Group Messaging Key Exchange With Blockchain Escrow Fallback
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing encryption techniques, such as Public Key Infrastructure (PKI), are vulnerable to 'man-in-the-middle' attacks and single points of failure due to the distribution and storage of public keys by key escrow systems.
Innovation Solution
Utilizing a private blockchain system to securely distribute and store public keys, ensuring only authorized entities have access, and implementing a double ratchet technique for secure key exchange.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If public keys are distributed and stored by key escrow systems, then key management is simplified, but security is compromised due to single point of failure and man-in-the-middle attacks
Solution Approach 1:
The patent introduces a blockchain-based intermediary system that acts as a decentralized mediator for public key distribution. Instead of relying on a single key escrow system, the blockchain network distributes key management across multiple nodes, eliminating the single point of failure while maintaining ease of key distribution and retrieval
Solution Approach 2:
The patent segments the centralized key escrow function into distributed blockchain nodes. Each node holds a portion of the key management responsibility, and public keys are stored across the distributed ledger rather than in a single location, thereby maintaining operational simplicity while enhancing security through decentralization
2Productivity
If a centralized key escrow system is used, then key distribution is efficient, but the system becomes vulnerable to attacks and failures
Solution Approach 1:
The patent divides the centralized key escrow system into multiple distributed blockchain nodes. Public keys are segmented across the distributed ledger, allowing efficient key distribution through the network while eliminating the vulnerability associated with centralized storage. The segmentation ensures that no single node represents a critical attack target
Solution Approach 2:
The blockchain network serves as a decentralized intermediary that facilitates efficient public key distribution without creating a single point of failure. The distributed consensus mechanism ensures that key distribution remains efficient while the intermediary nature of the blockchain prevents direct attacks on a centralized authority
3Device complexity
If public keys are stored in a centralized system, then access control is simplified, but the integrity of keys cannot be guaranteed
Solution Approach 1:
The patent implements feedback mechanisms through blockchain consensus validation. Each public key stored on the blockchain undergoes validation by network nodes, and the immutable ledger provides continuous feedback on key integrity. This decentralized feedback system ensures key integrity without requiring complex centralized access control mechanisms
Solution Approach 2:
The blockchain acts as an intermediary that simplifies access control while guaranteeing key integrity. The distributed ledger provides a transparent and immutable record of all public keys, allowing simplified access control through cryptographic proofs while the blockchain's consensus mechanism continuously verifies and maintains key integrity
Data Source
AI summary
A system described herein may provide for secure group messaging between multiple participant devices, in which two or more of the participant devices support blockchain-based techniques for the secure sharing of keys used to secure the group messaging, and in which one or more of the participant devices (e.g., a third device) do not support such techniques. A key escrow system may maintain keys associated with the third device, and the other devices of the group messaging system may retrieve such keys from the key escrow system. Such other devices may attempt to obtain keys associated with the third device from a blockchain and may retrieve such keys from the key escrow system when the retrieval from the blockchain is unsuccessful. The other devices may additionally share their respective keys to the blockchain and the key escrow system, or the key escrow system may “pull” such keys from the blockchain.


