Secure File Download Storage via Sensitivity Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users often download potentially sensitive files to local storage, which can remain unprotected and vulnerable to access by others if not properly managed, leading to security risks.

Innovation Solution

A system that detects potentially sensitive files during download and offers the option to store them securely instead of local storage, using a sensitivity management engine to monitor and prompt users to manage these files if they remain unattended for a certain period.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If files are downloaded to local storage medium, then ease of access is improved, but security is worsened due to vulnerable storage

Engineering Contradiction:
Improveease of accessVSAvoidsecurity risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a cloud-based secure storage medium as an intermediary between the user's local device and the potentially sensitive file. Instead of directly storing files on the local storage medium, the system uses a secure cloud storage service as a mediator that provides both security and accessibility. The sensitivity management engine acts as another intermediary that monitors and manages the file storage decisions.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If sensitivity management engine monitors all downloads, then security is improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent extracts the sensitivity management functionality from the local device and implements it as a cloud-based service. The sensitivity management engine operates in the cloud rather than consuming local device resources, which reduces the complexity burden on the user's device while maintaining comprehensive monitoring capabilities. Only essential monitoring functions are retained locally, while the heavy lifting is done in the cloud.

Inventive Principle:
Principle #2Taking out (Extraction)

3Object-affected harmful factors

If automatic storage to secure medium is implemented, then security is improved, but ease of operation worsens due to user prompts

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent implements preliminary action by having the sensitivity management engine pre-identify potentially sensitive files before the download completes. The engine analyzes file characteristics, metadata, and content in advance to determine sensitivity, so that when a download is attempted, the decision is already made and the user is simply prompted for confirmation rather than having to make the decision themselves.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS20240012932A1Secure storage and maintenance of potentially sensitive file downloads
Publication Date: 2024.01.11 CITRIX SYSTEMS INC
  • US20240012932A1 patent drawing
  • US20240012932A1 patent drawing
  • US20240012932A1 patent drawing

AI summary

One disclosed method involves detecting a request to download a file, via a network, to a first storage medium associated with a client device, and determining that the file is potentially sensitive. The method further involves initiating a process to download the file to a second storage medium rather than the first storage medium based at least in part on the file being potentially sensitive.