Digital File Format Conversion for Malicious Code Elimination
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current cybersecurity measures are inadequate in preventing the spread of malicious code, as they rely on detecting vulnerabilities and quarantining known malicious files, failing to address attacks exploiting unknown file format vulnerabilities.
Innovation Solution
The approach involves converting digital files to a different format that removes metadata and data structures, creating a sterilized copy that preserves visual or auditory content, thereby ensuring the file is trusted within secure areas without carrying malicious code.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If file scanning and quarantine techniques are used to detect malicious code, then known viruses can be identified and contained, but attacks exploiting unknown file format vulnerabilities cannot be prevented
Solution Approach 1:
The patent applies preliminary action by converting files to a different format before they can be executed or cause harm. The conversion process removes potentially malicious code while preserving the visual or auditory content, preventing unknown vulnerabilities from being exploited in the first place rather than detecting them after the fact
Solution Approach 2:
The patent extracts and removes potentially malicious code from files through format conversion. By converting to a different format, the system strips away metadata and data structures that may contain malicious elements while retaining the essential content, effectively separating harmful components from useful content
2Reliability
If file format conversion is performed to remove malicious code, then file trustworthiness is improved, but processing time and system complexity increase
Solution Approach 1:
The patent creates a converted copy of the original file in a different format. This copy serves as a safe version that can be distributed and executed without risking malicious code execution. The copying approach allows the original file to remain unchanged while providing a protected alternative
Solution Approach 2:
The patent changes the file format parameters during conversion, transforming the file from one format to another. This parameter change fundamentally alters the file structure in a way that removes malicious code while preserving content, achieving security through format transformation rather than complex scanning algorithms
3Object-affected harmful factors
If metadata and data structures are removed through format conversion, then malicious code is eliminated, but file functionality and information may be lost
Solution Approach 1:
The patent selectively extracts and removes only the harmful metadata and data structures while preserving the essential content. The conversion process distinguishes between elements that may contain malicious code and the actual useful content, removing only the former
Solution Approach 2:
The patent converts the file format in a way that transforms potential harm into benefit. The conversion process inadvertently removes malicious elements while preserving or even enhancing the usability of the content in the new format, turning a security risk into a security advantage
Data Source
AI summary
Approaches for processing a digital file in a manner designed to minimize exposure of any malicious code contained therein. A digital file resides with a virtual machine. When the virtual machine receives an instruction to print, fax, or email the digital file, the virtual machine creates, from the digital file existing in an original format, a copy of the digital file in a different format within the virtual machine. The different format preserves a visual presentation of the digital file without supporting metadata or file format data structures of the original format. The virtual machine instructs the host OS to print the copy of the digital file, send a facsimile of the copy of the digital file, or email the copy of the digital file. The host OS may consult policy data in determining how to carry out the request vis-à-vis the digital file.


