Shadow Device for Mobile Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face significant challenges in identifying and protecting against phishing, malware, and ransomware attacks, leading to substantial economic losses due to time spent on remediation, data loss, and ransom payments.

Innovation Solution

A system and method that create a virtual 'shadow device' identical to the user's device, stored in the cloud, which emulates user interactions to detect and mitigate malicious activities, providing virtual firewall protection and using dummy data to safeguard user identity.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users manually identify and protect against malicious activities, then user control and awareness are maintained, but users suffer significant economic losses and time consumption

Engineering Contradiction:
Improveprotection against malicious activitiesVSAvoidtime spent on remediation
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces an intermediary shadow device that acts as a mediator between the user device and malicious threats. The shadow device replicates user interactions and autonomously tests suspicious links, attachments, and files without exposing the user device or user time to actual malicious content, thereby providing reliable protection while eliminating remediation time losses.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The shadow device performs preliminary actions by proactively testing suspicious content before it can harm the user device. By pre-evaluating malicious links, attachments, and files in a controlled virtual environment, the system prevents attacks before they reach the user, eliminating the need for post-attack remediation and reducing time loss.

Inventive Principle:
Principle #10Preliminary action

2Productivity

If users directly open suspicious links or attachments, then immediate access to content is achieved, but user devices are exposed to malware and ransomware attacks

Engineering Contradiction:
Improveaccess to contentVSAvoidmalicious payloads
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent creates a virtual copy (shadow device) of the user device that replicates all interactions with suspicious content. Instead of opening malicious links or attachments directly on the user device, the shadow device copies and tests these interactions in isolation, allowing users to safely access content information while blocking malicious payloads from reaching the actual user device.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The shadow device serves as an intermediary layer between the user device and suspicious content. It receives and processes suspicious links and attachments, evaluating their safety before any content access is granted to the user device. This intermediary mechanism enables productive content access while filtering out harmful factors.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Measurement precision

If a shadow device is created to detect malicious activity, then detection capability is improved, but system complexity increases

Engineering Contradiction:
Improvedetection of malicious activityVSAvoidvirtualized system architecture
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The shadow device is implemented as a virtual copy of the user device, replicating its hardware and software environment. This copying approach enables precise detection of malicious activity by maintaining identical interaction patterns, while the virtualization technology abstracts the complexity of creating and managing the duplicate system architecture.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The shadow device serves multiple functions simultaneously: it replicates user interactions, tests suspicious content, detects malicious activity, and provides security analysis. By consolidating these diverse functions into a single multi-functional virtual system, the patent improves detection precision while managing overall system complexity through functional integration.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11171971B2Shadow profile and environment for mobile security
Publication Date: 2021.11.09 VERIZON PATENT & LICENSING INC
  • US11171971B2 patent drawing
  • US11171971B2 patent drawing
  • US11171971B2 patent drawing

AI summary

A user device receives a communication that contains a link or an attachment and sends the link or the attachment to a virtual user device stored externally with respect to the user device. Actions to be performed with respect to the user device are executed on the virtual user device. The virtual user device determines whether the link or attachment is malicious. The user device receives an indication of whether the link or the attachment is malicious and displays an indication that the link or the attachment is safe to open when the link or attachment is not malicious.