Fictitious Code Generation for Data Leakage Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

It is challenging to promptly recognize data leakage from information systems, leading to delayed detection and potential widespread fraud, as the external environment is complex and difficult to monitor.

Innovation Solution

A risk management support device is connected to the information system, generating and using fictitious codes to monitor for leaks on the dark web, providing early alerts when these codes are found, thus facilitating timely intervention.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If confidential information is monitored in the external environment, then data leakage detection capability is improved, but monitoring complexity and difficulty increase due to the complicated external environment

Engineering Contradiction:
Improvedata leakage detection capabilityVSAvoidmonitoring complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by embedding fictitious codes into confidential information before it leaves the information system. This allows the monitoring system to simply search for these pre-placed codes in the external environment, transforming a complex leakage detection problem into a simple code-matching task. The fictitious codes act as early-warning markers that make leakage detection straightforward despite environmental complexity.

Inventive Principle:
Principle #10Preliminary action

2Measurement precision

If confidential information is monitored in the external environment, then data leakage detection capability is improved, but the difficulty of finding leaked information increases due to the complicated external environment

Engineering Contradiction:
Improvedata leakage detection capabilityVSAvoiddifficulty of finding leaked confidential information
Core Design Contradiction:
Measurement precisionVSDifficulty of detecting and measuring

Solution Approach 1:

The patent introduces fictitious codes as intermediaries between the confidential information and the monitoring process. These codes serve as unique identifiers that bridge the gap between the internal information system and the external monitoring environment, making it easy to track and detect leaked information without having to analyze complex external data directly.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Loss of time

If early detection of data leakage is implemented, then response time is improved, but the complexity of the monitoring system increases

Engineering Contradiction:
Improveresponse timeVSAvoidmonitoring system complexity
Core Design Contradiction:
Loss of timeVSDevice complexity

Solution Approach 1:

The patent extracts the detection function from complex monitoring analysis by using fictitious codes as standalone identifiers. Instead of building a complex system to analyze and understand leaked confidential information, the system simply extracts and searches for these simple code markers, dramatically reducing system complexity while enabling rapid detection.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS11144664B2Risk management support device
Publication Date: 2021.10.12 NOMURA RESEARCH INSTITUTE
  • US11144664B2 patent drawing
  • US11144664B2 patent drawing
  • US11144664B2 patent drawing

AI summary

To easily recognize a situation where confidential information has leaked from an information system.A risk management support server 400 that is connected, via a communication network, to an information system 100 managing confidential information includes a fictitious code request receiving unit configured to receive, from the information system 100, a request to acquire a fictitious code to be set in a part of items in the confidential information as well as a type of the item, a fictitious code generation unit configured to generate the fictitious code corresponding to a data format of the received type of the item, and a fictitious code providing unit configured to transmit the generated fictitious code to the information system 100.