Digital Image Security Modules for Tamper Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional digital cameras do not adequately guarantee the integrity and authenticity of digital images, particularly with regards to the photographer's identity, which is crucial in legal and documentation contexts.

Innovation Solution

An apparatus and method that incorporate a first security module within the camera for ensuring the integrity of digital images through cryptographic linkage, and a second security module on a portable data carrier for authenticating the photographer, using cryptographic techniques such as digital signatures and Message Authentication Codes, to securely link the photographer's identity with the image.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a single security module is used in the camera for both integrity and authenticity, then device complexity is reduced, but the security standard and reliability are insufficient

Engineering Contradiction:
Improvesecurity standardVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent divides the security functionality into two separate security modules: a first security module integrated in the camera for ensuring image integrity, and a second security module on a portable data carrier for authenticating the photographer's identity. This segmentation allows each module to specialize in one security aspect, thereby提高整体security standard without requiring a single complex module to handle all security functions.

Inventive Principle:
Principle #1Segmentation

2Reliability

If cryptographic linkage is implemented with multiple security modules, then the authenticity and integrity verification is improved, but the ease of operation deteriorates

Engineering Contradiction:
Improveauthenticity verificationVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a background system as an intermediary that stores public keys and facilitates the verification process. The background system receives verification requests, retrieves the appropriate public keys, and performs the cryptographic verification, thereby shielding the end user from the complexity of direct cryptographic operations while maintaining high reliability in authenticity verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If digital signatures and cryptographic linkages are applied, then the integrity and authenticity are improved, but the processing time and productivity worsen

Engineering Contradiction:
Improveintegrity guaranteeVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent applies cryptographic linkages and digital signatures at the moment of image capture and storage, rather than performing verification only when needed. The first security module creates a cryptographic linkage between the image data and integrity information during capture, and the second security module authenticates the photographer's identity at the same time. This preliminary action ensures integrity and authenticity are embedded upfront, reducing the need for time-consuming verification processes later.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9165147B2Apparatus and method for generating digital images
Publication Date: 2015.10.20 GIESECKE & DEVRIENT EPAYMENTS GMBH
  • US9165147B2 patent drawing
  • US9165147B2 patent drawing

AI summary

An apparatus and a method are arranged for generating a digital image. The apparatus comprises an image generation unit for generating the digital image having a first security module adapted for cryptographically linking a first secret unambiguously identifying the first security module, and securely deposited therein, with the digital image such that the integrity of the digital image can be ascertained using the result of this cryptographic linkage. Further, the apparatus comprises a portable data carrier which can be introduced into the apparatus. The portable data carrier is furnished with a second security module which is adapted for cryptographically linking a second secret unambiguously identifying the portable data carrier, and securely deposited therein, with the digital image such that the identity of the portable data carrier can be ascertained using the result of this cryptographic linkage.