-
公开(公告)号:US09141900B2
公开(公告)日:2015-09-22
申请号:US14347303
申请日:2012-01-19
申请人: Steven J. Simske , Marie Vans , Helen Balinsky
发明人: Steven J. Simske , Marie Vans , Helen Balinsky
CPC分类号: G06K19/0614 , G06F21/602 , G06K7/12 , G06K19/06037 , G06K19/06046
摘要: A method and apparatus for encoding, in a simultaneous multiple security application, independently encrypted security data elements within a single matrix of blocks in a progressive barcode. The method and apparatus including, encoding information of a first data element within the matrix using black modules and, encoding information of a second data element within the matrix using color modules. The barcode being configured to be overprinted as it progresses through progressive states. The progressive barcode, resulting from the overprinting through the progressive states, masking the ability to conclusively determine the barcode in a previous state.
摘要翻译: 一种用于在同时多重安全应用中对逐行条形码的单个矩阵中的独立加密的安全数据元素进行编码的方法和装置。 所述方法和装置包括:使用黑色模块对所述矩阵内的第一数据元素的信息进行编码;以及使用颜色模块对所述矩阵内的第二数据元素的信息进行编码。 条形码被配置为在进行逐行状态时被套印。 通过逐行状态的叠印产生的逐行条形码,掩盖了在先前状态下最终确定条形码的能力。
-
公开(公告)号:US20140339312A1
公开(公告)日:2014-11-20
申请号:US14347303
申请日:2012-01-19
申请人: Steven J. Simske , Marie Vans , Helen Balinsky
发明人: Steven J. Simske , Marie Vans , Helen Balinsky
CPC分类号: G06K19/0614 , G06F21/602 , G06K7/12 , G06K19/06037 , G06K19/06046
摘要: A method and apparatus for encoding, in a simultaneous multiple security application, independently encrypted security data elements within a single matrix of blocks in a progressive barcode. The method and apparatus including, encoding information of a first data element within the matrix using black modules and, encoding information of a second data element within the matrix using color modules. The barcode being configured to be overprinted as it progresses through progressive states. The progressive barcode, resulting from the overprinting through the progressive states, masking the ability to conclusively determine the barcode in a previous state.
摘要翻译: 一种用于在同时多重安全应用中对逐行条形码的单个矩阵中的独立加密的安全数据元素进行编码的方法和装置。 所述方法和装置包括:使用黑色模块对所述矩阵内的第一数据元素的信息进行编码;以及使用颜色模块对所述矩阵内的第二数据元素的信息进行编码。 条形码被配置为在进行逐行状态时被套印。 通过逐行状态的叠印产生的逐行条形码,掩盖了在先前状态下最终确定条形码的能力。
-
公开(公告)号:US20150169500A1
公开(公告)日:2015-06-18
申请号:US13885953
申请日:2011-01-28
申请人: Helen Balinsky , Steven J. Simske
发明人: Helen Balinsky , Steven J. Simske
CPC分类号: G06F17/211 , G06F17/30011 , G06Q10/06 , G06Q10/103
摘要: Document management system includes a composite document (CD) and a mixed workflow, which includes an unordered stage followed by one of i) an ordered stage or ii) another unordered stage. The system includes a map-file (map) of the document (CD) for a participant (P) in the mixed workflow that is associated with the ordered or other unordered stage, and a wrap (W) of the map-file (map). Wrap (W) includes a number of map-file fragments (F) equal to or greater than a number of workflow participants (P) within a group (G) associated with the unordered stage. The number of map-file fragments (F) renders the document (CD) inaccessible to the participant (P) that is associated with the ordered or other unordered stage until each of the number of map-file fragments (F) is released by each of the workflow participants (P) within the group (G).
摘要翻译: 文件管理系统包括复合文件(CD)和混合工作流程,其包括无序阶段,其后是i)有序阶段或ii)另一无序阶段。 该系统包括与有序或其他无序级相关联的混合工作流中的参与者(P)的文档(CD)的地图文件(地图),以及地图文件(地图 )。 包裹(W)包括等于或大于与无序级相关联的组(G)内的工作流参与者(P)的数量的多个地图文件片段(F)。 地图文件片段(F)的数量使得与有序或其他无序级相关联的参与者(P)不可访问文档(CD),直到每个地图文件片段(F)被释放为每个 的组(G)中的工作流参与者(P)。
-
公开(公告)号:US09026801B2
公开(公告)日:2015-05-05
申请号:US13457309
申请日:2012-04-26
申请人: Helen Balinsky , Neil Moore , Steven J. Simske
发明人: Helen Balinsky , Neil Moore , Steven J. Simske
CPC分类号: G06F21/00 , G06F21/552
摘要: System call interception is activated for an application process. It is recorded that system call interception is active for the application process. Ongoing checking is performed to determine whether system call interception remains active.
摘要翻译: 为应用程序进程激活系统调用拦截。 记录系统呼叫截取对于应用程序进程是活动的。 执行正在进行的检查以确定系统呼叫拦截是否保持活动。
-
公开(公告)号:US20130291051A1
公开(公告)日:2013-10-31
申请号:US13457309
申请日:2012-04-26
申请人: Helen Balinsky , Neil Moore , Steven J. Simske
发明人: Helen Balinsky , Neil Moore , Steven J. Simske
IPC分类号: G06F21/00
CPC分类号: G06F21/00 , G06F21/552
摘要: System call interception is activated for an application process. It is recorded that system call interception is active for the application process. Ongoing checking is performed to determine whether system call interception remains active.
摘要翻译: 为应用程序进程激活系统调用拦截。 记录系统呼叫截取对于应用程序进程是活动的。 执行正在进行的检查以确定系统呼叫拦截是否保持活动。
-
公开(公告)号:US20130246799A1
公开(公告)日:2013-09-19
申请号:US13810714
申请日:2010-09-21
申请人: Helen Balinsky , Steven J. Simske
发明人: Helen Balinsky , Steven J. Simske
IPC分类号: H04L9/32
CPC分类号: H04L9/3247 , G06F21/6209
摘要: In a method for providing differential access to a digital document among workflow participants, in which at least one of the workflow participants is outside of a common secure environment (300), a first set of keys including an encryption key, a signature key, and a verification key is associated with atomic unit(s) (304). The atomic unit(s) is encrypted using the encryption key and signed using the signature key (306, 308). A level of access to the atomic unit(s) to be granted to each of the workflow participants and the keys in the first set of keys to supply to each of the workflow participants based upon the identified level of access are identified (310, 312). In addition, each of the workflow participants is supplied with the identified one or more keys (314) and the encrypted and signed atomic unit(s) is supplied to a first workflow participant (316).
摘要翻译: 在用于在工作流参与者之间提供对数字文档的差异访问的方法中,其中至少一个工作流参与者在公共安全环境(300)之外,包括第一组密钥,包括加密密钥,签名密钥和 验证密钥与原子单元相关联(304)。 使用加密密钥对原子单元进行加密,并使用签名密钥(306,308)进行签名。 识别对基于所识别的访问级别而授予每个工作流参与者的原子单元的访问级别和第一组密钥中的密钥以供应给每个工作流参与者(310,312 )。 另外,每个工作流参与者被提供有识别的一个或多个密钥(314),并且加密和签名的原子单元被提供给第一工作流参与者(316)。
-
公开(公告)号:US08364729B2
公开(公告)日:2013-01-29
申请号:US13050888
申请日:2011-03-17
申请人: Helen Balinsky , Liqun Chen , Steven J. Simske
发明人: Helen Balinsky , Liqun Chen , Steven J. Simske
IPC分类号: G06F21/00
CPC分类号: G06F17/2229 , G06F21/6227 , H04L9/14 , H04L2209/60
摘要: A document management system includes a document. One or more of a plurality of map-files of the document correspond(s) with a step of a multi-step workflow associated with the document. A random nonce is generated for each of the steps of the multi-step workflow except for an initial step of the multi-step workflow. Each of the random nonces i) is incorporated as a map-file entry into a respective one of the plurality of map-files corresponding with a step of the multi-step workflow that directly precedes the step of the multi-step workflow for which the random nonce is generated and ii) is used to perform a nonce-based initiating operation a respective one of the plurality of map-files corresponding with the step of the multi-step workflow for which the random nonce is generated.
摘要翻译: 文件管理系统包括文件。 文档的多个地图文件中的一个或多个对应于具有与文档相关联的多步工作流的步骤。 为多步骤工作流程的每个步骤生成随机随机数,除了多步骤工作流程的初始步骤。 随机随机i)中的每一个被并入作为地图文件条目到与多步骤工作流的步骤相对应的多个地图文件中的相应一个,其直接在多步骤工作流的步骤之前,其中 生成随机随机数,并且ii)用于执行对应于生成随机随机数的多步骤工作流的步骤的多个映射文件中的相应一个映射文件的基于事件的发起操作。
-
公开(公告)号:US09600448B2
公开(公告)日:2017-03-21
申请号:US13885953
申请日:2011-01-28
申请人: Helen Balinsky , Steven J. Simske
发明人: Helen Balinsky , Steven J. Simske
CPC分类号: G06F17/211 , G06F17/30011 , G06Q10/06 , G06Q10/103
摘要: Document management system includes a composite document (CD) and a mixed workflow, which includes an unordered stage followed by one of i) an ordered stage or ii) another unordered stage. The system includes a map-file (map) of the document (CD) for a participant (P) in the mixed workflow that is associated with the ordered or other unordered stage, and a wrap (W) of the map-file (map). Wrap (W) includes a number of map-file fragments (F) equal to or greater than a number of workflow participants (P) within a group (G) associated with the unordered stage. The number of map-file fragments (F) renders the document (CD) inaccessible to the participant (P) that is associated with the ordered or other unordered stage until each of the number of map-file fragments (F) is released by each of the workflow participants (P) within the group (G).
-
公开(公告)号:US09219752B2
公开(公告)日:2015-12-22
申请号:US14126700
申请日:2011-08-26
CPC分类号: H04L63/20 , G06F21/53 , G06F21/554 , G06F21/6245
摘要: A data leak prevention system includes an application, having source code that is unavailable or non-modifiable, resident on a client device. A system call is emittable by the application as a result of an action, and is to take place before a data leak event can occur. The action involves a document and i) latest full contents of the document, ii) metadata of the document, or iii) a combination of the latest full contents and the metadata. A system call interceptor agent is also resident on the client device. The interceptor agent includes a system call interceptor to intercept the system call emitted by the application and to suspend the system call. The system also includes a policy decision engine to analyze at least some of i) the latest full contents, ii) the metadata, or iii) the combination, and implement a policy action based upon the analysis.
摘要翻译: 数据泄漏预防系统包括驻留在客户端设备上的具有不可用或不可修改的源代码的应用。 作为操作的结果,应用程序可以发出系统调用,并且将在数据泄露事件发生之前进行。 该操作涉及文档,i)文档的最新完整内容,ii)文档的元数据,或iii)最新的完整内容和元数据的组合。 系统调用拦截器代理也驻留在客户端设备上。 拦截器代理包括一个系统调用拦截器来拦截应用程序发出的系统调用并挂起系统调用。 该系统还包括策略决策引擎,用于分析i)最新完整内容,ii)元数据或iii)组合中的至少一些,并且基于分析来实施策略动作。
-
公开(公告)号:US08978092B2
公开(公告)日:2015-03-10
申请号:US13398909
申请日:2012-02-17
IPC分类号: H04L29/06
CPC分类号: G06F21/554 , G06F21/552
摘要: A data leak from a computer can be prevented by intercepting one or more system calls from an unknown application and applying different policies to the intercepted action associated with the system call(s) depending on the data itself and the metadata of a document associated with the system call.
摘要翻译: 可以通过拦截来自未知应用的一个或多个系统调用并且根据数据本身和与该系统调用相关联的文档的元数据将不同的策略应用到与系统调用相关联的被拦截的动作来防止来自计算机的数据泄漏 系统调用。
-
-
-
-
-
-
-
-
-