Secure Data Transfer via Disposable Links and Intermediary Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users face difficulties in managing multiple passwords and ensuring secure data transfer due to increased complexity and the risk of unauthorized access, as existing security measures are inadequate for verifying users and protecting sensitive information during transmission.
Innovation Solution
A security system and method that involves a service provider and a security provider, where a security code is sent to the user, verified, and a sensitive data link is provided, which includes sensitive information and expires after being viewed once, ensuring secure identity verification and data transfer by preventing unauthorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional password-based security measures are used, then user authentication is enabled, but users face increased complexity and difficulty in remembering multiple passwords
Solution Approach 1:
The patent introduces a security provider as an intermediary that generates and manages security codes on behalf of users. This mediator handles the complexity of security management, allowing users to simply receive and use generated codes without needing to remember or manage multiple passwords themselves.
Solution Approach 2:
The security provider automatically generates security codes and sends them to users through various channels (email, SMS, etc.). The system performs the security management service autonomously without requiring user intervention in the complex processes of password creation, management, and verification.
2Reliability
If security verification processes are implemented, then unauthorized access is prevented, but the process of verifying users and transferring sensitive data becomes more complex
Solution Approach 1:
The patent divides the security verification process into distinct components: a service provider that initiates requests, a security provider that generates and manages codes, and a user interface that receives and verifies codes. This segmentation allows each component to handle specific tasks, reducing overall system complexity while maintaining strong security.
Solution Approach 2:
The security provider acts as an intermediary between the service provider and the user, handling the complex code generation and verification processes. This mediator absorbs the complexity of security management, allowing the service provider and user to interact through a simplified interface.
3Productivity
If sensitive data is transmitted through standard channels, then data transfer is enabled, but data remains accessible and vulnerable to unauthorized access after transmission
Solution Approach 1:
The patent implements self-destructing data links that are designed to be used once and then automatically expire or delete the sensitive information. These disposable access mechanisms allow efficient data transfer while ensuring that the data cannot be accessed again after the initial authorized viewing, preventing unauthorized subsequent access.
Solution Approach 2:
The data access links are made dynamic with built-in expiration mechanisms. The links automatically become invalid after a specified time period or after being used once, transforming the static nature of traditional data transmission into a dynamic, time-limited access system that maintains security after transmission.
Data Source
AI summary
A method for sending sensitive information includes: receiving, by a service provider, a request for sensitive information from a user; upon receipt of the request, sending, by a security provider, a security code to the user; receiving, by the service provider, a code from the user; verifying, by the service provider, the user when the received code matches the security code; sending, by the service provider, the sensitive information to the security provider after the user is verified; and providing, by the security provider, a sensitive data link to the user. The sensitive data link includes the sensitive information and may expire after the sensitive data link is viewed once.


