Smart Device Vulnerability Repair via Automated Settings Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional security systems for smart devices connected to the Internet are ineffective in eliminating vulnerabilities, making them susceptible to malicious attacks and data theft.

Innovation Solution

A system and method that identifies vulnerabilities in smart devices by accessing their settings, comparing them with known vulnerabilities, and transmitting instructions to repair these vulnerabilities through a processor configured to access the data network, using protocols like UPnP, FTP, RDP, and SSH to adjust settings and firmware.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional security systems are used to monitor smart devices, then network traffic can be checked and device status can be monitored, but vulnerabilities cannot be effectively eliminated and devices remain susceptible to malicious attacks

Engineering Contradiction:
Improvesecurity effectivenessVSAvoidvulnerability susceptibility
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary actions by proactively scanning smart devices for vulnerabilities before malicious attacks can occur. The processor automatically detects vulnerable devices, identifies specific security weaknesses, and applies patches in advance, preventing rather than merely responding to security threats.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system enables smart devices to self-diagnose and self-repair security vulnerabilities. By automatically detecting vulnerable devices and applying patches without requiring manual user intervention, the system allows devices to service their own security needs, eliminating vulnerabilities effectively.

Inventive Principle:
Principle #25Self-service

2Reliability

If a processor scans and repairs vulnerabilities in smart devices, then security is enhanced and vulnerabilities are eliminated, but the system complexity and processing requirements increase

Engineering Contradiction:
Improvedevice securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The processor is designed with multi-functionality to handle diverse vulnerability scanning and patching operations across different smart device types. A single processor can scan routers, smart watches, smartphones, and other IoT devices using universal protocols (HTTP, FTP, SSH, RDP), reducing the need for multiple specialized systems and thereby managing complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The processor acts as an intermediary between vulnerability detection and repair operations. It mediates the complex processes by centralizing scanning, analysis, and patching functions in a single coordinating component, simplifying the overall system architecture while maintaining comprehensive security capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP3220595B1Method and system of eliminating vulnerabilities of smart devices
Publication Date: 2019.09.04 AO KASPERSKY LAB
  • EP3220595B1 patent drawingFigure 1
  • EP3220595B1 patent drawingFigure 2
  • EP3220595B1 patent drawingFigure 3

AI summary

Disclosed are systems and methods for eliminating vulnerabilities of smart devices connected to a data network. An example method includes: identifying a router providing access to the data network, obtaining access to the network and transmitting a request through the data network to obtain access to a smart device on the network. Furthermore, the method includes accessing the smart device to obtain its settings, comparing the settings with known vulnerabilities, determining an action for repairing the a network vulnerability associated with the settings of the device, and transmitting instructions to the smart device to perform the action to repair network vulnerability associated with the setting.