Software Protection via Suspended License Enforcement

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing software protection methods are ineffective in preventing cracking attacks, as skilled attackers can quickly disable protective code and distribute cracked software globally, leading to a short 'cover time' before widespread unauthorized use, and current solutions fail to effectively identify and prosecute attackers.

Innovation Solution

A method and system that suspends the response of self-defensive mechanisms to simulate a cracked program, thereby delaying the transmission of critical attack information to attackers, maintaining latent protective capabilities until predetermined conditions are met, such as a specified time or number of uses, to extend the 'cover time' of protected software.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If self-defensive mechanisms respond immediately to attacks, then the software can enforce license terms effectively, but the attacker can quickly distribute cracked software globally

Engineering Contradiction:
Improvelicense enforcement effectivenessVSAvoidcover time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies preliminary action by pre-configuring self-defensive mechanisms to suspend license enforcement upon detecting an attack, rather than immediately executing it. This suspension period allows the attacker to distribute cracked software before the protective action is taken, thereby extending the cover time. The mechanism is prepared in advance but delayed in execution to match the attacker's distribution timeline.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If protective code is made more robust to prevent cracking, then the software security improves, but the complexity of the software increases

Engineering Contradiction:
Improvesoftware securityVSAvoidsoftware complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies dynamics by making the protective code adaptable rather than static. The self-defensive mechanisms dynamically adjust their behavior based on detected attack conditions - suspending license enforcement when an attack is detected, and maintaining normal operation otherwise. This dynamic response allows the software to maintain security without implementing overly complex preventive measures, as the protection activates only when needed.

Inventive Principle:
Principle #15Dynamics

3Reliability

If the software immediately activates protective measures upon attack detection, then the license terms are enforced strictly, but the attacker's distribution of cracked software is not hindered

Engineering Contradiction:
Improvelicense term enforcementVSAvoidattack response efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent applies preliminary action by pre-configuring the self-defensive mechanisms to suspend license enforcement upon detecting an attack, rather than immediately executing it. This suspension period allows the attacker to distribute cracked software before the protective action is taken, thereby extending the cover time. The mechanism is prepared in advance but delayed in execution to match the attacker's distribution timeline.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP1962217B1Self-defensive protected software with suspended latent license enforcement
Publication Date: 2019.12.11 SAFENET DATA SECURITY ISRAEL
  • EP1962217B1 patent drawingFigure 1
  • EP1962217B1 patent drawingFigure 2
  • EP1962217B1 patent drawingFigure 3

AI summary

A method and system of computer program modules for extending the cover time of protection for a licensed software product, by increasing the difficulty and time required for an attacker to produce a workable cracked version of the program. When an attack is detected, critical information about the effectiveness of the attack are withheld from the attacker by simulating the behavior of a cracked program, thereby inducing the attacker to prematurely consider the attack successful. Latent license enforcement features are provided, whose activation is suspended until predefined environmental conditions are met.