会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Method and apparatus for verifying integrity of redacted documents
    • 验证编码文件完整性的方法和装置
    • US08245038B2
    • 2012-08-14
    • US12055870
    • 2008-03-26
    • Philippe Jean-Paul GolleJessica N. StaddonRichard Chow
    • Philippe Jean-Paul GolleJessica N. StaddonRichard Chow
    • H04L29/06
    • G06F21/64
    • One embodiment of the present invention provides a system which allows a document owner to redact content from a document and allows a recipient of the redacted document to challenge the appropriateness of the redaction. During operation, the system allows the document owner to redact a string Mi from location i in the document. In doing so, the system produces a commitment Ci=C(Mi, Ri) based on string Mi and a string Ri used as randomness and communicates Ci to the recipient. When the recipient challenges the redaction, the system receives a topic string T from the recipient, and produces a string RT. The system then communicates RT to the recipient, thereby allowing the recipient to produce a commitment CT=C(T, RT) based on strings T and RT, and compare CT with Ci. Comparing commitment CT with Ci allows the recipient to test redactions for string equality.
    • 本发明的一个实施例提供了一种允许文档所有者从文档中修改内容并允许编辑文档的接收者挑战编辑的适当性的系统。 在操作期间,系统允许文档所有者从文档中的位置i修改字符串Mi。 在这样做时,系统基于字符串Mi产生承诺Ci = C(Mi,Ri)和用作随机性的字符串Ri,并将Ci传送给接收者。 当接收方挑战编辑时,系统从收件人接收主题字符串T,并产生字符串RT。 系统然后将RT传送给接收者,从而允许接收者基于字符串T和RT产生承诺CT = C(T,RT),并将CT与Ci进行比较。 将承诺CT与Ci进行比较,允许收件人对字符串相等性进行测试。
    • 2. 发明授权
    • Method, apparatus, and program product for flexible redaction of content
    • 方法,设备和程序产品,用于灵活地修改内容
    • US07873838B2
    • 2011-01-18
    • US11611843
    • 2006-12-15
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • G09C1/00
    • H04L9/088H04L9/0894
    • A selectively encrypted data unit is generated from an unencrypted data unit. This is accomplished by accessing a list of attributes related to the unencrypted data unit that identify classifications of sensitive information within the unencrypted data unit. In addition, a protection key that is responsive to a random number is selected and auxiliary values computed from the attributes of the sensitive information and the random number are produced. The sensitive information is encrypted with the protection key to create an encrypted version of the sensitive information. The encrypted version is associated with the auxiliary values and linked to an attribute vector that classifies the sensitive information in the encrypted version. Data from the unencrypted data unit and the encrypted version of the sensitive information is stored as the selectively encrypted data unit.
    • 从未加密的数据单元生成选择性加密的数据单元。 这通过访问与未加密的数据单元中的敏感信息的分类的未加密的数据单元相关的属性的列表来实现。 此外,选择响应于随机数的保护密钥,并且产生从敏感信息和随机数的属性计算出的辅助值。 敏感信息用保护密钥加密,以创建敏感信息的加密版本。 加密版本与辅助值相关联,并链接到将加密版本中的敏感信息分类的属性向量。 来自未加密数据单元的数据和敏感信息的加密版本被存储为选择性加密的数据单元。
    • 3. 发明申请
    • METHOD AND APPARATUS FOR VERIFYING INTEGRITY OF REDACTED DOCUMENTS
    • 用于验证删除文件完整性的方法和装置
    • US20090249220A1
    • 2009-10-01
    • US12055870
    • 2008-03-26
    • Philippe Jean-Paul GolleJessica N. StaddonRichard Chow
    • Philippe Jean-Paul GolleJessica N. StaddonRichard Chow
    • G06F3/00
    • G06F21/64
    • One embodiment of the present invention provides a system which allows a document owner to redact content from a document and allows a recipient of the redacted document to challenge the appropriateness of the redaction. During operation, the system allows the document owner to redact a string Mi from location i in the document. In doing so, the system produces a commitment Ci=C(Mi, Ri) based on string Mi and a string Ri used as randomness and communicates Ci to the recipient. When the recipient challenges the redaction, the system receives a topic string T from the recipient, and produces a string RT. The system then communicates RT to the recipient, thereby allowing the recipient to produce a commitment CT=C(T, RT) based on strings T and RT, and compare CT with Ci. Comparing commitment CT with Ci allows the recipient to test redactions for string equality.
    • 本发明的一个实施例提供了一种允许文档所有者从文档中修改内容并允许编辑文档的接收者挑战编辑的适当性的系统。 在操作期间,系统允许文档所有者从文档中的位置i修改字符串Mi。 在这样做时,系统基于字符串Mi产生承诺Ci = C(Mi,Ri)和用作随机性的字符串Ri,并将Ci传送给接收者。 当接收方挑战编辑时,系统从收件人接收主题字符串T,并产生字符串RT。 系统然后将RT传送给接收者,从而允许接收者基于字符串T和RT产生承诺CT = C(T,RT),并将CT与Ci进行比较。 将承诺CT与Ci进行比较,允许收件人对字符串相等性进行测试。
    • 5. 发明授权
    • Method, apparatus, and program product for enabling access to flexibly redacted content
    • 方法,装置和程序产品,用于访问灵活编辑的内容
    • US07865742B2
    • 2011-01-04
    • US11611845
    • 2006-12-15
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • G06F21/00
    • G06F21/6209G06Q20/3821H04L9/0847H04L9/085H04L9/3073
    • A capability key is generated that provides access to sensitive information within a selectively encrypted data unit created from an unencrypted data unit. A user specifies access rights as a monotone boolean relationship between a selection of a list of attributes related to the unencrypted data unit. This relationship is used to compute a key descriptor. Next one or more shares of a master secret is generated responsive to the monotone boolean relationship and a random number. Next a unique capability key is computed from one or more cryptosystem parameters, the one or more shares and the random number. The unique capability key and the key descriptor together enable decryption of sensitive information within a selectively encrypted data unit created from an unencrypted data unit. Finally, the unique capability key and the key descriptor are provided to allow decryption of sensitive information within the selectively encrypted data unit.
    • 生成能够提供对从未加密的数据单元创建的选择性加密的数据单元中的敏感信息的访问的能力密钥。 用户将访问权限指定为与未加密的数据单元相关的属性列表的选择之间的单调布尔关系。 该关系用于计算密钥描述符。 响应于单调布尔关系和随机数生成下一个主秘密的一个或多个共享。 接下来,从一个或多个密码系统参数,一个或多个共享和随机数计算独特的能力密钥。 唯一能力密钥和密钥描述符可以在从未加密的数据单元创建的选择性加密的数据单元中解密敏感信息。 最后,提供独特的能力密钥和密钥描述符,以允许对选择性加密的数据单元内的敏感信息进行解密。
    • 6. 发明授权
    • Method, apparatus, and program product for revealing redacted information
    • 方法,设备和程序产品,用于显示编辑信息
    • US07861096B2
    • 2010-12-28
    • US11611848
    • 2006-12-15
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • G09C1/00
    • G06F21/6209H04L9/085H04L2209/60
    • A selectively encrypted data unit includes an encrypted version of sensitive information (capable of being decrypted to reveal the sensitive information), a plurality of auxiliary values, and an attribute vector associated with the encrypted version of the sensitive information. The selectively encrypted data unit and a unique capability key are accessed. The unique capability key is associated with a key descriptor and is responsive to one or more cryptosystem parameters, one or more random numbers and one or more shares of a master secret. Next the technology determines whether the attribute vector is filtered or enabled by the key descriptor. If so, a protection key is acquired that is responsive to the one or more cryptosystem parameters, the plurality of auxiliary values, the key descriptor and the unique capability key. Once acquired, the protection key is used to decrypt the encrypted version to generate the sensitive information which is presented.
    • 选择性加密的数据单元包括敏感信息的加密版本(能够被解密以显示敏感信息),多个辅助值以及与敏感信息的加密版本相关联的属性向量。 访问选择性加密的数据单元和独特的能力密钥。 唯一能力密钥与密钥描述符相关联,并且响应于一个或多个密码系统参数,一个或多个随机数以及主秘密的一个或多个共享。 接下来,该技术确定属性向量是否被密钥描述符过滤或启用。 如果是,则获取响应于一个或多个密码系统参数,多个辅助值,密钥描述符和唯一能力密钥的保护密钥。 一旦获取,保护密钥用于解密加密版本,以产生呈现的敏感信息。
    • 8. 发明申请
    • Method, Apparatus, and Program Product for Flexible Redaction of Content
    • 方法,仪器和程序产品灵活的内容修改
    • US20080046757A1
    • 2008-02-21
    • US11611843
    • 2006-12-15
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • H04L9/00G06F12/14H04L9/32G06F11/30
    • H04L9/088H04L9/0894
    • A selectively encrypted data unit is generated from an unencrypted data unit. This is accomplished by accessing a list of attributes related to the unencrypted data unit that identify classifications of sensitive information within the unencrypted data unit. In addition, a protection key that is responsive to a random number is selected and auxiliary values computed from the attributes of the sensitive information and the random number are produced. The sensitive information is encrypted with the protection key to create an encrypted version of the sensitive information. The encrypted version is associated with the auxiliary values and linked to an attribute vector that classifies the sensitive information in the encrypted version. Data from the unencrypted data unit and the encrypted version of the sensitive information is stored as the selectively encrypted data unit.
    • 从未加密的数据单元生成选择性加密的数据单元。 这通过访问与未加密的数据单元中的敏感信息的分类的未加密的数据单元相关的属性的列表来实现。 此外,选择响应于随机数的保护密钥,并且产生从敏感信息和随机数的属性计算出的辅助值。 敏感信息用保护密钥加密,以创建敏感信息的加密版本。 加密版本与辅助值相关联,并链接到将加密版本中的敏感信息分类的属性向量。 来自未加密数据单元的数据和敏感信息的加密版本被存储为选择性加密的数据单元。
    • 9. 发明申请
    • METHOD, APPARATUS, AND PROGRAM PRODUCT FOR REVEALING REDACTED INFORMATION
    • 方法,装置和程序产品,用于发放删除信息
    • US20080016372A1
    • 2008-01-17
    • US11611848
    • 2006-12-15
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • Jessica N. StaddonPhilippe Jean-Paul Golle
    • H04L9/00G06F12/14H04L9/32G06F11/30
    • G06F21/6209H04L9/085H04L2209/60
    • A selectively encrypted data unit includes an encrypted version of sensitive information (capable of being decrypted to reveal the sensitive information), a plurality of auxiliary values, and an attribute vector associated with the encrypted version of the sensitive information. The selectively encrypted data unit and a unique capability key are accessed. The unique capability key is associated with a key descriptor and is responsive to one or more cryptosystem parameters, one or more random numbers and one or more shares of a master secret. Next the technology determines whether the attribute vector is filtered or enabled by the key descriptor. If so, a protection key is acquired that is responsive to the one or more cryptosystem parameters, the plurality of auxiliary values, the key descriptor and the unique capability key. Once acquired, the protection key is used to decrypt the encrypted version to generate the sensitive information which is presented.
    • 选择性加密的数据单元包括敏感信息的加密版本(能够被解密以显示敏感信息),多个辅助值以及与敏感信息的加密版本相关联的属性向量。 访问选择性加密的数据单元和独特的能力密钥。 唯一能力密钥与密钥描述符相关联,并且响应于一个或多个密码系统参数,一个或多个随机数以及主秘密的一个或多个共享。 接下来,该技术确定属性向量是否被密钥描述符过滤或启用。 如果是,则获取响应于一个或多个密码系统参数,多个辅助值,密钥描述符和唯一能力密钥的保护密钥。 一旦获取,保护密钥用于解密加密版本,以产生呈现的敏感信息。