Secure Messaging System with Content-Aware Storage

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Distribution lists in electronic messaging systems face challenges such as unmonitored membership changes, leading to unauthorized access and security breaches, and inherent security limitations in transmitting sensitive information.

Innovation Solution

A system that evaluates message content against access-based standards, stores qualifying messages in secure buckets, and transmits notices with hyperlinks for authorized access, reducing reliance on standard email servers and enhancing security through secure storage and transmission.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If distribution lists are used for efficient electronic message distribution, then message delivery efficiency is improved, but security control and access authorization deteriorate

Engineering Contradiction:
Improvemessage delivery efficiencyVSAvoidsecurity control
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent introduces an intermediary system between the message distribution system and end recipients. This intermediary validates recipient identities and authorization levels, acting as a mediator that maintains distribution list efficiency while adding security control. The intermediary checks credentials and determines whether recipients should receive messages based on their authorization levels.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system implements feedback mechanisms where recipient responses and authorization status are continuously monitored and fed back to the distribution system. This allows the system to adjust message routing based on real-time authorization information, ensuring that only authorized recipients receive sensitive messages while maintaining efficient distribution for authorized users.

Inventive Principle:
Principle #23Feedback

2Device complexity

If distribution list membership is not regularly monitored, then operational complexity is reduced, but unauthorized access and security breaches increase

Engineering Contradiction:
Improveoperational complexityVSAvoidunauthorized access
Core Design Contradiction:
Device complexityVSObject-affected harmful factors

Solution Approach 1:

The system implements self-service mechanisms where recipients automatically verify their own authorization status and the system automatically updates distribution lists based on monitored criteria. This reduces operational complexity by eliminating manual monitoring while maintaining security through automated self-verification and dynamic list updates.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system performs preliminary actions by pre-validating recipient credentials and pre-determining authorization status before message distribution. This preliminary verification prevents unauthorized access before it can occur, while the automated nature of these preliminary checks reduces ongoing operational complexity.

Inventive Principle:
Principle #10Preliminary action

3Device complexity

If standard email servers are used for message transmission, then system simplicity is maintained, but security vulnerabilities and hacking risks increase

Engineering Contradiction:
Improvesystem simplicityVSAvoidsecurity vulnerabilities
Core Design Contradiction:
Device complexityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces security intermediary systems that interface with standard email servers. These intermediaries maintain system simplicity by working within existing email infrastructure while adding security layers. The intermediaries validate messages and recipients, blocking vulnerable transmissions without requiring complete system replacement.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system applies local quality enhancement by adding security controls specifically at critical points in the message transmission path rather than requiring complete system redesign. Security validation is applied locally at distribution list gates and recipient verification points, maintaining overall system simplicity while addressing vulnerabilities where they most commonly occur.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS10193844B1Secure cloud-based messaging and storage
Publication Date: 2019.01.29 AMAZON TECH INC
  • US10193844B1 patent drawing
  • US10193844B1 patent drawing
  • US10193844B1 patent drawing

AI summary

A secure messaging system identifies sensitive or restricted content within electronic messages such as E-mail, SMS or MMS text messages, or social network messages, and stores files including such content in a secure folder or bucket. After a first electronic message is identified as including sensitive or restricted content, a file including the sensitive or restricted content is stored in the secure folder or bucket, and a second electronic message including a link to the file or the secure folder or bucket is sent to each of the intended recipients of the first electronic message. When a recipient selects the link, the sensitive or restricted content is provided to the recipient over a secure connection (e.g., an SSL connection) rather than via E-mail. Additionally, recipients of the second electronic message may be authenticated by any method, e.g., an access policy and/or a single or multi-level authentication process.