owner:YANTAI UNIV

Mixed attribute base searchable signcryption method

The invention provides a mixed attribute base searchable signcryption method, and relates to the technical field of cryptography. The method comprises the steps that a decryptor encrypts a retrieval keyword according to a classic decryption key to generate a search token and sends the search token to a cloud server; wherein the classic decryption key is information obtained by encrypting a decryption attribute set of a decryptor by the key generation center; the cloud server adopts a cloud private key, searches a target hybrid ciphertext matched with the keyword from the keyword components of the plurality of hybrid ciphertexts according to the search token, and sends the target hybrid ciphertext to a decipherer; each hybrid ciphertext is information obtained after the signcryption person encrypts the message to be signcrypted and the keyword information of the message to be signcrypted according to the post-quantum public key; and the decryptor decrypts the target hybrid ciphertext by using the post-quantum private key and determines the message to be signcrypted, and the post-quantum public key and the post-quantum private key are keys pre-generated by the key generation center. According to the invention, fusion of an anti-quantum key encapsulation mechanism and an attribute-based searchable encryption technology can be realized.
Owner:中电信量子信息科技集团有限公司

A homomorphic signcryption-based smart grid data encryption transmission method and system

The application discloses a kind of smart grid data encryption transmission method and system based on homomorphic sign cipher, belongs to smart grid data transmission technical field, including power operation center generates public parameter and sends to user;User generates private key based on the public parameter, and the public parameter and the private key are used to the power data to be transmitted in user to sign and cipher, generate user report and send to gateway;Gateway uses the homomorphism of sign and cipher to aggregate the user report, obtain aggregated report, and send aggregated report to power operation center;Power operation center is decrypted to power data by aggregated report, and completes smart grid data encryption transmission;The application uses sign and cipher scheme, and the encryption and signature of data are completed by one calculation, effectively solve the problem of low encryption and decryption efficiency and large communication overhead in traditional method by superimposing encryption and signature steps to realize privacy and authentication.
Owner:NANJING UNIV OF POSTS & TELECOMM

Block chain cross-chain distributed responsibility-traceable cross-chain data consistency verification method and system

The invention discloses a distributed responsibility-traceable cross-chain data consistency verification method and system applied to block chain cross-chain, and belongs to the field of block chain cross-chain technology and information security. According to the method, a tetragonal framework comprising a data owner, a source chain, a target chain and an independent auditing chain is constructed, a distributed processing mechanism based on certificateless threshold signcryption is deployed on the two sides of the source chain and the target chain, and full-process decentralization of cross-chain data interaction is achieved; blocking a node private key reconstruction and signature repudiation path from a cryptography bottom layer by designing an anti-collusion parameter broadcast and identity disclosure strategy; an auditing chain is introduced to serve as a supervision layer, an aggregation verification algorithm based on homomorphic hash is adopted, and batch consistency auditing is achieved on the premise that original data privacy is not leaked. And when verification fails, the system accurately locates malicious nodes through a specific responsibility investigation algorithm and automatically punishes the malicious nodes. According to the invention, while the confidentiality and integrity of cross-chain data are guaranteed, the robustness and supervisibility of the system are significantly improved.
Owner:ANHUI UNIV

A lattice-based signcryption method with a delegation test function

The application provides a lattice-based signcryption method with a commission test function, which comprises the following steps: a commission server receives a first signcryption text and a first authorization trapdoor sent by a first receiving user, and receives a second signcryption text and a second authorization trapdoor sent by a second receiving user; the commission server judges whether the plaintext corresponding to the first signcryption text and the plaintext corresponding to the second signcryption text are consistent, and sends the judgment result to the first receiving user and the second receiving user. The application can construct an equivalent test framework capable of resisting quantum computer attacks under a standard model, and can be applied to signcryption technology, so that the integrity and traceability of the ciphertext information are ensured, and the security level is improved.
Owner:SOUTH CHINA AGRICULTURAL UNIVERSITY

A signcryption method with equality test property

ActiveCN118432822Bcontrol effectivenessAdd timestamp authorization functionKey distribution for secure communicationUser identity/authority verificationPlaintextThird party
The application relates to a signcryption method with equality test attribute, which comprises the following steps: obtaining a public parameter set pp; generating a first key k r and a second key k s according to the public parameter set pp; encrypting an initial plaintext mu according to the above content and a first timestamp T to obtain an initial ciphertext; signing the initial plaintext mu, the first public key pk r and the initial ciphertext to obtain a final ciphertext ct; obtaining the initial plaintext mu according to a second public key pk s , a first private key sk r and the final ciphertext ct, and verifying a signature e corresponding to a sender; generating a trapdoor corresponding to a second timestamp according to the second timestamp and the first private key sk r to obtain a verification label and sending the verification label to a third party; the third party obtains a hash value H(mu) of the final ciphertext ct respectively according to the verification label and the final ciphertext ct, and judges whether different final ciphertexts ct are obtained by signcryption of the same initial plaintext mu according to the hash value H(mu). Through the technical scheme, the risk of privacy leakage of encrypted data is reduced, and the security of data is improved.
Owner:XIDIAN UNIV

Privacy protection method, system and equipment for intelligent electric meter and medium

The invention discloses a privacy protection method, system and device for an intelligent electric meter and a medium, the method is applied to the intelligent electric meter, and comprises the following steps: requesting a credible detection agent to carry out attribute authentication so as to ensure the integrity of a credible module; if the attribute authentication is passed, receiving a fifth part private key sent by the trusted detection agent; obtaining a private key of the intelligent electric meter according to the fifth part private key; sending the intelligent electric meter identity to a power service provider to request the power service provider to generate a pseudo identity; receiving a pseudo identity sent by the power service provider; signcryption is carried out on the electricity utilization information through the pseudo identity by adopting a ring signcryption algorithm, and signcrypted electricity utilization information is obtained; and sending the signcrypted power utilization information to the regional gateway in a pseudo identity manner, so that the power utilization information is verified by the regional gateway, restored by the control center and sent to the corresponding user by the power service provider in sequence. According to the invention, an attacker can be prevented from attacking the intelligent electric meter to obtain privacy, and privacy protection of a user is realized under the condition of ensuring credibility of the intelligent electric meter.
Owner:CHINA SOUTHERN POWER GRID COMPANY

Intelligent cold chain data trusted sharing method based on ring signcryption

The invention provides an intelligent cold chain data trusted sharing method based on ring signcryption, and the method comprises the steps: transmitting cold chain data generated in the production, transportation, storage and sales processes of a cold chain product among different cold chain entities through an intelligent cold chain system based on a block chain; related cold chain entities form a ring, and ring members obtain public and private keys from a system key generation center; the ring member performs signcryption operation on the generated cold chain data by using a private key and sends the data to the next entity; performing correctness verification on the ring signcryption ciphertext of the related cold chain data by a verifier through the cold chain product of all links; and the verified cold chain data and related records form transactions, and the transactions are uploaded to an intelligent cold chain system for whole-network consensus and are registered on an account book. According to the method, cross-mechanism credible sharing of the intelligent cold chain data is realized by using a ring signcryption method.
Owner:ZHENGZHOU UNIVERSITY OF LIGHT INDUSTRY

Signcryption method of customs intelligent equipment and signcryption system applying signcryption method

The invention discloses a signcryption method of customs intelligent equipment and a signcryption system using the same, and relates to the technical field of encryption and identity authentication, and the method comprises an initialization stage, a key generation stage, a signcryption stage and a de-signcryption stage; in the de-signcryption stage, a verification party sequentially calculates W '= U * (xR + yR) and B' = H2 (RIDR, U, W ') by using a complete public key PKm = {Xm, Am} of customs intelligent equipment; and the verifier continues to calculate hm '= H3 (RIDm, Xm, Am, c, U, T) and verifies whether the condition is true or not. The invention mainly solves the problem of how to provide a signcryption method and a signcryption system for customs intelligent equipment. According to the method, the security of the customs intelligent equipment, the verification party and the authentication server is improved, and in addition, in the initialization stage, quantum computing attacks can be resisted after the finite field and the elliptic curve E with the high level are selected.
Owner:HUANGPU CUSTOMS DISTRICT OF PEOPLES REPUBLIC OF CHINA

An SM9-based ring signcryption method satisfying self-attestation

The application discloses a ring signature method based on SM9 and meeting self-proving, and comprises the following steps: generating system parameters according to an SM9 algorithm; generating a user private key according to a user identity based on an SM9 identification algorithm; a real ring signature user combines other user public keys to generate a ring signature corresponding to a plaintext file; a receiver decrypts and verifies whether the received ring signature is valid; and the real ring signature user proves to a receiving user that the real signature user of the ring signature is himself. The application realizes the ring signature method meeting self-proving in the national cryptography system, is beneficial to constructing a data security system which is self-controllable, safe, credible, efficient and usable, and can be used for constructing an anonymous reward reporting scheme in a new smart city, such as a smart public security and a smart discipline inspection and supervision.
Owner:NANJING UNIV OF POSTS & TELECOMM

File encryption transmission method, device, electronic device and computer-readable medium

The embodiments of the present disclosure disclose a file encryption transmission method, device, electronic device and computer-readable medium. A specific implementation of the method includes: obtaining a set of files to be transmitted, a key generation parameter set and a first user partial public-private key pair; generating a second user partial public-private key pair; performing key splicing on the first user partial public-private key pair and the second user partial public-private key pair to obtain a user public-private key pair; determining the receiving user signature information; performing file signcryption processing on the set of files to be transmitted to obtain a signcrypted transmission file; encrypting the user public-private key pair to obtain an encrypted key pair; segmenting the signcrypted transmission file to obtain a segmented signcrypted transmission file set; generating a file transmission byte stream; and transmitting the file transmission byte stream through a covert channel. This implementation can improve the security of file transmission by generating public and private keys in parts and sending the fused signcryption information of one-to-many user terminals.
Owner:PARK DO CREDIT CO LTD

A privacy protection method for Internet of Vehicles based on CNTR on NTRU lattice

The present invention belongs to the field of information technology security of Internet of Vehicles (IoV), and relates to an IoV privacy protection method based on CNTR on the NTRU lattice, including S1, initialization settings, in which a trusted center configures system parameters; S2, vehicle registration, in which a vehicle is registered with a trusted center upon leaving the factory, and a current vehicle private key is generated; S3, road test unit registration, in which the public key of the road test unit uses the system public key broadcast by the trusted center, and the private key of the road test unit uses the system private key; S4, message signcryption, in which a signcrypted message is broadcast; S5, message designcryption, in which the road test unit obtains the signcrypted message sent by the vehicle and designcrypts it using the system private key. The present invention has the advantages of using NTRU lattice cryptography and ring signature technology to achieve quantum security protection for IoV vehicle and Internet of Everything (V2X) communications.
Owner:CHANGCHUN UNIV

SM9-based ring signcryption method meeting self-proving performance

The invention discloses an SM9-based ring signcryption method meeting self-proving performance. The SM9-based ring signcryption method comprises the following steps: generating system parameters according to an SM9 algorithm; generating a user private key according to the user identity based on an SM9 identification algorithm; the real ring signcryption user generates ring signcryption corresponding to the plaintext file in combination with public keys of other users; the receiver decrypts and verifies whether the received ring signcryption is valid; the real ring signcryption user proves to the receiving user that the ring signcryption real signcryption user is himself. The ring signcryption method meeting the self-proving property in the national secret system is achieved, an autonomous, controllable, safe, credible, efficient and available data safety system can be built, and the method can be used for building anonymous reward reporting schemes in a novel smart city, such as smart public security and smart discipline inspection and supervision.
Owner:NANJING UNIV OF POSTS & TELECOMM

Data sharing transaction lattice-based signcryption method for strongly specified verifier

The invention provides a data sharing transaction lattice-based signcryption method for a strongly specified verifier. The method comprises the following steps: constructing a data sharing transaction system and a distributed account book by using a block chain technology; a user (signcryption person) obtains a transaction address of a transaction object (designated verifier) from the shared transaction system and initiates a data sharing transaction with the transaction object; the user performs signcryption on the transaction by using the public key of the specified verifier and the private key of the user, and sends a ciphertext to the shared transaction system; after acquiring the ciphertext, the specified verifier performs unsigncryption by using the private key of the verifier and the public key of the signcryption person; and after the verification is passed, the transaction is completed, and then the transaction is uploaded to a shared transaction system for whole-network consensus and uplink registration. According to the invention, cross-mechanism security sharing and transaction of data are realized by using a specified verifier signcryption method and a block chain technology.
Owner:ZHENGZHOU UNIVERSITY OF LIGHT INDUSTRY

Method and system for sharing stream data based on bidirectional hash chain symmetric encryption and signcryption

The application relates to a flow data sharing method and system based on bidirectional hash chain symmetric encryption and signcryption in the technical field of data sharing, and comprises the following steps: calculating an original beginning left key corresponding to a first encryption time unit and an original ending right key corresponding to a last encryption time unit in a maximum time interval; based on the original beginning left key and the original ending right key, calculating original encryption sub-keys corresponding to the rest of the encryption time units to generate an encryption key; symmetrically encrypting flow data by using the encryption key, and based on the application request, obtaining response data in a request time period, performing signcryption processing on the response data to obtain signcrypted data; and sending the signcrypted data to a data application user, so that the data application user performs signcryption on the signcrypted data to obtain the response data, and performs decryption processing on the response data to obtain target data, thereby solving the problems that resource consumption is large and privacy is low when existing flow data is subjected to point-to-point data transmission.
Owner:ZHEJIANG UNIV +1

Privacy protection data query method with collusion attack resistance in ship formation

The invention discloses a privacy protection data query method with collusion attack resistance in a ship formation, and the method comprises the steps: S1, obtaining an auxiliary query request sent by a coordinating ship to other ships in the ship formation, and enabling the other ships willing to be together with the coordinating ship to form a query group; s2, coordinating ship generation parameters and executing signcryption operation to generate corresponding ciphertexts and signatures, and respectively sending the ciphertexts and the signatures to each other ship of the query group; and S3, after the ciphertext and the signature are received, performing verification operation on each other ship, and updating the obtained parameters. When the method is used, collusion attacks initiated by a coordinated ship and an edge computing node are effectively resisted, and the non-linkability between the ship and a query request is realized, so that the query privacy of a ship owner in a data query process is protected.
Owner:ANHUI NORMAL UNIV +1

A lattice-based threshold signcryption method capable of realizing equivalent detection function

The application provides a threshold signature method on a lattice, which can realize equivalent detection function; in the method, an improved threshold signature algorithm is used to generate final ciphertext; the algorithm improves overall efficiency by optimizing calculation steps and reducing the number of required participants while maintaining existing security standards; and the algorithm also ensures that the calculation complexity is not significantly increased when the equivalent detection is introduced in the signature process; in addition, the algorithm uses an efficient signature generation and verification mechanism, which can quickly generate and verify the signature while minimizing communication and calculation resource consumption, and has obvious time advantage in a multi-participant threshold environment; and the application introduces the equivalent detection attribute in the traditional threshold signature scheme, which can effectively detect whether different ciphertexts have equivalent in the signature verification process, thereby improving the security and flexibility of the system.
Owner:XIDIAN UNIV