Homomorphic Database Querying via Anonymization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing database query systems face significant delays and performance issues when working with encrypted data, as they require decryption and re-encryption, which consumes vast processing resources and does not offer robust analytical capabilities over encrypted data.

Innovation Solution

A method and system for querying anonymized databases without decrypting the data, using deterministic encryption and mathematical transformations to allow queries and analyses on encrypted data, maintaining query performance through indexing and anonymization of all columns, including sensitive and non-sensitive fields, to prevent re-identification attacks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If data is encrypted to secure it from improper access, then security is improved, but query performance deteriorates due to decryption and re-encryption steps consuming vast processing resources

Engineering Contradiction:
Improvedata securityVSAvoidquery performance
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent applies preliminary action by pre-processing data during the anonymization phase to create a transformed version that preserves queryability. The anonymization function is applied beforehand to all data, creating an anonymized database that can be queried directly without decryption. This preliminary transformation enables future queries to execute efficiently on the pre-processed anonymized data while maintaining security.

Inventive Principle:
Principle #10Preliminary action

2Ease of operation

If data is decrypted for use by legitimate users, then ease of operation is improved, but security deteriorates as decrypted data becomes vulnerable to improper access

Engineering Contradiction:
Improvedata accessibilityVSAvoiddata security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces an intermediary - the anonymization function - that transforms data into an intermediate state between encrypted and plaintext. This anonymized form acts as a mediator that allows legitimate queries to execute efficiently while preventing improper access. The anonymized data serves as an intermediary representation that preserves necessary query capabilities without exposing the original sensitive information.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If existing methods perform operations on encrypted data directly, then security is maintained, but analytical capabilities and performance deteriorate compared to unencrypted data

Engineering Contradiction:
Improvedata securityVSAvoidanalytical capabilities
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent applies parameter changes by transforming the data representation through anonymization functions that modify the parameters of the data while preserving its queryable structure. The anonymization process changes the parameters of data values (applying cryptographic transformations) in a way that maintains the ability to perform analytical operations and queries, enabling robust analytical capabilities over the transformed data while maintaining security.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS9946810B1Mathematical method for performing homomorphic operations
Publication Date: 2018.04.17 TREPETIN STAN
  • US9946810B1 patent drawing
  • US9946810B1 patent drawing
  • US9946810B1 patent drawing

AI summary

The present invention relates generally to a system and method of querying an anonymized database. More particularly, the invention provides a method and system for querying an anonymized database without the need to decrypt queried data while it's processed. Even more specifically, the invention provides a method and system of anonymizing a database such that it may be queried efficiently in near real time while still retaining the ability to not decrypt requested data while it's being processed.