Remote Access Interface Sensitive Data Filtering

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Remote access protocols allow sensitive data to be output to unauthorized human operators, posing risks of data breaches and legal violations due to unauthorized access.

Innovation Solution

A method that involves receiving a user interface from a remote server, identifying sensitive data using preselected filters, and modifying the interface to remove or obscure this data before output to the human operator, using text-based representations and machine learning models to enhance accuracy.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If remote access protocols are used to enable human operators to remotely interact with applications, then operational efficiency and accessibility are improved, but sensitive data may be exposed to unauthorized operators

Engineering Contradiction:
Improveremote accessibilityVSAvoiddata breach risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an intermediary system between the remote server and the human operator. This intermediary receives the user interface from the server, identifies sensitive data using filters and machine learning models, modifies the interface to remove or obscure sensitive information, and then outputs the modified interface to the operator. This mediator approach allows remote access functionality to be maintained while preventing unauthorized data exposure.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent extracts sensitive data from the user interface before it is output to the human operator. By identifying sensitive data elements (such as personal information, financial data, or medical records) and removing or obscuring them from the interface, the system separates the operational functionality from the sensitive information, allowing operators to interact with the application without accessing protected data.

Inventive Principle:
Principle #2Taking out (Extraction)

2Object-affected harmful factors

If the user interface is modified to remove sensitive data, then data security is improved, but the functionality and usability of the interface may be degraded

Engineering Contradiction:
Improvedata protectionVSAvoidinterface functionality
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent applies local quality modification by selectively removing or obscuring only the sensitive data portions of the user interface while leaving the rest of the interface functionality intact. Instead of removing the entire interface, the system identifies specific elements containing sensitive information (such as specific text fields, images, or data regions) and modifies only those localized areas, preserving the overall usability and functional capabilities of the application.

Inventive Principle:
Principle #3Local quality

3Measurement precision

If multiple filters and machine learning models are used to identify sensitive data, then detection accuracy is improved, but system complexity increases

Engineering Contradiction:
Improvesensitive data detection accuracyVSAvoiddata processing complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent implements preliminary action by pre-configuring filters and machine learning models before the actual data processing occurs. The system is set up with predefined detection rules, pattern recognition models, and classification algorithms that are trained in advance to identify sensitive data types. This preliminary preparation allows for accurate and comprehensive sensitive data detection during operation without requiring complex real-time decision-making, thereby managing system complexity while maintaining high detection accuracy.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP4088211B1Method of remote access
Publication Date: 2025.06.25 BLUE PRISM LTD
  • EP4088211B1 patent drawingFigure 1
  • EP4088211B1 patent drawingFigure 2
  • EP4088211B1 patent drawingFigure 3A~3B

AI summary

The present invention relates to a method of preventing sensitive data received via a remote access protocol from being output to a human operator. The method comprises receiving, from a remote server via a remote access protocol, a user interface of an application executing on the remote server; receiving, from the remote server, a text-based representation of the application; identifying sensitive data in the user interface and/or the text-based representation of the application using one or more preselected filters; modifying the user interface to remove the identified sensitive data; outputting the modified user interface to one or more output peripherals of a computer for receipt by the human operator.