-
1.
公开(公告)号:US20240211593A1
公开(公告)日:2024-06-27
申请号:US18087477
申请日:2022-12-22
CPC分类号: G06F21/556 , G06F21/6218
摘要: A system and a method for secure control of a physical system are described. During operation, the system can obtain measurement of one or more sensors associated with the physical system. The system then estimates a state of the physical system based on the measurement of the sensors. Subsequently, the system generates a feedback control signal based on the estimated state and generates a watermarking signal based on a stored estimated state of the physical system at a previous time instant. The system then generates a watermarked control signal by combining the feedback control signal and the watermarking signal and applies the watermarked control signal to the physical system to regulate the state of the physical system, thereby facilitating secure control of the physical system.
-
公开(公告)号:US11960273B2
公开(公告)日:2024-04-16
申请号:US17879537
申请日:2022-08-02
IPC分类号: G05B23/02
CPC分类号: G05B23/0289 , G05B23/0229
摘要: Embodiments described herein provide a supervisor for fault management at a production system. During operation, the supervisor can obtain a set of sensor readings and a state of the production system. A respective sensor reading is an output of a sensor in the production system. The supervisor can then determine, using an artificial intelligence (AI) model, whether the set of sensor readings accommodates a fault associated with a corresponding sensor. Subsequently, the supervisor can determine an action that mitigates an effect of the fault and modify the set of sensor readings based on the action. Here, the modified set of sensor readings is used by a controller that controls the production system.
-
公开(公告)号:US20230267153A1
公开(公告)日:2023-08-24
申请号:US18306000
申请日:2023-04-24
发明人: Eric Allan Bier , Shantanu Rane
IPC分类号: G06F16/903 , G06F16/13 , H04L9/32 , G06F16/18 , H04L9/06
CPC分类号: G06F16/90335 , G06F16/13 , G06F16/1805 , G06F16/1865 , H04L9/0637 , H04L9/32
摘要: Systems and methods for indexing blockchain data in a blockchain system. These systems and methods receive a set of transactions from one or more transaction blocks of a blockchain, wherein the transactions in the set have been validated by one or more peer systems of the blockchain. The systems and methods further generate an index to one or more fields of one or more transactions in the set of transactions of the transaction block generate an index representative of at least one field in the set of transactions of the transaction block and provide the generated index for validation by a peer system of the blockchain. After receiving verification from at least a threshold number of peer systems that the generated index has been validated by the peer system, the generated index is stored as an index block in the blockchain.
-
公开(公告)号:US11636200B2
公开(公告)日:2023-04-25
申请号:US16004571
申请日:2018-06-11
发明人: George Daniel , Alexander Feldman , Bhaskar Saha , Anurag Ganguli , Bernard D. Casse , Johan de Kleer , Shantanu Rane , Ion Matei
摘要: The following relates generally to defense mechanisms and security systems. Broadly, systems and methods are disclosed that detect an anomaly in an Embedded Mission Specific Device (EMSD). Disclosed approaches include a meta-material antenna configured to receive a radio frequency signal from the EMSD, and a central reader configured to receive a signal from the meta-material antenna. The central reader may be configured to: build a finite state machine model of the EMSD based on the signal received from the meta-material antenna; and detect if an anomaly exists in the EMSD based on the built finite state machine model.
-
公开(公告)号:US20220078181A1
公开(公告)日:2022-03-10
申请号:US17016689
申请日:2020-09-10
发明人: Alejandro E. Brito , Eric A. Bier , Marc E. Mosko , Shantanu Rane
IPC分类号: H04L29/06
摘要: A certified application is installed onto a content creation device and a mobile certified application is installed onto a mobile device, the applications establish first and second trust relationships with the cloud service. The certified application and mobile certified application establish the third trust relationship via a proximity network. The mobile certified application generates a first ephemeral key pair having a private part. The certified application generates a second ephemeral key pair having a private part. The mobile certified application requests a service from the content creation device involving the transfer of data between the content creation device and the cloud service. The data is protected by at least one of the first and second ephemeral key pairs in response to invocation of the service. The service results in the data being stored at the cloud service and/or rendered at the content creation device.
-
公开(公告)号:US10966086B2
公开(公告)日:2021-03-30
申请号:US16184811
申请日:2018-11-08
发明人: Shantanu Rane , Alejandro E. Brito
摘要: One embodiment facilities user access to a standalone computing device. During operation, the system receives, by the standalone computing device from a mobile computing device associated with a user, a first command to access capabilities of the standalone computing device, wherein the first command includes an ephemeral user identifier which includes an ephemeral key and indicates user-specific metadata, wherein the ephemeral key is generated by a network service, wherein the ephemeral user identifier is digitally signed with a private key of the network service, and wherein the standalone computing device is not directly accessible by the network service. The system verifies, by the standalone computing device using a public key of the network service, that the ephemeral user identifier was generated by the network service. The system executes, by the standalone computing device, the first command based on the user-specific metadata.
-
公开(公告)号:US10929473B2
公开(公告)日:2021-02-23
申请号:US16144861
申请日:2018-09-27
发明人: Eric Allan Bier , Shantanu Rane
摘要: Systems and methods for indexing blockchain data in a blockchain system so that search may proceed more quickly, efficiently, and reliably in all of the blockchain peers. These systems and methods receive a set of transactions from one or more transaction blocks of a blockchain, wherein the transactions in the set have been validated by one or more peer systems of the blockchain. The systems and methods further generate an index to one or more fields of one or more transactions in the set of transactions of the transaction block generate an index representative of at least one field in the set of transactions of the transaction block and provide the generated index for validation by a peer system of the blockchain. After receiving verification from at least a threshold number of peer systems that the generated index has been validated by the peer system, these systems and methods store the generated index as an index block in the block chain.
-
8.
公开(公告)号:US20210014283A1
公开(公告)日:2021-01-14
申请号:US16925063
申请日:2020-07-09
发明人: Hamed Soroush , Shantanu Rane
IPC分类号: H04L29/06
摘要: The system generates evidence of a recommended configuration for a distributed system based on a plurality of configuration parameters. The system displays, on a screen of a user device, the evidence, which includes a list of configuration parameters, including a name, a current value, and a recommended value for a respective configuration parameter. The recommended value is obtained based on a strategy for optimizing security, functionality, or both. The system further displays interactive elements which allow the user to: view a resolution of a pair of mutually incompatible constraints resulting in the recommended value for the respective configuration parameter, wherein the resolution includes a name of the configuration parameter removed from the list and a reason for the removal; and view information associated with each of the pair of mutually incompatible constraints, wherein the information includes a name, a goal, a security impact, and a description of the constraint.
-
9.
公开(公告)号:US20200053116A1
公开(公告)日:2020-02-13
申请号:US16219774
申请日:2018-12-13
发明人: Hamed Soroush , Shantanu Rane
摘要: One embodiment provides a method for facilitating security in a system of networked components. During operation, the system constructs a configuration graph that stores a first set of relationships between configuration parameters within a component and a second set of relationships between configuration parameters across different components. A relationship corresponds to a constraint and is indicated by one or more of: a range for a configuration parameter; and a conjunction or a disjunction of logical relationships between two or more configuration parameters. The system generates a set of candidate configuration parameter values that satisfy the constraints of the relationships in the configuration graph. The system selects, from the set of candidate configuration parameter values, a first set of configuration parameter values that optimizes a security objective function.
-
公开(公告)号:US20190097985A1
公开(公告)日:2019-03-28
申请号:US15714803
申请日:2017-09-25
IPC分类号: H04L29/06
CPC分类号: H04L63/061 , H04L63/0435 , H04L63/0442 , H04L63/0853 , H04L63/1416 , H04L67/02 , H04L67/141 , H04L67/146
摘要: Embodiments described herein provide a system for improving a classifier by computing a statistic for the utility of sharing data with a second party. The system may encrypt a set of class labels based on a public key/private key pair to obtain a set of encrypted class labels. The system may send a public key and the set of encrypted class labels to a second computing device. The system may receive an encrypted value computed by the second computing device based on the public key. The system may decrypt the encrypted value based on a private key to obtain a decrypted value. The system may then send a pair of encrypted values computed based on the decrypted value to the second computing device. The system may subsequently receive an encrypted utility statistic from the second computing device, and decrypt the encrypted utility statistic to obtain a decrypted utility statistic.
-
-
-
-
-
-
-
-
-