Multi-Factor Threshold Sharing With Hardened Memorizable Shares

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional threshold secret sharing methods generate complex and non-memorizable shares, requiring additional devices for storage and management, and using predetermined values like passwords or biometrics can compromise security due to low entropy, making them vulnerable to attacks.

Innovation Solution

A share hardening method for multi-factor threshold secret sharing that includes operations to accept predetermined first shares, generate random second shares, determine aggregate shares, and create polynomials for generating remaining shares, ensuring security and usability by using passwords or biometrics without additional devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional threshold secret sharing methods are used to generate shares from polynomials or planes, then the secrecy of the secret is increased and the risk of losing the secret is lowered, but the shares become complex and long, requiring computer systems or separate digital devices for storage and management

Engineering Contradiction:
Improvesecrecy of secretVSAvoidmemorizability of share
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The share is segmented into two distinct components: a predetermined first share value (which can be memorizable like a password or biometric information) and a randomly generated second share value. This segmentation allows the final share to maintain security properties while incorporating user-friendly elements that can be memorized without requiring external storage devices.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A share hardening value is introduced as an intermediary element that bridges the gap between user memorizable information and secure cryptographic shares. This intermediary component enhances the entropy and security of the final share while allowing the use of simpler, memorizable first share values.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If predetermined values like passwords or biometric information are used as shares, then the usability of secret sharing is improved and separate devices are not required, but the security may be compromised due to low entropy making them vulnerable to guessing or brute force attacks

Engineering Contradiction:
Improveusability of secret sharingVSAvoidsecurity against attacks
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The invention merges two types of share values with different characteristics: predetermined first share values (which provide usability and memorizability) and randomly generated second share values (which provide high entropy and security). The combination of these two components in the final share achieves both usability and security simultaneously.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The final share is constructed as a composite of two distinct components: the predetermined first share value and the randomly generated second share value. This composite structure combines the advantages of both components - the memorizability and user-friendliness of predetermined values with the high entropy and attack-resistance of random values.

Inventive Principle:
Principle #40Composite materials

Data Source

PatentUS12432051B2Share hardening method for multi-factor threshold secret sharing
Publication Date: 2025.09.30 LTCWARE INC
  • US12432051B2 patent drawing
  • US12432051B2 patent drawing
  • US12432051B2 patent drawing

AI summary

Provided is a share hardening method for multi-factor threshold secret sharing which includes an arbitrary share predetermined by a user and is capable of guaranteeing a security. The share hardening method for multi-factor threshold secret sharing may include an operation of accepting at least one predetermined first share value, an operation of randomly generating at least one second share value corresponding to the at least one predetermined first share value, an operation of determining an aggregate share using the at least one predetermined first share value and the at least one second share value, an operation of generating a polynomial for threshold secret sharing based on the determined aggregate share, and an operation of generating the remaining full shares based on the generated polynomial.