PROTECTION AGAINST PASSIVE SNIFFING
    2.
    发明申请
    PROTECTION AGAINST PASSIVE SNIFFING 有权
    防止被动窒息的保护措施

    公开(公告)号:US20130230170A1

    公开(公告)日:2013-09-05

    申请号:US13883933

    申请日:2011-11-08

    IPC分类号: H04L9/28

    摘要: The invention relates in particular to a method for securing the execution of a cryptographic algorithm (ALG) against passive sniffing, the method implementing masking (MSK) of data processed by the cryptographic algorithm. The masking (MSK) of said data includes a linear encoding step such as x′=x.L+c, in which x is the data to be masked, x′ is the corresponding masked data, c is a code word included in a linear code C, and L is a matrix made up of linearly independent vectors not included in the linear code C. The invention also relates to a device (SC) implementing such a method.

    摘要翻译: 本发明特别涉及一种用于保护密码算法(ALG)执行被动嗅探的方法,该方法实现了由密码算法处理的数据的掩码(MSK)。 所述数据的掩蔽(MSK)包括诸如x'= x.L + c的线性编码步骤,其中x是要被屏蔽的数据,x'是对应的屏蔽数据,c是包括在 线性码C和L是由线性码C中未包括的线性独立矢量构成的矩阵。本发明还涉及实现这种方法的装置(SC)。

    Processing of biometric data by transformation
    3.
    发明授权
    Processing of biometric data by transformation 有权
    通过转换处理生物特征数据

    公开(公告)号:US08850299B2

    公开(公告)日:2014-09-30

    申请号:US12637192

    申请日:2009-12-14

    IPC分类号: H03M13/00 G07C9/00 H04L9/32

    摘要: Biometric data relating to a biological part are processed by obtaining, on the one hand, a first set of transformed biometric data (f(B1)) by applying at least one irreversible transformation to a first set of biometric data (B1), and, on the other hand, a second set of transformed biometric data (f(B2)) by applying said transformation to a second set of biometric data (B2). Thereafter, a decision is made as to whether the second biometric data set corresponds to the first biometric data set on the basis of a comparison between the first transformed biometric data set and the second transformed biometric data set, said comparison being performed at the bit level of a digital representation of said first and second transformed biometric data sets as a function of an error corrector code word.

    摘要翻译: 通过对第一组生物特征数据(B1)应用至少一个不可逆变换,一方面获得第一组变换的生物体数据(f(B1))来处理与生物部位有关的生物特征数据, 另一方面,通过将所述变换应用于第二组生物特征数据(B2),将第二组变换的生物特征数据(f(B2))。 此后,基于第一变换生物统计数据组和第二变换生物统计数据集之间的比较,确定第二生物统计数据集是否对应于第一生物统计数据集,所述比较是在比特级执行的 所述第一和第二变换的生物统计数据集的数字表示作为误差校正码字的函数。

    Identification based on encrypted biometric data
    4.
    发明授权
    Identification based on encrypted biometric data 有权
    基于加密生物特征数据的识别

    公开(公告)号:US08700912B2

    公开(公告)日:2014-04-15

    申请号:US12809848

    申请日:2008-12-19

    IPC分类号: G06F21/00 G06K9/00

    摘要: A database comprising biometric data stored in encrypted form is managed by a management unit. It comprises a set of filters respectively associated with filter identifiers. A biometric data item is received at a management unit; next, said biometric data item is stored in an encrypted form at a given address in the database. Then keywords are obtained on the basis of a first set of hash functions and of the biometric data item. A subset of indexing filters is associated with each keyword by selecting, for each keyword, filters as a function of the respectively associated filter identifiers, of said keywords, and of a second set of hash functions; and the given address is associated with each of the filters of the subset of filters.

    摘要翻译: 包括以加密形式存储的生物特征数据的数据库由管理单元管理。 它包括分别与过滤器标识符相关联的一组过滤器。 在管理单元处接收生物特征数据项; 接下来,所述生物特征数据项以加密形式存储在数据库中的给定地址处。 然后基于第一组散列函数和生物特征数据项获得关键词。 索引过滤器的子集与每个关键字相关联,通过为每个关键字选择作为所述关键字的分别关联的过滤器标识符和第二组散列函数集合的函数的过滤器; 并且给定地址与过滤器子集的每个过滤器相关联。

    Identification Based on Encrypted Biometric Data
    5.
    发明申请
    Identification Based on Encrypted Biometric Data 有权
    基于加密生物特征数据的识别

    公开(公告)号:US20100281269A1

    公开(公告)日:2010-11-04

    申请号:US12809848

    申请日:2008-12-19

    IPC分类号: G06F12/14 G06F21/24

    摘要: A database comprising biometric data stored in encrypted form is managed by a management unit. It comprises a set of filters respectively associated with filter identifiers. A biometric data item is received at a management unit; next, said biometric data item is stored in an encrypted form at a given address in the database. Then keywords are obtained on the basis of a first set of hash functions and of the biometric data item. A subset of indexing filters is associated with each keyword by selecting, for each keyword, filters as a function of the respectively associated filter identifiers, of said keywords, and of a second set of hash functions; and the given address is associated with each of the filters of the subset of filters.

    摘要翻译: 包括以加密形式存储的生物特征数据的数据库由管理单元管理。 它包括分别与过滤器标识符相关联的一组过滤器。 在管理单元处接收生物特征数据项; 接下来,所述生物特征数据项以加密形式存储在数据库中的给定地址处。 然后基于第一组散列函数和生物特征数据项获得关键词。 索引过滤器的子集与每个关键字相关联,通过为每个关键字选择作为所述关键字的分别关联的过滤器标识符和第二组散列函数集合的函数的过滤器; 并且给定地址与过滤器子集的每个过滤器相关联。

    Generation and Use of a Biometric Key
    7.
    发明申请
    Generation and Use of a Biometric Key 失效
    生物识别密钥的生成和使用

    公开(公告)号:US20100310070A1

    公开(公告)日:2010-12-09

    申请号:US12809331

    申请日:2008-12-19

    IPC分类号: H04L9/00

    摘要: In a control system comprising control device adapted for, on the one hand, receiving signal indicating a first biometric datum (W), and, on the other hand, obtaining a second biometric datum captured (w′), at the level of the control device, the first and second biometric date are compared. Next, it is decided whether the first and second biometric data correspond on the basis of the comparison. Thereafter, at least a secret cryptographic key part (H(w)) is generated by applying cryptographic function to the first biometric datum.

    摘要翻译: 在包括控制装置的控制系统中,所述控制装置一方面适用于指示第一生物统计数据(W)的接收信号,另一方面,获得在控制级别捕获的第二生物测定数据(w') 设备,比较第一和第二生物测定日期。 接下来,基于比较来判定第一生物体数据和第二生物体数据是否对应。 此后,通过对第一生物测定数据应用加密功能,生成至少一个秘密加密密钥部分(H(w))。

    Control of an Entity to be Controlled by a Control Entity
    8.
    发明申请
    Control of an Entity to be Controlled by a Control Entity 有权
    由控制实体控制的实体的控制

    公开(公告)号:US20100284538A1

    公开(公告)日:2010-11-11

    申请号:US12747768

    申请日:2008-12-10

    IPC分类号: H04L9/00

    摘要: A control entity communicates with an entity to be controlled so as to effect a control, a secret key being associated with the control entity. These entities share public parameters, a second public parameter being a combination of a first public parameter of the said plurality with the secret key. At the level of the entity to be controlled, a random value is generated, a first message is transmitted to the control entity, this first message comprising at least one value obtained by combining the first public parameter with the random value; and a second message is transmitted to the control entity, this second message comprising at least one value obtained by combining the first random value, a secret key of the entity to be controlled and a value received from the control entity. One of the values included in the first or the second message is based on the second public parameter.

    摘要翻译: 控制实体与要被控制的实体进行通信,以便实现控制,秘密密钥与控制实体相关联。 这些实体共享公共参数,第二公共参数是所述多个的第一公共参数与秘密密钥的组合。 在要被控制的实体的级别,生成随机值,将第一消息发送到控制实体,该第一消息包括通过将第一公共参数与随机值组合而获得的至少一个值; 并且第二消息被发送到控制实体,该第二消息包括通过组合第一随机值,要被控制的实体的秘密密钥和从控制实体接收的值获得的至少一个值。 包含在第一或第二个消息中的值之一是基于第二个公共参数。

    RF label identification
    9.
    发明授权
    RF label identification 有权
    RF标签识别

    公开(公告)号:US07828213B2

    公开(公告)日:2010-11-09

    申请号:US11557327

    申请日:2006-11-07

    IPC分类号: G06K7/08

    摘要: In an RF label identification system comprising a label reader and a plurality of labels, a unique and secret identifier being associated with each label, a first random number is sent from a label to the reader. A second random number is then sent from the reader to the label. In the RF label, a value of the encrypted identifier is then obtained by generating third and fourth random numbers in accordance with a probabilistic rule, by transforming the first and second random numbers in accordance with a determined function and by combining the identifier with the first and second random numbers, with the first and second transformed numbers and with the third and fourth random numbers. The value of the encrypted identifier is sent to the reader. After N repetitions of the above process, the reader identifies the RF label as a function of the N values of the encrypted identifier received, of the determined function, of the N first and second random numbers and of the probabilistic rule.

    摘要翻译: 在包括标签读取器和多个标签的RF标签识别系统中,与每个标签相关联的唯一和秘密标识符,从标签向读取器发送第一随机数。 然后,第二个随机数从阅读器发送到标签。 在RF标签中,通过根据概率规则生成第三和第四随机数,通过根据确定的功能变换第一和第二随机数并通过将标识符与第一个 和第二随机数,具有第一和第二变换数字以及第三和第四随机数。 加密标识符的值被发送给读取器。 在上述处理的N次重复之后,读取器将RF标签识别为N个第一和第二随机数以及概率规则的所确定的功能的接收到的加密标识符的N个值的函数。

    Method of identification or authorization, and associated system and secure module
    10.
    发明授权
    Method of identification or authorization, and associated system and secure module 有权
    识别或授权方法,以及相关系统和安全模块

    公开(公告)号:US08972727B2

    公开(公告)日:2015-03-03

    申请号:US13130458

    申请日:2009-12-04

    IPC分类号: H04L9/32 G06K9/00 G06K9/62

    摘要: Method of identification or of authorization using a system comprising at least one sensor for acquiring biometric data and one secure module storing a set of digital data obtained starting from a set of respective biometric data by means of a digitization algorithm. According to this method, a biometric data value is obtained, acquired by the sensor; a digital value is obtained by application of the digitization algorithm to the acquired biometric data value; within the secure module, at least some of the digital data from said set of digital data are ranked according to their proximity to the digital value obtained; and a biometric data value is obtained from said set of biometric data by taking into account a position of the corresponding digital data within the ranking.

    摘要翻译: 使用包括至少一个用于获取生物测定数据的传感器的系统进行识别或授权的方法,以及一个安全模块,其存储通过数字化算法从一组相应的生物特征数据开始获得的一组数字数据。 根据该方法,由传感器获取生物体数据值; 通过将数字化算法应用于获取的生物特征数据值来获得数字值; 在安全模块内,来自所述数字数据集合的数字数据中的至少一些根据其与所获得的数字值的接近程度进行排序; 并且通过考虑在等级内的对应的数字数据的位置从所述生物特征数据集获得生物特征数据值。