Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

36 results about "Transmission security" patented technology

Transmission security (TRANSEC) is the component of communications security (COMSEC) that results from the application of measures designed to protect transmissions from interception and exploitation by means other than cryptanalysis.

A quantum-mixing-resistant cryptographic gateway and data transmission method

The embodiment of the application provides an anti-quantum mixing password gateway and a data transmission method, and belongs to the technical field of network security. The gateway comprises: a quantum key management module, which is used for acquiring quantum keys generated by a quantum key distribution network and quantum random numbers; an entity authentication module, which is used for performing challenge-response authentication on a communication terminal; a mixed certificate management module, which is used for performing mixed certificate authentication processing; a mixed key negotiation module, which is used for performing mixed key negotiation processing to generate a communication session key; and an encrypted tunnel module, which is used for establishing an anti-quantum encrypted communication tunnel based on the communication session key and performing encrypted transmission processing of communication data through the anti-quantum encrypted communication tunnel. The anti-quantum encrypted communication tunnel with the key derivation and quantum key dynamic refreshing mechanism is constructed, and the transmission security and stability of communication data in an anti-quantum attack environment are improved.
Owner:SICHUAN LIANGSHANSHUILUOHE ELECTRICITY DEV CO LTD

Secure masking of channel activity for transmission security (transec) enabled terminals in satellite communication networks

PendingUS20260180677A1Network traffic/resource managementRadio transmissionBurst transmissionEncapsulated data
Approaches are described herein for secure masking of channel activity for transmission security (TRANSEC) enabled terminals in satellite communication networks. Embodiments include techniques for masking channel activity at the link-layer in the outroute and / or in the inroute. For example, in the outroute, embodiments encapsulate packet data units (PDUs) using a TRANSEC-compatible stream encapsulation protocol. In the inroute, embodiments encapsulate burst transmissions using a TRANSEC-compatible inroute burst encapsulation protocol. Outroute and / or inroute activity can be further masked by creating the impression of constant-rate traffic, constant-rate bandwidth allocations, and the like.
Owner:HUGHES NETWORK SYST

Sensing communication method and apparatus

A sensing communication method and apparatus are applied to the field of communication technologies. This application may be applied to a wireless local area network system supporting a next-generation Wi-Fi protocol (for example, 802.11be, Wi-Fi 7, or EHT) of IEEE 802.11ax, a next-generation Wi-Fi protocol (for example, Wi-Fi 8 or UHR) of IEEE 802.11be, Wi-Fi AI, a millimeter wave (mmWave), an ultra-wideband (UWB), or sensing (sensing). For example, after generating a PPDU based on Q time-variant function values, a first communication apparatus sends the PPDU. After receiving the PPDU, a second communication apparatus may parse the PPDU based on the Q time-variant function values agreed on by the second communication apparatus and the first communication apparatus. According to the method provided in embodiments of this application, information transmission security is improved, and user privacy is effectively preserved.
Owner:HUAWEI TECH CO LTD

A method for secure downlink transmission of an unmanned aerial vehicle air-ground network based on RIS assistance

This invention discloses a RIS-assisted downlink transmission method for UAV air-to-ground network security. The method includes: constructing a large-scale channel gain for the UAV-RIS link; implementing optimal phase configuration and beamforming for legitimate users based on CSI; calculating the received signals and instantaneous signal-to-noise ratio for legitimate users and effective eavesdroppers; introducing a channel statistical model to model the statistical characteristics of channel fading and node locations and derive the link distance PDF; deriving a closed-form expression for the Standard Operating Procedure (SOP) in scenarios with random eavesdropper locations and numbers; and performing precise quantitative analysis of system security performance based on the closed-form expression, dynamically adapting and updating the RIS phase configuration and receiver strategy. This invention effectively corrects the security assessment distortion problem of traditional methods, achieves accurate characterization of the security interruption probability in scenarios with uncertain eavesdropper locations and numbers, reduces the system security interruption probability, and improves transmission security and robustness. It is applicable to UAV air-to-ground secure communication in an integrated air-space-ground architecture.
Owner:BEIJING INFORMATION SCI & TECH UNIV

Intelligent terminal data interaction optimization method and system based on link state awareness

PendingCN122294199AInteraction is efficient and safeImprove real-time performanceEngineeringDifferential coding
This invention discloses a method and system for optimizing data interaction between intelligent terminals based on link state awareness, relating to the field of wireless communication data transmission technology. The method includes: constructing a directed acyclic graph topology; performing cooperative topology state discovery to generate a real-time link state communication topology; performing hierarchical packetization for transmission quality constraints; performing random linear network coding to obtain multiple linearly independent coded packets; performing distributed congestion-aware scheduling decisions to obtain multiple primary transmission links; performing differential coding and obfuscation transformation to obtain multiple obfuscated coded packets; and concurrently transmitting multiple obfuscated coded packets to a second terminal for Gaussian elimination decoding and reception. This invention solves the technical problems of weak topology adaptability, unreasonable congestion scheduling, and insufficient security protection in existing technologies, achieving efficient and secure data interaction between terminals and improving the real-time performance and transmission security of local area network data transmission.
Owner:NANJING METER TECHNOLOGY CO LTD

File transmission method and device, computer device and storage medium

The application relates to the technical field of data security, and specifically discloses a file transmission method and device, computer equipment, a storage medium and a computer program product. The method comprises the following steps: converting a file into a data input stream, reading a plurality of original arrays corresponding to the file from the data input stream; performing encoding processing on each original array to obtain an encoding array corresponding to each original array; performing encryption processing on each encoding array to obtain an encryption array, and determining a sub-output stream of the encryption array; determining a transmission message corresponding to the encoding array based on the sub-output stream and an encryption key used in the encryption processing; and sequentially transmitting the transmission messages corresponding to the encoding arrays. The method can ensure the transmission security of a super-large file and improve transmission efficiency.
Owner:CHINA CONSTRUCTION BANK +1

Link-layer address concealment for transmission security (transec) enabled terminals in satellite communication networks

Approaches are described herein for link-layer address concealment for transmission security (TRANSEC) enabled (TE) terminals in satellite communication networks. For example, TE terminals can randomly select a proposed masked system assigned identifier (mSAI), which is a temporary identifier different from any real identifiers of the terminal (e.g., a real SAI, real electronic serial number, etc.). The ground station (e.g., inroute group manager) checks availability of the mSAI. If available, the request is acknowledged, the mSAI is assigned to the terminal, and bandwidth is allocated to the terminal using the mSAI. Subsequent allocated bursts can be sent by the terminal using the allocated bandwidth based on the mSAI. Some embodiments include techniques for handling requests for an unavailable mSAI, simultaneous requests by different terminals for the same mSAI, periodic changes of mSAIs for added security, and use of mSAI-related timers to support additional features.
Owner:HUGHES NETWORK SYST

Airborne Network Path Planning Method Based on Multi-Objective Constraints and Deep Reinforcement Learning

This invention discloses an airborne network path planning method based on multi-objective constraints and deep reinforcement learning. The method includes: creating a task set Q containing several tasks q in an airborne network model; constructing a path optimization fusion model that integrates a multi-objective collaborative optimization model and a deep reinforcement learning algorithm network; the deep reinforcement learning algorithm network constructs a task path set based on the start and end nodes of the tasks in the task set Q and selects a subset of task paths that satisfy path risk constraints and task isolation constraints; obtaining the optimal task path combination from the task path subset through a path link balancing module; and using the optimal task path combination as the path planning result for the task set Q. This invention, considering reliable data flow transmission and network load, combines the service attributes of the tasks and plans paths that achieve risk balancing across network links and meet isolation requirements, thereby improving the overall network transmission security of the aircraft avionics system.
Owner:CHINA ACAD OF CIVIL AVIATION SCI & TECH

A printing equipment state real-time monitoring system based on internet of things

This invention relates to IoT monitoring, specifically to an IoT-based real-time monitoring system for printing equipment. The system includes: deploying temperature, pressure, vibration, and current sensors on the printing equipment to acquire real-time operating data; using visual sensors for print quality monitoring; forming a multi-source data acquisition system covering mechanical, electrical, and process aspects; constructing a low-latency communication channel using the MQTT protocol; ensuring transmission security through TLS encryption and dynamic token authentication; extracting time-domain, frequency-domain, and time-series features from the raw data; periodically feeding the on-site data back to the health assessment model and digital twin; and improving prediction accuracy through iterative model updates, forming a continuous optimization mechanism of monitoring-analysis-improvement. This invention solves the problems of incomplete data acquisition and inability to continuously optimize monitoring models in traditional printing equipment monitoring, making it difficult to achieve efficient and accurate monitoring and intelligent operation and maintenance.
Owner:GUANGZHOU YILONG PRINTING CO LTD

A method and system for transferring large files

PendingCN122316792ATamper resistanceFile transmission
This invention provides a method and system for transferring large files. Each file within a large file is allocated to a corresponding file cluster according to its sensitivity level. Based on the sensitivity level of each file cluster, the cluster is divided into blocks. An independent encryption key is generated for each file block, and the file blocks are encrypted and transmitted to the receiving end. At the receiving end, an independent decryption key is generated for each encrypted file block, and all decrypted file blocks are merged to form the original file cluster. This invention divides large files into multiple file clusters based on sensitivity, dynamically blocks file clusters based on their sensitivity, and generates independent encryption and decryption keys for each file block, enhancing the security and tamper-proof capabilities of large file transmission. Furthermore, by extracting multi-level features from elements, element classes, and even the database level, a highly correlated hierarchical fingerprint chain is generated, enabling precise location and traceable verification of tampering.
Owner:自然资源部信息中心

A hydrological data encryption security transmission system based on Beidou communication technology

The application discloses a hydrological data encryption security transmission system based on a Beidou communication technology, and belongs to the wireless communication technical field.The system comprises an integrated host, a sensor array, a Beidou communication and security encryption fusion module and a remote monitoring center.The integrated host integrates a main control processor and a multi-path power management unit.The fusion module integrates a Beidou communication unit and a hardware security engine, and adopts a layered encryption and dynamic key management protocol to encrypt the hydrological data and then send the hydrological data through a Beidou short message.The application aims to solve the problems of low integration, high power consumption and insufficient transmission security of the hydrological monitoring equipment, realizes the pipeline processing of data from collection to encryption and sending, improves the transmission security and the system integration, and reduces the power consumption through adaptive power management.
Owner:ZHEJIANG HYDROLOGY NEW TECH DEV & OPERATION CO LTD

A sewage treatment remote monitoring and management system with remote control

The application discloses a sewage treatment remote monitoring and management system with remote control, and belongs to the technical field of sewage treatment, which comprises a sensing layer, an intelligent platform layer, a transmission layer and a control execution layer, the sensing layer interacts with sewage treatment field data, the sensing layer comprises a water quality parameter module and a device monitoring module, the intelligent platform layer and the sensing layer realize bidirectional data interaction, the intelligent platform layer comprises a digital twin simulation module, a hybrid intelligent decision module, a low-carbon operation and maintenance module and a data management center module, the transmission layer comprises an edge computing node module, a transmission security module and a transmission link module, the control execution layer and the transmission layer realize bidirectional data interaction, and the control execution module comprises an intelligent execution module, a dual-mode control module and an emergency control module, and the application has the technical effects of full-dimension accurate sensing, low-delay safe transmission, intelligent decision, closed-loop reliable control and low-carbon efficient operation and maintenance.
Owner:BEIJING LANYUAN HENGJI ENVIRONMENTAL PROTECTION TECH CO LTD

Data processing method, apparatus, device, storage medium, and program product

This invention discloses a data processing method, apparatus, device, storage medium, and program product, which receives an encryption key sent by at least one terminal device. The encryption key is obtained by the terminal device encrypting original data based on a pre-configured SCMA codebook and a first encryption phase vector from a network device, and the encryption key is mapped to a pre-configured sparse time-frequency resource location on the network device. A second encryption phase vector matching the first encryption phase vector is generated. Multi-user detection and decoding are performed on the encryption key based on the second encryption phase vector to obtain the original data corresponding to each terminal device. Using this invention, data security during transmission can be effectively improved, data leakage can be avoided, and the cross-terminal transmission security requirements for sensitive data in a cloud environment can be met.
Owner:XINYANG BRANCH HENAN CO LTD OF CHINA MOBILE COMM CORP +1

A method and system for cloud-edge secure communication

The application discloses a cloud-edge secure communication method and system, the method is applied to a cloud-edge secure communication system, the system comprises a first running end and a second running end, and the method comprises the following steps: the first running end receives first cloud-edge communication demand information sent by the second running end; the first running end performs information interaction operation with the second running end according to the first running communication demand information, and obtains an information interaction result; and the second running end establishes a secure connection with the first running end according to the information interaction result, so as to realize cloud-edge secure communication. It can be seen that the information interaction result can be obtained according to the information interaction operation of the first running end and the second running end, the secure connection of the first running end and the second running end is established according to the information interaction result, the cloud-edge secure communication is realized intelligently and conveniently, the cloud-edge communication efficiency and accuracy are improved, and then the transmission security, reliability and efficiency of the cloud-edge message are improved, so that the expansibility and flexibility of the cloud-edge communication are improved.
Owner:SHENZHEN COMTOP INFORMATION TECH

A method and apparatus for identity authentication

The application discloses an identity authentication method, which is used for the authentication scene of a pre-shared key of a request device and a digital certificate of an authentication access controller. A first authentication server trusted by the authentication access controller is used to verify the legitimacy of the digital certificate of the authentication access controller to obtain a first verification result. A second authentication server trusted by the request device is used to verify the identity authentication code of the request device by using the pre-shared key of the request device to obtain a second verification result. The request device and the authentication access controller respectively determine whether the other party entity is legitimate according to the verification result corresponding to the other party entity, so as to realize the bidirectional identity authentication of the authentication access controller and the request device, and to ensure that only a legitimate user can access a legitimate network. Moreover, the private information such as the identity identification and the authentication result information of the entity is transmitted in the form of ciphertext, so that the transmission safety of the private information is ensured, and the identity protection of the entity is realized.
Owner:CHINA IWNCOMM

Link-layer address concealment for transmission security (transec) enabled terminals in satellite communication networks

Approaches are described herein for link-layer address concealment for transmission security (TRANSEC) enabled (TE) terminals in satellite communication networks. For example, TE terminals can randomly select a proposed masked system assigned identifier (mSAI), which is a temporary identifier different from any real identifiers of the terminal (e.g., a real SAI, real electronic serial number, etc.). The ground station (e.g., inroute group manager) checks availability of the mSAI. If available, the request is acknowledged, the mSAI is assigned to the terminal, and bandwidth is allocated to the terminal using the mSAI. Subsequent allocated bursts can be sent by the terminal using the allocated bandwidth based on the mSAI. Some embodiments include techniques for handling requests for an unavailable mSAI, simultaneous requests by different terminals for the same mSAI, periodic changes of mSAIs for added security, and use of mSAI-related timers to support additional features.
Owner:HUGHES NETWORK SYST

Intelligent wireless sensor gateway

ActiveCN224473427UMicrocontrollerWeb service
The utility model discloses intelligent wireless sensor gateway, including main control processor module, wireless communication module, network communication module, storage module, power module, background management module and security encryption module. Main control processor adopts embedded microcontroller, and the real -time operating system is run, is responsible for the coordination sensor access, data processing and communication management. Wireless communication module is based on zigBee protocol constructs star type network, and supports maximum 32 wireless temperature and vibration sensor nodes access and automatic discovery. Network communication module includes ethernet interface and 4G cellular module, and can realize double network concurrent and automatic hot backup switching. Background management module provides sensor configuration, state viewing and remote OTA upgrade etc. functions through built -in web service, and the user can carry out management operation through the browser. Data transmission adopts standardization Json agreement, and supports TLS encryption, ensures transmission security. The gateway is applicable to the sensor data acquisition and remote monitoring application of industrial field.
Owner:HENAN KAIKAI INTELLIGENT TECH CO LTD

A Virtual Private Network Transmission Security Method and System

ActiveCN122093189AImprove distribution efficiencyImprove link utilizationSecuring communicationSecure transmissionPrivate network
This invention relates to the field of network security technology and proposes a method and system for secure transmission in Virtual Private Networks (VPNs). The method includes: dynamically fragmenting the transmitted data of the VPN into unequal lengths to obtain fragmented data sequences; performing multi-path parallel routing optimization on the fragmented data sequences based on multi-dimensional traffic characteristics to obtain preferred transmission paths; quantifying the risks of the preferred transmission paths and performing hierarchical differentiated encryption on the fragmented data sequences to obtain encrypted data fragments; performing cross-link segmented logical isolation on the preferred transmission paths based on the encrypted data fragments to obtain virtual isolated transmission channels, and performing node authentication to obtain trusted isolated transmission channels; performing segmented transmission on the encrypted data fragments based on the trusted isolated transmission channels to obtain receiving-end data fragments; and verifying and reassembling the receiving-end data fragments to obtain restored data, thereby achieving secure transmission. This invention can improve the security of VPN transmission.
Owner:TIANJIN PARKNAI TECH CO LTD

A method and system for secure transmission against leakage of an AI training data set

The application provides a kind of anti-leakage transmission security method and system for AI training data set, applied to artificial intelligence technical field, by obtaining the original entropy data of multiple heterogeneous random sources in non-real-time stage, and the original entropy data is fused to build random entropy pool;Multiple encryption keys are generated asynchronously using random entropy pool, and the generated encryption keys are pre-stored in a protected storage space;In the data transmission stage, receive the key calling request for the data fragment to be transmitted, respond to the key calling request, extract the pre-stored encryption key from the storage space;The data fragment is encrypted using the extracted encryption key, so that the micro timing characteristics of the encryption key generation are shielded during the transmission process, and finally the anti-leakage transmission of AI training data set is realized, which has the advantage of improving the security of data transmission.
Owner:SHENZHEN COMEIN FINANCE TECH CO LTD

Tax data migration storage management method and system based on encrypted transmission

The application discloses a kind of based on encryption transmission's finance and tax data migration storage management method and system, it is related to finance and tax data processing and information security technical field;Multiple source finance and tax data are collected, after being cleaned and repaired and excluding abnormal data, according to tax type, declaration period, enterprise credit classification classification mark;Migration both sides negotiate session key, according to data sensitive level with different algorithm encryption and add check value;Improved transmission protocol fragmentation transmission data, adaptive control rate and receiving end regular check;According to data attribute matching storage medium, realize storage medium and file level double-layer encryption;After storage, sample check data integrity, whole process log is stored with block chain and is in evidence to ensure that it cannot be tampered with and can be traced back.The present application guarantees finance and tax data migration without interrupting business, improves transmission security and efficiency, intelligently allocates storage resources, log can be traced back and can actively defend against abnormality, meet data security and compliance requirements, provide safe and efficient support for finance and tax data management.
Owner:YONYOU NETWORK TECH CO LTD

Battery state information terminal cloud cooperative communication method, device and equipment and storage medium

PendingCN122293381AData packPower battery
This application provides a cloud-edge collaborative communication method, apparatus, device, and storage medium for battery status information. The method includes: a cloud platform generating battery status information based on the battery's operating data; responding to a handshake request sent by a vehicle-side communication module, performing a handshake process with the vehicle-side communication module that includes two-way certificate verification at the transmission security protocol layer to establish a secure transmission channel and generate a session key; constructing an application layer data packet containing status information and verification information for preventing replay attacks; encrypting the application layer data packet according to the session key to generate encrypted data; and sending the encrypted data to the vehicle-side communication module through the secure transmission channel, so that the vehicle-side communication module can decrypt the encrypted data based on the session key to obtain the status information and verification information, perform replay attack verification based on the verification information, and transmit the status information to the battery management system after successful verification, thus ensuring the secure and reliable transmission of cloud-generated status information to the vehicle.
Owner:SAIC GM WULING AUTOMOBILE CO LTD

Secure initialization of transmission security (transec) enabled terminals in a satellite communication network

Approaches are described herein for securely initializing a TRANSEC-enabled terminal (TET) in a satellite communication network. At a secure location, a unique Terminal Master Key and Electronic Serial Number, are securely burned into the terminal's memory. Upon booting, the terminal verifies its identity using a signed TE file and encrypted keys. When deployed, the terminal initially sends an unallocated burst with a fake ESN to obtain bandwidth allocation (e.g., from an inroute bandwidth allocator). The terminal proceeds with an initial association request using a randomly generated identifier, followed by a transport-layer-secure registration process (e.g., with a network management system over HTTPS). After successful registration, the TET receives link-layer key materials and shifts to using its real ESN with link-layer security (LLS) for subsequent communications.
Owner:HUGHES NETWORK SYST

An AI-based network data security management and monitoring system

This invention relates to the field of network data management and monitoring technology, and in particular to an artificial intelligence-based network data security management and monitoring system. The system includes a monitoring platform, a data acquisition unit, an environmental impact unit, a security monitoring unit, a monitoring analysis unit, a security assessment unit, a trend monitoring unit, and an early warning processing unit. It performs data security monitoring and analysis on node operation data to determine whether the node's security is up to standard, enabling timely and accurate management of network nodes and improving network data security. Furthermore, it analyzes normal network nodes through information feedback, analyzing them from both network transmission and network environment perspectives to determine whether normal network nodes affect the overall security of network data transmission. This allows for timely early warning feedback management, reducing the risk of network nodes impacting network data and contributing to improved overall network data transmission security.
Owner:ANHUI SHANGSHI INFORMATION TECH CO LTD

Methods and systems for encrypted transmission of network communication information

This invention relates to the field of network security protocol technology, specifically to a method and system for encrypted transmission of network communication information, comprising the following steps: collecting transmission delay and queuing delay and summing them to generate a total delay; normalizing the error to form a delay redundancy mask; adjusting the encryption level and key length based on the judgment interval; constructing a topology mapping based on node processing capabilities and communication distance; allocating tasks and generating a node task table using the HEFT algorithm; generating a control factor using weighted averaging; optimizing the encryption level and task allocation; and improving transmission security and efficiency. In this invention, by collecting delay, extracting errors and normalizing them to generate a mask, dynamically adjusting the encryption level and key length to cope with fluctuations, optimizing task allocation based on node capabilities and communication distance, improving efficiency using the HEFT algorithm, and generating a control factor using weighted averaging to avoid over- or under-encryption, the invention enhances transmission security and efficiency.
Owner:SHENZHEN MAXTOPIC TECH CO LTD

Vehicle cockpit data leakage prevention methods, devices, equipment and storage media

PendingCN122316741AFeature vectorData transport
This application relates to the field of vehicle data security technology, and in particular to a method, apparatus, device, and storage medium for preventing vehicle cockpit data leakage. The method includes: encrypting vehicle cockpit data to obtain encrypted cockpit data; transmitting the encrypted cockpit data to a trusted execution environment based on a preset secure bus; compressing the encrypted cockpit data in the trusted execution environment to obtain an ultra-low-dimensional feature vector; and obtaining a semantic abstraction result based on the ultra-low-dimensional feature vector and a random noise array. This application effectively improves the transmission security of vehicle cockpit data and effectively reduces the risk of vehicle cockpit data leakage.
Owner:HEXINLI INTELLIGENT CONTROL TECHNOLOGY (SHANGHAI) CO LTD

Methods and apparatus for wireless communication

PendingCN122349103AAccess networkUser equipment
The application discloses a method and device for wireless communication. A first core network device receives a first NAS signaling, the first NAS signaling comprising an identification of a first user equipment and an identification of a first server; in response to receiving the first NAS signaling, a first signaling is sent, the first signaling indicating a first access network device to send first information to the first server through a first tunnel; wherein the first NAS signaling is an uplink message; the first server is at a user equipment side; the first information depends on channel information of the first user equipment; the first tunnel depends on a first session; the first session provides a data interaction service between the first user equipment and the first server; establishment of the first session depends on indication of the first NAS signaling. The application is beneficial to assisting the first access network device to save communication resources for sending the first information, improving transmission security of the first information and improving service performance of the first server.
Owner:SHANGHAI CODUS TECHNOLOGY CO LTD