System and methods for IOT security

    公开(公告)号:US11831628B2

    公开(公告)日:2023-11-28

    申请号:US17169356

    申请日:2021-02-05

    申请人: SmartAxiom, Inc.

    摘要: The present disclosure relates to a method and system for enabling TOT security using a decentralized TOT security platform that leverages the advanced communication and blockchain security thread model to protect TOT eco-systems. The platform uses a multi-chain data schema including a device chain and an event chain. The multi-chain data schema uses a time-envelope mechanism to generate an event to connect different device chains and enforce a set of security rules through smart contracts. The method comprising receiving an encrypted block from TOT device with event data and verifying the device signature and identity based on certain rules within the device chain. Further, the method comprising determining access to event chain using previous token, current token and timestamp of the encrypted block and updating the event chain upon access determination. The event chain protects data integrity and confidentiality against malicious packets, unauthorized devices, weak encryption and man-in-the-middle attacks.

    SYSTEM AND METHOD FOR IOT SECURITY
    2.
    发明申请

    公开(公告)号:US20190036906A1

    公开(公告)日:2019-01-31

    申请号:US16048140

    申请日:2018-07-27

    申请人: SmartAxiom, Inc.

    摘要: An architecture for a security frame work based on Blockchain specifications for an access manager including a Software Development Kit (SDK) and an application programming interface (API) is described. The Access Manager insures only authorized entities can be integrated in the managed security framework environment. Only authorized applications can access a resource. From a security perspective, the Access Manager enables horizontal security between a data provider and a data consumer. The security protocols insure confidentiality, integrity of the messages and peer authentication based on Blockchain security. For the privacy perspective, it is important to dissociate the security roles. For example, it is important that data can only be received by allowed entities. All technical components (gateways, proxies . . . ) used to transport data shall not have access to the data. This principle insures data cannot be retrieved and used by entities without user controls.

    SYSTEM AND METHOD FOR MANAGING AND SECURING A DISTRIBUTED LEDGER FOR A DECENTRALIZED PEER-TO-PEER NETWORK

    公开(公告)号:US20210297424A1

    公开(公告)日:2021-09-23

    申请号:US17340928

    申请日:2021-06-07

    申请人: SMARTAXIOM, INC.

    摘要: The present disclosure relates to a method and system for managing and securing a distributed ledger for a decentralized peer-to-peer (p2p) network. The method receives an encrypted block and a group key generated by at least one peer node on the p2p network, wherein each peer node is IoT device and determines a virtual device block in a device chain on verifying the unique device ID, and address of a corresponding event chain associated with the virtual device block. Further, the method generates a transaction ID for a new transaction using the unique ID of the virtual device block and determines a valid event block in the event chain associated with the virtual device block for storing the new transaction and associated transaction ID. Further, the method updates the distributed ledger with the valid event block upon verification by one or more peer IoT devices of the p2p network.

    System and method for IOT security

    公开(公告)号:US10924466B2

    公开(公告)日:2021-02-16

    申请号:US16048140

    申请日:2018-07-27

    申请人: SmartAxiom, Inc.

    摘要: The present disclosure relates to a method and system for enabling IOT security using a decentralized IOT security platform that leverages the advanced communication and blockchain security thread model to protect IOT eco-systems. The platform uses a multi-chain data schema including a device chain and an event chain. The multi-chain data schema uses a time-envelope mechanism to generate an event to connect different device chains and enforce a set of security rules through smart contracts. The method comprising receiving an encrypted block from IOT device with event data and verifying the device signature and identity based on certain rules within the device chain. Further, the method comprising determining access to event chain using previous token, current token and timestamp of the encrypted block and updating the event chain upon access determination. The event chain protects data integrity and confidentiality against malicious packets, unauthorized devices, weak encryption and man-in-the-middle attacks.

    System and method for managing and securing a distributed ledger for a decentralized peer-to-peer network

    公开(公告)号:US11032293B2

    公开(公告)日:2021-06-08

    申请号:US16272358

    申请日:2019-02-11

    申请人: SmartAxiom, Inc.

    摘要: The present disclosure relates to a method and system for managing and securing a distributed ledger for a decentralized peer-to-peer (p2p) network. The method receives an encrypted block and a group key generated by at least one peer node on the p2p network, wherein each peer node is IoT device and determines a virtual device block in a device chain on verifying the unique device ID, and address of a corresponding event chain associated with the virtual device block. Further, the method generates a transaction ID for a new transaction using the unique ID of the virtual device block and determines a valid event block in the event chain associated with the virtual device block for storing the new transaction and associated transaction ID. Further, the method updates the distributed ledger with the valid event block upon verification by one or more peer IoT devices of the p2p network.