PORTABLE ENCRYPTION AND AUTHENTICATION SERVICE MODULE

Patent Information

  • Patent No.: US 10,171,427 B2
  • Date of Patent: Jan. 1, 2019
  • Inventor: Martin Dawson, Laguna Beach, CA (US)
  • Applicant: WebCloak, LLC, Irvine, CA (US)
  • Assignee: WEBCLOAK, LLC, Irvine, CA (US)
  • Application No.: 15/011,068
  • Filed: Jan. 29, 2016
  • Prior Publications: US 2016/0226833 A1, published Aug. 4, 2016

Field of the Invention

The field of the invention is secured authentication and communication.

Background

Cloud computing and storage solutions enable users to store and process their data in third-party data centers, which facilitates access and sharing among computers and mobile devices. Authentication as a service (AaaS) and encryption as a service (EaaS) provide cloud-based storage of user credentials but have vulnerabilities—including theft of root keys.

Summary of the Invention

The invention provides encryption and authentication services in remote environments using user credentials stored on personal devices. It negates reliance on remote service provider credentials.

Detailed Description

The portable device allows a user to anonymously use a host device. The onboard database stores user credential information, including passwords and challenge phrases. The user interacts with a virtual machine instantiated on the host device, communicating over a secure TCP/IP messaging server.

Claims

  1. A portable, hand-held electronic device configured to communicate securely with a host device by:
    a) instantiating a virtual machine that runs a TCP/IP messaging server;
    b) rendering an encrypted messaging interface;
    c) allowing user authentication through secure credential information.

  2. The method includes establishing a communication channel between a virtual machine and an application on a host device, allowing for secure data transfer.

User Interaction

Once authenticated, the user can interact with applications via the virtual machine, providing a seamless and secure experience. This includes sending user credentials securely and receiving encrypted data exchanges.

Additional Details

The device operates independently from the host's operating system, enhancing security by keeping user credential information stored within an encrypted read-only data volume.

Illustrative Figures

  • Figure 1: Private, portable encryption and authentication service module (PPEASM) in communication with a host.
  • Figure 2: Exemplary network communication between PPEASM and applications on remote devices.

Conclusion

The inventive subject matter aims to provide systems and methods that enhance secure user authentication in environments where the host device is not under user control. This ensures user credentials are not compromised, even in potentially hostile computing environments.