Active Data Security System for Suspicious Download Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data security measures, such as firewalls and encryption, are insufficient against advanced adversarial attacks, making it difficult to detect and prevent unauthorized access to sensitive data.

Innovation Solution

A continuous active data security system comprising an active receiver module, an active marker module, an active transmitter module, and an active profiler module, which collaboratively monitor data requests and actions, detect suspicious activities, apply markers to data files, and transmit warnings and termination commands to prevent unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional firewalls and encryption are used, then basic data protection is provided, but they are insufficient against advanced adversarial attacks

Engineering Contradiction:
Improvedata securityVSAvoiddefense capability against advanced attacks
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamic security measures including real-time monitoring of data requests, adaptive response actions that adjust based on detected threats, and continuous updating of security protocols. The system transitions from static firewall/encryption to dynamic detection and response mechanisms that adapt to evolving adversarial tactics.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system incorporates feedback loops where security actions are taken based on detected suspicious activities, and the outcomes of these actions are continuously monitored and fed back into the system. This enables the security mechanism to learn from past incidents and improve its detection and response capabilities over time.

Inventive Principle:
Principle #23Feedback

2Measurement precision

If real-time monitoring and detection mechanisms are implemented, then suspicious activities can be detected promptly, but system complexity increases

Engineering Contradiction:
Improvedetection accuracyVSAvoidsystem structure
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent divides the security system into distinct functional modules: data request monitoring components, suspicious activity detection components, and response action execution components. This segmentation allows each module to specialize in specific detection and response tasks, improving overall detection accuracy while managing system complexity through modular design.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system introduces intermediary components that act as mediators between the monitoring functions and the response mechanisms. These intermediaries process and analyze data requests, filter suspicious activities, and coordinate response actions, thereby simplifying the overall system architecture while maintaining high detection precision.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Speed

If automated security responses are implemented, then response time to threats is reduced, but false positives may increase

Engineering Contradiction:
Improveresponse timeVSAvoidfalse alarm rate
Core Design Contradiction:
SpeedVSLoss of information

Solution Approach 1:

The patent implements preliminary analysis and verification steps before executing automated security responses. The system pre-configures response protocols and pre-analyzes detected suspicious activities to assess their legitimacy, ensuring that automated responses are triggered only after thorough verification, thereby reducing false positives while maintaining fast response times.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system dynamically adjusts detection parameters and response thresholds based on the severity and nature of detected threats. By changing parameters such as detection sensitivity and response activation thresholds, the system optimizes the balance between rapid response and minimizing false alarms, adapting to different threat scenarios.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS20250047700A1Systems, methods, and computer-readable media for data security
Publication Date: 2025.02.06 NASDAQ INC
  • US20250047700A1 patent drawing
  • US20250047700A1 patent drawing
  • US20250047700A1 patent drawing

AI summary

Systems and methods are provided for data security. A server system provides data security using one or more processor devices, one or more communication interfaces, and one or more memory devices including computer-executable instructions. Those instructions cause the one or more processor devices to: monitor one or more requests or activities of a computing device; compare the monitored one or more requests or activities with a database of predetermined characteristics to determine whether the monitored one or more requests or activities indicates that the computing device downloaded or attempted to download more than a threshold number of data files or objects; and determine that the one or more requests or activities is suspicious when the comparing determines that the one or more requests or activities indicates that the computing device downloaded or attempted to download more than the threshold number of data files or objects, which causes a response to hinder the monitored one or more requests or activities.