Document Security via Hybrid Fragmentation and Digital Watermarking
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for protecting sensitive information, such as encryption and firewalls, are ineffective in preventing insiders from copying and transmitting documents, and digital watermarks are not discernible to humans, making it difficult to track unauthorized distribution.
Innovation Solution
A system that fragments sensitive documents into shreds, stores them in distributed repositories, and generates a human-indiscernible digital watermark representing the security policy, which is embedded in the document image displayed to authorized users, allowing tracking of unauthorized copies.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If digital watermarking is used to embed information into documents, then document authenticity and ownership can be verified, but the watermark information is human indiscernible making it difficult to track unauthorized distribution
Solution Approach 1:
The patent embeds multiple layers of watermarks within the document image - a visible watermark layer that humans can see and an invisible watermark layer containing tracking information that machines can detect. The invisible watermark is nested within the visible watermark structure, allowing both functions to coexist - the visible layer provides immediate identification while the nested invisible layer enables precise tracking of unauthorized distribution
Solution Approach 2:
The patent introduces an intermediary processing system that converts the invisible watermark data into trackable visible forms. When a document is accessed, the system processes the embedded invisible watermark and generates a visible representation that can be detected by authorization devices, thereby bridging the gap between machine-readable tracking data and human-visible verification
2Reliability
If sensitive documents are stored in distributed repositories with security policies, then unauthorized access is prevented, but the complexity of document management and retrieval increases
Solution Approach 1:
The patent divides the document management system into separate functional modules: a watermark generation module that embeds tracking information, an authorization module that verifies credentials, and a document retrieval module that assembles fragments. This segmentation allows each module to specialize in one aspect of security, reducing the complexity burden on any single component while maintaining overall system reliability
Solution Approach 2:
The patent performs preliminary watermark embedding and security policy attachment during the document storage phase, before retrieval occurs. By pre-configuring the tracking watermarks and security restrictions, the system eliminates the need for complex real-time processing during document access, thereby reducing operational complexity while maintaining strong security controls
3Object-affected harmful factors
If firewalls and encryption are used to protect sensitive information, then casual outsiders and hackers are blocked, but insiders can still copy and transmit documents using third-party services
Solution Approach 1:
The patent implements a feedback mechanism through embedded watermarks that automatically track document transmission. When a watermarked document is copied or transmitted through any channel including third-party services, the watermark remains intact and provides feedback information about the unauthorized transmission. This feedback loop enables automatic detection and tracing of insider copying activities that bypass traditional firewalls and encryption
Solution Approach 2:
The patent replaces reliance on mechanical security barriers (firewalls, encryption keys) with an information-based security approach using embedded watermarks. Instead of trying to physically block document transmission, the system substitutes a tracking mechanism that identifies and traces unauthorized copies regardless of the transmission method, thereby countering insider threats that use third-party services to bypass traditional mechanical security controls
Data Source
AI summary
A method for managing a secured document. The method includes storing and retrieving the secured document based on hybrid fragmentation and replication scheme to provide user viewing of the secured document by (a) generating an image representing human discernible content of the secured document, (b) modifying the image to generate a modified image that is embedded with a digital watermark, where the digital water mark is human indiscernible and represents a security policy extracted from the secured document, and (c) sending, to a secured device for displaying to the requesting user, the modified image embedded with the digital watermark.


