Integrated Shutdown API for Mobile Device Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing mobile device security measures are inadequate in preventing unauthorized access when devices are misplaced or misappropriated, as uninstalling applications does not effectively prevent re-installation and access by third parties.

Innovation Solution

An integrated full and partial shutdown API system that remotely logs out and uninstalls applications from a mobile device, confirms user logout, and optionally reconfigures or removes applications, while requiring authentication credentials for re-establishing access, thereby enhancing security by preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If applications are uninstalled from a mobile device to prevent unauthorized access, then security is improved, but the applications can be re-installed and accessed by third parties

Engineering Contradiction:
ImprovesecurityVSAvoidaccess control
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The system performs preliminary actions by logging the user out of applications and removing authentication credentials before the application is fully uninstalled. This ensures that even if the application is re-installed, the user cannot access it without re-authentication, preventing unauthorized access while maintaining the ability to restore legitimate access.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system changes the authentication state parameter of the application by logging out the user and removing stored credentials. This parameter change ensures that the application requires fresh authentication upon re-installation, effectively blocking unauthorized access while allowing legitimate users to regain access through proper authentication.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If the system remotely logs out and uninstalls applications to secure user information, then protection against misappropriation is improved, but the device cannot be easily restored to its original state

Engineering Contradiction:
ImproveprotectionVSAvoidrestoration
Core Design Contradiction:
ReliabilityVSEase of repair

Solution Approach 1:

The system implements feedback mechanisms by monitoring the authentication state and application installation status. When restoration is needed, the system receives feedback about the current state and automatically performs the necessary actions to restore the application and re-establish authentication, making the restoration process as easy as the shutdown process.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The system enables self-service restoration by automatically detecting when an application has been re-installed and prompting the legitimate user to authenticate. Upon successful authentication, the system automatically restores the application's authentication credentials and access rights without requiring manual intervention, thus maintaining ease of restoration while ensuring security.

Inventive Principle:
Principle #25Self-service

3Reliability

If the system requires authentication credentials for re-establishing access, then unauthorized access is blocked, but the reactivation process becomes more complex

Engineering Contradiction:
Improveaccess securityVSAvoidreactivation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs preliminary authentication verification before restoring full access. By checking the user's credentials in advance and progressively restoring access rights, the system ensures security while minimizing the complexity of the reactivation process. The authentication is performed once during the restoration initiation, rather than repeatedly during the entire process.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10021565B2Integrated full and partial shutdown application programming interface
Publication Date: 2018.07.10 BANK OF AMERICA CORP
  • US10021565B2 patent drawing
  • US10021565B2 patent drawing
  • US10021565B2 patent drawing

AI summary

The present disclosure describes an integrated full and partial shutdown application programming interface. Embodiments herein disclosed include receiving an indication that a mobile device of a user is compromised. Further embodiments identify one or more applications associated with the mobile device and remotely access the mobile device to perform a switch-off of the one or more applications. The switch-off may include logging the user out of the one or more applications before removing the one or more applications from the mobile device.