False Desktop System for Secure External Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is a need for a system that allows secure access to a computing device while protecting private information, especially when users are required to grant access to external individuals, such as during travel, without exposing sensitive data.

Innovation Solution

A false desktop system within the computing device that can be activated through secure login measures, providing a secure and controlled environment by mimicking the user operating system, disabling access to sensitive areas, and optionally deleting or hiding private information, while allowing restricted access to external users.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If the user grants full access to the computing device to an external individual, then the external individual can verify the device's functionality and examine contents, but private information stored on the device is exposed

Engineering Contradiction:
Improveaccess to computing deviceVSAvoidexposure of private information
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent divides the computing device into multiple virtual desktops or workspaces, where a first desktop contains private information and a second desktop contains public information. The system segments access control by allowing the external individual to access only the second desktop while the first desktop remains protected, thus resolving the contradiction between providing access and protecting private information.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a desktop management system as an intermediary that controls and mediates access between the external individual and the computing device. This intermediary system enforces access policies, directing the external individual to the public desktop while preventing access to the private desktop, thereby enabling safe access without exposing sensitive data.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If the user erases the contents of the computing device to avoid exposing private information, then security is maintained, but the device loses its functionality and contents

Engineering Contradiction:
Improveprotection of private informationVSAvoidfunctionality of computing device
Core Design Contradiction:
Object-affected harmful factorsVSProductivity

Solution Approach 1:

Instead of erasing all contents, the patent segments the device into multiple desktops with different access levels. The private desktop retains its contents and functionality while being inaccessible to external individuals, and the public desktop provides verified functionality demonstration. This segmentation allows the device to maintain full functionality while protecting private information.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates a separate public desktop that copies or mirrors the essential functionality and appearance of the private desktop without containing the actual private data. This allows external individuals to verify device functionality through the public desktop while the private desktop remains intact and protected, eliminating the need to erase contents.

Inventive Principle:
Principle #26Copying

3Object-affected harmful factors

If the user implements strict access control measures to protect private information, then security is improved, but the ease of operation and user convenience deteriorates

Engineering Contradiction:
Improvesecurity of private informationVSAvoidconvenience of access
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent implements dynamic access control where the desktop management system can switch between different access modes based on the user's needs. When an external individual needs access, the system dynamically presents the public desktop; when the user needs full access, the system returns to the private desktop. This dynamic behavior maintains security while preserving user convenience.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The desktop management system provides multiple functions within a single interface, enabling both secure private access and controlled public access without requiring separate systems or complex procedures. The system universally handles different access scenarios, making security measures transparent and convenient for users.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS20240265078A1Security Enabled False Desktop Computing Environment
Publication Date: 2024.08.08 BANK OF AMERICA CORP
  • US20240265078A1 patent drawing
  • US20240265078A1 patent drawing
  • US20240265078A1 patent drawing

AI summary

A computing system for securely managing access to resources of a computing device receives an input at a secure login of a user interface. The computing system compares the input to a plurality of stored security measures and activates one of an operating system or a configuration of a false desktop system. A user interface of the false desktop system shares characteristics with a user interface of an operating system and restricts access to specified files, data stores, applications, networking functions, and/or ports associated with the computing system. When configured, the false desktop system or the operating system is enabled based on the location of the computing system. When configured, the false desktop system deletes files, data stores, and applications of the operating system.