Security Inference Module for Trusted User-Based App Installation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Less technical users face challenges in making informed security decisions about application installations on their devices, particularly when their more technical friends are unavailable for guidance.

Innovation Solution

A security inference module on the computing device identifies candidate applications, trusted users, and their installation activities to determine whether to install the application based on the trusted users' behavior, such as installation rates, settings, and reviews.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users rely on their own judgment for application installation decisions, then they maintain independence and speed in making decisions, but they risk installing harmful applications due to lack of technical knowledge

Engineering Contradiction:
Improvesecurity decision accuracyVSAvoiddecision-making complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a security inference module that acts as an intermediary between the user and the application installation process. This module automatically analyzes trusted users' installation behaviors and security decisions, inferring recommendations without requiring the user to directly consult trusted friends. The module mediates the complex social decision-making process by translating trusted users' actions into actionable security guidance, thereby improving reliability while maintaining ease of operation.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If users consult trusted friends for application installation advice, then they improve security decision accuracy, but they cannot obtain guidance when friends are unavailable

Engineering Contradiction:
Improvesecurity decision accuracyVSAvoidtime to obtain guidance
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The security inference module performs preliminary analysis of trusted users' installation behaviors and security decisions in advance, building a knowledge base of security patterns before they are needed. When a user encounters an application installation decision, the module can immediately query this pre-analyzed data and provide recommendations without requiring real-time communication with trusted friends. This eliminates the time loss associated with contacting friends while maintaining the reliability of their expertise.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If users manually analyze application security information, then they make informed decisions, but they lack the technical expertise to effectively evaluate security risks

Engineering Contradiction:
Improvesecurity assessment accuracyVSAvoidease of security evaluation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements a system where trusted users' security evaluation capabilities serve themselves automatically. The security inference module monitors and analyzes the installation behaviors and security decisions of trusted users, extracting security patterns and recommendations without requiring those trusted users to actively participate or teach their knowledge. This self-service mechanism transfers security expertise from trusted users to less technical users automatically, improving both reliability and ease of operation simultaneously.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS9075988B2Inferring security decisions from trusted users
Publication Date: 2015.07.07 LENOVO GLOBAL TECHNOLOGIES SWITZERLAND INTERNATIONAL GMBH
  • US9075988B2 patent drawing
  • US9075988B2 patent drawing
  • US9075988B2 patent drawing

AI summary

Inferring security decisions from trusted users, including: identifying, by a security inference module on a computing device, a candidate application to be installed on the computing device; identifying, by the security inference module, one or more trusted users; identifying, by the security inference module, trusted user installation activity associated with the candidate application; and determining, by the security inference module, whether to install the candidate application in dependence upon the trusted user installation activity associated with the candidate application.