System and method for protecting a password against brute force attacks
    4.
    发明授权
    System and method for protecting a password against brute force attacks 有权
    保护密码免受暴力攻击的系统和方法

    公开(公告)号:US08838975B2

    公开(公告)日:2014-09-16

    申请号:US11555030

    申请日:2006-10-31

    IPC分类号: H04L29/06

    摘要: In a system and method for authenticating a client device by an authentication device, the client device user is assigned a PIN generated by the authentication device. The user provides the PIN and a password to the client device, from which the client device generates a symmetric key and further generates a public/private key pair. The private key is encrypted using the symmetric key and stored in encrypted form only. The public key and a message authentication code generated from the PIN are provided to the authentication device, which stores the public key. Subsequently, when the user seeks to be authenticated, the user enters a password at the client device, which is used to generate a symmetric key to decrypt the encrypted private key. A message to the authentication device is signed using the resultant value. The authentication device uses the public key to verify the signature of the message.

    摘要翻译: 在用于通过认证设备认证客户端设备的系统和方法中,向客户端设备用户分配由认证设备产生的PIN。 用户向客户端设备提供PIN和密码,客户端设备从该设备生成对称密钥并进一步生成公钥/私钥对。 私钥使用对称密钥加密,仅以加密形式存储。 将公钥和从PIN生成的消息认证码提供给存储公钥的认证装置。 随后,当用户寻求认证时,用户在客户端设备处输入密码,用于生成对称密钥来解密加密的私钥。 使用结果值对认证设备的消息进行签名。 认证设备使用公钥验证消息的签名。

    System and method for securing data for redirecting and transporting over a wireless network
    5.
    发明授权
    System and method for securing data for redirecting and transporting over a wireless network 有权
    用于保护无线网络重定向和传输数据的系统和方法

    公开(公告)号:US08761396B2

    公开(公告)日:2014-06-24

    申请号:US13355228

    申请日:2012-01-20

    IPC分类号: H04L29/06

    摘要: A system and method for securing data for redirecting and transporting over a wireless network are generally described herein. In accordance with some embodiments, when it is determined that an electronic message that is protected with a first encryption algorithm is to be transported over a wireless network to a wireless device, the electronic message is converted to a data structure that is recognizable by the wireless device and the data structure is encrypted with a second encryption algorithm using a random session key. The second encryption algorithm has a stronger security than the first encryption algorithm. The random session key is encrypted with a public key and packets that comprise the encrypted data structure and the encrypted random session key are transmitted to the wireless device over the wireless network.

    摘要翻译: 通常在此描述用于保护用于通过无线网络重定向和传送的数据的系统和方法。 根据一些实施例,当确定用第一加密算法保护的电子消息将通过无线网络传送到无线设备时,电子消息被转换成可被无线识别的数据结构 设备,并且使用随机会话密钥使用第二加密算法对数据结构进行加密。 第二种加密算法比第一种加密算法具有更强的安全性。 随机会话密钥用公钥加密,并且包括加密数据结构和加密的随机会话密钥的分组通过无线网络传送到无线设备。

    Publishing location for a limited time
    7.
    发明授权
    Publishing location for a limited time 有权
    出版地点有限的时间

    公开(公告)号:US08688779B2

    公开(公告)日:2014-04-01

    申请号:US12420391

    申请日:2009-04-08

    IPC分类号: G06F15/16

    CPC分类号: H04W4/02 H04L67/18 H04W8/18

    摘要: A method and user device for limiting a time for which location data sharing is enabled for a user device of a data sharing group, the data sharing group comprising at least two user devices inclusive of the user device, each user device of the data sharing group configured to store data shared by user devices of the data sharing group on the respective user device and to maintain a list of the user devices in the data sharing group. The method comprises receiving an instruction through a user interface on the user device indicating that location data sharing is to be enabled for a limited time period after which location sharing is to be disabled, obtaining location data for the user device during the limited time period; and sending the location data to at least one other user device of the sharing group during the limited time period.

    摘要翻译: 一种用于限制数据共享组的用户设备启用位置数据共享的时间的方法和用户设备,所述数据共享组包括包括所述用户设备的至少两个用户设备,所述数据共享组的每个用户设备 被配置为将数据共享组的用户设备共享的数据存储在相应的用户设备上并维护数据共享组中的用户设备的列表。 该方法包括:通过用户设备上的用户界面接收指示要在有限时间段内启用位置数据共享的指令,在该时间段之后禁用位置共享,在有限时间段内获取用户设备的位置数据; 以及在所述有限时间段期间将所述位置数据发送到所述共享组的至少一个其他用户设备。

    On-chip storage, creation, and manipulation of an encryption key
    10.
    发明授权
    On-chip storage, creation, and manipulation of an encryption key 有权
    加密密钥的片上存储,创建和操作

    公开(公告)号:US08571221B2

    公开(公告)日:2013-10-29

    申请号:US11051560

    申请日:2005-02-04

    IPC分类号: H04L9/00

    摘要: A system and method of creating and managing encryption keys in a data processing device generates subsequent encryption keys by combining the existing encryption key with an existing password and seed value. In the preferred embodiment, the initial encryption key is embedded during manufacture and is unknown to the user and manufacturer, thus ensuring that all subsequent encryption keys are derived from an unknown value. When a subsequent encryption key is generated, all data encrypted using the existing encryption key is decrypted using the existing encryption key and re-encrypted using the subsequent encryption key before the existing encryption key is overwritten. In a further aspect, during encryption/decryption the encryption key is combined with the sector address of the data to be encrypted/decrypted in order to generate a unique key for each sector of data to be encrypted/decrypted.

    摘要翻译: 在数据处理设备中创建和管理加密密钥的系统和方法通过将现有加密密钥与现有密码和种子值组合来生成后续加密密钥。 在优选实施例中,初始加密密钥在制造期间被嵌入,并且对于用户和制造商来说是未知的,因此确保所有后续加密密钥都是从未知值导出的。 当生成随后的加密密钥时,使用现有加密密钥加密的所有数据使用现有的加密密钥进行解密,并且在覆盖现有加密密钥之前使用随后的加密密钥重新加密。 在另一方面,在加密/解密期间,将加密密钥与要加密/解密的数据的扇区地址组合,以便为每个要加密/解密的数据扇区生成唯一的密钥。