Context-Aware Sensitive Content Obfuscation via Proximity Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Sensitive content displayed on computing devices is vulnerable to unauthorized access and leakage due to the risk of physical proximity of unauthorized users and inactivity of application windows, leading to potential data loss or leakage.

Innovation Solution

Implementing context-aware obfuscation techniques that detect physical proximity and application window inactivity to dynamically switch between obfuscated and non-obfuscated displays of sensitive content, using overlays, transformations, or redactions, and requiring authentication for unobfuscation requests.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If sensitive content is always displayed in non-obfuscated form for ease of access, then productivity and ease of operation are improved, but security and reliability deteriorate due to unauthorized access risks

Engineering Contradiction:
Improveaccess efficiencyVSAvoiddata security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system dynamically adjusts the display state of sensitive content between obfuscated and non-obfuscated forms based on real-time contextual factors such as user proximity detection, application window focus state, and authentication status. This dynamic adaptation allows the system to optimize both security and accessibility depending on the current operational context, resolving the contradiction between constant visibility and security protection.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes the display parameter (obfuscation state) of sensitive content based on detected contextual conditions. When security risks are detected (e.g., unauthorized user proximity, inactive windows), the system automatically transitions content from visible to obfuscated state, and vice versa when conditions are safe, thereby maintaining both productivity and security through parameter adaptation.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If obfuscation is applied to sensitive content to enhance security, then reliability is improved, but ease of operation deteriorates due to additional authentication requirements

Engineering Contradiction:
Improvedata securityVSAvoidaccess convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system implements periodic authentication checks and automatic obfuscation state transitions based on time-based inactivity thresholds. Instead of requiring continuous authentication, the system periodically reassesses security conditions and automatically adjusts obfuscation state, reducing operational burden while maintaining security through time-based triggers rather than constant user intervention.

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The system performs automatic authentication and obfuscation state management without requiring continuous user interaction. It autonomously detects contextual factors, determines security risks, and adjusts content visibility accordingly, eliminating the need for manual authentication requests while maintaining security through automated self-monitoring and self-adjustment mechanisms.

Inventive Principle:
Principle #25Self-service

3Reliability

If context-aware monitoring is implemented to detect unauthorized access risks, then security is improved, but device complexity increases

Engineering Contradiction:
Improvesecurity monitoringVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system leverages existing multi-functional components already present in modern computing devices, such as camera systems for proximity detection, operating system window management APIs for focus state monitoring, and built-in authentication frameworks. By repurposing these existing components for security monitoring purposes, the system achieves enhanced security without adding significant complexity, as the monitoring functions are integrated into already-present system capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11544415B2Context-aware obfuscation and unobfuscation of sensitive content
Publication Date: 2023.01.03 CITRIX SYSTEMS INC
  • US11544415B2 patent drawing
  • US11544415B2 patent drawing
  • US11544415B2 patent drawing

AI summary

Techniques are disclosed for context-aware obfuscation and unobfuscation of sensitive content in the display of the sensitive content. An example methodology implementing the techniques includes receiving content for display, the content including metadata indicative of a location of at least one item of sensitive content within the received content, and determining at least one contextual factor. The method also includes, responsive to a determination to obfuscate the item of sensitive content based on the at least one contextual factor, displaying the item of sensitive content in obfuscated form. The method may also include, responsive to a determination to not obfuscate the item of sensitive content based on at least one contextual factor, displaying a non-obfuscated version of the item of sensitive content.