Interweaving Dual Cryptographic Algorithms for Key Space Expansion

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing cryptographic systems, such as those using AES or DES, are vulnerable to malign users decrypting and re-encrypting software packages with alternative keys, allowing them to resell the software as their own, due to the known key-schedule being exploited.

Innovation Solution

A cryptographic system that interweaves two different cryptographic algorithms, where both keys contribute to the key space, keeping the results in an encrypted format, and uses a validation unit to ensure only authorized keys are used, making it difficult for attackers to find alternative working keys.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of manufacture

If a standardized cipher (AES or DES) is used to encrypt software packages, then the encryption process is simple and well-understood, but malign users can decrypt and re-encrypt the package with alternative keys since the key-schedule is known

Engineering Contradiction:
Improveease of encryptionVSAvoidsoftware protection
Core Design Contradiction:
Ease of manufactureVSReliability

Solution Approach 1:

The patent combines multiple cryptographic algorithms (a first cryptographic algorithm and a second cryptographic algorithm) into a single integrated encryption process. The key representation includes both a first key and a second key, and the step unit performs steps of both algorithms simultaneously, merging their protective effects into one unified system that prevents the weaknesses of individual algorithms from being exploited.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The encryption system uses a composite cryptographic structure where two different cryptographic algorithms work together. The key representation is a composite of two keys, and the encryption process integrates steps from both algorithms, creating a composite protective mechanism that is more resistant to attacks than either algorithm alone.

Inventive Principle:
Principle #40Composite materials

2Reliability

If the key space is enlarged by using multiple keys, then security against brute-force attacks increases, but the complexity of the cryptographic system increases

Engineering Contradiction:
Improvekey space securityVSAvoidcryptographic system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges two cryptographic algorithms and their key management into a single integrated system. The step unit performs steps of both algorithms in an integrated manner, and the key representation combines both keys into one unified structure, achieving enlarged key space without proportionally increasing system complexity.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The step unit serves multiple functions simultaneously: it performs steps of the first cryptographic algorithm, performs steps of the second cryptographic algorithm, and manages both keys through a unified key representation. This multi-functionality reduces the need for separate complex components for each algorithm.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10469245B2Cryptographic system and method
Publication Date: 2019.11.05 KONINKLIJKE PHILIPS NV
  • US10469245B2 patent drawing
  • US10469245B2 patent drawing

AI summary

A system for cryptographic processing comprises message unit (1, 7, 12) for providing a first message representation (3, 6, 11), wherein the first message representation is a representation of a message. The system comprises key unit (2) for providing a key representation (4, 9, 14), wherein the key representation is an encrypted representation of a first key of a first cryptographic algorithm and a second key of a second cryptographic algorithm, wherein the first cryptographic algorithm is different from the second cryptographic algorithm. The system comprises step unit (5, 10, 15) for performing a step of the first cryptographic algorithm and a step of the second cryptographic algorithm based on the first message representation (3, 6, 11) and the key representation, to obtain a second message representation (6, 11, 16).