Searching Device for Sensitive Data in Network Packets
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The transmission of sensitive data by user terminals without user knowledge poses a risk to privacy, as operating systems and software applications can transmit identifying information, such as IMEI numbers and location data, which can be correlated to reveal user identities and environments, even when the user is unaware.
Innovation Solution
A method and device for searching sensitive data in data packets emitted by terminals, allowing entities to detect and be aware of inserted identification information before it reaches its destination, providing a dashboard of digital identity and enabling monitoring and control to prevent unauthorized disclosure.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If operating systems and software applications transmit data to remote equipment items for system improvement and updates, then the operation and functionality of the terminal is improved, but user privacy is compromised through unauthorized transmission of identification information
Solution Approach 1:
The patent introduces an intermediary component (privacy protection module or gateway) that sits between the terminal and remote equipment items. This intermediary intercepts data packets, analyzes them for sensitive information using pattern matching and machine learning, and selectively blocks or allows transmission. The intermediary protects user privacy while permitting legitimate system updates and functionality improvements to proceed through controlled channels.
Solution Approach 2:
The patent implements preliminary action by proactively scanning and analyzing data packets before they are transmitted to remote equipment items. The system uses pre-configured patterns, regular expressions, and machine learning models to identify sensitive information in advance, preventing unauthorized transmission of identification information before it can be collected or correlated by external systems.
2Loss of information
If sensitive data is transmitted without user knowledge, then remote equipment items can collect telemetry data for analysis and improvement, but the risk of determining user identification information increases
Solution Approach 1:
The patent replaces traditional mechanical pattern matching methods with advanced information processing techniques including machine learning models, artificial intelligence algorithms, and behavioral analysis systems. These substituted mechanisms can dynamically adapt to new types of sensitive data, correlate multiple data points, and detect identification information that would be difficult to identify using static rules alone.
Solution Approach 2:
The patent implements feedback mechanisms where the system continuously monitors transmitted data, compares it against known patterns and machine learning models, and adjusts its blocking rules based on the results. The system provides feedback to users about what data is being blocked and why, and learns from new types of sensitive information discovered in the wild, improving its detection capabilities over time.
3Object-affected harmful factors
If a searching device intercepts and analyzes data packets to detect sensitive information, then user privacy is protected through awareness, but the complexity of the network system increases
Solution Approach 1:
The patent segments the privacy protection functionality into modular components that can be independently deployed and managed. The searching device is divided into separate modules for packet interception, pattern matching, machine learning analysis, decision-making, and user notification. This segmentation allows the system to be implemented incrementally and integrated with existing network infrastructure without requiring complete system replacement.
Solution Approach 2:
The patent implements self-service capabilities where the searching device automatically configures itself, updates its pattern databases, and adjusts its blocking rules without requiring extensive manual intervention. The system performs self-diagnosis, self-optimization, and automatic rule generation based on observed traffic patterns, reducing the operational complexity and maintenance burden despite the increased functional complexity.
Data Source
AI summary
A method for identifying sensitive data in at least one data packet emitted by at least one terminal connected to a network, items of identification information relating to an identity and/or environment of an entity to which the at least one terminal belongs being able to be determined from sensitive data having been inserted into the at least one packet before it reaches a destination equipment item. The method includes steps implemented by a searching device, including: receiving the at least one data packet, searching for sensitive data in the at least one data packet, and, where applicable, providing the entity with items of information about the detected sensitive data.


