Trusted Hardware Intermediary for Legacy System Credential Protection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing computing systems are vulnerable to malware infections, which can compromise user data security, privacy, and safety by allowing sensitive information to be divulged, leading to potential damage.

Innovation Solution

A system comprising a trusted hardware computing device that communicates wirelessly with a legacy computing system, providing security functions such as authentication, encryption, and data protection to prevent malicious attacks and safeguard sensitive information, while allowing secure communication with secured sites without compromising the legacy system.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a legacy computing system is used, then compatibility with existing systems is maintained, but security and data protection are compromised due to vulnerability to malware infections

Engineering Contradiction:
Improvecompatibility with existing systemsVSAvoidsecurity and data protection
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

A hardware computing device is introduced as an intermediary between the legacy computing system and the network. This device provides security functions such as authentication, encryption, and data protection while allowing the legacy system to maintain its compatibility and operational characteristics. The intermediary handles sensitive operations separately, preventing malware in the legacy system from compromising data.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If security functions are added to protect user data, then data security and privacy are improved, but device complexity increases

Engineering Contradiction:
Improvedata security and privacyVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The security functions are segmented into a separate hardware computing device rather than being integrated into the legacy system. This segmentation allows the security module to be added independently, providing data protection and privacy features without increasing the complexity of the existing legacy system architecture.

Inventive Principle:
Principle #1Segmentation

3Ease of operation

If wireless communication is enabled for user access, then ease of operation is improved, but vulnerability to malicious attacks increases

Engineering Contradiction:
Improveuser access convenienceVSAvoidvulnerability to malicious attacks
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The hardware computing device acts as a secure intermediary that handles all wireless communication operations. It provides authentication and encryption for data transmitted wirelessly, allowing users to maintain convenient access while preventing malicious attacks by filtering and securing all network traffic before it reaches the legacy system.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11184763B2Hands free access management and credential protection
Publication Date: 2021.11.23 BARKAN MORDECAI
  • US11184763B2 patent drawing
  • US11184763B2 patent drawing
  • US11184763B2 patent drawing

AI summary

A trusted component is suggested to be added to off the shelf computing systems such as PCs or smartphone providing secure functions for access management and credential protection—safe authentication, maintaining session integrity and validation of content modification. An additional advantage of the solution that it detects malware/hacking attempts on first try allowing of taking action while oblivious to the malware/hacker to avoid retaliation.