Systems and methods for securely handling private data in a cloud environment

    公开(公告)号:US11443049B2

    公开(公告)日:2022-09-13

    申请号:US16722840

    申请日:2019-12-20

    Abstract: Systems and methods described herein securely compute private data on a cloud platform. A network device in the cloud platform obtains a product or service description from a first user. The description includes a combination of public data and encrypted private data based on a first encryption key. The network device receives a query from an end device of a second user and retrieves, based on the query, the product or service description. The network device forwards the description to a trusted execution environment (TEE) instance for decryption of the encrypted private data, processing of the private data, and re-encryption of the private data with a second encryption key. The network device receives the re-encrypted private data from the TEE instance and assembles the re-encrypted private data and the public data into a query response for presentation on the end device. The network device sends, to the end device, the query response including the re-encrypted private data and the public data.

    Systems and methods for tracking a location of a mobile device

    公开(公告)号:US11337031B2

    公开(公告)日:2022-05-17

    申请号:US16949259

    申请日:2020-10-22

    Abstract: A device determines, based on location verification data that has been received, that the device is indoors at a first geographic location. The device determines a base measured barometric pressure, and an initial floor that the device is located on in a structure that includes the first geographic location. The device determines an adjusted measured barometric pressure for a second geographic location based on a second measured barometric pressure for the second geographic location and one or more reference barometric pressures that are associated with a reference location. The device determines an altitude for the second geographic location based on the base measured barometric pressure and the adjusted measured barometric pressures. The device causes a server to predict a floor that the device is located on at the second geographic location and to provide floor data that identifies the floor to an interface that is accessible to the device.

    SYSTEMS AND METHODS FOR SECURELY HANDLING PRIVATE DATA IN A CLOUD ENVIRONMENT

    公开(公告)号:US20210049284A1

    公开(公告)日:2021-02-18

    申请号:US16722840

    申请日:2019-12-20

    Abstract: Systems and methods described herein securely compute private data on a cloud platform. A network device in the cloud platform obtains a product or service description from a first user. The description includes a combination of public data and encrypted private data based on a first encryption key. The network device receives a query from an end device of a second user and retrieves, based on the query, the product or service description. The network device forwards the description to a trusted execution environment (TEE) instance for decryption of the encrypted private data, processing of the private data, and re-encryption of the private data with a second encryption key. The network device receives the re-encrypted private data from the TEE instance and assembles the re-encrypted private data and the public data into a query response for presentation on the end device. The network device sends, to the end device, the query response including the re-encrypted private data and the public data.

    Homomorphic encryption offload for lightweight devices

    公开(公告)号:US11582020B2

    公开(公告)日:2023-02-14

    申请号:US17109795

    申请日:2020-12-02

    Abstract: Disclosed are systems, methods, devices, and computer-readable media for offloading lattice-based cryptographic operations to hybrid cloud computing system. In one embodiment, a method is disclosed comprising receiving a first network request from a client device via a secure application programming interface (API), the request including unencrypted data; encrypting the unencrypted data using an algorithm that generates homomorphically encrypted data; issuing a second network request to a second API of a cloud platform, the second network request including the encrypted data; receiving a response from the cloud platform in response to the second network request; and transmitting, in response to the first network request, a result to the client device based on the response, the result obtained by decrypting an encrypted output returned by the cloud platform.

Patent Agency Ranking