Secure Web Container for Disposable Browser Session Isolation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current secure browsing and authentication approaches fail to provide complete security for online activities, leaving users and service providers vulnerable to theft of login credentials and sensitive information due to compromised web browsers and hijacked connections, with users often using easily guessable passwords across multiple accounts.
Innovation Solution
A secure web container system that initiates a disposable browser session through an API call, providing a secure, encrypted environment for user interactions, isolating user and service provider data from vulnerabilities, and ensuring secure storage and disposal of sensitive information.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional web browsers are used for online activities, then ease of operation and accessibility are improved, but security and data protection deteriorate due to vulnerability to malware, hijacked connections, and compromised browsers
Solution Approach 1:
The patent introduces a secure web container as an intermediary layer between the user's local browser and the web service. This container provides a secure environment for executing web applications, isolating potential malware and compromising the local browser from affecting security. The container acts as a mediator that maintains ease of operation while enhancing security through sandboxing and controlled execution environments.
Solution Approach 2:
The patent segments the web browsing function into separate components: a local browser for display and input, a secure web container for execution, and a service provider environment. This segmentation allows each component to be optimized independently - the local browser remains simple and easy to operate, while the secure container provides isolation and protection against malware and connection hijacking.
2Ease of operation
If user credentials are stored locally for easy access, then ease of operation is improved, but security deteriorates due to risk of theft and unauthorized access
Solution Approach 1:
The secure web container serves as an intermediary that handles credential storage and authentication. Instead of storing credentials locally on the user's machine, the container provides a secure environment where credentials are protected during transmission and execution. This eliminates the risk of local credential theft while maintaining ease of operation through automated authentication within the container.
Solution Approach 2:
The patent implements disposable secure web containers that are created for each session and destroyed afterward, along with any stored credentials. This disposable approach ensures that even if credentials were stored, they would be eliminated after use, preventing long-term theft risks. The container itself is discarded after the session ends, leaving no trace of sensitive information.
3Reliability
If web browsers are kept updated and secured, then security is improved, but device complexity increases due to security patches, updates, and maintenance requirements
Solution Approach 1:
The patent extracts the security maintenance burden from the user's local device by implementing a secure web container that runs in a controlled environment. The container handles security updates, patching, and maintenance internally, isolating these complex operations from the user's local system. This allows the local device to remain simple while the container provides continuous security protection through centralized management.
Solution Approach 2:
The secure web container provides self-service security features including automatic updates, internal malware scanning, and self-contained execution environments. The container manages its own security requirements without requiring the user's local system to be complex or maintained. Security functions are self-contained within the container, eliminating the need for local security maintenance while maintaining high security standards.
4Reliability
If multiple authentication factors are implemented, then security is improved, but ease of operation deteriorates due to increased authentication steps and friction
Solution Approach 1:
The patent implements preliminary authentication actions within the secure web container before the user interacts with the web application. Authentication factors are verified in advance within the container's controlled environment, so that once authenticated, the user experiences seamless access without repeated authentication steps. The container handles the authentication friction internally, presenting a smooth user experience while maintaining multiple security factors.
Data Source
AI summary
Disclosed herein are systems and methods that allow for secure access to websites and web-based applications and other resources available through the browser. Also described are systems and methods for invocation of a secure web container which may display data representative of a requesting party's application at a user's machine. The secure web container is invoked upon receipt of an API call from the requesting party. Thus, described in the present specification are systems and methods for constructing and destroying private, secure, browsing environments (a secure disposable web container), insulating the user and requesting parties from the threats associated with being online for the purposes of providing secure, policy-based interaction with a requesting party's online services.


