Portable Storage Device Data Scanning for Virus Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current antivirus solutions have limitations in preventing the spread of computer viruses, particularly through portable storage devices like USB memory storage keys, due to the need for regular signature updates and the risk of transferring infected files before updates can occur, as well as the ease of using these devices to smuggle confidential data.

Innovation Solution

A method and device for scanning data for signatures prior to storage in portable external storage devices, such as USB memory storage keys, using a processor to compare incoming data with predetermined signatures and optionally updating these signatures via secure communication with a server, ensuring only virus-free data is stored and providing security features like biometric authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If data is stored in portable external storage devices without scanning, then storage speed and ease of use are improved, but security against computer viruses deteriorates

Engineering Contradiction:
Improveease of useVSAvoidcomputer virus risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary scanning of data files before they are stored in the portable external storage device. The host system scans incoming data using antivirus software and compares it against virus signature databases, preventing infected files from being written to the storage device in the first place. This proactive approach maintains ease of use while eliminating virus transmission risks.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary scanning mechanism between the host system and the portable storage device. A dedicated scanning module or antivirus software acts as a mediator that intercepts data before storage, performs security verification, and only allows clean files to be written. This intermediary layer provides security without significantly impacting user convenience.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If antivirus signatures are updated regularly on host systems, then virus detection capability is improved, but the risk of virus spread before update completion persists

Engineering Contradiction:
Improvevirus detection capabilityVSAvoidtime gap before update
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent ensures that virus signature databases are updated on the host system before any scanning or storage operations occur. The system checks for updated signatures and performs updates as a preliminary step, ensuring the most current detection capabilities are available before data is scanned or stored, eliminating the time gap vulnerability.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements continuous or near-continuous updates of virus signature databases on the host system. Rather than periodic updates, the system maintains an ongoing connection to update sources and continuously refreshes its signature database, ensuring that detection capability is always current and eliminating the window of vulnerability between updates.

Inventive Principle:
Principle #20Continuity of useful action

3Productivity

If USB memory storage keys are allowed for convenient data transfer, then productivity is improved, but security control over confidential data deteriorates

Engineering Contradiction:
Improvedata transfer efficiencyVSAvoiddata theft risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent implements preliminary security measures including scanning data files for viruses before they are copied to USB memory storage keys, and encrypting sensitive files before transfer. The host system identifies confidential data and applies protective measures in advance, allowing convenient transfer while maintaining security control over sensitive information.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent changes the security parameters of data by applying encryption transforms to confidential files before they are transferred to portable storage devices. The encryption modifies the data parameters (converting readable data to encrypted form) while maintaining the ability to transfer the data conveniently, yet preventing unauthorized access or theft of the original confidential information.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentEP2038794B1Method and device for scanning data for signatures prior to storage in a storage device
Publication Date: 2017.09.06 KINGSTON DIGITAL INC
  • EP2038794B1 patent drawingFigure 1a
  • EP2038794B1 patent drawingFigure 1b~1d
  • EP2038794B1 patent drawingFigure 2

AI summary

The present invention relates to a method and device for scanning of data for signatures prior to storage. First data are received at a storage device for storage therein. Upon receipt the first data are stored in a temporary storage medium for storing other than guaranteed previously scanned data. Using a processor of the storage device, the first data are compared with at least a predetermined signature and a comparison result is determined in dependence thereupon. In dependence upon the comparison result the first data are provided to the scanned data memory when the comparison result is indicative of other than a match or the first data are other than provided to the scanned data memory when the comparison result is indicative of a match. The method and the device according to the invention substantially reduce the risk that a file infected with a computer virus is transferred from one computer to another via a portable storage medium. In another aspect of the invention, the method and the device according to the invention prevents storage of sensitive data by unauthorized persons.