Secure Access Device With Hidden Keys for Verified Data Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing portable memory storage devices lack robust security measures, as encryption keys are often stored on the media, making them vulnerable to unauthorized access, and traditional password-based authentication is insufficient for ensuring data integrity.

Innovation Solution

A data security system with an authentication subsystem and storage subsystem, utilizing an authentication key and encryption key mechanism that remains hidden until user verification, ensuring secure encryption and decryption processes through a mobile device or host computer validation.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If encryption keys are stored on the media, then data can be encrypted and decrypted, but the device becomes vulnerable to unauthorized access

Engineering Contradiction:
Improvedata securityVSAvoidvulnerability to unauthorized access
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the authentication key from the storage media and places it in a separate authentication subsystem. This separation ensures that the encryption key never resides on the media itself, eliminating the vulnerability where attackers could directly access stored keys. The authentication subsystem independently verifies user credentials and manages key distribution without storing the actual encryption key on the media.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The authentication subsystem acts as an intermediary between the user and the storage media. It validates user credentials, manages authentication keys, and controls access to decryption operations without exposing the encryption key stored on media. This intermediary layer prevents direct access to cryptographic materials while enabling secure data access through controlled authentication processes.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If traditional password-based authentication is used, then user verification is simple, but data integrity cannot be ensured

Engineering Contradiction:
Improveauthentication simplicityVSAvoiddata integrity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The authentication system is segmented into distinct functional components: credential verification, authentication key management, and decryption control. This segmentation allows the system to implement multi-factor authentication and other sophisticated verification methods while maintaining a simple user interface. The separation of authentication functions enables enhanced security measures without complicating the user experience.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS12437040B2Secure access device with multiple authentication mechanisms
Publication Date: 2025.10.07 CLEVX LLC
  • US12437040B2 patent drawing
  • US12437040B2 patent drawing
  • US12437040B2 patent drawing

AI summary

A data security system, and a method of operation thereof, includes a data security transceiver or receiver; an authentication subsystem operatively connected to the data security transceiver or receiver; and a storage subsystem connected to the authentication subsystem.