Software Module Unauthorized Execution Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In complex computing environments, software modules can be misused in unauthorized settings, posing security risks as malicious individuals may exploit them to access data or other services, compromising security, confidentiality, and integrity.

Innovation Solution

A software module is configured to collect context information about its execution environment and, if unauthorized, alters its behavior or signature to simulate a threat, leveraging threat detection modules like anti-virus software to prevent execution, thereby ensuring secure operation only in authorized environments.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If the software module is deployed to multiple computing devices, then the service coverage and productivity are improved, but the risk of unauthorized execution and security breaches increases

Engineering Contradiction:
Improveservice coverageVSAvoidunauthorized execution risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent applies preliminary action by embedding defensive instructions and context analysis capabilities into the software module before deployment. The module proactively collects context information, analyzes execution environment authorization status, and prepares defensive measures in advance. When unauthorized execution is detected, the module can immediately simulate threat behaviors or alter instructions to trigger threat detection, preventing security breaches before they occur.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If the software module includes defensive instructions to simulate threats, then the security against unauthorized execution is improved, but the device complexity and difficulty of detecting legitimate behavior increase

Engineering Contradiction:
ImprovesecurityVSAvoidmodule complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies self-service by enabling the software module to autonomously perform security defense without requiring external intervention. The module independently collects context information, analyzes authorization status, and executes defensive instructions to simulate threats or alter behavior. This self-contained approach enhances security while minimizing the need for complex external monitoring systems.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent applies parameter changes by dynamically modifying the software module's behavior based on execution context. The module can alter its instructions, simulate different threat behaviors, or change its operational parameters depending on whether the execution environment is authorized or unauthorized. This dynamic adaptation provides robust security while maintaining simplicity through context-driven parameter adjustment.

Inventive Principle:
Principle #35Parameter changes

3Speed

If the software module autonomously analyzes context information, then the response speed to unauthorized execution is improved, but the use of computational resources and energy increases

Engineering Contradiction:
Improveresponse speedVSAvoidcomputational resource consumption
Core Design Contradiction:
SpeedVSUse of energy by moving object

Solution Approach 1:

The patent applies partial action by having the software module selectively analyze only the necessary context information required to determine authorization status, rather than performing exhaustive analysis of all system parameters. The module focuses on collecting and analyzing specific context data relevant to execution environment verification, achieving rapid response while minimizing unnecessary computational overhead and energy consumption.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS10372905B1Preventing unauthorized software execution
Publication Date: 2019.08.06 AMAZON TECH INC
  • US10372905B1 patent drawing
  • US10372905B1 patent drawing
  • US10372905B1 patent drawing

AI summary

Techniques are described for preventing a software module from executing in an unauthorized environment. A software module may be configured to collect context information that describes an environment in which the software module is executing. If the context information indicates that the environment is unauthorized for executing the software module, the software module may alter its behavior(s) or its binary signature to simulate a threat. Threat detection module(s), such as anti-virus software, anti-malware software, and so forth, may then identify the software module as a threat and disable its execution or perform other actions. In some cases, the analysis of the context information may be performed on server device(s), which may send a signal to cause the software module to alter its behavior(s) or its binary signature.