WO2024097280A1 - Optical encryption camera - Google Patents
Optical encryption camera Download PDFInfo
- Publication number
- WO2024097280A1 WO2024097280A1 PCT/US2023/036578 US2023036578W WO2024097280A1 WO 2024097280 A1 WO2024097280 A1 WO 2024097280A1 US 2023036578 W US2023036578 W US 2023036578W WO 2024097280 A1 WO2024097280 A1 WO 2024097280A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- mask
- image
- optical encryption
- camera
- optical
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/002—Countermeasures against attacks on cryptographic mechanisms
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/602—Providing cryptographic facilities or services
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06V—IMAGE OR VIDEO RECOGNITION OR UNDERSTANDING
- G06V10/00—Arrangements for image or video recognition or understanding
- G06V10/20—Image preprocessing
- G06V10/25—Determination of region of interest [ROI] or a volume of interest [VOI]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06V—IMAGE OR VIDEO RECOGNITION OR UNDERSTANDING
- G06V10/00—Arrangements for image or video recognition or understanding
- G06V10/70—Arrangements for image or video recognition or understanding using pattern recognition or machine learning
- G06V10/764—Arrangements for image or video recognition or understanding using pattern recognition or machine learning using classification, e.g. of video objects
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06V—IMAGE OR VIDEO RECOGNITION OR UNDERSTANDING
- G06V10/00—Arrangements for image or video recognition or understanding
- G06V10/70—Arrangements for image or video recognition or understanding using pattern recognition or machine learning
- G06V10/82—Arrangements for image or video recognition or understanding using pattern recognition or machine learning using neural networks
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06V—IMAGE OR VIDEO RECOGNITION OR UNDERSTANDING
- G06V40/00—Recognition of biometric, human-related or animal-related patterns in image or video data
- G06V40/10—Human or animal bodies, e.g. vehicle occupants or pedestrians; Body parts, e.g. hands
- G06V40/16—Human faces, e.g. facial parts, sketches or expressions
- G06V40/172—Classification, e.g. identification
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0861—Generation of secret information including derivation or calculation of cryptographic keys or passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0861—Generation of secret information including derivation or calculation of cryptographic keys or passwords
- H04L9/0869—Generation of secret information including derivation or calculation of cryptographic keys or passwords involving random numbers or seeds
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0894—Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N25/00—Circuitry of solid-state image sensors [SSIS]; Control thereof
- H04N25/10—Circuitry of solid-state image sensors [SSIS]; Control thereof for transforming different wavelengths into image signals
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/88—Medical equipments
Definitions
- an optical encryption camera includes a sensor array and a filter positioned over the sensor array to receive light prior 22068PCT Page 1 of 31 to the sensor array.
- the filter includes a multiplexing mask and a scaling mask in sequence. The multiplexing mask and the scaling mask combine to provide an encryption key to encrypt image data prior to capture.
- a method for optical encryption includes encrypting an image, by an optical encryption camera, by applying a multiplexing mask to the image and applying a scaling mask to the image to provide an encrypted image.
- the encrypted image is received on a sensor array wherein the multiplexing mask and the scaling mask combine to provide an encryption key to encrypt image data prior to capture.
- the encrypted image is stored.
- FIG. 1 is a block/flow diagram illustrating an optical encryption camera coupled to a mask generation module and a training module for mask generators, in accordance with an embodiment of the present invention
- FIG. 2 is a block diagram illustrating an optical encryption camera with a connectable decryption module connected to the camera, in accordance with an embodiment of the present invention
- FIG. 3 shows a multiplexing and a scaling mask combining to provide a composite mask image, in accordance with an embodiment of the present invention
- FIG. 4 is a block diagram showing a surveillance system using optical encryption cameras, in accordance with an embodiment of the present invention
- FIG. 12 FIG.
- FIG. 5 is a block diagram showing a medical imaging system using optical encryption cameras to maintain sensitive patient data, in accordance with an embodiment of the present invention.
- FIG. 6 is a block diagram showing a face recognition system using an optical encryption camera to maintain sensitive biodata, in accordance with an embodiment of the present invention.
- FIG. 7 is a flow diagram showing methods for encrypting an image to protect the image from cyber-attacks, in accordance with an embodiment of the present invention.
- systems, devices and methods are provided to prevent gaining access to sensitive data by encrypting sensitive visual data prior to image capture, via optical coding of an incident light-field (incoherent light).
- the image capture also enables high quality software-based keyed decryption.
- optical encryption cameras can include cameras with computational capabilities to encrypt image data prior to image capture. This can be performed via optical coding of the incident light-field. Recovery of unencrypted image 22068PCT Page 3 of 31 data is possible only if access to a camera's encryption key is provided, which is defined by the unique optical elements of each camera.
- a camera in useful embodiments of the present invention, includes a bare sensor array with an optical scaling mask positioned flush against the sensor pixels and an optical multiplexing mask positioned a short distance (e.g., a few millimeters) above the scaling mask. Coupling the camera with algorithms for generating unique optical masks produces images with desirable security and imaging properties, including high-quality-calibration free keyed decryption and robustness against a range of attacks, including blind decryption attacks and point-spread- function estimation attacks that exploit bright illumination sources in a scene. [0017] Embodiments described herein may be entirely hardware, entirely software or including both hardware and software elements.
- Embodiments may include a computer program product accessible from a computer-usable or computer-readable medium providing program code for use by or in connection with a computer or any instruction execution system.
- a computer-usable or computer readable medium may include any apparatus that stores, communicates, propagates, or transports the program for use by or in connection with the instruction execution system, apparatus, or device.
- the medium can be magnetic, optical, electronic, electromagnetic, infrared, or semiconductor system (or apparatus or device) or a propagation medium.
- the medium may include a computer-readable storage medium such as a semiconductor or solid state memory, magnetic tape, a removable computer 22068PCT Page 4 of 31 diskette, a random access memory (RAM), a read-only memory (ROM), a rigid magnetic disk and an optical disk, etc.
- a computer-readable storage medium such as a semiconductor or solid state memory, magnetic tape, a removable computer 22068PCT Page 4 of 31 diskette, a random access memory (RAM), a read-only memory (ROM), a rigid magnetic disk and an optical disk, etc.
- Each computer program may be tangibly stored in a machine-readable storage media or device (e.g., program memory or magnetic disk) readable by a general or special purpose programmable computer, for configuring and controlling operation of a computer when the storage media or device is read by the computer to perform the procedures described herein.
- a data processing system suitable for storing and/or executing program code may include at least one processor coupled directly or indirectly to memory elements through a system bus.
- the memory elements can include local memory employed during actual execution of the program code, bulk storage, and cache memories which provide temporary storage of at least some program code to reduce the number of times code is retrieved from bulk storage during execution.
- I/O devices including but not limited to keyboards, displays, pointing devices, etc. may be coupled to the system either directly or through intervening I/O controllers.
- Network adapters may also be coupled to the system to enable the data processing system to become coupled to other data processing systems or remote printers or storage devices through intervening private or public networks. Modems, cable modem and Ethernet cards are just a few of the currently available types of network adapters. 22068PCT Page 5 of 31 [0022] Referring now in detail to the figures in which like numerals represent the same or similar elements and initially to FIG.1, a high-level system/method for optical encryption is illustratively depicted in accordance with one embodiment of the present invention.
- An optical encryption camera 102 is shown in accordance with one embodiment.
- the optical encryption camera 102 is coupled to a mask generator module 202 and a training module for mask generators 300.
- the optical encryption camera 102 can be detached from modules 202 and 300.
- the mask generator module 202 and the training module for mask generators 300 can be stored in memory of a computer device (a portable computer, cellphone, laptop, etc.) or may be implemented as a dedicated computer hardware device.
- the optical encryption camera 102 includes two modules. These modules include a sensing module 120 and a decryption module 130.
- the sensing module 120 directly captures an encrypted image 110 via optical multiplexing 106 and optical scaling 108 of an incident light-field 104.
- the decryption module 130 accepts the encrypted image 110 as input and returns a decrypted image (predicted input image) 112.
- the sensing module 120 converts the incident light-field 104 into encrypted measurements via optical computations.
- the module 120 includes a bare sensor array with an optical scaling mask 108 positioned flush against the sensor array and an optical multiplexing mask 106 positioned a short distance (1-5 mm millimeters) above the scaling mask 108.
- the two masks constitute an "encryption key". Without knowledge of the features of these masks, decryption is not possible.
- the decryption module 130 accepts an encrypted image 110 as input and returns a decrypted image 112. Decryption is achieved by applying inverse computations 22068PCT Page 6 of 31 of those applied by the two optical masks 106 and 108.
- a mask generation module 202 is connected between a training algorithm 300 for mask generators and the optical encrypted cameras 102.
- the mask generation module 202 includes mask generators for multiplexing masks and scaling masks.
- a multiplexing mask generator 206 accepts random seeds 204 as inputs and outputs a corresponding multiplexing mask to optical multiplexing mask 106.
- a scaling mask generator 208 accepts random seeds 210 as inputs and outputs a corresponding scaling mask for optical scaling mask 108.
- the mask generators 206 and 208 can be hand-engineered and/or learned algorithms for generating masks.
- a training algorithm 300 for mask generators is connected to the mask generation module 202.
- the training for the mask generator includes differentiable mask module 338.
- the training for the mask generator includes instantiating differentiable multiplexing generator 322 and differentiable scaling mask generator 324 with learnable parameters. This includes providing a seed(s) 320 for the multiplexing mask as well as a seed(s) 326 for a scaling mask.
- Learnable parameters includes pixel values of the scaling and multiplexing masks. These masks may be amplitude or phase masks.
- a simulated optical encryption camera module 336 is generated. This includes generating an optical multiplexing mask 314 and generating an optical scaling mask 316 for the simulated camera. Input images 312 are masked (simulated multiplexing and scaling) to simulate an encrypted digital image 318.
- a keyed decryption module 334 provides keyed decryptions of input images 312.
- a blind decryption module 332 provides blind decryptions of input images 312.
- a keyed demultiplex 308 is performed after an inverse scaling 310 on the encrypted images 318.
- a blind decryption 304 is also performed on the encrypted images 318 to recover estimates of input images.
- the estimates of the input images are predicted input images (blind) 302 and predicted input images (keyed) 306.
- the parameters of the mask generators 322 and 324 are updated to minimize and maximize reconstruction error as determined by an adversarial loss function 330 for the keyed decryption from module 334 and blind decryption from module 332, respectively. The approach is deemed a success if keyed decryption succeeds and blind decryption fails.
- the outputs of the training algorithm 300 are learned parameters of the mask generators 322 and 324. These learned parameters can be employed by the mask generator module 202, which in turn can be employed in the optical encryption camera 102.
- the differentiable mask module 338 includes learnable mask generators 322 and 324.
- the generators 322 and 324 can be modeled as deep learning neural networks to optimize camara parameters.
- the parameters of the neural networks are updated to minimize and maximize the reconstruction error for the keyed and blind decryption processes, respectively.
- 22068PCT Page 8 of 31 [0032]
- the simulated optical encryption camera module 336 can employ Fourier optics to simulate the optical multiplexing (314) and scaling (316) due to the respective optical masks.
- Blind decryption in module 332 can be modeled as a deep learning neural network and be learned in tandem with the learnable mask generators 322 and 324, or a conventional blind deconvolution algorithm can be employed.
- a two mask design in accordance with the present invention makes blind decryption more challenging by enlarging the key-space, and inhibits mask estimation attacks that exploit bright illumination sources in the scene. With a single multiplexing mask, bright illumination sources will reveal the mask, but with two masks, neither mask is revealed.
- Learned and hand-engineered optical encryption masks generated in accordance with embodiments of the present invention improve image security compared to existing approaches. By using colored noise to generate the multiplexing masks, autocorrelation attacks are inhibited. By employing learning for the mask generators, the present embodiments learn to produce masks that inhibit an even wider range of attacks.
- FIG.2 a block diagram showing greater detail for a lensless computational camera 102 that encrypts image data before or during image capture is depicted in accordance with one embodiment.
- Camera 102 receives an incident light- field light through an optical filter 402.
- the optical filter 402 includes two masks, which filter light in accordance with an optical multiplexing mask 106 and an optical scaling mask 108 before the incident light falls incident on a sensor array 404.
- Sensor array 404 can include any suitable image capturing device.
- the sensor array 404 includes an integrated circuit chip or chips configured with light sensors for 22068PCT Page 9 of 31 capturing light output from the optical filter 402.
- the masks of the optical filter 402 are programmable and can include mask features and designs that are stored in the mask itself or stored in memory 406.
- a hardware processor 408 interacts with memory 406, sensor array 404, masks 106 and 108 to control operations of the camera 102.
- the camera 102 can include a power source 412 to power the functions of the camera 102.
- the power source 412 can be a fixed or portable source, as needed.
- a control panel 414 can be provided to enable interactions with the camera 102 including programming, image capture, storage command and guidance, etc.
- the camera 102 also includes an interface 416 that can include a wired or wireless connection port.
- the interface 416 can permit uploading and downloading commands and data to and from the camera 102 either wired or wirelessly.
- the masks 106, 108 can be updated for each image capture process so that each image includes a unique encryption. In another embodiment, encryption remains constant until an update of the mask 106 and 108 is requested.
- incoherent optical encryption including a randomly generated amplitude mask can be employed for the scaling mask 108 and a randomly generated phase mask can be employed for the multiplexing mask 106.
- the masks 106 and 108 have their features modified in accordance with learned parameters.
- the learned parameters can be learned using the training mask generators 300 that are trained to be resistant to specific attacks.
- the parameters learned can be used to bias the mask designs to be particularly resistant to a range of attacks to generate optical encryption masks with greater robustness against the range of attacks.
- Image reconstruction in accordance with the present embodiments employs both regularized least squares and deep learning-based reconstruction methods. Since optical elements behave as linear operators, optical encryption cameras will always be susceptible to chosen plaintext attacks in which an attacker uses a large set of ciphertext- plaintext pairs to estimate the encryption function. This limits the practical use of optical encryption cameras to settings where attackers lack physical access to the camera location. Accordingly, attackers usually do not have physical access to the camera locations, but can access a camera's stream. In other words, attackers have access to ciphertexts (measurements) from a camera, but not their corresponding plaintext (raw images), except for three special cases. This is a reasonable assumption for many settings, such as security cameras in homes and offices.
- COA ciphertext only attacks
- U-KPA uniform known plaintext attack
- UI-KPA uniform-impulse known plaintext attack
- the goal of an attacker is to recover the plaintext ⁇ from ciphertext ⁇ with knowledge of function ⁇ , but partial or no knowledge of key ⁇ .
- DPT Dense Prediction Transformer
- the COA no estimates ⁇ and ⁇ are available, so ⁇ reduces to ⁇ .
- the methods for estimating ⁇ and ⁇ depend on the design of the targeted optical encryption camera.
- a random key is generated for each ciphertext sample in each batch and use a loss consisting of a combination of an L1 pixel loss and an L2 perceptual loss over the outputs of rectified linear unit (relu) layers: relu l_1, relu 2_2, and relu 3_3 of data pre-trained for image classification on the ImageNet dataset.
- the loss is given by : ' ⁇ : denote the layers relu l_l, relu 2_2, and relu3_3, respectively, of a pre-trained network, e.g., VGG16.
- the double-mask sensor design of optical encrypted camera 102 has two co- axially placed masks - an optical scaling mask 108 is 9 ⁇ R ⁇ positioned flush against the sensor array 404 and an optical multiplexing mask 106 positioned a few millimeters above the scaling mask 108.
- the scaling mask 108 can be implemented via an amplitude mask.
- an amplitude or phase mask can be used, as described (:. ;. , ⁇ ). 22068PCT Page 12 of 31
- Let ⁇ ⁇ R ⁇ denote the point-spread-function (PSF) produced by the multiplexing mask 106.
- * represents a full-sized convolution with zero-padded boundary conditions similar to the model used in existing thin lensless cameras.
- the encryption key (i.e., PSF ⁇ ) is equal to the impulse response of the camera, so the IKPA completely compromises the system. This is not the case for the double-mask design, as the scaling mask makes the system shift-variant, so the impulse response only reveals the "effective" encryption key for a single scene pixel.
- Imaging a uniform scene or a Uniform Scene Response can be employed because of the structure of a forward imaging model, as in the present embodiments. However, scenes like a plain wall can reveal the scaling mask 9 up to a scale. For a uniform scene to reveal the scaling mask 9, ⁇ ⁇ ⁇ , it must also be uniform.
- the design of the masks is an important consideration for good performance, i.e., for enabling high-quality keyed decryption while also thwarting decryption attacks.
- the mask should have the following desirable properties: 1) PSF should contain directional filters for all angles to enable high-quality 22068PCT Page 13 of 31 lensless reconstruction; 2) The autocorrelation of the PSF should not be an impulse.
- the PSFs for which the autocorrelation is an impulse are susceptible to autocorrelation-based COAs.
- the measurement B ( C ) recorded at the sensor due to a single point source is given by: , where G is the set of all pixel locations for which @(C) is 1. Simple thresholding of B, i.e., B > 0, reveals @ and reduces the size of the key.
- the Perlin feature size is fixed, the permutation vector for Perlin noise is randomized, and correspondingly the contour is PSF ⁇ cont .
- the length of the permutation vector is the same as the height or width of the PSF.
- PSF Power Spectral Density
- N O ( P, Q ) ⁇ , ( R ⁇ ST ⁇ )U V ⁇ W
- N O (P, Q) is the Fourier transform of the PSF.
- F j ⁇ is the inverse fast Fourier transform (FFT)
- n random white noise (e.g., sampled from o(0,1))
- h is a scalar hyper-parameter that controls the roll-off of the colored noise.
- h is randomly sampled from white noise (e.g., o(1,10)).
- the linear combination co-efficient M is chosen uniformly at random. Also, it should also be noted that PSF needs to be non-negative as light cannot be subtracted.
- PSF needs to be non-negative as light cannot be subtracted.
- colored noise is employed again without the Perlin contours.
- ⁇ p is a design in accordance with one embodiment while ⁇ ⁇ is a corresponding version with white noise used instead of colored noise for PSF.
- the decryption module 130 accepts three inputs, an encrypted image ⁇ , a scaling mask 9, and a PSF ⁇ due to the multiplexing mask q; and retums a decrypted image ⁇ .
- decryption can be achieved by simply applying the inverse of the two optical computations.
- ⁇ r argmin ⁇ u ⁇ ⁇ ⁇ ⁇ " v + w ⁇ ⁇ ⁇ " v . t
- DPT Dense Prediction Transformer
- ⁇
- This transformer-based refinement performed slightly better than the U-Net-based refinement typically used in lensless imaging.
- mask generator module 202 (FIG.1) can be stored in memory 406 of the camera 102.
- Mask generator module 202 can generate scaling and multiplexing masks for the camera 102 in real-time or the masks can be generated and stored until updated.
- mask generation is performed using a mask generation function or functions (MGF).
- MGF is a cryptographic primitive similar to a cryptographic hash function.
- a mask is defined for an array of pixels tiled or replicated over the entire image. 22068PCT Page 16 of 31 [0059]
- the encrypted digital image 110 can be output directly in digital form or it can be input to a decryption module 130 which can be part of the camera 102 or can be stored in a separate memory.
- the camera 102 can be employed with a decryption module 130.
- the decryption module 130 can include a display 410.
- the decryption module 130 can be employed in a separate computing/processing device having a its own display.
- the camera 102 can capture an image which can be viewed on the display 410 only if proper permission is provided.
- the decryption steps including inverse scaling 116 and demultiplexing 114 can be performed.
- the encryption key provided in accordance with the optical multiplexing mask 106 and optical scaling mask 108 needs to be accessible/known.
- the camera 102 can be employed to output and store the encrypted image 110.
- the encrypted image 110 can be sent in its encrypted form for storage and use independent of the camera 102.
- sensitive photographs e.g., of confidential information can remain protected from the time the image is captured until it is properly decrypted without ever being stored in a non-encrypted state.
- the encrypted image 110 remains protected from cyberattacks and other security risks since the filters 402 includes masks 106 and 108 that have been optimized (e.g., trained using artificial intelligence) to be particularly resistant to a range of possible cyber-attacks.
- the decryption module 130 can include a display 410. Alternately, the decryption module 130 can be employed in a separate computing/processing device having a its own display.
- the camera 102 can capture an image (light 104) which can be viewed on the display 410 only if proper permission is provided.
- the 22068PCT Page 17 of 31 decryption steps including inverse scaling 116 and demultiplexing 114 can be performed.
- the encryption key provided in accordance with the optical multiplexing mask 106 and optical scaling mask 108 needs to be accessible/known.
- FIG.3 a multiplexing mask 506 and a scaling mask 108 are illustratively depicted. If a frame 502 is captured and filtered through the multiplexing mask 506 and scaling mask 108, a combined masked image 504 results.
- Multiplexing mask 506 includes a randomized/multiplexed pattern for pixel masking while scaling mask 108 blocks out a randomized portion of an image.
- the types and features of the multiplexing mask 506 and scaling mask 108 can be learned and optimized for a particular cyber-attack or a range of cyber-attacks.
- the optimization includes masks 106 and 108 in accordance with a loss function using a deep neural network that employs training data from images that have been filtered by different techniques to determine parameters that are updated to minimize and maximize reconstruction error as determined by an adversarial loss function 330 (FIG.1) for the keyed decryption and blind decryption.
- the parameters of the neural networks are updated to minimize and maximize reconstruction error for the keyed and blind decryption processes, respectively.
- the approach is deemed a success if keyed decryption succeeds and blind decryption fails.
- a camera system 600 is shown in accordance with an embodiment of the present invention.
- Camera system 600 includes one or more optical encryption cameras 102.
- Cameras 102 can be mounted to towers, buildings or any other stable position.
- Cameras 102 can also be mounted on mobile platforms, such as trucks, planes, drones, cars, etc.
- Cameras 102 can be hardwired or employ wireless connections for collecting images captured by the cameras 102.
- Cameras 102 can be employed in a surveillance capacity, be used to monitor a location or object 606 or be employed to capture images in a particular environment or situation. Images captured by cameras 102 may include sensitive information. Therefore, image data can be encrypted at the time the image is captured. There can be a plurality of reasons for encrypting this data, e.g., the image needs to be protected from viewing by unauthorized personnel or other persons who should not be able to view the images captured by cameras 102. In addition, the image data may be of a sensitive nature, e.g., the system 600 is located inside or around a home.
- a camera system 700 employed in a medical environment protects sensitive image data in accordance with embodiments of the present invention.
- medical professionals often need to photograph patients’ injuries for documentation purposes or examination purposes.
- 22068PCT Page 19 of 31 photographs are needed to plan surgeries or other treatment programs. These images are sensitive due to their personal nature and due to the doctor-patient relationship. This is particularly true, if the patient’s face or other sensitive areas are the subject of the image.
- Camera system 700 includes one or more optical encryption cameras 102.
- Cameras 102 can be mounted to fixed or mobile platforms within a medical facility or can be wielded by medical personal. Cameras 102 can be hardwired or employ wireless connections for collecting images captured by the cameras 102. [0068] Cameras 102 can be employed to capture images of a patient 702 in a medical environment or situation (on location of an accident or other medical emergency. Images captured by cameras 102 may include sensitive information and therefore image data is encrypted at the time the image is captured. The image needs to be protected from viewing by non-medical staff, unauthorized personnel or other persons who should not be able to view the images captured by cameras 102.
- the image data is of a sensitive nature, e.g., medical privacy
- the image data should not only be encrypted but should be further resistant to cyber-attack should a computer 706 or device storing the image data in memory 708, such as a medical database or other memory become compromised by a cyber-attack.
- the medical image can be safely secured and optimized for ease of access for the appropriate personnel.
- a face recognition application is employed with an optical encryption camera 102 in accordance with the present invention.
- An encrypted query image 802 of a human face is captured using the optical encryption camera 102.
- An encrypted query image 810 is then sent to a computer 806 to perform face recognition.
- the computer 806 includes a processor 804 and memory 808.
- the memory 808 can include applications or programs for face recognition. 22068PCT Page 20 of 31
- the computer 806 can perform face recognition directly in the encrypted domain or can first decrypt the query image and then perform face recognition. If recognition is performed in the encrypted domain, the encrypted query image is compared to encrypted images in a reference database 812. Otherwise, the decrypted image is compared to conventional images in the reference database 812. The image data is compared to the images in the reference database to output similarity scores 814 and/or image matches 816. Since the optical encryption camera 102 encrypts image data before image capture, this implementation inhibits data sniffing attacks that seek to gain access to raw image data. [0071] Face recognition can be employed as a security measure for payment applications, health care applications, building or other access applications, etc.
- Optical encryption in accordance with the present embodiments can employ standard optical masks that are cost-effective and easily mass-produced.
- the use of an optical scaling mask e.g., can be employed to apply pixel gains without the need for modification of camera hardware.
- Lensless imaging can be employed to provide a separable coded aperture mask above the bare sensor array to enable a thin and flat form- factor imaging device, which can simulate a conventional camera by reconstructing conventional images from coded measurements.
- a coded phase mask can also be employed for improved light efficiency and reconstruction quality.
- a coded optical mask is used to capture coded measurements to enable high- quality reconstruction of images, but also prevent decryption attacks.
- a second optical scaling mask is positioned flush against the bare sensor array and its mask designs for 22068PCT Page 21 of 31 multiplexing and scaling masks are trained to increase security by making it impossible to discover the underlying image.
- Image reconstruction is a core problem in computational imaging, and plays a key role in lensless imaging. Both regularized least squares and deep-learning-based reconstruction methods are employed in accordance with embodiments of the present invention.
- methods for optical encryption are illustratively shown in accordance with embodiments of the present invention.
- masks are generated for encrypting image data.
- the multiplexing mask and the scaling mask can be generated using randomly generated seeds, which can be employed for computing the masks using mask generating computations.
- the masks can be generated using deep learning neural networks. These networks can employ simulated images to determine the most effective masks to protect images. Parameters for the masks are learned to provide the most robust masks for given threats or a range of threats.
- a mask generator training module can be trained by employing keyed and blind simulations of input images to generate masks resistant to a range of cyber-attacks.
- the mask generator training module can be optimized in accordance with an adversarial loss function, wherein the adversarial loss function is minimized for reconstruction error to measure decryption accuracy and wherein the adversarial loss function is maximized for reconstruction error for blind decryption.
- the mask generator training module further can include one or more mask generators trained using a deep learning neural network.
- an image is encrypted, by an optical encryption camera, by applying a multiplexing mask to the image and applying a scaling mask to the image to 22068PCT Page 22 of 31 provide an encrypted image. This encryption is performed before capturing the image on a sensor array within the camera.
- the optical encryption camera can, e.g., capture medical images including sensitive data, and the sensitive data is stored in memory in an encrypted state.
- the optical encryption camera can capture face images to perform face recognition using images in an encrypted state. Other applications are also contemplated. It should also be understood that the images can be decrypted and stored in the decrypted (unencrypted state).
- the encrypted image is received on the sensor array wherein the multiplexing mask and the scaling mask combine to provide an encryption key to encrypt image data prior to capture.
- the encrypted image is stored. This can include storing the image in the camera memory or transmitting the image to a stored image database. The image can be stored in its encrypted state.
- the captured image can be decrypted using a connectable decryption module by employing inverse operations of the multiplexing mask and the scaling mask.
- the decryption model can be provided on the camera itself.
- the decrypted image can be displayed.
- Simulation and real-world experiments show that the optical encryption camera is more robust against a range or cyber-attacks.
- embodiments of the present invention provide resistance against autocorrelation attacks, bright source attacks , transformer based cipher-text attacks, etc.
- the term “hardware processor subsystem” or “hardware processor” can refer to a processor, memory, software or combinations thereof that cooperate to perform one or more specific tasks.
- the hardware 22068PCT Page 23 of 31 processor subsystem can include one or more data processing elements (e.g., logic circuits, processing circuits, instruction execution devices, etc.).
- the one or more data processing elements can be included in a central processing unit, a graphics processing unit, and/or a separate processor- or computing element-based controller (e.g., logic gates, etc.).
- the hardware processor subsystem can include one or more on-board memories (e.g., caches, dedicated memory arrays, read only memory, etc.).
- the hardware processor subsystem can include one or more memories that can be on or off board or that can be dedicated for use by the hardware processor subsystem (e.g., ROM, RAM, basic input/output system (BIOS), etc.).
- the hardware processor subsystem can include and execute one or more software elements.
- the one or more software elements can include an operating system and/or one or more applications and/or specific code to achieve a specified result.
- the hardware processor subsystem can include dedicated, specialized circuitry that performs one or more electronic processing functions to achieve a specified result. Such circuitry can include one or more application-specific integrated circuits (ASICs), field-programmable gate arrays (FPGAs), and/or programmable logic arrays (PLAs).
- ASICs application-specific integrated circuits
- FPGAs field-programmable gate arrays
- PLAs programmable logic arrays
- references in the specification to “one embodiment” or “an embodiment” of the present invention, as well as other variations thereof, means that a particular feature, structure, characteristic, and so forth described in connection with the embodiment is 22068PCT Page 24 of 31 included in at least one embodiment of the present invention.
- the appearances of the phrase “in one embodiment” or “in an embodiment”, as well any other variations, appearing in various places throughout the specification are not necessarily all referring to the same embodiment.
- features of one or more embodiments can be combined given the teachings of the present invention provided herein.
- such phrasing is intended to encompass the selection of the first listed option (A) only, or the selection of the second listed option (B) only, or the selection of the third listed option (C) only, or the selection of the first and the second listed options (A and B) only, or the selection of the first and third listed options (A and C) only, or the selection of the second and third listed options (B and C) only, or the selection of all three options (A and B and C).
- This may be extended for as many items listed.
Landscapes
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- General Health & Medical Sciences (AREA)
- Health & Medical Sciences (AREA)
- Multimedia (AREA)
- Signal Processing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Software Systems (AREA)
- Evolutionary Computation (AREA)
- Human Computer Interaction (AREA)
- Oral & Maxillofacial Surgery (AREA)
- Bioethics (AREA)
- General Engineering & Computer Science (AREA)
- Computer Hardware Design (AREA)
- Artificial Intelligence (AREA)
- Computer Vision & Pattern Recognition (AREA)
- Computing Systems (AREA)
- Databases & Information Systems (AREA)
- Medical Informatics (AREA)
- Studio Devices (AREA)
- Collating Specific Patterns (AREA)
- Image Analysis (AREA)
Abstract
Description
Claims
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| JP2025523937A JP2025537675A (en) | 2022-11-02 | 2023-11-01 | Optical Encryption Camera |
Applications Claiming Priority (10)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US202263421674P | 2022-11-02 | 2022-11-02 | |
| US63/421,674 | 2022-11-02 | ||
| US202263423077P | 2022-11-07 | 2022-11-07 | |
| US202263423076P | 2022-11-07 | 2022-11-07 | |
| US63/423,076 | 2022-11-07 | ||
| US63/423,077 | 2022-11-07 | ||
| US202363460056P | 2023-04-18 | 2023-04-18 | |
| US63/460,056 | 2023-04-18 | ||
| US18/498,677 | 2023-10-31 | ||
| US18/498,677 US12512959B2 (en) | 2022-11-02 | 2023-10-31 | Optical encryption camera |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2024097280A1 true WO2024097280A1 (en) | 2024-05-10 |
Family
ID=90928317
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/US2023/036578 Ceased WO2024097280A1 (en) | 2022-11-02 | 2023-11-01 | Optical encryption camera |
Country Status (3)
| Country | Link |
|---|---|
| US (1) | US12512959B2 (en) |
| JP (1) | JP2025537675A (en) |
| WO (1) | WO2024097280A1 (en) |
Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2007073012A (en) * | 2005-09-09 | 2007-03-22 | Iwate Univ | Random number generation system |
| US20090016645A1 (en) * | 2007-03-19 | 2009-01-15 | Sony Corporation | Image processing apparatus and image processing method |
| US20090095912A1 (en) * | 2005-05-23 | 2009-04-16 | Slinger Christopher W | Coded aperture imaging system |
| CN113485010A (en) * | 2021-07-16 | 2021-10-08 | 南开大学 | Image encryption physical optical system and method based on optical lens |
| KR20220142204A (en) * | 2021-04-14 | 2022-10-21 | 에스케이플래닛 주식회사 | Operation apparatus for image sensor, and control method thereof |
Family Cites Families (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2018067212A2 (en) * | 2016-06-20 | 2018-04-12 | Massachusetts Institute Of Technology | Methods and systems for time-encoded multiplexed imaging |
-
2023
- 2023-10-31 US US18/498,677 patent/US12512959B2/en active Active
- 2023-11-01 JP JP2025523937A patent/JP2025537675A/en active Pending
- 2023-11-01 WO PCT/US2023/036578 patent/WO2024097280A1/en not_active Ceased
Patent Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20090095912A1 (en) * | 2005-05-23 | 2009-04-16 | Slinger Christopher W | Coded aperture imaging system |
| JP2007073012A (en) * | 2005-09-09 | 2007-03-22 | Iwate Univ | Random number generation system |
| US20090016645A1 (en) * | 2007-03-19 | 2009-01-15 | Sony Corporation | Image processing apparatus and image processing method |
| KR20220142204A (en) * | 2021-04-14 | 2022-10-21 | 에스케이플래닛 주식회사 | Operation apparatus for image sensor, and control method thereof |
| CN113485010A (en) * | 2021-07-16 | 2021-10-08 | 南开大学 | Image encryption physical optical system and method based on optical lens |
Also Published As
| Publication number | Publication date |
|---|---|
| US12512959B2 (en) | 2025-12-30 |
| JP2025537675A (en) | 2025-11-20 |
| US20240154784A1 (en) | 2024-05-09 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| Priya et al. | A novel visual medical image encryption for secure transmission of authenticated watermarked medical images | |
| JP7727945B2 (en) | Image masking device and image masking method | |
| US9330272B2 (en) | Head-mounted display apparatus with enhanced security and method for accessing encrypted information by the apparatus | |
| US11722641B2 (en) | Digital image inference system with enhanced privacy protection | |
| KR102066778B1 (en) | Image processing system comprising image transmitter and image receiver based on internet of things, and image processing method using the same | |
| Lyu | Natural image statistics in digital image forensics | |
| JPWO2017026356A1 (en) | Image processing apparatus, image processing method, and program | |
| Bhatnagar et al. | Enhancing the transmission security of biometric images using chaotic encryption | |
| Bhatnagar et al. | Biometric inspired multimedia encryption based on dual parameter fractional fourier transform | |
| CN113630587A (en) | Real-time video sensitive information protection system and method thereof | |
| CN114124345A (en) | Data homomorphic encryption inference method, device, equipment, system and storage medium | |
| US12512959B2 (en) | Optical encryption camera | |
| Riaz et al. | Enhanced image encryption techniques using modified advanced encryption standard | |
| CN116756750A (en) | Medical sensitive data acquisition desensitization method | |
| CN116383793A (en) | Face data processing method, device, electronic equipment and computer readable medium | |
| Guo et al. | AISM: An adaptable image steganography model with user customization | |
| WO2021175714A1 (en) | Scrambling of regions of interest in an image to preserve privacy | |
| CN116436619B (en) | Method and device for verifying streaming media data signature based on cryptographic algorithm | |
| Henry et al. | Privacy-Preserving Face Recognition and Verification With Lensless Camera | |
| CN119449965B (en) | Video privacy protection method, video playback method and related devices | |
| CN114973373B (en) | A face recognition method integrating Euclidean distance and homomorphic encryption | |
| KR20210084803A (en) | Method for Restoring Distortion Video Based on Facial Recognition | |
| Priyanka et al. | A steganographic system for embedding image and encrypted text | |
| Naik et al. | Smart and secure locker system | |
| Ameen | Face Recognition Integrated with Chaotic Encryption for Secure Electronic Election Application |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 23886674 Country of ref document: EP Kind code of ref document: A1 |
|
| ENP | Entry into the national phase |
Ref document number: 2025523937 Country of ref document: JP Kind code of ref document: A |
|
| WWE | Wipo information: entry into national phase |
Ref document number: 2025523937 Country of ref document: JP |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 23886674 Country of ref document: EP Kind code of ref document: A1 |
