-
公开(公告)号:US12047503B2
公开(公告)日:2024-07-23
申请号:US18051825
申请日:2022-11-01
申请人: Intel Corporation
发明人: Ned M. Smith , Omer Ben-Shalom , Alex Nayshtut
CPC分类号: H04L9/14 , H04L9/0822 , H04L9/0825 , H04L9/0836 , H04L9/3247
摘要: Technologies for secure collective authorization include multiple computing devices in communication over a network. A computing device may perform a join protocol with a group leader to receive a group private key that is associated with an interface implemented by the computing device. The interface may be an instance of an object model implemented by the computing device or membership of the computing device in a subsystem. The computing device receives a request for attestation to the interface, selects the group private key for the interface, and sends an attestation in response to the request. Another computing device may receive the attestation and verify the attestation with a group public key corresponding to the group private key. The group private key may be an enhanced privacy identifier (EPID) private key, and the group public key may be an EPID public key. Other embodiments are described and claimed.
-
公开(公告)号:US11567761B2
公开(公告)日:2023-01-31
申请号:US16912148
申请日:2020-06-25
申请人: Intel Corporation
发明人: Itamar Levin , Guilad Melzer , Alex Nayshtut , Raizy Kellerman
摘要: The present disclosure provides privacy preservation of analytic workflows based on splitting the workflow into sub-workflows each with different privacy-preserving characteristics. Libraries are generated that provide for formatting and/or encrypting data for use in the sub-workflows and also for compiling a machine learning algorithm for the sub-workflows. Subsequently, the sub-workflows can be executed using the compiled algorithm and formatted data.
-
公开(公告)号:US11528258B2
公开(公告)日:2022-12-13
申请号:US16229964
申请日:2018-12-21
申请人: INTEL CORPORATION
发明人: Oron Lenz , Alex Nayshtut , Alex Berenzon , Ishai Nadler , Yoni Wolf
IPC分类号: H04L29/00 , H04L9/40 , G06F21/60 , G06F21/57 , H04L9/08 , H04L67/10 , G06F16/182 , H04L9/06 , G06F21/64 , H04L9/00
摘要: A system and apparatus for data confidentiality in a distributed ledger are disclosed. The system and apparatus preserve qualities of distributed ledgers, such as transparency, integrity, and redundancy, while also providing confidentiality, scalability, and security not previously available in distributed ledgers. The system includes a data confidentiality module that exploits a trusted execution environment for both transaction processing and key synchronization. The apparatus accessing the distributed ledger provides for new nodes joining the network, sending transactions to the ledger by existing nodes, securely processing the transaction using the trusted execution environment, securing transmission to the logic layer for application of business logic, reading and writing data to local storage, and reading encrypted transactions.
-
公开(公告)号:US11126721B2
公开(公告)日:2021-09-21
申请号:US16021411
申请日:2018-06-28
申请人: Intel Corporation
摘要: The disclosed embodiments generally relate to detecting malware through detection of micro-architectural changes (morphing events) when executing a code at a hardware level (e.g., CPU). An exemplary embodiment relates to a computer system having: a memory circuitry comprising an executable code; a central processing unit (CPU) in communication with the memory circuitry and configured to execute the code; a performance monitoring unit (PMU) associated with the CPU, the PMU configured to detect and count one or more morphing events associated with execution of the code and to determine if the counted number of morphine events exceed a threshold value; and a co-processor configured to initiate a memory scan of the memory circuitry to identify a malware in the code.
-
公开(公告)号:US20210264274A1
公开(公告)日:2021-08-26
申请号:US17314041
申请日:2021-05-06
申请人: Intel Corporation
摘要: Partitioning a deep neural network (DNN) model into one or more sets of one or more private layers and one or more sets of one or more public layers, a set of one or more private layers being at least one key in a cryptographic system; and deploying the partitioned DNN model on one or more computing systems.
-
公开(公告)号:US11082431B2
公开(公告)日:2021-08-03
申请号:US16532057
申请日:2019-08-05
申请人: Intel Corporation
发明人: Alex Nayshtut , Omer Ben-Shalom , Hong Li
摘要: Technologies to facilitate supervision of an online identify include a gateway server to facilitate and monitor access to an online service by a user of a “child” client computer device. The gateway server may include an identity manager to receive a request for access to the online service from the client computing device, retrieve access information to the online service, and facilitate access to the online service for the client computing device using the access information. The access information is kept confidential from the user. The gateway server may also include an activity monitor module to control activity between the client computing device and the online service based on the set of policy rules of a policy database. The gateway server may transmit notifications of such activity to a “parental” client computing device for review and/or approval, which also may be used to update the policy database.
-
公开(公告)号:US20210150025A1
公开(公告)日:2021-05-20
申请号:US17132934
申请日:2020-12-23
申请人: Intel Corporation
发明人: Omer Ben-Shalom , Alex Nayshtut , Behnam Eliyahu , Denis Klimov
摘要: A system and method of detecting and remediating attacks includes receiving operating system (OS) read/write data from an OS, the OS read/write data describing at least one of reads from and writes to a storage device over a file system interface of the OS; collecting storage device read/write data, the storage device read/write data describing at least one of reads from and writes to the storage device; comparing the OS read/write data to the storage device read/write data; and determining if there is a discrepancy between the OS read/write data and the storage device read/write data. If there is a discrepancy, determining if there is an anomaly detected between OS read/write data and the storage device read/write data. If there is an anomaly, causing a remediation action to be taken to stop a malware attack.
-
公开(公告)号:US10929535B2
公开(公告)日:2021-02-23
申请号:US16023160
申请日:2018-06-29
申请人: Intel Corporation
发明人: Vadim Sukhomlinov , Kshitij Doshi , Francesc Guim , Alex Nayshtut
摘要: The present disclosure is directed to systems and methods for mitigating or eliminating the effectiveness of a side channel attack, such as a Meltdown or Spectre type attack by selectively introducing a variable, but controlled, quantity of uncertainty into the externally accessible system parameters visible and useful to the attacker. The systems and methods described herein provide perturbation circuitry that includes perturbation selector circuitry and perturbation block circuitry. The perturbation selector circuitry detects a potential attack by monitoring the performance/timing data generated by the processor. Upon detecting an attack, the perturbation selector circuitry determines a variable quantity of uncertainty to introduce to the externally accessible system data. The perturbation block circuitry adds the determined uncertainty into the externally accessible system data. The added uncertainty may be based on the frequency or interval of the event occurrences indicative of an attack.
-
公开(公告)号:US20200329050A1
公开(公告)日:2020-10-15
申请号:US16913557
申请日:2020-06-26
申请人: Intel Corporation
发明人: Alex Nayshtut , Omer Ben-Shalom , Hong Li
摘要: Technologies to facilitate supervision of an online identify include a gateway server to facilitate and monitor access to an online service by a user of a “child” client computer device. The gateway server may include an identity manager to receive a request for access to the online service from the client computing device, retrieve access information to the online service, and facilitate access to the online service for the client computing device using the access information. The access information is kept confidential from the user. The gateway server may also include an activity monitor module to control activity between the client computing device and the online service based on the set of policy rules of a policy database. The gateway server may transmit notifications of such activity to a “parental” client computing device for review and/or approval, which also may be used to update the policy database.
-
10.
公开(公告)号:US20190052819A1
公开(公告)日:2019-02-14
申请号:US15825876
申请日:2017-11-29
申请人: Intel Corporation
摘要: Methods, apparatus, systems and articles of manufacture to protect sensitive information in video collaboration systems are disclosed. A disclosed example method includes an analytics engine to recognize a feature in a first frame of a first video stream, a policy enforcer to apply an obscuration policy to the recognized feature to identify whether to mask the recognized feature, and a masker to obscure the recognized feature in the first frame to form a second frame in a second video stream.
-
-
-
-
-
-
-
-
-