Apparatus and method for detecting malicious device based on swarm intelligence

    公开(公告)号:US10798115B2

    公开(公告)日:2020-10-06

    申请号:US15920114

    申请日:2018-03-13

    Abstract: Disclosed herein are an apparatus and method for detecting a malicious device based on swarm intelligence. The method includes detecting a malicious device by causing at least one exploration ant to access a device swarm along movement routes in which pheromone trail values are taken into consideration, wherein the exploration ant is generated in response to a detection request received from a security management server, when the at least one exploration ant detects a suspicious device that is suspected to be a malicious device, causing the exploration ant to return along the movement routes in reverse order, and returning pheromone trail values generated by devices on the return movement routes to a malicious device detection apparatus, and identifying whether the suspicious device is the malicious device by calculating an optimal solution based on a local information set generated by aggregating the pheromone trail values returned for movement routes.

    Method and apparatus for authenticating and managing application using trusted platform module
    4.
    发明授权
    Method and apparatus for authenticating and managing application using trusted platform module 有权
    使用可信平台模块认证和管理应用程序的方法和装置

    公开(公告)号:US09288054B2

    公开(公告)日:2016-03-15

    申请号:US14222980

    申请日:2014-03-24

    CPC classification number: H04L9/3239 G06F21/00 G06F21/44

    Abstract: Disclosed herein are authentication and management of an application using a mobile trusted module (MTM).According to an exemplary embodiment of the present invention, there is provided an apparatus for authenticating and managing an application, including: a mobile trusted module configured to store a hash value of an authentication data for at least one application and a secret key value of an authentication data which are installed in a mobile device, authenticate the application using the stored hash value and secret key value of the authentication data, and generate a storage root key (SRK) for the application; and a trusted software stack (TSS) middleware configured to generate a message requesting authentication for the application and generation of the storage root key (SRK) and transmit the generated message to the mobile trusted module and manage result information received from the mobile trusted module in response to the transmitted message.

    Abstract translation: 这里公开了使用移动可信模块(MTM)的应用的认证和管理。 根据本发明的示例性实施例,提供了一种用于认证和管理应用的装置,包括:移动可信模块,被配置为存储用于至少一个应用的认证数据的散列值,以及存储 安装在移动设备中的认证数据,使用所存储的哈希值和认证数据的秘密密钥值对应用进行认证,并为应用生成存储根密钥(SRK); 以及可信软件栈(TSS)中间件,被配置为生成请求对应用的认证的消息和生成存储根密钥(SRK),并将生成的消息发送到移动信任模块,并且管理从移动可信模块接收的结果信息 对发送的消息的响应。

    Device and method for fault management of smart device
    5.
    发明授权
    Device and method for fault management of smart device 有权
    智能设备故障管理设备及方法

    公开(公告)号:US09235463B2

    公开(公告)日:2016-01-12

    申请号:US14028486

    申请日:2013-09-16

    Abstract: There is provided a method of fault management of a smart device including comparing a value of a fault detection indicator (hereinafter referred to as ‘FDI’) in a normal state, which detects faults generated in the smart device, with respect to at least one performance indicator, with an FDI value observed in real time and detecting the faults by calculating a relative variation level of the observed values, and creating a diagnosis object (hereinafter referred to as ‘DO’) including a cause and a countermeasure of the detected fault and analyzing the fault.

    Abstract translation: 提供了一种智能设备的故障管理方法,包括将检测智能设备中产生的故障的正常状态下的故障检测指示符(以下称为“FDI”)的值相对于至少一个 性能指标,实时观察FDI值,并通过计算观测值的相对变化水平检测故障,并创建诊断对象(以下称为“DO”),其中包括检测到的故障的原因和对策 并分析故障。

    SMARTCARD INTERFACE CONVERSION DEVICE, EMBEDDED SYSTEM HAVING THE SAME DEVICE AND METHOD FOR TRANSFERRING DATA SIGNAL USED IN THE SAME DEVICE
    6.
    发明申请
    SMARTCARD INTERFACE CONVERSION DEVICE, EMBEDDED SYSTEM HAVING THE SAME DEVICE AND METHOD FOR TRANSFERRING DATA SIGNAL USED IN THE SAME DEVICE 有权
    具有相同设备的智能卡接口转换设备,嵌入式系统以及用于传送在相同设备中使用的数据信号的方法

    公开(公告)号:US20150106648A1

    公开(公告)日:2015-04-16

    申请号:US14243089

    申请日:2014-04-02

    CPC classification number: G06F13/385 Y02D10/14 Y02D10/151

    Abstract: The present invention relates to an apparatus and a method for transferring a data signal between a smartcard interface and an interface of a processor within an embedded system.According to an exemplary embodiment of the present invention, an interface conversion device communicating between a processor and a smartcard IC chip includes: an input/output signal conversion logic configured to transfer a signal between a first interface of the processor and a second interface of the smartcard IC chip; a clock generator configured to generate a clock signal driving the smartcard IC chip depending on a first control signal received from the processor and provide the generated clock signal to the smartcard IC chip; and a reset controller configured to generate a reset signal depending on a second control signal received from the processor and provide the generated reset signal to the smartcard IC chip.

    Abstract translation: 本发明涉及一种用于在智能卡接口和嵌入式系统内的处理器的接口之间传送数据信号的装置和方法。 根据本发明的示例性实施例,在处理器和智能卡IC芯片之间通信的接口转换装置包括:输入/输出信号转换逻辑,被配置为在处理器的第一接口和第二接口之间传送信号 智能卡IC芯片; 时钟发生器,被配置为根据从处理器接收的第一控制信号产生驱动智能卡IC芯片的时钟信号,并将所生成的时钟信号提供给智能卡IC芯片; 以及复位控制器,被配置为根据从处理器接收到的第二控制信号产生复位信号,并将产生的复位信号提供给智能卡IC芯片。

    APPARATUS AND METHOD FOR PERFORMING KEY DERIVATION IN CLOSED DOMAIN
    9.
    发明申请
    APPARATUS AND METHOD FOR PERFORMING KEY DERIVATION IN CLOSED DOMAIN 审中-公开
    在封闭领域执行关键衍生的装置和方法

    公开(公告)号:US20150117640A1

    公开(公告)日:2015-04-30

    申请号:US14243093

    申请日:2014-04-02

    CPC classification number: H04L9/0869

    Abstract: Provided are an apparatus and method for guaranteeing the safety of a computing device by separating a closed domain from an open domain in the computing device and allowing the closed domain to perform key derivation that is required for encryption/decryption of data. The computing device includes a hypervisor, the open domain and the closed domain isolated from the open domain without being open to a user, the open domain and the closed domain managed by the hypervisor, and a key derivation executable code configured to generate an encryption key needed to perform encryption in the open domain, from a seed value, the key derivation executable code being executed in the closed domain, wherein the encryption key generated by the key derivation executable code is transferred to the open domain, and is automatically discarded after being used for encryption of data in the open domain.

    Abstract translation: 提供了一种用于通过将计算设备中的闭合域与开放域分离并允许封闭域执行数据加密/解密所需的密钥导出来保证计算设备的安全性的装置和方法。 所述计算设备包括管理程序,所述开放域和所述关闭域与所述开放域隔离,而不被所述用户打开,所述开放域和所述管理程序管理的所述关闭域以及被配置为生成加密密钥的密钥导出可执行代码 需要在开放域中执行加密,从种子值,密钥导出可执行代码在封闭域中执行,其中由密钥导出可执行代码生成的加密密钥被传送到开放域,并且被放弃后被自动丢弃 用于开放域中的数据加密。

Patent Agency Ranking