Cognitive Tokens for Cyber Forensic Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Cyber forensic specialists face challenges in accessing necessary computer applications and data during investigations due to security concerns, leading to potential data compromise and incomplete evidence collection, as comprehensive access can violate security protocols and result in missing essential data.

Innovation Solution

A cognitive analysis system generates restricted access tokens specific to the cyber forensic case, specialist, and application, granting access only to necessary data and operations for the duration required to perform the investigation, ensuring limited access and secure data handling.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of information

If comprehensive access to all applications is granted to cyber forensic specialists, then complete evidence collection is enabled, but security violations occur and confidential data is exposed

Engineering Contradiction:
Improvecompleteness of evidence collectionVSAvoidsecurity violations and data exposure
Core Design Contradiction:
Loss of informationVSObject-affected harmful factors

Solution Approach 1:

The patent segments access rights by creating specialized access tokens that grant specialists access to specific applications, data sets, and features based on case requirements. Each token is customized to provide only the necessary access scope, dividing the comprehensive access into controlled segments that prevent security violations while enabling complete evidence collection within permitted boundaries

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies local quality by tailoring access permissions to specific cases, specialists, and applications. Each access token contains customized permissions that match the exact needs of a particular investigation, ensuring that specialists receive appropriate access levels for each specific context rather than uniform comprehensive access

Inventive Principle:
Principle #3Local quality

2Object-affected harmful factors

If restricted access is granted to specific applications only, then security is maintained, but essential data may be missing from the investigation

Engineering Contradiction:
Improvesecurity maintenanceVSAvoidmissing essential data
Core Design Contradiction:
Object-affected harmful factorsVSLoss of information

Solution Approach 1:

The patent implements dynamic access management where access tokens are created and configured based on real-time case requirements and application analysis. The system dynamically determines the appropriate scope of access needed for each investigation, adjusting permissions to match the specific data and features required while maintaining security boundaries

Inventive Principle:
Principle #15Dynamics

3Measurement precision

If cognitive analysis is performed to determine precise access requirements, then access precision is improved, but system complexity increases

Engineering Contradiction:
Improveaccess requirement precisionVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent performs preliminary cognitive analysis of case details and application requirements before generating access tokens. By analyzing and determining the necessary access scope in advance, the system establishes precise access requirements upfront, reducing the need for complex real-time adjustments and simplifying the overall access management process

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11790093B2Cognitive tokens for authorizing restricted access for cyber forensics
Publication Date: 2023.10.17 BANK OF AMERICA CORP
  • US11790093B2 patent drawing
  • US11790093B2 patent drawing
  • US11790093B2 patent drawing

AI summary

Restricted access tokens are cognitively generated that provide cyber forensic specialists restricted access to applications that require investigation. Cognitive analysis is performed on case details and, in some instances, evidence logs of previously investigated applications to determine parties involved in the investigation and applications requiring investigation. In response to identifying one of the applications, the case details, applicable evidence logs and the identified application are cognitively analyzed to determine operations that are required to be performed in the application and a time required to perform the operations. A restricted access token is generated that is specific to the assigned specialist, the case, and the application. The restricted access token grants the assigned specialist access to only data in the application associated with the one or more parties, rights to perform only the one or more operations in the application, and access to the initial application for a usage time that is based on the time required to perform the operations.