Contactless Card Cryptographic Authentication for Storage Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Portable storage devices pose a security risk due to their compact size, making them easily misplaced or accessed by unauthorized individuals, leading to potential data breaches without adequate security measures.

Innovation Solution

Implementing cryptographic authentication using contactless cards with integrated storage devices, where a cryptogram is generated and verified by a server to unlock the storage device, ensuring secure access through wireless communication and key diversification techniques.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If storage devices are made compact and portable, then ease of operation and mobility are improved, but security and risk of unauthorized access deteriorate

Engineering Contradiction:
ImproveportabilityVSAvoidunauthorized access
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The storage device is pre-configured with cryptographic authentication mechanisms, including encryption keys and authentication protocols, before deployment. This preliminary setup enables automatic security verification when the device is accessed, preventing unauthorized access without requiring user intervention or reducing portability.

Inventive Principle:
Principle #10Preliminary action

2Object-affected harmful factors

If cryptographic authentication is implemented, then security against unauthorized access is improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication mechanism
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent replaces traditional mechanical or manual authentication methods (such as physical keys or password prompts) with cryptographic authentication using encryption algorithms and digital signatures. This substitution provides stronger security while maintaining a streamlined user interface, as the cryptographic verification occurs automatically in the background without adding visible complexity to the device operation.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS20240333511A1Cryptographic authentication to control access to storage devices
Publication Date: 2024.10.03 CAPITAL ONE SERVICES LLC
  • US20240333511A1 patent drawing
  • US20240333511A1 patent drawing
  • US20240333511A1 patent drawing

AI summary

Systems, methods, apparatuses, and computer-readable media for cryptographic authentication to control access to storage devices. An applet executing on a processor of a contactless card may receive, via a wireless communications interface of the contactless card, a request to access a storage device of the contactless card, where the storage device is in a locked state. The applet may generate a cryptogram based on the request and transmit the cryptogram to a computing device via the wireless communications interface. The applet may receive, from the computing device, an indication specifying that a server decrypted the cryptogram. The applet may transmit, to a controller of the storage device and based on the indication specifying that the server decrypted the cryptogram, an indication specifying to unlock the storage device. The controller may transition the storage device from the locked state to an unlocked state based on the indication received from the applet.