Remote Algorithm Disabling for Communication Device Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current communication devices face challenges in securely managing algorithms over long lifespans, as weak algorithms can be vulnerable to attacks, and existing solutions fail to permanently disable them, leading to potential security breaches through 'bidding down attacks'.

Innovation Solution

A method and apparatus for remotely disabling or removing weak algorithms from communication devices, allowing them to switch to stronger algorithms by detecting and updating algorithms during network connections, without user interaction, using a processor and memory configured with computer program code to manage algorithm removal.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple algorithms are included on a device as backup, then security coverage is improved, but the weak algorithm cannot be permanently disabled leading to security vulnerabilities

Engineering Contradiction:
Improvesecurity coverageVSAvoidvulnerability to bidding down attacks
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent implements dynamic algorithm management where the set of supported algorithms can be modified remotely over time. The network device can instruct the communication device to add, remove, or disable algorithms based on current security requirements, transforming the static algorithm set into a dynamic one that evolves with security threats.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent enables the extraction and removal of specific weak algorithms from the device's algorithm set while retaining stronger algorithms. This selective removal eliminates vulnerable algorithms that could be exploited in bidding down attacks, while preserving the functionality provided by secure algorithms.

Inventive Principle:
Principle #2Taking out (Extraction)

2Duration of action of stationary object

If devices operate for long lifespans (20+ years), then device longevity is improved, but algorithms become vulnerable to brute force attacks over time

Engineering Contradiction:
Improvedevice lifespanVSAvoidalgorithm security
Core Design Contradiction:
Duration of action of stationary objectVSReliability

Solution Approach 1:

The patent implements preliminary security measures by establishing a mechanism before threats materialize. The network device proactively identifies and removes algorithms that may become vulnerable in the future, rather than waiting for actual attacks. This preventive approach ensures devices maintain security throughout their extended operational lifespan.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent establishes a feedback loop where the network device continuously monitors security conditions and algorithm strength requirements. Based on this feedback, the network device can instruct communication devices to update their algorithm sets, ensuring that security measures evolve in response to changing threat landscapes over time.

Inventive Principle:
Principle #23Feedback

3Adaptability or versatility

If weak algorithms are used to ensure compatibility, then device interoperability is improved, but security is compromised through bidding down attacks

Engineering Contradiction:
Improvealgorithm compatibilityVSAvoidsecurity breach risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent creates a dynamic algorithm negotiation process where the set of supported algorithms is not fixed but can be updated remotely. This allows devices to maintain compatibility with stronger algorithms while the network can dynamically adjust which algorithms are permitted, preventing fallback to weak algorithms even if compatibility issues arise.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentEP2907330B1Method and apparatus for disabling algorithms in a device
Publication Date: 2018.07.25 NOKIA TECHNOLOGIES OY
  • EP2907330B1 patent drawingFigure 1
  • EP2907330B1 patent drawingFigure 2
  • EP2907330B1 patent drawingFigure 3

AI summary

An apparatus for enabling removal or disabling of weak algorithms may include a processor and memory storing executable computer program code that cause the apparatus to at least perform operations including receiving an indication of one or more algorithms utilized by a communication device. The computer program code may further cause the apparatus to determine whether one or more of the algorithms are identified as a weak algorithm. The computer program code may further cause the apparatus to enable provision of a message to the communication device instructing the communication device to remove, disable, or assign at least one condition to at least one detected weak algorithm among the algorithms. Corresponding methods and computer program products are also provided.