IP Library Granted Patent US 8,769,304
Granted Patent B2
US 8,769,304 · App. 13/524,432 · Granted Jul 1, 2014

Method and system for fully encrypted repository

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,769,304
App. No.
13/524,432
Granted
Jul 1, 2014
Kind
B2
Abstract

According to an embodiment of the present invention, a method for using information in conjunction with a data repository includes encrypting data associated with the information with an encryption key, sending at least the encrypted data to the data repository, and possibly deleting the information. The method also includes receiving a request for the information from a remote device, and sending a request for the encrypted data to the data repository. The method further includes receiving the encrypted data from the data repository, decrypting the encrypted data using the encryption key, and sending the information to the remote device.

Claims (56)

1. A method for using information in conjunction with a data repository, the method comprising:

encrypting data associated with the information using an encryption key to generate encrypted data, wherein:

the data associated with the information comprises a field and a value; and

the encrypted data comprises an encrypted field and an encrypted value;

sending at least the encrypted data to the data repository;

receiving a request for at least the value from a remote device;

sending a request for at least the value to the data repository, wherein the request for at least the value comprises the encrypted field;

receiving at least the encrypted value from the data repository, wherein the data repository uses the encrypted field to identify the encrypted value;

decrypting the encrypted value; and

sending at least the value to the remote device.

2. The method of claim 1 further comprising:

receiving an authentication request from the data repository, wherein:

the request for at least the value comprises a second field encrypted with the encryption key; and

the authentication request is associated with the second field;

sending an authentication response to the data repository; and

receiving an encrypted second value associated with the encrypted second field only if the authentication response satisfies the authentication request.

3. The method of claim 1 wherein the information comprises a credit card number associated with a user.

4. The method of claim 1 wherein the data repository is remotely located.

5. The method of claim 1 wherein the data repository cannot decrypt the encrypted data.

6. The method of claim 1 further comprising deleting the encrypted data, such that the encrypted data stored at the data repository is not stored locally.

7. The method of claim 1 wherein the information is used in a transaction between a user and the remote device.

8. The method of claim 7 wherein the transaction comprises the user making a purchase from the remote device.

9. The method of claim 1 further comprising preventing a decryption key associated with the encrypted data from being stored in the data repository.

10. The method of claim 1 wherein the data repository comprises a fully encrypted data store.

11. A system for protecting information, the system comprising:

a data repository configured to:

receive encrypted data comprising an encrypted field and an encrypted value;

receive a first request for the encrypted data, wherein the first request comprises the encrypted field;

retrieve the encrypted data by comparing the encrypted data to the encrypted field; and

send the encrypted value in response to the first request; and

a user module operating on a user device, configured to:

receive a second request for information from a remote device;

encrypt a field using an encryption key to generate the encrypted field;

send the first request for the encrypted data to the data repository;

receive the encrypted value from the data repository;

recover a value from the encrypted value; and

send at least the value to the remote device.

12. The system of claim 11 wherein the user module comprises an app operating on a mobile device.

13. The system of claim 11 wherein the user module comprises code running in a web browser.

14. The system of claim 11 wherein the user module is further configured to encrypt the field using deterministic encryption.

15. The system of claim 11 wherein the user module is further configured to:

generate the encrypted data;

send the encrypted data to the identity repository prior to the first request; and

delete the information after encrypting the data associated with the information.

16. An information protection system comprising:

a user device coupled to a network and including a data processor and a non-transitory computer-readable storage medium comprising a plurality of computer-readable instructions tangibly embodied on the non-transitory computer-readable storage medium, which, when executed by a data processor, provide encrypted data protection, the plurality of instructions comprising:

instructions that cause the data processor to encrypt data associated with the information using an encryption key to generate encrypted data, wherein:

the data associated with the information comprises a field and a value; and

the encrypted data comprises an encrypted field and an encrypted value;

instructions that cause the data processor to send at least the encrypted data to the data repository;

instructions that cause the data processor to receive a request for at least the value from a remote device;

instructions that cause the data processor send a request for at least the value to the data repository, wherein the request for at least the value comprises the encrypted field;

instructions that cause the data processor to receive at least the encrypted value from the data repository, wherein the data repository uses the encrypted field to identify the encrypted value;

instructions that cause the data processor to decrypt the encrypted data using the encryption key

the encrypted value; and

instructions that cause the data processor to send at least the value to the remote device.

Assignments (6)
CORRECTIVE ASSIGNMENT TO CORRECT THE APPLICATION NO. 16/990,698 PREVIOUSLY RECORDED ON REEL 058294 FRAME 0010. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 21, 2022
From: TRU OPTIK DATA CORP.; NEUSTAR INFORMATION SERVICES, INC.; NEUSTAR DATA SERVICES, INC.; TRUSTID, INC.; NEUSTAR, INC.; NEUSTAR IP INTELLIGENCE, INC.; MARKETSHARE PARTNERS, LLC; SONTIQ, INC.
To: DEUTSCHE BANK AG NEW YORK BRANCH
Reel/Frame 059846/0157 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS RECORDED AT REEL 058294, FRAME 0161 Recorded Dec 27, 2021
From: JPMORGAN CHASE BANK, N.A.
To: EBUREAU, LLC; IOVATION, INC.; SIGNAL DIGITAL, INC.; TRANS UNION LLC; TRANSUNION INTERACTIVE, INC.; TRANSUNION RENTAL SCREENING SOLUTIONS, INC.; TRANSUNION TELEDATA LLC; AGGREGATE KNOWLEDGE, LLC; TRU OPTIK DATA CORP.; NEUSTAR INFORMATION SERVICES, INC.; TRUSTID, INC.; NEUSTAR, INC.; NEUSTAR IP INTELLIGENCE, INC.; MARKETSHARE PARTNERS, LLC; SONTIQ, INC.
Reel/Frame 058593/0852 →
GRANT OF SECURITY INTEREST IN PATENT RIGHTS Recorded Dec 1, 2021
From: TRU OPTIK DATA CORP.; NEUSTAR INFORMATION SERVICES, INC.; NEUSTAR DATA SERVICES, INC.; TRUSTID, INC.; NEUSTAR, INC.; NEUSTAR IP INTELLIGENCE, INC.; MARKETSHARE PARTNERS, LLC; SONTIQ, INC.
To: DEUTSCHE BANK AG NEW YORK BRANCH
Reel/Frame 058294/0010 →
GRANT OF SECURITY INTEREST IN UNITED STATES PATENTS Recorded Dec 1, 2021
From: EBUREAU, LLC; IOVATION, INC.; SIGNAL DIGITAL, INC.; TRANS UNION LLC; TRANSUNION HEALTHCARE, INC.; TRANSUNION INTERACTIVE, INC.; TRANSUNION RENTAL SCREENING SOLUTIONS, INC.; TRANSUNION TELEDATA LLC; AGGREGATE KNOWLEDGE, LLC; TRU OPTIK DATA CORP.; NEUSTAR INFORMATION SERVICES, INC.; TRUSTID, INC.; NEUSTAR, INC.; NEUSTAR IP INTELLIGENCE, INC.; MARKETSHARE PARTNERS, LLC; SONTIQ, INC.
To: JPMORGAN CHASE BANK, N.A
Reel/Frame 058294/0161 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 21, 2016
From: ONEID, INC.
To: NEUSTAR, INC.
Reel/Frame 040394/0455 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 28, 2012
From: KIRSCH, STEVEN TODD
To: ONEID INC.
Reel/Frame 028864/0453 →