Trusted Data Processing Gateway with Provider Review
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current big data transaction platforms lack security measures to ensure that only authorized result data owners acquire data, leading to potential unauthorized access and data leakage.
Innovation Solution
A cloud-based data processing method and apparatus that involves acquiring data and algorithms through an access gateway, calculating results, and having data providers review these results before outputting them to authorized owners, with a blockchain-based recording unit to ensure transparency and traceability, and deletion of data to prevent leakage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If data is provided to a big data transaction platform by means of encryption, then data security is improved, but the platform cannot perform analysis processing and unauthorized access risks increase
Solution Approach 1:
The patent introduces a trusted third-party platform that acts as an intermediary between data providers and data users. This platform holds encryption private keys and controls decryption permissions, enabling secure data analysis while preventing unauthorized access. The intermediary manages the balance between data accessibility for authorized analysis and security against unauthorized access.
Solution Approach 2:
The patent segments data security management into multiple components: data encryption by providers, key management by the trusted platform, and controlled decryption for authorized analysis. This segmentation allows different entities to perform specific functions, ensuring both security and analytical capability without concentrating all risks in one place.
2Ease of operation
If data is made accessible on the platform for acquisition, then data availability is improved, but security risks increase due to potential irregular access
Solution Approach 1:
The patent implements a feedback mechanism where data providers review and approve data before it is made available on the platform. This pre-approval feedback loop ensures that only authorized data is accessible, maintaining security while enabling availability. The platform can only release data that has received proper authorization feedback from providers.
Solution Approach 2:
The patent requires preliminary actions including data encryption by providers, submission to the platform for review, and approval before data becomes accessible. This preliminary authorization process ensures security measures are in place before data availability is enabled, preventing irregular access while maintaining ease of legitimate access.
3Productivity
If calculation results are output to result data owners, then data utility is improved, but data leakage risks increase
Solution Approach 1:
The patent creates a copy of the encrypted data for analysis processing on the platform, while the original encrypted data remains with the provider. The analysis is performed on this copy under controlled conditions, and results are output without exposing the original data. This copying approach enables data utility while minimizing leakage risk of the original sensitive data.
Solution Approach 2:
The trusted platform acts as an intermediary that processes data analysis and outputs results without direct access to plaintext sensitive information. The platform mediates between the need for data utility (analysis) and security concerns (leakage risk), enabling productive use while maintaining protection through its key management and controlled processing environment.
Data Source
AI summary
The present disclosure provides a data processing method, a data processing apparatus, a data processing system and a non-volatile storage medium. The method comprises: an acquisition step of acquiring data from at least one data provider and acquiring an algorithm from an algorithm provider via an access gateway; a calculation step of calculating the data according to the algorithm, so as to obtain a calculation result; and a review step of reviewing the calculation result by the at least one data provider via the access gateway, so as to determine whether the calculation result is allowed to be output to at least one result data owner.


