2D Code Security via Protocol Identifier Replacement

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Two-dimensional codes used in public locations are vulnerable to security breaches, such as tampering or hacking, which can lead to users being redirected to unintended or malicious web pages, potentially infecting their devices with viruses.

Innovation Solution

Implementing a method to authenticate printed documents with 2-D codes by detecting a secure protocol identifier, replacing it with a secure server access protocol, and verifying the certificate's validity to ensure the intent can be trusted, using software applications on electronic devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a 2-D code is used to encode a resource locator in public locations, then the ease of operation and information sharing is improved, but the reliability and security of the intent are worsened due to vulnerability to hacking and tampering

Engineering Contradiction:
Improveease of operationVSAvoidreliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies preliminary action by embedding a protocol identifier in the 2-D code that designates a secure protocol before the user scans the code. This pre-established security mechanism ensures that when the resource locator is accessed, it automatically routes through a secure server with valid SSL certificate verification, preventing hacker interference at the point of access

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary secure server that acts as a mediator between the 2-D code and the final resource. The secure server with valid SSL certificate verifies the authenticity of the resource locator before allowing access, thereby protecting users from malicious sites while maintaining easy access to legitimate resources

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a secure protocol identifier is embedded in the 2-D code, then the reliability and security are improved, but the device complexity and processing requirements are worsened

Engineering Contradiction:
ImprovereliabilityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies partial action by implementing security verification only when a protocol identifier designating a secure protocol is detected in the 2-D code. The system performs selective SSL certificate validation rather than universal verification, reducing unnecessary processing complexity while maintaining security for codes that require it

Inventive Principle:
Principle #16Partial or excessive action

Solution Approach 2:

The patent enables self-service by allowing the electronic device to automatically detect the protocol identifier, replace it with the appropriate secure protocol, and verify the SSL certificate without requiring user intervention or complex external verification systems. The device handles the security process autonomously

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS8838983B2Article of manufacture for securing data in 2D bar codes using SSL
Publication Date: 2014.09.16 THE VANGUARD GRP INC
  • US8838983B2 patent drawing
  • US8838983B2 patent drawing
  • US8838983B2 patent drawing

AI summary

An article of manufacture comprises a printed document associated with a source entity. The printed document is readable by a software application of an electronic device. The printed document includes a plain text content portion and a two-dimensional code (2-D code) that includes data encoded therein which is readable by the software application of the electronic device. The encoded data includes a resource locator to an intent. The resource locator to an intent includes a protocol identifier designating a secure 2-D code which is detectable by the software application of the electronic device for electronic replacement by the software application with a protocol identifier used to access a secure server of the source entity located at a host portion of the resource locator. The protocol identifier is a protocol identifier associated with URL specifications.