Computing Machine Memory Segmentation for Malware Isolation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing computing machines connected to the internet or networks are vulnerable to hacking, malware, and viruses, which can lead to data theft, corruption, and remote control by hackers, causing significant financial losses and security breaches.
Innovation Solution
The proposed computing machine design incorporates a New Use BIOS that segregates main memory and storage into independent, unalterable sections for operating system and internet browser processing, preventing external tampering and ensuring that only user-approved changes can occur, with downloadable files being quarantined and requiring user initiation for execution.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If computing machines are connected to the internet and networks for communication and data processing, then productivity and information exchange are improved, but vulnerability to hacking, malware, and viruses increases
Solution Approach 1:
The patent segments the computing machine into isolated memory sections: a first memory section for the operating system and a second memory section for internet browser software. This segmentation prevents malware or hackers who compromise one section from affecting the other, thereby maintaining productivity while reducing vulnerability to harmful factors.
2Productivity
If operating system and browser software share the same memory space for efficient processing, then productivity is improved, but security against remote control and data theft deteriorates
Solution Approach 1:
The patent divides the memory into distinct sections: the first memory section contains the operating system while the second memory section contains the internet browser software. This segmentation allows both software components to operate efficiently in their dedicated spaces while preventing remote control attacks from propagating across the entire system, thus maintaining both productivity and reliability.
3Reliability
If memory is made unalterable to prevent tampering and hacking, then security is improved, but ease of operation and software updates deteriorate
Solution Approach 1:
The patent creates a first memory section for the operating system with unalterable characteristics that protects against tampering and hacking. Simultaneously, it provides a second memory section for internet browser software that can be updated. This segmentation maintains security while preserving ease of operation for necessary software updates.
Solution Approach 2:
The patent applies different quality characteristics to different parts of the memory system: the first memory section has unalterable properties for security-critical operating system protection, while the second memory section has alterable properties to allow browser software updates. This local quality differentiation resolves the contradiction between security and ease of operation.
4Reliability
If security measures are strengthened to prevent virus injection and malware installation, then reliability is improved, but device complexity increases
Solution Approach 1:
The patent implements a segmented memory structure with a first memory section for the operating system and a second memory section for internet browser software. This segmentation provides inherent protection against virus injection and malware installation by isolating critical system components, achieving improved reliability through a relatively simple structural division rather than complex security mechanisms.
Data Source
AI summary
A computing machine that minimizes problems from external files, such as software virus and malware is disclosed. The computing machine has local operations separated from external operations, such that the external files are isolated from the hardware associated with the local operations. The local side hardware may include a Memory One, a Main Memory 3, and a Storage One device. The external side hardware may include a Memory Two, a Main Memory 4, and a Storage Two device. The internal side hardware are not in communication with the external side hardware. Operating system software may be stored in Memory One or in a secure partition of Storage One device. Data from local operations and local application programs may be stored in Storage One device. Internet browsing software may be stored in Memory Two or in a secure partition of Storage Two device.


