Virtual Software Application for Secure Internet Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current Internet security methods are vulnerable to unauthorized access due to weaknesses in logon processes and browser-based online applications, allowing individuals to access secure data with just a User ID and Password, leading to potential hacking and data breaches.

Innovation Solution

Implementing virtual software applications that eliminate the need for browser-based online services by using distributed media like CD-ROMs or flash drives to load software modules into virtual memory, providing secure access to remote servers with encryption and access control, ensuring only authorized users can access authorized data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If browser-based online applications with logon processes are used, then ease of operation is improved, but security is worsened due to vulnerability to hacking and unauthorized access

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent extracts the vulnerable browser-based online application layer and replaces it with a locally executed virtual software environment. The logon process and application interface are removed from the browser and relocated to a secure local virtual machine that directly communicates with the server, eliminating the attack surface exposed by web browsers while maintaining user-friendly operation through the preserved application interface.

Inventive Principle:
Principle #2Taking out (Extraction)

2Ease of operation

If logon processes with User ID and Password are implemented, then ease of operation is improved, but security is worsened due to potential password compromise

Engineering Contradiction:
Improveease of operationVSAvoidunauthorized access
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a virtual software environment as an intermediary layer between the user and the server. This virtual environment acts as a secure mediator that handles authentication locally, preventing direct exposure of User ID and Password to potential attackers while maintaining the ease of operation through preserved login interfaces within the protected virtual environment.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If browser-based applications are used for data access, then ease of operation is improved, but security is worsened due to exposure of sensitive information

Engineering Contradiction:
Improveease of operationVSAvoiddata breach risk
Core Design Contradiction:
Ease of operationVSObject-generated harmful factors

Solution Approach 1:

The patent inverts the traditional architecture by placing the application execution environment locally on the user's system rather than remotely in the browser. This inversion ensures that sensitive data processing occurs in a controlled local environment rather than being exposed to browser-based attacks, while the application interface continues to provide ease of operation through familiar user interactions.

Inventive Principle:
Principle #13The other way round (Inversion)

Data Source

PatentUS8074261B2Methods and systems for internet security via virtual software
Publication Date: 2011.12.06 MURPHY CHRISTOPHER
  • US8074261B2 patent drawing
  • US8074261B2 patent drawing
  • US8074261B2 patent drawing

AI summary

A method for providing internet security includes providing a storage medium including a first executable application module. In response to inputting the storage medium onto a local computer the first executable application module is loaded into virtual memory in the local computer. The first executable application module is executed, the first executable application module providing information identifying at least one remote server. Communication is performed between the local computer and the remote server using the information provided by the first executable application module. The remote server is instructed to send a second application module to the local computer. Upon receipt of the second application module, the second application module is loaded into virtual memory on the local computer. The second application module is executed from virtual memory and a prompt is displayed to the user.