Secured User Session for Shared Password Protection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional authentication and encryption techniques for protecting sensitive information on computing devices are inflexible and burdensome, requiring frequent password changes across multiple files, which increases the risk of privacy breaches due to stale authentication information.

Innovation Solution

A method for password protecting data items on a computing device that allows a single password to be associated with multiple data items, enabling a secured user session that eliminates the need for repetitive authentication, allowing global password changes and secondary authentication factors like fingerprint or gesture recognition for enhanced security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication techniques are used for each data item, then security is maintained, but user convenience deteriorates due to frequent password changes across multiple files

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent combines multiple individual data item authentications into a single global authentication mechanism. When a user authenticates once, the system establishes a secured user session that automatically applies password protection across multiple data items without requiring repeated authentication, thus maintaining security while improving convenience

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent creates a universal authentication system where a single password can protect multiple different data items. The secured user session acts as a multi-functional mechanism that can be applied across various files and data types, eliminating the need for separate authentication for each item

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If password protection is applied to each data item individually, then security is improved, but device complexity increases due to managing multiple passwords

Engineering Contradiction:
ImprovesecurityVSAvoidpassword management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges the management of multiple individual passwords into a single global password system. The secured user session consolidates authentication state across all protected data items, reducing the complexity from managing N separate passwords to managing one unified authentication mechanism

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If frequent password changes are required, then security is maintained, but productivity decreases due to time spent on authentication

Engineering Contradiction:
ImprovesecurityVSAvoidwork efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent performs preliminary authentication once at the beginning of a user session, establishing a secured user session that remains active for multiple subsequent data item operations. This preliminary action eliminates the need for repeated authentication during the session, maintaining security while significantly improving productivity

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10523663B2Shared password protection within applications
Publication Date: 2019.12.31 APPLE INC
  • US10523663B2 patent drawing
  • US10523663B2 patent drawing
  • US10523663B2 patent drawing

AI summary

Various techniques are disclosed for managing and modifying data items. In some embodiments, a first data item can be selected for password protection via establishing an active secured user session according to a set of user credentials. Thereafter, subsequent data items can be selected for password protection using the same set of user credentials while the secured user session remains active. In some embodiments, a gesture input can be received by a touch interface. The input can be detected, and when the input is recognized as a command for creating an extension of a work space associated with a data item, then the extension of the work space is generated. In some embodiments, the gesture input received by the touch interface is recognized as a command for creating a new work space associated with the data item such that a new work space is generated upon recognizing the input.