Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

23 results about "Unique key" patented technology

In database relational modeling and implementation, a unique key (also known as a candidate key, primary key, alternate key or more generally just a key) of a relation is a minimal superkey for that relation; that is, a set of attributes such that...

Data protection method and system based on TPM encryption

ActiveCN122263135BData streamCiphertext
The present application relates to the technical field of encrypted data protection, in particular to a data protection method and system based on TPM encryption, comprising: extracting file index node and directory item features, generating root node digest through hierarchical aggregation logic and measuring to platform configuration register, establishing hardware anchor topology based on storage root key; analyzing data stream to generate feature keywords, generating hardware derived credentials using TPM hardware unique key, constructing balanced search tree and encapsulating to generate ciphertext mapping index. Analyzing I / O request, performing hardware anchored logical integrity comparison for metadata operation; quantifying hardware evaluation value for data content operation, if threshold is met, synchronous hardware verification is performed, otherwise, physical block is located based on ciphertext mapping index and verification operation is pushed into delay queue asynchronously. The present application realizes strong binding of data and hardware and fast addressing of ciphertext through software and hardware cooperative anchoring, effectively balancing data security protection and high concurrency I / O throughput performance.
Owner:杭州鸿道科技有限公司

Zoned system for a vehicle

A computer-implemented method causes a data processing hardware to perform operations when executed by the data processing hardware. The operations include providing a common encryption key and a unique encryption key at a system on a chip (SoC) of a radar module, providing a unique key pair at the SoC, the unique key pair including a unique public key and a unique private key, and encrypting software with the common encryption key. The operations further include generating a secure boot certificate for the encrypted software, signing the secure boot certificate using the unique private key, and writing the encrypted software to an external flash memory. The operations further include updating the software at the SoC, verifying the software update via a regional public key, and signing the secure boot certificate with a device unique private key via a hardware security module (HSM) of the SoC.
Owner:GM GLOBAL TECHNOLOGY OPERATIONS LLC

A method and system for comparing SCL files

The present application belongs to the field of substation communication configuration, and particularly relates to a kind of SCL file comparison method and system.The present application establishes the node model corresponding to each node in SCL file, avoids traversing when comparing, saves traversal time, and when establishing node model, only the attribute information and the subnode information needed for node comparison are modeled, so the comparison of these nodes and attributes can be saved;when comparing nodes or their subnodes, the node content is first texturized, only the text content is compared to see if it is the same, and the text comparison method is optimized, which can quickly determine whether the node content is different, and if not, the comparison of the specific content of the node can be directly saved;and when comparing multiple node subnodes, the unique key attribute is matched, and the key attributes of each subnode in the two files are stored as a linked list and a hash table respectively, ensuring the order and retrieval speed of the results of multiple node subnodes.
Owner:XUCHANG XJ SOFTWARE TECHNOLOGIES LTD

Derived unique key per hash encapsulated encrypted transaction (DUKPHEET)

The arrangements disclosed herein relate to generating, by a first server, a first seed using a Hash-Based Message Authentication Code (HMAC) based at least in part on a Hash Key (HK), providing, by the first server to each of a first device and a second device, the first seed, providing, by a second server to each of the first device or the second device, a second seed. The second seed is based at least in part on a stream of photons. Each of the first device or the second device generates a Derived Key (DK) based at least in part on the first seed and the second seed. Each of the first device or the second device generates a first key based at least in part on the DK and a first random number generated by a Quantum Random Number Generator (QRNG). The first device encrypts first data using the first key to obtain first ciphertext and provides the first ciphertext to the second device. The second device derives the first key and decrypts the first ciphertext using the first key.
Owner:WELLS FARGO BANK NA

Key sharding hierarchy and shared custody blockchain wallets

Systems and methods for providing a shared custody blockchain wallet as a service are disclosed. A digital asset exchange platform offering the blockchain wallet service may cause one or more groups of signing client devices to collaboratively generate one or more key unique key shards for authorizing transactions associated with the blockchain wallet. The digital asset exchange platform may determine one or more signing client groups to generate and / or store the key shards. One or more signing client devices of the individual groups of singing client devices may be configured to generate, store, and / or send unique key shards. Each of the groups may have a quorum representing ones or more thresholds and / or requirements of the unique key shards that, upon request to sign a transaction, must be utilized to authorize the transaction.
Owner:GEMINI IP LLC

Mechanical encryption valve

The present application relates to the technical field of valve, in particular to a mechanical encryption valve, including valve body, valve cover arranged on the valve body, valve rod arranged on the valve cover and located in the valve body, valve flap arranged on the valve body and threaded with the lower end of the valve rod, the valve flap is lifted in the valve body when the valve rod rotates, the upper end of the valve rod passes through the valve cover, further including rotating body, avoiding hole, first cutout, longitudinal opening, second cutout, control rod, turnover mechanism, locking mechanism, the control rod and the rotating body are integrated, the traditional use of lock core and key is abandoned, the control rod itself is both unlocking tool and operating handle, the management personnel do not need to carry unique key, and the phenomenon that the valve cannot be operated due to the loss of key will not occur, so as to reduce the loss, when the subsequent operation is needed again, the first cutout and the second cutout are corresponded by controlling the rotating body, and the above control mode is repeated.
Owner:ZHISHAN VALVE TECH CO LTD

Full offline accessory key full life cycle management system and method

PendingCN122293323AFull life cycleNetwork data
This invention discloses a fully offline accessory key lifecycle management system and method, belonging to the field of smart terminal accessory security management technology. This invention constructs a six-stage, closed-loop management system covering key generation and programming, factory pre-binding, initial activation verification, continuous usage control, offline key revocation, and physical destruction upon disposal. This invention utilizes a PUF (Physically Unclonable Function) circuit to generate unique key pairs for each device. The private key is permanently embedded within the chip, unreadable and unexportable. A physical unidirectional programming link eliminates the risk of internal key leakage, enabling offline pre-binding between the terminal and accessories, offline key revocation, and hardware-level physical key destruction capabilities. This invention operates entirely offline in a closed loop on the local terminal, without requiring cloud-based network data interaction. It effectively solves the security flaws of traditional accessory key systems, such as easy key leakage, easy mass forgery, lack of offline revocation capabilities, and the possibility of reused discarded keys. This provides a full-process, hardware-level, and highly reliable security management solution for the fully offline bionic interactive terminal accessory ecosystem.
Owner:李俪安

REGIONALIZATION SYSTEM FOR A VEHICLE

PendingDE102025102094A1Platform integrity maintainanceSoftware deploymentHardware security moduleSoftware update
A computer-implemented procedure, when executed by data processing hardware, causes the data processing hardware to perform operations. These operations include providing a shared encryption key and a unique encryption key in a system-on-chip (SoC) of a radar module, providing a unique key pair on the SoC, where the unique key pair comprises a unique public key and a unique private key, and encrypting software using the shared encryption key. The operations also include generating a secure boot certificate for the encrypted software, signing the secure boot certificate using the unique private key, and writing the encrypted software to external flash memory.The processes also include updating the software on the SoC, verifying the software update via a regional public key, and signing the secure boot certificate with a device-native private key via a hardware security module (HSM) of the SoC.
Owner:GM GLOBAL TECHNOLOGY OPERATIONS LLC

Derived unique key per hash encapsulated encrypted transaction (dukpheet)

The arrangements disclosed herein relate to generating, by a first server, a first seed using a Hash-Based Message Authentication Code (HMAC) based at least in part on a Hash Key (HK), providing, by the first server to each of a first device and a second device, the first seed, providing, by a second server to each of the first device or the second device, a second seed. The second seed is based at least in part on a stream of photons. Each of the first device or the second device generates a Derived Key (DK) based at least in part on the first seed and the second seed. Each of the first device or the second device generates a first key based at least in part on the DK and a first random number generated by a Quantum Random Number Generator (QRNG). The first device encrypts first data using the first key to obtain first ciphertext and provides the first ciphertext to the second device. The second device derives the first key and decrypts the first ciphertext using the first key.
Owner:WELLS FARGO BANK NA

Systems and methods to identify a simulated phishing message

ActiveUS12641117B2User identity/authority verificationCryptographic hash functionEngineering
Systems and methods are described for detecting a simulated phishing message by an email client plug-in. A unique key is received at the email client plug-in. An indication that an email was reported by a user as a suspicious message is received at the email client plug-in. The email is a simulated phishing message having the unique key mapped by cryptographic hashing function into a hash value in a predetermined field in the header of the simulated phishing message. The presence of the predetermined field is detected and the hash value in the predetermined field is compared to a result of applying cryptographic hashing function to the unique key received by the email client plug-in. Responsive to being matched to the result, it is determined that the suspicious message is a simulated phishing message generated by a server.
Owner:KNOWBE4 INC

A layered decoupled deterministic idempotent identity generation method and system

PendingCN122268567AEliminate dependenciesEliminate long-term bidirectional mapping indexKey distribution for secure communicationEncryption apparatus with shift registers/memoriesPaymentDeterministic algorithm
The application discloses a layered decoupling deterministic idempotent identification generation method and system. The method physically separates the session access stage and the service identification generation stage: the session access stage generates a session access certificate based on non-service attributes to prevent replay attacks; the service identification generation stage only constructs a service unique key based on service parameters and generates an idempotent handle through a deterministic algorithm; a minute boundary double window atomic query and TTL guarantee threshold checking mechanism are adopted to provide a clock drift tolerance of ±30 seconds; and offline verification capability is realized through reverse verification of the server. The application eliminates the long-term bidirectional mapping index of the service key to the identification, and the storage overhead can be reduced by more than 70%, the generation delay can be optimized to less than 1ms, and 100,000 + high-concurrency scenarios per second are supported; 100% cross-node consistency, zero-downtime configuration hot update, financial-grade security salt value rotation and cross-system offline verification capability are provided, and the application can be widely applied to distributed payment, e-commerce transaction and other scenarios.
Owner:CHINA ELECTRONICS CLOUD DIGITAL INTELLIGENCE TECH CO LTD

Method for encrypting genetic data of a subject

PCT designated stageWO2026132269A1BioinformaticsLaboratory analysis dataGeneticsGenomic data
The invention relates to a computer-implemented method for processing genomic data, comprising the following steps: a) Receiving first metadata comprising a request for genetic analysis of the genome of a subject, the genome belonging to an owner, wherein the first metadata (MDD1) comprises data associated with the subject and at least one area of the genome to be analysed, the owner's consent for the analysis having been received; b) Generating a digital DNA tag encoding (i) a unique owner key (ii) a public encryption key specific to the owner, (iii) the first metadata (MDD1) associated with the subject, the first metadata and the unique key (CU) being stored in a first database; the public encryption key (CCP) being associated with a private encryption key.
Owner:GENARO

Method for determining unique key of structured data, electronic device and storage medium

Embodiments of the present application provide a method for determining a unique key of structured data, an electronic device and a storage medium. In the embodiments of the present application, first, column fields of the structured data are screened to screen out column fields with a greater probability of being a unique key. Then, the screened column fields are combined, and it is determined whether the combined column fields have repeated field values in the structured data. If the combined column fields do not have repeated field values in the structured data, it means that the probability of determining the unique key from the screened column fields is greater. At this time, the unique key of the structured data can be determined based on the screened column fields. Thus, the unique key of the structured data can be automatically and accurately determined, the efficiency of determining the unique key is improved, and a basis for more reliable analysis of the structured data is provided.
Owner:ALIBABA CLOUD COMPUTING CO LTD

Banking general basic component layered decoupling system and construction method thereof

PendingCN122453500AFinancial data processingFinancial transaction
The application discloses a bank intermediary service general basic component layered decoupling system and a construction method thereof, and relates to the technical field of financial data processing. The system comprises: a service layer containing a plurality of intermediary service subsystems, a general basic component module being introduced through dependency management; a core component layer being independently deployed and being used for respectively executing enumeration bidirectional conversion, multi-source parameter loading and verification, transaction idempotent control based on a composite unique key, and asynchronous polling and retry of a configurable delay strategy; and a rule management and control layer, which centrally stores and maintains rule data and supports dynamic configuration and real-time effect. Each unit of the core component layer acquires rule data from the rule management and control layer in real time and executes general logic, and the service layer calls a standardized interface to delegate common processing to the core component layer and then executes exclusive logic. The application realizes layered decoupling and component reuse of general basic capabilities, and improves the technical standard uniformity and scalability of multi-service systems.
Owner:SHANDONG CITY COMMERCIAL BANK COOP ALLIANCE CO LTD

Control device, control method, and security system

Ensuring security when multiple control devices, each with a different unique key, are in use. [Solution] In a control system equipped with multiple control devices in a vehicle, each control device includes a memory for storing a unique key and a controller for performing authentication processing using the unique key. The controller measures the number of control devices among the multiple control devices that have failed to authenticate using the unique key stored in the controller as the failure count. If the failure count of the controller is less than a threshold, the controller transmits the unique key to the control devices among the multiple control devices whose failure count is equal to or greater than the threshold. If the failure count of the controller is equal to or greater than the threshold, the controller does not transmit the unique key.
Owner:DENSO TEN LTD

Data protection method and system based on TPM encryption

This invention relates to the field of encrypted data protection technology, specifically a data protection method and system based on TPM encryption. The method includes: extracting features from file index nodes and directory entries; generating root node digests through hierarchical aggregation logic and measuring them in the platform configuration register; establishing a hardware anchoring topology based on the stored root key; parsing data streams to generate feature keywords; generating hardware-derived credentials using the TPM hardware unique key; constructing a balanced search tree and encapsulating it to generate a ciphertext mapping index; parsing I / O requests; performing logical integrity comparisons based on hardware anchoring on metadata operations; quantifying hardware evaluation values ​​for data content operations; performing synchronous hardware verification if a threshold is met; otherwise, locating physical blocks based on the ciphertext mapping index and asynchronously pushing the verification operation into a delay queue. This invention achieves strong binding between data and hardware and fast ciphertext addressing through software and hardware collaborative anchoring, effectively balancing data security protection and high-concurrency I / O throughput performance.
Owner:杭州鸿道科技有限公司

Method for encrypting a subject's genetic data

PendingFR3170768A1Genomic dataKey storage
The invention relates to a computer-implemented method for processing genomic data, comprising the following steps: a) Receiving initial metadata including a request for genetic analysis of a subject's genome, the genome belonging to an owner, the initial metadata (MDD1) including data associated with the subject and at least one region of the genome to be analyzed, the owner's consent for the analysis having been obtained; b) Generating a digital DNA tag encoding (i) a unique proprietary key, (ii) a public encryption key specific to the owner, (iii) the initial metadata (MDD1) associated with the subject, the initial metadata and the unique key (CU) being stored in a first database; the public encryption key (CCP) being associated with a private encryption key. No figure
Owner:GENARO

Oss production process quality traceability distributed storage method

PendingCN122263130AEnsemble learningError detection/correctionShardStorage security
This invention discloses a distributed storage method for quality traceability in the OSS production process, belonging to the field of industrial data storage security technology. The method includes: parsing production data batches and allocating storage nodes based on fragment length adaptation attributes; generating unique keys by incorporating node identifiers through key derivation functions; detecting abnormal frequencies based on access logs and identifying attack sources using the isolated forest algorithm; dynamically adjusting the number of monitoring algorithm rounds and updating the key version according to node load; applying adaptive access control rules to verify fragment sequence indexes and integrity hash values, isolating nodes during unauthorized access; copying data from backup nodes and re-encrypting it when integrity is compromised; and performing global consistency verification through dual verification of SHA-256 hash value matching and sequence index continuity. This invention achieves physical binding between keys and nodes, automatic attack isolation and recovery, and closed-loop integrity verification, significantly improving the anti-attack capability and data traceability of industrial data storage.
Owner:LIAONING DAEWOONG PHARMA CO LTD

Techniques for preventing prohibited access to secure content

Systems and methods for improving access to and control of secure content. To prevent undesired data sharing / access (e.g., prohibited downloads, 4th, 5th-party sharing), access rules can be assigned to documents upon creation. These access rules specify the operations that can be performed to a document, who can perform those operations, and when those documents can be accessed to perform the operations. For each document, a separate container instance may be generated which can store the document comprising the private data. Each authorized user may be provided with their own container instance. Unique cryptographic keys may be generated for each container instance to allow those authorized users to securely connect to their respective container instances. This additional layer of protection (i.e., access rules linked to documents and unique keys for each document / client) allows for granular monitoring of the private data to prevent prohibited access attempts.
Owner:CAPITAL ONE SERVICES LLC

Robotic safety recovery system and method based on physically unclonable function

PendingCN122372218ASystem integrationAttack
The application discloses a kind of robot security recovery systems and methods based on physical unclonable function (PUF).System integration in robot master chip, including PUF key generation unit (generate unique key based on chip physical characteristics), security trigger unit (activate PUF in response to forced interruption event) and key verification unit (compare external key and PUF key).When robot encounters security attack, hardware exception or user instruction causes forced interruption, the system automatically enters unusable state;Only when external input key is consistent with PUF dynamically generated key, recovery operation is allowed. The application realizes key non-replicable, strict authentication of recovery operation, effectively prevents unauthorized recovery and secondary attack, and improves robot security.
Owner:SHENZHEN BAIMAXUN NETWORK TECHNOLOGY CO LTD

Approximate Membership Structure For Application Performance And Monitoring Data

PendingUS20260178586A1Digital data information retrievalData sortingKey assignmentEngineering
A computer-implemented method for storing and querying application performance monitoring (APM) data in a database, includes receiving data records of APM data, each data record associated to a key; storing the data records in storage containers in the database, each record stored in one storage container and each storage container identified by a unique storage identifier; assigning a unique index value to each unique key; defining a distribution function mapping the keys to the index values; generating a secondary function to approximate the distribution function; defining a mapping function to map the index values to lists of storage identifiers; and in response to a request to retrieve data records for a specified key or keys, querying the database to identify a list of storage identifiers based on the secondary function and the mapping function and retrieving the data records for the specified key or keys.
Owner:DYNATRACE LLC