2D Code Security via Protocol Identifier Replacement
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Two-dimensional codes used in public locations are vulnerable to security breaches, such as tampering or hacking, which can lead to users being redirected to unintended or malicious web pages, potentially infecting their devices with viruses.
Innovation Solution
Implementing a method to authenticate printed documents with 2-D codes by detecting a secure protocol identifier, replacing it with a secure server access protocol, and verifying the certificate's validity to ensure the intent can be trusted, using software applications on electronic devices.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a 2-D code is used to encode a resource locator in public locations, then the ease of operation and information sharing is improved, but the reliability and security of the intent are worsened due to vulnerability to hacking and tampering
Solution Approach 1:
The patent applies preliminary action by embedding a protocol identifier in the 2-D code that designates a secure protocol before the user scans the code. This pre-established security mechanism ensures that when the resource locator is accessed, it automatically routes through a secure server with valid SSL certificate verification, preventing hacker interference at the point of access
Solution Approach 2:
The patent introduces an intermediary secure server that acts as a mediator between the 2-D code and the final resource. The secure server with valid SSL certificate verifies the authenticity of the resource locator before allowing access, thereby protecting users from malicious sites while maintaining easy access to legitimate resources
2Reliability
If a secure protocol identifier is embedded in the 2-D code, then the reliability and security are improved, but the device complexity and processing requirements are worsened
Solution Approach 1:
The patent applies partial action by implementing security verification only when a protocol identifier designating a secure protocol is detected in the 2-D code. The system performs selective SSL certificate validation rather than universal verification, reducing unnecessary processing complexity while maintaining security for codes that require it
Solution Approach 2:
The patent enables self-service by allowing the electronic device to automatically detect the protocol identifier, replace it with the appropriate secure protocol, and verify the SSL certificate without requiring user intervention or complex external verification systems. The device handles the security process autonomously
Data Source
AI summary
An article of manufacture comprises a printed document associated with a source entity. The printed document is readable by a software application of an electronic device. The printed document includes a plain text content portion and a two-dimensional code (2-D code) that includes data encoded therein which is readable by the software application of the electronic device. The encoded data includes a resource locator to an intent. The resource locator to an intent includes a protocol identifier designating a secure 2-D code which is detectable by the software application of the electronic device for electronic replacement by the software application with a protocol identifier used to access a secure server of the source entity located at a host portion of the resource locator. The protocol identifier is a protocol identifier associated with URL specifications.


