Secure Storage Device Partitioning and Autorun Execution
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current digital storage devices lack secure features to prevent data manipulation or theft, especially when lost or used in internet environments, and do not support automatic execution of user-selected applications across different hosts.
Innovation Solution
A secure storage system with a removable storage device featuring a secure partition and a public partition, using an 'autorun.inf' file to make the device appear non-removable, enabling automatic execution of user-selected applications and incorporating encryption and two-key encryption processes for secure data storage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If the storage device is made removable and portable, then ease of operation and adaptability are improved, but security and reliability deteriorate due to risk of loss and unauthorized access
Solution Approach 1:
The storage device is segmented into multiple partitions including a secure partition and a public partition. The secure partition is hidden from the host operating system and can only be accessed through specific vendor commands, while the public partition is accessible like a normal removable drive. This segmentation allows the device to maintain portability while protecting sensitive data in the hidden secure partition from unauthorized access.
Solution Approach 2:
A firmware layer acts as an intermediary between the host system and the storage media. This firmware intercepts and filters host commands, allowing only authorized operations to reach the secure partition. The firmware presents the device as non-removable to the host while maintaining actual removability, creating a protective barrier that enhances security without sacrificing portability.
2Reliability
If the device appears as non-removable to the host, then security is improved by hiding the secure partition, but ease of operation deteriorates due to reduced user awareness of device status
Solution Approach 1:
Different quality attributes are applied to different parts of the device. The secure partition is presented with properties of a non-removable, hidden volume that cannot be seen or accessed by the host OS. The public partition maintains normal removable drive characteristics. This local differentiation allows security enhancement for sensitive data while preserving user awareness and normal operation for non-sensitive data.
3Adaptability or versatility
If automatic execution of applications is enabled across different hosts, then adaptability is improved, but security deteriorates due to potential unauthorized code execution
Solution Approach 1:
User preferences and application launch configurations are pre-stored in the storage device's registry or configuration files. When the device is connected to any host, the autorun.inf file automatically triggers execution of these pre-configured applications with user-selected parameters. This preliminary setup enables consistent behavior across different hosts while maintaining security through the device's inherent secure partition protection and authorized command filtering.
Data Source
AI summary
In one embodiment of the present invention, a secure storage system includes a removable storage device having a secure storage area for storage of secure data and a public storage area and device port for coupling the removable storage device to a host, the removable storage device appearing, to the host, to be non-removable so that the secure storage area remains hidden and the secure data remains secure.


