ID Card Data Recovery via Segmented Binary Partitioning

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The ID card common authentication system is vulnerable to data leakage due to the need to store and transmit ID card data via a network, making it susceptible to cracking.

Innovation Solution

A data recovery device and system that partitions binary data into first and second data, where the second data is uploaded to a data management server with identification information, allowing the recovery of binary data while minimizing data exposure by only transmitting incomplete data over the network.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If ID card data is stored in a centralized database and transmitted via network, then authentication functionality is achieved, but data security deteriorates due to vulnerability to cracking

Engineering Contradiction:
Improveauthentication functionalityVSAvoiddata security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The ID card data is divided into multiple separate data sets that are distributed across different terminal devices. Each terminal device holds only a portion of the complete data, making it impossible to reconstruct the full data from any single terminal. This segmentation eliminates the need for a centralized database while maintaining authentication functionality.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

An intermediary authentication server is introduced that does not store actual ID card data but instead manages authentication requests by coordinating between terminal devices. The server facilitates authentication by directing requests to appropriate terminals without having access to the complete data sets, thus maintaining security while enabling authentication operations.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of information

If complete binary data is transmitted over network, then data recovery is enabled, but data leakage risk increases

Engineering Contradiction:
Improvedata recovery capabilityVSAvoiddata leakage risk
Core Design Contradiction:
Loss of informationVSObject-affected harmful factors

Solution Approach 1:

The binary data is segmented into multiple separate data sets distributed to different terminal devices. When data transmission is needed, only specific segments are transmitted rather than the complete data set. This ensures that even if transmission is intercepted, the attacker cannot reconstruct the complete original data from partial segments alone.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Instead of transmitting complete binary data, the system transmits only the necessary partial data sets required for specific operations. This partial transmission approach maintains data recovery capability for authorized operations while minimizing the amount of data exposed to potential leakage during network transmission.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS11443068B2Data recovery device, data management server, data management system, data recovery method and program
Publication Date: 2022.09.13 SATORI ELECTRIC CO LTD
  • US11443068B2 patent drawing
  • US11443068B2 patent drawing
  • US11443068B2 patent drawing

AI summary

The invention prevents data from leaking. In a data management system (1), a terminal device (2) saves a remaining data among the remaining data and an incomplete data acquired by partitioning an image data of an ID card of a user in a storage unit, and uploads the incomplete data to a data management server (5) via a network (N). A data recovery device (4) acquires the remaining data from the terminal device (2), and acquires the incomplete data from the data management server (5) via the network (N). Further, the data recovery device (4) recovers the image data of the ID card of the user from the remaining data and the incomplete data.