Mobile Device Security Module for Duress Data Wiping
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Mobile communications devices lack effective and quick methods for ensuring user security and protecting critical data, particularly in situations where immediate and discreet transmission of a duress signal or rapid data wiping is necessary, as existing solutions require network connectivity, operator intervention, or cumbersome manual processes.
Innovation Solution
A mobile device configured to automatically transmit a duress message and/or wipe or encrypt data upon detection of a predetermined user input, utilizing a security module that monitors user inputs and initiates security actions, such as sending a duress message and deleting or encrypting data, without the need for network connectivity or operator intervention.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a kill packet system is used to wipe data remotely, then data security is improved, but the system requires network connectivity and operator intervention which reduces reliability in emergency situations
Solution Approach 1:
The patent pre-loads multiple kill packets with different authentication credentials and data wipe instructions into the mobile device during manufacturing or initial setup. This preliminary action ensures that when a duress situation occurs, the device can immediately execute data protection without requiring real-time network connectivity or external operator intervention, thus resolving the contradiction between reliability and system complexity.
2Reliability
If manual data erasure is performed one record at a time, then data security is maintained, but the process is cumbersome and time-consuming reducing productivity
Solution Approach 1:
The patent implements an automated security module that monitors for duress inputs and automatically executes pre-configured kill packets to wipe data without requiring manual user intervention. The system serves itself by detecting the duress condition and autonomously performing the data erasure function, thereby maintaining security while dramatically improving the speed of data protection compared to manual record-by-record erasure.
3Reliability
If a device wipe is initiated through docking with a desktop computer, then data security is improved, but the requirement for accessible configured desktop reduces ease of operation
Solution Approach 1:
The patent extracts the data wipe functionality from the external desktop computer environment and embeds it directly within the mobile device itself. By storing multiple kill packets locally in the device's memory during manufacturing, the system eliminates the dependency on external desktop computers and configured docking stations, thereby maintaining data security while dramatically improving operational accessibility and ease of use in emergency situations.
4Reliability
If sequential password entry is required to trigger data wipe, then security is improved, but the process becomes cumbersome reducing ease of operation
Solution Approach 1:
The patent pre-configures the device with multiple kill packets that have different authentication requirements and data wipe scopes during manufacturing. This preliminary setup allows the system to evaluate multiple security conditions in parallel rather than requiring sequential password entry, thereby maintaining strong security validation while significantly reducing the time and complexity of the operation when duress is detected.
Data Source
AI summary
A mobile communications device for communicating with a wireless network. The device includes a processor, a communications sub-system connected to the processor for exchanging signals with the wireless network and with the processor, a user input device connected to the processor for sending user input signals to the processor in response to user inputs. A security module is associated with the processor for automatically taking a security action upon detecting a predetermined security user input through the user input device. The security action can include sending a duress message and/or wiping data stored on the device.


