Decentralized Data Security via Cryptographic Partitioning

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional personal identity management systems are inadequate due to outdated data storage and management techniques, leading to insecure protection of personal data, increased risk of hacks, and declining user trust in organizations that handle personal identifiable information.

Innovation Solution

A data management system that employs cryptographic functions such as hash functions, digital signature schemes, and encryption to partition and manage data securely, generating cryptographic data and IDs that prevent brute-force attacks and ensure data privacy by using decentralized storage and Verifiable Random Functions, allowing for secure data storage, retrieval, and validation.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If data is stored centrally in conventional systems, then data management is simplified, but security and reliability deteriorate due to single point of compromise

Engineering Contradiction:
Improvedata management simplicityVSAvoiddata security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments personal data into multiple partitions and distributes them across multiple storage locations in a decentralized network. Each partition is encrypted and can be independently stored, eliminating the single point of compromise while maintaining data management capabilities through cryptographic coordination.

Inventive Principle:
Principle #1Segmentation

2Reliability

If data is encrypted to improve security, then data protection is enhanced, but ease of access and retrieval deteriorates

Engineering Contradiction:
Improvedata protectionVSAvoiddata access
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary encryption of data partitions before storage, and pre-establishes cryptographic key management structures. This allows secure data protection to be built-in from the start, while retrieval is facilitated through pre-configured cryptographic mechanisms that enable efficient decryption and verification without compromising security.

Inventive Principle:
Principle #10Preliminary action

3Ease of operation

If conventional security measures like passwords and key management are used, then authentication is established, but security reliability deteriorates due to frequent breaches and stolen credentials

Engineering Contradiction:
Improveauthentication mechanismVSAvoidsecurity protection
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces conventional mechanical security mechanisms (passwords, key management software, two-factor authentication) with cryptographic-based security mechanisms. This includes using cryptographic signatures, hash functions, and decentralized key management that are mathematically secure and resistant to the types of breaches that plague conventional systems.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

4Productivity

If personal data is stored in unencrypted or easily decrypted form for quick access, then data retrieval is fast, but security and privacy protection deteriorates

Engineering Contradiction:
Improvedata retrieval speedVSAvoidprivacy protection
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The system changes the cryptographic parameters and encryption methods used for different data partitions, employing advanced encryption standards and techniques. This allows for secure storage of personally identifiable information while maintaining retrieval efficiency through optimized cryptographic operations and pre-established access mechanisms.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS11151259B2Method and system for data security, validation, verification and provenance within independent computer systems and digital networks
Publication Date: 2021.10.19 ZAMNA TECH LTD
  • US11151259B2 patent drawing
  • US11151259B2 patent drawing
  • US11151259B2 patent drawing

AI summary

A system and method for reliably and securely recording and storing all attributes of data, such as for the identification and authorization of individual identity as well as attributes relating to it and personal data including but not limited to individual's physical description, bank details, travel history, etc. (the “Personally Identifiable Information “PII”). PII can be difficult to manage in networks where correlation between data sources is required. Thus, in some embodiments, the system combines a distributed database to create a framework for a robust security. The system manages the distributed database to associate transactions, or actions, using data, digital signatures, and/or cryptographic keys, which can be unique to an individual.