Methods and systems of protecting digital content
    2.
    发明授权
    Methods and systems of protecting digital content 有权
    保护数字内容的方法和系统

    公开(公告)号:US07549063B2

    公开(公告)日:2009-06-16

    申请号:US11192348

    申请日:2005-07-28

    IPC分类号: H04L9/00 H04K1/00

    摘要: Methods and systems are described that enable protection of digital content, such as movies and the like, by making pirated copies traceable back to a unique decryption key that was utilized to decrypt the originally encrypted content. The innovative advancements do not rely on post-distribution watermarking or fingerprinting techniques, and yet intrinsically link any unauthorized copies back to a unique cryptographic key or key collection that was used when the genuine copy was reproduced. In an example, when a content player decrypts its associated key collection and uses the key collection to decrypt the digital content, the version of the digital content that is decrypted points directly to the specific content-player that was authorized to decrypt it with that key collection.

    摘要翻译: 描述了通过使盗版拷贝可追溯到用于解密原始加密内容的唯一解密密钥来实现数字内容(例如电影等)的保护的方法和系统。 创新的进步不依赖于后期分发水印或指纹技术,而是将任何未经授权的副本本质上链接到复制真实副本时使用的唯一密码密钥或密钥集合。 在一个示例中,当内容播放器解密其相关联的密钥集合并使用密钥集合来解密数字内容时,解密的数字内容的版本直接指向被授权使用该密钥解密的特定内容播放器 采集。

    Manifest-based trusted agent management in a trusted operating system environment
    4.
    发明授权
    Manifest-based trusted agent management in a trusted operating system environment 有权
    在受信任的操作系统环境中进行基于清单的可信代理管理

    公开(公告)号:US07257707B2

    公开(公告)日:2007-08-14

    申请号:US11206579

    申请日:2005-08-18

    IPC分类号: H04L29/00

    CPC分类号: G06F21/54 G06F21/53 G06F21/57

    摘要: Manifest-based trusted agent management in a trusted operating system environment includes receiving a request to execute a process is received and setting up a virtual memory space for the process. Additionally, a manifest corresponding to the process is accessed, and which of a plurality of binaries can be executed in the virtual memory space is limited based on indicators, of the binaries, that are included in the manifest.

    摘要翻译: 在受信任的操作系统环境中的基于清单的可信代理管理包括接收接收到的执行进程的请求,并为进程设置虚拟内存空间。 此外,访问对应于进程的清单,并且可以基于二进制文件中包括在清单中的指示符限制在虚拟存储器空间中执行多个二进制文件中的哪一个。

    Secure software product identifier for product validation and activation
    7.
    发明授权
    Secure software product identifier for product validation and activation 有权
    产品验证和激活的安全软件产品标识符

    公开(公告)号:US08984293B2

    公开(公告)日:2015-03-17

    申请号:US12950777

    申请日:2010-11-19

    IPC分类号: G06F21/00 G06F21/12

    CPC分类号: G06F21/121

    摘要: Systems, methods, and apparatus for generating and validating product keys. In some embodiments, a product key includes security information and identification information identifying at least one copy of a software product. The identifying information may be used to access validation information from at least one source other than the product key, and the validation information may be used to process the identification information and the security information to determine whether the product key is valid. In some further embodiments, the security information includes a first portion to be processed by a first validation authority using first validation information and a second portion to be processed by a second validation authority using second validation information, wherein the second validation information is stored separately from the first validation information.

    摘要翻译: 用于生成和验证产品密钥的系统,方法和设备。 在一些实施例中,产品密钥包括识别软件产品的至少一个副本的安全信息和识别信息。 识别信息可以用于从除产品密钥之外的至少一个源访问验证信息,并且验证信息可以用于处理识别信息和安全信息以确定产品密钥是否有效。 在一些另外的实施例中,安全信息包括要由第一验证机构使用第一验证信息处理的第一部分和由第二验证机构使用第二验证信息处理的第二部分,其中第二验证信息与 第一个验证信息。

    Reliable software product validation and activation with redundant security
    8.
    发明授权
    Reliable software product validation and activation with redundant security 有权
    可靠的软件产品验证和激活与冗余安全

    公开(公告)号:US08775797B2

    公开(公告)日:2014-07-08

    申请号:US12950627

    申请日:2010-11-19

    IPC分类号: G06F21/00

    CPC分类号: G06F21/125 G06F2221/0775

    摘要: Systems, methods, and apparatus for validating product keys. In some embodiments, a product key includes security information and identification information identifying at least one copy of a software product. The security information may include a first portion to be processed by a first validation authority using first validation information and a second portion to be processed by a second validation authority using second validation information. The second validation information may be stored separately from the first validation information and may not be accessible to the first validation authority. In some embodiments, the first validation authority randomly determines whether a product key is to be audited by the second validation authority. Alternatively, the first validation authority may determine whether to audit based on a type of the software product associated with the product key and/or a perceived level of security risk.

    摘要翻译: 用于验证产品密钥的系统,方法和设备。 在一些实施例中,产品密钥包括识别软件产品的至少一个副本的安全信息和识别信息。 安全信息可以包括由第一验证机构使用第一验证信息来处理的第一部分和由第二验证机构使用第二验证信息处理的第二部分。 第二验证信息可以与第一验证信息分开存储,并且可能不能被第一验证机构访问。 在一些实施例中,第一验证机构随机地确定产品密钥是否要被第二验证机构审核。 或者,第一验证机构可以基于与产品密钥相关联的软件产品的类型和/或感知的安全风险级别来确定是否进行审核。

    System and method for providing program credentials
    10.
    发明授权
    System and method for providing program credentials 有权
    用于提供程序凭据的系统和方法

    公开(公告)号:US07890643B2

    公开(公告)日:2011-02-15

    申请号:US12163881

    申请日:2008-06-27

    IPC分类号: G06F15/173

    CPC分类号: H04L63/0815

    摘要: A system for providing a client's credentials to a computer program comprises a database remote from the client and a single signon server module. The single signon server module can receive a request for the client's credentials from the computer program, determine whether the client's credentials are stored in the database, and send the client's credentials from the database to the computer program in response to a determination that the client's credentials are stored in the database. The single signon server module can store the client's credentials in the database in response to a determination that the client's credentials are not stored in the database. The single signon server module can encrypt the client's credentials prior to storing the client's credentials in the database and can decrypt the client's credentials prior to sending the client's credentials to the computer program.

    摘要翻译: 用于向计算机程序提供客户端凭据的系统包括远离客户端的数据库和单个登录服务器模块。 单一登录服务器模块可以从计算机程序接收对客户端凭据的请求,确定客户端的凭据是否存储在数据库中,并且响应于确定客户端的凭据将客户端的凭据从数据库发送到计算机程序 存储在数据库中。 响应于确定客户端的凭据未存储在数据库中,单一登录服务器模块可以将客户端凭据存储在数据库中。 单一登录服务器模块可以在将客户端凭据存储在数据库中之前加密客户端的凭据,并且可以在将客户端的凭据发送到计算机程序之前解密客户端的凭据。