Identity-Based Data Watermarking for Access Leak Tracing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional data watermarking approaches fail to trace unauthorized access or distribution of sensitive data, such as conversational speech and multimedia content, lacking the ability to identify the source of unauthorized access.
Innovation Solution
Implementing a bespoke identity-based watermarking system that encodes data with a unique watermark upon access, allowing tracing of data access to the requesting party by generating and encoding a bespoke identity-based watermark associated with the individual or entity, and decoding it to identify unauthorized leaks.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If conventional watermarking approaches are used, then data source identification is enabled, but data access tracing capability is lost
Solution Approach 1:
The watermarking system segments the identification process into two distinct components: a static watermark embedded in the data for source identification, and a dynamic access trace generated at the time of access. This segmentation allows each component to fulfill its specific function independently, resolving the contradiction between source identification and access tracing.
Solution Approach 2:
The system performs preliminary watermarking of the data before access occurs, embedding the source identification information in advance. Then, at the moment of access, it dynamically generates the access trace. This preliminary action ensures that both source identification and access tracing capabilities are prepared and available when needed.
2Reliability
If data is encrypted for security, then unauthorized access is prevented, but access tracing capability is reduced
Solution Approach 1:
The system introduces an intermediary watermarking layer between the encrypted data and the access control mechanism. This intermediary watermark contains both source identification and access trace information, allowing the system to maintain security through encryption while enabling tracing through the watermark without requiring decryption of the underlying data.
Solution Approach 2:
The watermark is embedded in the data before encryption occurs, ensuring that the tracing information is already in place when security measures are applied. This preliminary action guarantees that both security and tracing capabilities coexist without conflict.
3Measurement precision
If bespoke identity-based watermarks are encoded for each requesting party, then access tracing precision is improved, but system complexity increases
Solution Approach 1:
Instead of creating entirely unique watermarks for each requesting party, the system uses a template-based approach where a standard watermark structure is copied and personalized with the specific identity information of each party. This copying mechanism maintains high tracing precision while significantly reducing the complexity of watermark generation and management.
Solution Approach 2:
The system maintains a consistent watermark structure with fixed parameters for source identification, while only varying the identity-specific parameters for each requesting party. This parameter change approach allows precise differentiation between accessors without requiring complete redesign of the watermarking system for each user.
Data Source
AI summary
A method, computer program product, and computing system for receiving, from a requesting party, a request to access data from a storage device. Identity information associated with the requesting party is determined. A bespoke identity-based watermark is generated for the requesting party. The bespoke identity-based watermark is encoded into the data. The watermarked data is provided to the requesting party.


