Quantum secured internet transport
    21.
    发明授权

    公开(公告)号:US12113894B1

    公开(公告)日:2024-10-08

    申请号:US17743377

    申请日:2022-05-12

    IPC分类号: H04L9/40 H04L9/08

    摘要: Systems and methods provide quantum secured internet transport. Quantum key distribution (QKD) is made universally available to existing Transport Layer Security (TLS) Internet services without requiring modification of existing applications. QKD keys may be prefetched and transferred to user devices at secure sites using QKD over an optical link (e.g., a continuous wave fiber or free-space optical link). A proxy QKD TLS tunnel client and a QKD TLS tunnel server are transparent to the user devices and select QKD keys for use with existing TLS client and TLS server services to form a QKD TLS tunnel between the user devices for secure communication. One-time-pad (OTP) encryption uses pre-shared QKD keys to provide secure OTP based encryption.

    MICROCONTROLLER UNIT (MCU) SECURE BOOT
    22.
    发明公开

    公开(公告)号:US20240330469A1

    公开(公告)日:2024-10-03

    申请号:US18514220

    申请日:2023-11-20

    申请人: Verkada Inc.

    摘要: A method includes building a firmware image to execute on a bootloader of a system on chip (SoC), the firmware image including first encryption public and private keys, and digitally signing the firmware image with a second encryption private key. The signed firmware image is encrypted with a symmetric encryption key, which in turn is encrypted with a second encryption public key. The encrypted signed firmware image and the encrypted symmetric encryption key are sent to the SoC to cause the SoC to (1) decrypt the encrypted symmetric encryption key to produce the symmetric encryption key using a third encryption private key from a first asymmetric key pair, (2) decrypt the encrypted signed firmware image to produce the signed firmware image using the symmetric encryption key, and (3) verify a digital signature of the signed firmware image using a third encryption public key from a second asymmetric key pair.

    Anonymous event attestation
    23.
    发明授权

    公开(公告)号:US12107969B2

    公开(公告)日:2024-10-01

    申请号:US17633291

    申请日:2021-03-16

    申请人: GOOGLE LLC

    IPC分类号: H04L9/32 H04L9/08

    摘要: Methods, systems, and computer media provide attestation tokens that protect the integrity of communications transmitted from client devices, while at the same time avoiding the use of stable device identifiers that could be used to track client devices or their users. In one approach, client devices can receive batches of N device integrity elements from a device integrity computing system, each corresponding to a different public key. The N device elements can be signed by a device integrity computing system. The signing by the device integrity computing system can be signing with a blind signature scheme. Client devices can include throttlers imposing limits on the quantity of attestation tokens created by the client device.

    COMPOUNDED INTRINSIC IDENTITIES FOR INFORMATION HANDLING SYSTEMS (IHSs)

    公开(公告)号:US20240313967A1

    公开(公告)日:2024-09-19

    申请号:US18184186

    申请日:2023-03-15

    IPC分类号: H04L9/32 H04L9/08

    摘要: Systems and methods for producing, using, and managing Compounded Intrinsic Identities (CIIS) for Information Handling Systems (IHSs) are described. In an illustrative, non-limiting embodiment, an IHS may include a processor and a memory coupled to the processor, the memory having program instructions stored thereon that, upon execution by the processor, cause the IHS to: receive a first indication of a first variable associated with a unique physical or electrical aspect of a first IHS component, receive a second indication of a second variable associated with a unique physical or electrical aspect of a second IHS component, and produce at least one identity seed associated with the IHS based, at least in part, upon a combination of the first and second indications.

    Information processing terminal, information processing device, information processing method, program, and information processing system

    公开(公告)号:US12095902B2

    公开(公告)日:2024-09-17

    申请号:US17601585

    申请日:2020-03-27

    发明人: Shota Taga Junji Goto

    IPC分类号: H04L9/08 H04L9/14

    摘要: There is provided an information processing terminal, an information processing device, an information processing method, a program, and an information processing system which enable key change to be performed more reliably. A user terminal includes: a secure element that has a protection area in which an area in which data to be protected is stored is protected by an encryption key; and a processing execution unit that executes a process of changing, in the secure element, a first key used at a time of shipment to a second key different from the first key. Setting information which is referred to when the first key is changed to the second key is stored at the time of shipment in the protection area. A server device includes: a tamper resistant device that stores a master key serving as a master of the first key and is protected from analysis from outside; and a processing device that performs, by using the master key stored in the tamper resistant device, a process of changing the first key to the second key on the basis of the setting information. The present technology can be applied to, for example, an information processing system that provides a settlement service.