PORTABLE ENCRYPTION AND AUTHENTICATION SERVICE MODULE
Patent Information
- Patent No.: US 10,171,427 B2
- Date of Patent: Jan. 1, 2019
- Inventor: Martin Dawson, Laguna Beach, CA (US)
- Applicant: WebCloak, LLC, Irvine, CA (US)
- Assignee: WEBCLOAK, LLC, Irvine, CA (US)
- Application No.: 15/011,068
- Filed: Jan. 29, 2016
- Prior Publications: US 2016/0226833 A1, published Aug. 4, 2016
Field of the Invention
The field of the invention is secured authentication and communication.
Background
Cloud computing and storage solutions enable users to store and process their data in third-party data centers, which facilitates access and sharing among computers and mobile devices. Authentication as a service (AaaS) and encryption as a service (EaaS) provide cloud-based storage of user credentials but have vulnerabilities—including theft of root keys.
Summary of the Invention
The invention provides encryption and authentication services in remote environments using user credentials stored on personal devices. It negates reliance on remote service provider credentials.
Detailed Description
The portable device allows a user to anonymously use a host device. The onboard database stores user credential information, including passwords and challenge phrases. The user interacts with a virtual machine instantiated on the host device, communicating over a secure TCP/IP messaging server.
Claims
A portable, hand-held electronic device configured to communicate securely with a host device by:
a) instantiating a virtual machine that runs a TCP/IP messaging server;
b) rendering an encrypted messaging interface;
c) allowing user authentication through secure credential information.The method includes establishing a communication channel between a virtual machine and an application on a host device, allowing for secure data transfer.
User Interaction
Once authenticated, the user can interact with applications via the virtual machine, providing a seamless and secure experience. This includes sending user credentials securely and receiving encrypted data exchanges.
Additional Details
The device operates independently from the host's operating system, enhancing security by keeping user credential information stored within an encrypted read-only data volume.
Illustrative Figures
- Figure 1: Private, portable encryption and authentication service module (PPEASM) in communication with a host.
- Figure 2: Exemplary network communication between PPEASM and applications on remote devices.
Conclusion
The inventive subject matter aims to provide systems and methods that enhance secure user authentication in environments where the host device is not under user control. This ensures user credentials are not compromised, even in potentially hostile computing environments.