Server-implemented system and method for providing private inference control
    1.
    发明授权
    Server-implemented system and method for providing private inference control 有权
    用于提供私有推理控制的服务器实现的系统和方法

    公开(公告)号:US08229939B2

    公开(公告)日:2012-07-24

    申请号:US12345599

    申请日:2008-12-29

    IPC分类号: G06F7/00

    摘要: A server system maintains records and their associated attributes in a secure database. A plurality of queries generated by encrypting indices identifying a records and their associated attributes, by homomorphic encryption is received from a client system. A secret key is generated at a certain query count and is divided into randomly generated key shares. A key share sequence is homomorphically encrypted. A table is formed by encrypting the indices, secret key and attributes. Query responses, which each comprise the attributes for each of the records of the table of entries are provided. The key shares are decrypted sufficient to recover the secret key subject to a non-inference enabling query.

    摘要翻译: 服务器系统在安全数据库中维护记录及其关联的属性。 从客户端系统接收通过加密识别记录的索引及其相关属性,通过同态加密产生的多个查询。 在某个查询计数下生成密钥,并将其分为随机生成的密钥共享。 密钥共享序列是同态加密的。 通过加密索引,秘密密钥和属性形成表。 提供了每个包含条目表的每个记录的属性的查询响应。 密钥份额被解密为足以恢复秘密密钥,受到非推断启用查询。

    Enterprise password reset
    2.
    发明授权
    Enterprise password reset 有权
    企业密码重置

    公开(公告)号:US08881266B2

    公开(公告)日:2014-11-04

    申请号:US12270159

    申请日:2008-11-13

    摘要: One embodiment of the present invention provides a system for automatically authenticating a user. During operation, the system receives a user's request for authentication. The system then extracts information associated with the user from user-specific information stored in an enterprise computer. The extracted user information does not explicitly relate to a password. The system further generates one or more challenges based on the extracted user information, and receives the user's response to the challenges. Subsequently, the system compares the user's response to the extracted user information, and authenticates the user.

    摘要翻译: 本发明的一个实施例提供一种用于自动认证用户的系统。 在操作期间,系统接收用户的认证请求。 系统然后从存储在企业计算机中的用户特定信息中提取与用户相关联的信息。 提取的用户信息与密码没有明确的关联。 系统进一步基于所提取的用户信息产生一个或多个挑战,并且接收用户对挑战的响应。 随后,系统将用户的响应与提取的用户信息进行比较,并对用户进行认证。

    Method and apparatus for verifying integrity of redacted documents
    3.
    发明授权
    Method and apparatus for verifying integrity of redacted documents 有权
    验证编码文件完整性的方法和装置

    公开(公告)号:US08245038B2

    公开(公告)日:2012-08-14

    申请号:US12055870

    申请日:2008-03-26

    IPC分类号: H04L29/06

    CPC分类号: G06F21/64

    摘要: One embodiment of the present invention provides a system which allows a document owner to redact content from a document and allows a recipient of the redacted document to challenge the appropriateness of the redaction. During operation, the system allows the document owner to redact a string Mi from location i in the document. In doing so, the system produces a commitment Ci=C(Mi, Ri) based on string Mi and a string Ri used as randomness and communicates Ci to the recipient. When the recipient challenges the redaction, the system receives a topic string T from the recipient, and produces a string RT. The system then communicates RT to the recipient, thereby allowing the recipient to produce a commitment CT=C(T, RT) based on strings T and RT, and compare CT with Ci. Comparing commitment CT with Ci allows the recipient to test redactions for string equality.

    摘要翻译: 本发明的一个实施例提供了一种允许文档所有者从文档中修改内容并允许编辑文档的接收者挑战编辑的适当性的系统。 在操作期间,系统允许文档所有者从文档中的位置i修改字符串Mi。 在这样做时,系统基于字符串Mi产生承诺Ci = C(Mi,Ri)和用作随机性的字符串Ri,并将Ci传送给接收者。 当接收方挑战编辑时,系统从收件人接收主题字符串T,并产生字符串RT。 系统然后将RT传送给接收者,从而允许接收者基于字符串T和RT产生承诺CT = C(T,RT),并将CT与Ci进行比较。 将承诺CT与Ci进行比较,允许收件人对字符串相等性进行测试。

    METHOD AND APPARATUS FOR PERFORMING CONTEXT-BASED ENTITY ASSOCIATION
    5.
    发明申请
    METHOD AND APPARATUS FOR PERFORMING CONTEXT-BASED ENTITY ASSOCIATION 有权
    用于执行基于语境的实体协会的方法和装置

    公开(公告)号:US20110113028A1

    公开(公告)日:2011-05-12

    申请号:US12617370

    申请日:2009-11-12

    IPC分类号: G06F17/30

    CPC分类号: G06Q30/0241 G06Q10/00

    摘要: A targeted advertising system performs context-based association mining using a publicly available corpus to identify a product or brand name that, under a given context, is associated with a product or brand being marketed. The system analyzes documents within the publicly available corpus that are associated with the given context, and identifies products or brand names that have a high association to the product or brand being marketed. The system can also analyze the publicly available corpus to determine contextual information which is correlated to two or more products or brand names. This contextual information includes a set of terms that facilitates filtering the publicly available corpus into an optimal set of documents that has a high association to a desired market category or demographic.

    摘要翻译: 有针对性的广告系统使用公开可用的语料库来执行基于上下文的关联挖掘,以识别在给定上下文与正在上市的产品或品牌相关联的产品或品牌名称。 系统分析与给定上下文相关联的公开可用语料库中的文档,并且识别与被销售的产品或品牌具有高关联性的产品或品牌名称。 系统还可以分析公开的语料库,以确定与两个或多个产品或品牌名称相关的上下文信息。 该上下文信息包括一组术语,其有助于将公开可用的语料库过滤成与期望的市​​场类别或人口统计学高度关联的最佳文档集合。

    Inbound content filtering via automated inference detection
    6.
    发明授权
    Inbound content filtering via automated inference detection 有权
    通过自动推断检测进入内容过滤

    公开(公告)号:US07860885B2

    公开(公告)日:2010-12-28

    申请号:US11951198

    申请日:2007-12-05

    IPC分类号: G06F17/30

    摘要: A system is provided to detect email spam. During operation, the system receives an email, extracts a set of keywords from the email body, and constructs a first search query based a keyword extracted from the email body. The system further constructs a second search query based on the keyword in the first query and one additional word which pertains to a known spam word or to the subject of the email. Next, the system receives a first number of hits and a second number of hits in response to the first and second search queries, respectively. The system then determines whether the email is spam based on the first number and the second number. The system can also perform Website filtering using inference detection which is based on search results received in response to search queries formulated with keywords extracted from Websites.

    摘要翻译: 提供了一个系统来检测电子邮件垃圾邮件。 在操作期间,系统接收电子邮件,从电子邮件正文中提取一组关键字,并根据从电子邮件正文中提取的关键字构建第一个搜索查询。 该系统还基于第一查询中的关键字和与已知垃圾邮件词或者电子邮件主题相关的一个附加词来构建第二搜索查询。 接下来,系统分别响应于第一和第二搜索查询接收第一数量的命中和第二数量的命中。 系统然后基于第一个数字和第二个数字确定该电子邮件是否为垃圾邮件。 该系统还可以使用推理检测来执行网站过滤,这是基于根据从网站提取的关键词制定的搜索查询而收到的搜索结果。

    Authentication based on user behavior
    7.
    发明授权
    Authentication based on user behavior 有权
    基于用户行为的认证

    公开(公告)号:US08844005B2

    公开(公告)日:2014-09-23

    申请号:US12270208

    申请日:2008-11-13

    IPC分类号: H04L9/32 G06F21/31

    CPC分类号: G06F21/316

    摘要: One embodiment of the present invention provides a system for authenticating a user. During operation, the system records user behavior history at one or more devices associated with the user. The system then extracts user information associated with a place and/or an activity from the recorded user behavior history. The system further generates one or more challenges based on the extracted user information, thereby facilitating the verification of the user's identity.

    摘要翻译: 本发明的一个实施例提供了一种用于认证用户的系统。 在操作期间,系统在与用户相关联的一个或多个设备上记录用户行为历史。 系统然后从记录的用户行为历史中提取与地点和/或活动相关联的用户信息。 该系统还基于所提取的用户信息进一步产生一个或多个挑战,从而便于验证用户的身份。

    Augmenting privacy policies with inference detection
    8.
    发明授权
    Augmenting privacy policies with inference detection 有权
    通过推理检测来增强隐私策略

    公开(公告)号:US08458179B2

    公开(公告)日:2013-06-04

    申请号:US11947292

    申请日:2007-11-29

    IPC分类号: G06F7/00 G06F17/30 G06F12/00

    CPC分类号: G06F21/6218

    摘要: A system is provided for augmenting a privacy policy. During operation, the system obtains a set of training documents and at least one seed keyword associated with the privacy policy. The system extracts a number of candidate keywords from the training documents and formulates at least one query based on the candidate keywords. The system then issues the query to a corpus. In response to the query, the system receives a set of result documents. The system further determines whether a respective keyword extracted from the result documents matches at least one seed keyword. The system then augments the privacy policy by associating the candidate keyword corresponding to the respective keyword with the privacy policy based on the determination. In addition, the system applies the augmented privacy policy to a subject document and produces a result to indicate whether the subject document is in violation of the privacy policy.

    摘要翻译: 提供了一个用于增强隐私策略的系统。 在操作期间,系统获得一组训练文档和与隐私策略相关联的至少一个种子关键字。 该系统从培训文档中提取出一些候选关键字,并根据候选关键字制定至少一个查询。 然后,系统将查询发送到语料库。 响应查询,系统接收一组结果文档。 系统还确定从结果文档中提取的相应关键字是否匹配至少一个种子关键字。 然后,该系统通过基于该确定将与各个关键字对应的候选关键字与隐私策略相关联来增强隐私策略。 此外,系统将增强的隐私策略应用于主题文档,并产生结果以指示主题文档是否违反隐私策略。

    Method, apparatus, and program product for flexible redaction of content
    9.
    发明授权
    Method, apparatus, and program product for flexible redaction of content 有权
    方法,设备和程序产品,用于灵活地修改内容

    公开(公告)号:US07873838B2

    公开(公告)日:2011-01-18

    申请号:US11611843

    申请日:2006-12-15

    IPC分类号: G09C1/00

    CPC分类号: H04L9/088 H04L9/0894

    摘要: A selectively encrypted data unit is generated from an unencrypted data unit. This is accomplished by accessing a list of attributes related to the unencrypted data unit that identify classifications of sensitive information within the unencrypted data unit. In addition, a protection key that is responsive to a random number is selected and auxiliary values computed from the attributes of the sensitive information and the random number are produced. The sensitive information is encrypted with the protection key to create an encrypted version of the sensitive information. The encrypted version is associated with the auxiliary values and linked to an attribute vector that classifies the sensitive information in the encrypted version. Data from the unencrypted data unit and the encrypted version of the sensitive information is stored as the selectively encrypted data unit.

    摘要翻译: 从未加密的数据单元生成选择性加密的数据单元。 这通过访问与未加密的数据单元中的敏感信息的分类的未加密的数据单元相关的属性的列表来实现。 此外,选择响应于随机数的保护密钥,并且产生从敏感信息和随机数的属性计算出的辅助值。 敏感信息用保护密钥加密,以创建敏感信息的加密版本。 加密版本与辅助值相关联,并链接到将加密版本中的敏感信息分类的属性向量。 来自未加密数据单元的数据和敏感信息的加密版本被存储为选择性加密的数据单元。

    OUTBOUND CONTENT FILTERING VIA AUTOMATED INFERENCE DETECTION
    10.
    发明申请
    OUTBOUND CONTENT FILTERING VIA AUTOMATED INFERENCE DETECTION 有权
    通过自动检测的OUTBOUND内容过滤

    公开(公告)号:US20090157650A1

    公开(公告)日:2009-06-18

    申请号:US11957833

    申请日:2007-12-17

    IPC分类号: G06F17/30

    CPC分类号: G06F17/30893

    摘要: One embodiment of the present invention provides a system that facilitates filtering outbound content via inference detection. During operation, the system identifies content sent to a first address and extracts keywords from the identified content. The system then issues queries based on these keywords and extracts expected-content keywords from the hits returned in response to the queries. The system then searches the outbound content for occurrences of the expected-content keywords and produces a result which allows a user to determine whether the outbound content is proper. In a further embodiment, the system extracts keywords from a piece of outbound content, and issues queries based on these keywords. The system then extracts keywords from the hits, and present at least one keyword to a user, thereby allowing the user to determine whether the outbound content is proper.

    摘要翻译: 本发明的一个实施例提供了一种有助于通过推理检测来过滤出站内容的系统。 在操作期间,系统识别发送到第一地址的内容,并从所识别的内容中提取关键字。 然后,系统基于这些关键字发出查询,并从响应于查询返回的命中中提取预期内容关键字。 然后,系统搜索出站内容以发现预期内容关键字,并产生允许用户确定出站内容是否正确的结果。 在另一实施例中,系统从一条出站内容中提取关键字,并且基于这些关键字发出查询。 然后,该系统从点击中提取关键字,并向用户呈现至少一个关键字,从而允许用户确定出站内容是否正确。