Patents by Inventor Hao DUO
Hao DUO has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 12363523Abstract: A user equipment (UE) includes a first subscriber identification module (SIM) and a second SIM. The UE is configured to establish a first cellular network connection based on, at least, the first SIM and a second cellular network connection based on, at least, the second SIM. The UE sends, by the first SIM, a first registration request to the network, wherein the first registration request comprises an identification indicating the multi-SIM device is a type of multi-SIM device, receives, by the first SIM, a first registration accept message indicating the first registration request has been accepted, wherein the first registration accept message comprises a first temporary identification for the first SIM and sends, by the second SIM, an access network message comprising one of the first temporary identification or a further temporary identification based on, at least, the first temporary identification.Type: GrantFiled: November 28, 2019Date of Patent: July 15, 2025Assignee: Apple Inc.Inventors: Huarui Liang, Dawei Zhang, Fangli Xu, Haijing Hu, Hao Duo, Longda Xing, Murtaza A. Shikari, Sethuraman Gurumoorthy, Shu Guo, Sree Ram Kodali, Srinivasan Nimmala, Srirang A. Lovlekar, Yuqin Chen
-
Patent number: 12250599Abstract: The present application relates to devices and components including apparatus, systems, and methods for security enhancement with respect to reselection of relay user equipment.Type: GrantFiled: February 19, 2021Date of Patent: March 11, 2025Assignee: Apple Inc.Inventors: Shu Guo, Dawei Zhang, Haijing Hu, Hao Duo, Huarui Liang, Lanpeng Chen, Sudeep Manithara Vamanan, Yuqin Chen, Zhibin Wu
-
Publication number: 20240236675Abstract: A user equipment (UE) may attempt to access an edge data network. The UE generates a first credential based on a second credential that was generated for a procedure between the UE and a network. The UE then generates an identifier corresponding to the first credential and generates a message authentication code based on the first credential and a count, wherein the count is associated with an identifier of an edge network client running on the UE. The UE then transmits an application registration request, message to a server associated with an edge data network, the application registration request message including the count, the message authentication code, the identifier corresponding to the first credential, and a public land mobile network identifier (PLMN ID) of the network. The UE then receives an authentication accept message or an authentication reject message from the server associated with the edge data network.Type: ApplicationFiled: February 19, 2021Publication date: July 11, 2024Inventors: Shu GUO, Dawei ZHANG, Haijing HU, Hao DUO, Huarui LIANG, Lanpeng CHEN, Mona AGNEL, Ralf ROSSBACH, Sudeep MANITHARA VAMANAN, Xiaoyu QIAO
-
Publication number: 20240137764Abstract: A user equipment (UE) may attempt to access an edge data network. The UE generates a first credential based on a second credential that was generated for a procedure between the UE and a network. The UE then generates an identifier corresponding to the first credential and generates a message authentication code based on the first credential and a count, wherein the count is associated with an identifier of an edge network client running on the UE. The UE then transmits an application registration request, message to a server associated with an edge data network, the application registration request message including the count, the message authentication code, the identifier corresponding to the first credential, and a public land mobile network identifier (PLMN ID) of the network. The UE then receives an authentication accept message or an authentication reject message from the server associated with the edge data network.Type: ApplicationFiled: February 19, 2021Publication date: April 25, 2024Inventors: Shu GUO, Dawei ZHANG, Haijing HU, Hao DUO, Huarui LIANG, Lanpeng CHEN, Mona AGNEL, Ralf ROSSBACH, Sudeep MANITHARA VAMANAN, Xiaoyu QIAO
-
Patent number: 11856402Abstract: Techniques for identity-based message integrity protection and verification between a user equipment (UE) and a wireless network entity, include use of signatures derived from identity-based keys. To protect against attacks from rogue network entities before activation of a security context with a network entity, the UE verifies integrity of messages by checking a signature using an identity-based public key PKID derived by the UE based on (i) an identity value (ID) of the network entity and (ii) a separate public key PKPKG of a private key generator (PKG) server. The network entity generates signatures for messages using an identity-based private key SKID obtained from the PKG server, which generates the identity-based private key SKID using (i) the ID value of the network entity and (ii) a private key SKPKG that is known only by the PKG server and corresponds to the public key PKPKG.Type: GrantFiled: November 15, 2021Date of Patent: December 26, 2023Assignee: Apple Inc.Inventors: Xiangying Yang, Shu Guo, Lijia Zhang, Qian Sun, Huarui Liang, Fangli Xu, Yuqin Chen, Haijing Hu, Dawei Zhang, Hao Duo, Lanpeng Chen
-
Publication number: 20230088512Abstract: The present application relates to devices and components including apparatus, systems, and methods for security enhancement with respect to reselection of relay user equipment.Type: ApplicationFiled: February 19, 2021Publication date: March 23, 2023Inventors: Shu GUO, Dawei ZHANG, Haijing HU, Hao DUO, Huarui LIANG, Lanpeng CHEN, Sudeep MANITHARA VAMANAN, Yuqin CHEN, Zhibin WU
-
Publication number: 20220394458Abstract: A user equipment (UE) includes a first subscriber identification module (SIM) and a second SIM. The UE is configured to establish a first cellular network connection based on, at least, the first SIM and a second cellular network connection based on, at least, the second SIM. The UE sends, by the first SIM, a first registration request to the network, wherein the first registration request comprises an identification indicating the multi-SIM device is a type of multi-SIM device, receives, by the first SIM, a first registration accept message indicating the first registration request has been accepted, wherein the first registration accept message comprises a first temporary identification for the first SIM and sends, by the second SIM, an access network message comprising one of the first temporary identification or a further temporary identification based on, at least, the first temporary identification.Type: ApplicationFiled: November 28, 2019Publication date: December 8, 2022Inventors: Huarui LIANG, Dawei ZHANG, Fangli XU, Haijing HU, Hao DUO, Longda XING, Murtaza A. SHIKARI, Sethuraman GURUMOORTHY, Shu GUO, Sree Ram KODALI, Srinivasan NIMMALA, Srirang A. LOVLEKAR, Yuqin CHEN
-
Publication number: 20220086642Abstract: Techniques for identity-based message integrity protection and verification between a user equipment (UE) and a wireless network entity, include use of signatures derived from identity-based keys. To protect against attacks from rogue network entities before activation of a security context with a network entity, the UE verifies integrity of messages by checking a signature using an identity-based public key PKID derived by the UE based on (i) an identity value (ID) of the network entity and (ii) a separate public key PKPKG of a private key generator (PKG) server. The network entity generates signatures for messages using an identity-based private key SKID obtained from the PKG server, which generates the identity-based private key SKID using (i) the ID value of the network entity and (ii) a private key SKPKG that is known only by the PKG server and corresponds to the public key PKPKG.Type: ApplicationFiled: November 15, 2021Publication date: March 17, 2022Inventors: Xiangying YANG, Shu GUO, Lijia ZHANG, Qian SUN, Huarui LIANG, Fangli XU, Yuqin CHEN, Haijing HU, Dawei ZHANG, Hao DUO, Lanpeng CHEN
-
Patent number: 11178547Abstract: Techniques for identity-based message integrity protection and verification between a user equipment (UE) and a wireless network entity, include use of signatures derived from identity-based keys. To protect against attacks from rogue network entities before activation of a security context with a network entity, the UE verifies integrity of messages by checking a signature using an identity-based public key PKID derived by the UE based on (i) an identity value (ID) of the network entity and (ii) a separate public key PKPKG of a private key generator (PKG) server. The network entity generates signatures for messages using an identity-based private key SKID obtained from the PKG server, which generates the identity-based private key SKID using (i) the ID value of the network entity and (ii) a private key SKPKG that is known only by the PKG server and corresponds to the public key PKPKG.Type: GrantFiled: March 5, 2019Date of Patent: November 16, 2021Assignee: Apple Inc.Inventors: Xiangying Yang, Shu Guo, Lijia Zhang, Qian Sun, Huarui Liang, Fangli Xu, Yuqin Chen, Haijing Hu, Dawei Zhang, Hao Duo, Lanpeng Chen
-
Publication number: 20200396598Abstract: This disclosure relates to techniques for a wireless device to perform radio resource control procedures with improved security. The wireless device may establish a radio resource control connection with a cellular base station. A capability enquiry may be received from the cellular base station. The wireless device may determine how much capability information to provide in response to the capability enquiry based at least in part on whether access stratum security has been established, either in the current radio resource connection, or in a previous radio resource connection, between the wireless device and the cellular base station when the capability enquiry is received.Type: ApplicationFiled: June 12, 2020Publication date: December 17, 2020Inventors: Shu Guo, Fangli Xu, Xiangying Yang, Lijia Zhang, Huarui Liang, Haijing Hu, Yuqin Chen, Hao Duo, Lanpeng Chen, Dawei Zhang, Srinivasan Nimmala, Vijay Venkataraman, Muthukumaran Dhanapal, Sree Ram Kodali
-
Publication number: 20200021993Abstract: Techniques for identity-based message integrity protection and verification between a user equipment (UE) and a wireless network entity, include use of signatures derived from identity-based keys. To protect against attacks from rogue network entities before activation of a security context with a network entity, the UE verifies integrity of messages by checking a signature using an identity-based public key PKID derived by the UE based on (i) an identity value (ID) of the network entity and (ii) a separate public key PKPKG of a private key generator (PKG) server. The network entity generates signatures for messages using an identity-based private key SKID obtained from the PKG server, which generates the identity-based private key SKID using (i) the ID value of the network entity and (ii) a private key SKPKG that is known only by the PKG server and corresponds to the public key PKPKG.Type: ApplicationFiled: March 5, 2019Publication date: January 16, 2020Inventors: Xiangying YANG, Shu GUO, Lijia ZHANG, Qian SUN, Huarui LIANG, Fangli XU, Yuqin CHEN, Haijing HU, Dawei ZHANG, Hao DUO, Lanpeng CHEN