Secure Access Device With Hidden Keys for Verified Data Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing portable memory storage devices lack robust security measures, as encryption keys are often stored on the media, making them vulnerable to unauthorized access, and traditional password-based authentication is insufficient for ensuring data integrity.
Innovation Solution
A data security system with an authentication subsystem and storage subsystem, utilizing an authentication key and encryption key mechanism that remains hidden until user verification, ensuring secure encryption and decryption processes through a mobile device or host computer validation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If encryption keys are stored on the media, then data can be encrypted and decrypted, but the device becomes vulnerable to unauthorized access
Solution Approach 1:
The patent extracts the authentication key from the storage media and places it in a separate authentication subsystem. This separation ensures that the encryption key never resides on the media itself, eliminating the vulnerability where attackers could directly access stored keys. The authentication subsystem independently verifies user credentials and manages key distribution without storing the actual encryption key on the media.
Solution Approach 2:
The authentication subsystem acts as an intermediary between the user and the storage media. It validates user credentials, manages authentication keys, and controls access to decryption operations without exposing the encryption key stored on media. This intermediary layer prevents direct access to cryptographic materials while enabling secure data access through controlled authentication processes.
2Ease of operation
If traditional password-based authentication is used, then user verification is simple, but data integrity cannot be ensured
Solution Approach 1:
The authentication system is segmented into distinct functional components: credential verification, authentication key management, and decryption control. This segmentation allows the system to implement multi-factor authentication and other sophisticated verification methods while maintaining a simple user interface. The separation of authentication functions enables enhanced security measures without complicating the user experience.
Data Source
AI summary
A data security system, and a method of operation thereof, includes a data security transceiver or receiver; an authentication subsystem operatively connected to the data security transceiver or receiver; and a storage subsystem connected to the authentication subsystem.


