US2015381582A1PendingUtilityA1

Secure data parser method and system

Assignee: SECURITY FIRST CORPPriority: Oct 25, 2004Filed: Aug 17, 2015Published: Dec 31, 2015
Est. expiryOct 25, 2024(expired)· nominal 20-yr term from priority
G06F 21/606G06F 17/30312H04L 67/108H04L 63/0428H04L 63/0823G06F 21/6218G06F 21/602H04L 63/0876G06F 11/1092H04L 69/14G06F 16/22H04L 63/04H04L 2209/80H04L 9/3226H04L 9/085H04L 9/3263G06F 21/62H04L 63/08
63
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data that may be communicated using multiple communications paths.

Claims

exact text as granted — not AI-modified
1 . (canceled) 
     
     
         2 . A computer-implemented method of securing a database of associated entries, each of the entries including entry data, the method comprising:
 accessing a plurality of database entries;   generating a plurality of shares of data from the plurality of database entries, wherein generating the plurality of shares of data comprises encrypting the entry data of the plurality of database entries; and   storing each of the plurality of shares of data in a separate storage location, whereby the entry data of each of the plurality of database entries is disassociated from the entry data of each of the other database entries.   
     
     
         3 . The method of  claim 2 , wherein the step of generating a plurality of shares of data from the plurality of database entries comprises generating a plurality of shares of data from each of the plurality of database entries. 
     
     
         4 . The method of  claim 2 , wherein the entries comprise cells of a table stored in the database. 
     
     
         5 . The method of  claim 2 , wherein the entries comprise cells of a table stored in the database and the plurality of entries comprise at least one of a row and a column of the database table. 
     
     
         6 . The method of  claim 2 , wherein storing each of the plurality of shares of data in separate storage locations comprises storing each of the plurality of shares of data in separate geographically remote locations. 
     
     
         7 . The method of  claim 2 , wherein storing each of the plurality of shares of data in separate storage locations comprises storing each of the plurality of shares of data in separate physical storage locations. 
     
     
         8 . The method of  claim 2 , wherein storing each of the plurality of shares of data in separate storage locations comprises storing at least some of the shares of data in separate locations on a storage device. 
     
     
         9 . The method of  claim 2 , wherein encrypting the entry data of the plurality of database entries comprises encrypting each of the plurality of database entries with a respective encryption key. 
     
     
         10 . The method of  claim 2 , wherein generating a plurality of shares of data from the plurality of database entries further comprises causing each of the shares of data to comprise a substantially random distribution of entry data. 
     
     
         11 . The method of  claim 10 , wherein causing each of the shares of data to comprise a substantially random distribution of entry data comprises at least one of (i) substantially randomly distributing entry data into the plurality of shares of data and (ii) substantially randomly shuffling entry data in the plurality of shares of data. 
     
     
         12 . A computer system for securing a database of associated entries, each of the entries including entry data, the system comprising:
 one or more processors configured to:
 access a plurality of database entries; 
 generate a plurality of shares of data from the plurality of database entries, wherein generating the plurality of shares of data comprises encrypting the entry data of the plurality of database entries; and 
 cause each of the plurality of shares of data to be stored in a separate storage location, whereby the entry data of each of the plurality of database entries is disassociated from the entry data of each of the other database entries. 
   
     
     
         13 . The system of  claim 12 , wherein the one or more processors configured are to generate a plurality of shares of data from the plurality of database entries by generating a plurality of shares of data from each of the plurality of database entries. 
     
     
         14 . The system of  claim 12 , wherein the entries comprise cells of a table stored in the database. 
     
     
         15 . The system of  claim 12 , wherein the entries comprise cells of a table stored in the database and the plurality of entries comprise at least one of a row and a column of the database table. 
     
     
         16 . The system of  claim 12 , wherein the one or more processors are configured to cause each of the plurality of shares of data to be stored in separate geographically remote locations. 
     
     
         17 . The system of  claim 12 , wherein the one or more processors are configured to cause each of the plurality of shares of data to be stored in separate physical storage locations. 
     
     
         18 . The system of  claim 12 , wherein the one or more processors are configured to cause at least some of the shares of data to be stored in separate locations on a storage device. 
     
     
         19 . The system of  claim 12 , wherein the one or more processors are configured to encrypt the entry data of the plurality of database entries by encrypting each of the plurality of database entries with a respective encryption key. 
     
     
         20 . The system of  claim 12 , wherein the one or more processors are further configured to generate a plurality of shares of data from the plurality of database entries by causing each of the shares of data to comprise a substantially random distribution of entry data. 
     
     
         21 . The system of  claim 20 , wherein causing each of the shares of data to comprise a substantially random distribution of entry data comprises at least one of (i) substantially randomly distributing entry data into the plurality of shares of data and (ii) substantially randomly shuffling entry data in the plurality of shares of data. 
     
     
         22 . A non-transitory computer-readable medium comprising instructions that, when executed by one or more processors, cause a computer system to carry out a method for securing a database of associated entries, each of the entries including entry data, the method comprising:
 accessing a plurality of database entries;   generating a plurality of shares of data from the plurality of database entries, wherein generating the plurality of shares of data comprises encrypting the entry data of the plurality of database entries; and   storing each of the plurality of shares of data in a separate storage location, whereby the entry data of each of the plurality of database entries is disassociated from the entry data of each of the other database entries.   
     
     
         23 . The non-transitory computer-readable medium of  claim 22 , wherein the step of generating a plurality of shares of data from the plurality of database entries comprises generating a plurality of shares of data from each of the plurality of database entries. 
     
     
         24 . The non-transitory computer-readable medium of  claim 22 , wherein the entries comprise cells of a table stored in the database. 
     
     
         25 . The non-transitory computer-readable medium of  claim 22 , wherein the entries comprise cells of a table stored in the database and the plurality of entries comprise at least one of a row and a column of the database table. 
     
     
         26 . The non-transitory computer-readable medium of  claim 22 , wherein storing each of the plurality of shares of data in separate storage locations comprises storing each of the plurality of shares of data in separate geographically remote locations. 
     
     
         27 . The non-transitory computer-readable medium of  claim 22 , wherein storing each of the plurality of shares of data in separate storage locations comprises storing each of the plurality of shares of data in separate physical storage locations. 
     
     
         28 . The non-transitory computer-readable medium of  claim 22 , wherein storing each of the plurality of shares of data in separate storage locations comprises storing at least some of the shares of data in separate locations on a storage device. 
     
     
         29 . The non-transitory computer-readable medium of  claim 22 , wherein encrypting the entry data of the plurality of database entries comprises encrypting each of the plurality of database entries with a respective encryption key. 
     
     
         30 . The non-transitory computer-readable medium of  claim 22 , wherein generating a plurality of shares of data from the plurality of database entries further comprises causing each of the shares of data to comprise a substantially random distribution of entry data. 
     
     
         31 . The non-transitory computer-readable medium of  claim 30 , wherein causing each of the shares of data to comprise a substantially random distribution of entry data comprises at least one of (i) substantially randomly distributing entry data into the plurality of shares of data and (ii) substantially randomly shuffling entry data in the plurality of shares of data.

Join the waitlist — get patent alerts

Track US2015381582A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.