Mobile Device Tamper-Evident Re-Image System

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing mobile devices lack effective measures to prevent and remediate tampering, such as wire-tapping and listening device installations, during travel, and fail to securely manage post-breach conditions.

Innovation Solution

A mobile device with enhanced travel security features, including a settable time clock for confiscation tracking, tampering detection, multifactor authentication, a re-image file for software restoration, and a secure I/O pathway, which can lock down ports and provide a self-configurable display to conceal secure information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If the device allows web interaction during travel, then usability is maintained, but security vulnerability to tampering increases

Engineering Contradiction:
Improveweb interaction capabilityVSAvoidsecurity against tampering
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The device is divided into separate containers: a core container for secure information and a web container for web interactions. This segmentation allows web browsing to occur in an isolated environment, preventing tampering during web interaction while maintaining usability.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A secure baseline image of the device is created and stored in advance before travel. This preliminary action enables rapid restoration of the device to a known secure state if tampering is detected, resolving the contradiction by preparing security measures beforehand rather than during vulnerable operation.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the device is locked down to prevent tampering, then security is improved, but device functionality is reduced

Engineering Contradiction:
Improvesecurity against tamperingVSAvoiddevice functionality
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The device implements dynamic security measures that activate only during confiscation periods. The lockdown is temporary and conditional, allowing full functionality during normal use while providing security protection when the device is surrendered for inspection or processing.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The device performs preliminary actions to counteract potential tampering by creating a secure baseline image and configuring monitoring tools before the device is surrendered. This preliminary anti-action ensures security without requiring permanent restrictions on device functionality.

Inventive Principle:
Principle #9Preliminary anti-action

3Difficulty of detecting and measuring

If monitoring tools are installed to detect tampering, then detection capability is improved, but device complexity increases

Engineering Contradiction:
Improvetampering detection capabilityVSAvoidsystem structure
Core Design Contradiction:
Difficulty of detecting and measuringVSDevice complexity

Solution Approach 1:

Multiple monitoring functions (file system monitoring, network traffic monitoring, CPU usage monitoring) are merged into a single integrated monitoring system. This consolidation provides comprehensive tampering detection capability while managing device complexity through unified management of security tools.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS11748470B2Tamper-evident devices equipped with secure re-image file(s)
Publication Date: 2023.09.05 BANK OF AMERICA CORP
  • US11748470B2 patent drawing
  • US11748470B2 patent drawing
  • US11748470B2 patent drawing

AI summary

A method of enhancing travel security features associated with a mobile device is provided. The method may include operating a time clock to store a start device confiscation time in a memory and to store an end device confiscation time in the memory, monitoring the mobile device to detect tampering occurring between the start device confiscation time and the end device confiscation time, and in response to the detecting of tampering, prompting the user for a secure identifier. Upon receipt of the secure identifier, the method may include opening a secure i/o pathway to a re-image file. The secure i/o pathway preferably enables execution of an executable re-image file. The re-image file may be used to re-image a software image of the mobile device. The re-image file may contain a pre-tampered image of the mobile device.