IP Library Granted Patent US 10,116,629
Granted Patent B2
US 10,116,629 · App. 15/156,025 · Granted Oct 30, 2018

Systems and methods for obfuscation of data via an aggregation of cloud storage services

Inventors: Teo Winton Crofton (Sudbury, MA); David Raissipour (Westborough, MA)
Assignee: Carbonite, Inc.
H04L63/0428G06F17/30135G06F17/30283G06F17/30575G06F17/30584G06F21/6254H04L63/0407H04L67/06H04L67/1095H04L67/1097G06F17/301G06F17/30067H04L2209/16
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,116,629
App. No.
15/156,025
Granted
Oct 30, 2018
Kind
B2
Abstract

The present disclosure describes systems and methods for aggregation and management of cloud storage among a plurality of providers via file fragmenting to provide increased reliability and security. In one implementation, fragments or blocks may be distributed among a plurality of cloud storage providers, such that no provider retains a complete copy of a file. Accordingly, even if an individual service is compromised, a malicious actor cannot access the data. In another implementation, file fragmenting may be performed in a non-standard method such that file headers and metadata are divided across separate fragments, obfuscating the original file metadata.

Claims (21)

1. A method for obfuscation of data via an aggregation of cloud storage services, comprising: identifying, by a synchronization client of a client device, a file for transfer to an aggregation of a plurality of cloud storage services; extracting, by the synchronization client using a comb filter, a first subset of the file by skipping elements of the file to extract every n th element; transmitting, by the synchronization client, the first subset of the file to a first cloud storage service of the plurality of cloud storage services; extracting, by the synchronization client using the comb filter, a second subset of the file by skipping elements of the file to extract every n th element, offset by one, wherein in the extracting of the first subset and the extracting of the second subset, n is selected to avoid having a whole number relationship to a width of a memory read bus used by the synchronization client; transmitting, by the synchronization client, the second subset of the file to a second cloud storage service of the plurality of cloud storage services; and transmitting, by the synchronization client, metadata of the file and an identification of the first subset, first cloud storage service, second subset, and second cloud storage service, to a third cloud storage service.

2. The method of claim 1 , wherein each element comprises a predetermined number of bits.

3. The method of claim 1 , further comprising:

subsequently transmitting a request for the file, by the synchronization client to the third cloud storage service, the request comprising the metadata of the file; and

receiving, by the synchronization client from the third cloud storage service, identifications of the first subset, first cloud storage service, second subset, and second cloud storage service.

4. The method of claim 3 , further comprising:

retrieving, by the synchronization client, the first subset from the first cloud storage service;

retrieving, by the synchronization client, the second subset to the second cloud storage service;

and generating the file, by the synchronization client, from the first subset and second subset.

5. The method of claim 4 , wherein generating the file further comprises multiplexing the first subset and second subset into a single bitstream.

6. The method of claim 4 , wherein generating the file further comprises: loading the first subset and second subset into columns of an array having a predetermined number of columns; and reading a row of the array.

7. The method of claim 1 , wherein the first subset of the file does not include any consecutive bits of the file.

8. The method of claim 1 , wherein the first subset of the file does not include any consecutive bytes of the file.

9. A system for obfuscation of data via an aggregation of cloud storage services, comprising: a client device, in communication with a plurality of cloud storage services, comprising a processor executing a synchronization client, wherein the synchronization client is configured to: identify a file for transfer to an aggregation of the plurality of a cloud storage services, extract, using a comb filter, a first subset of the file by skipping elements of the file to extract every n th element, transmit the first subset of the file to a first cloud storage service of the plurality of cloud storage services, extract using the comb filter, a second subset of the file by skipping elements of the file to extract every n th element, offset by one, wherein in extracting of the first subset and the extracting of the second subset, n is selected to avoid having a whole number relationship to a width of a memory read bus used by the synchronization client, transmit the second subset of the file to a second cloud storage service of the plurality of cloud storage services, and transmit metadata of the file and an identification of the first subset, first cloud storage service, second subset, and second cloud storage service, to a third cloud storage service.

10. The system of claim 9 , wherein each element comprises a predetermined number of bits.

11. The system of claim 9 , wherein the synchronization client is further configured to: subsequently transmit a request for the file, to the third cloud storage service, the request comprising the metadata of the file; and receive, from the third cloud storage service, identifications of the first subset, first cloud storage service, second subset, and second cloud storage service.

12. The system of claim 11 , wherein the synchronization client is further configured to: retrieve the first subset from the first cloud storage service; retrieve the second subset to the second cloud storage service; and generate the file from the first subset and second subset.

13. The system of claim 12 , wherein the synchronization client is further configured to multiplex the first subset and second subset into a single bitstream.

14. The system of claim 12 , wherein the synchronization client is further configured to: load the first subset and second subset into columns of an array having a predetermined number of columns; and read a row of the array.

15. The system of claim 9 , wherein the first subset of the file does not include any consecutive elements of the file, each element having a predetermined length.

16. The system of claim 9 , wherein the synchronization client is further configured to encrypt the first subset of the file, prior to transmission of the first subset of the file to the first cloud storage service; and encrypt the second subset of the file, prior to transmission of the second subset of the file to the second cloud storage service.

Assignments (7)
ASSIGNMENT AND ASSUMPTION AGREEMENT Recorded Oct 12, 2023
From: CARBONITE, LLC
To: OPEN TEXT INC.
Reel/Frame 065222/0310 →
CERTIFICATE OF CONVERSION Recorded Oct 12, 2023
From: CARBONITE, INC.
To: CARBONITE, LLC
Reel/Frame 065222/0303 →
RELEASE OF SECURITY INTEREST IN PATENT RIGHTS RECORDED AT R/F 048723/0374 Recorded Dec 26, 2019
From: BARCLAYS BANK PLC, AS COLLATERAL AGENT
To: CARBONITE, INC.
Reel/Frame 051418/0807 →
SECURITY INTEREST Recorded Mar 28, 2019
From: CARBONITE, INC.
To: BARCLAYS BANK PLC, AS COLLATERAL AGENT
Reel/Frame 048723/0374 →
TERMINATION OF PATENT SECURITY AGREEMENT FILED AT R/F 045640/0335 Recorded Mar 26, 2019
From: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT
To: CARBONITE, INC.
Reel/Frame 048702/0929 →
SECURITY INTEREST Recorded Mar 19, 2018
From: CARBONITE, INC.
To: SILICON VALLEY BANK
Reel/Frame 045640/0335 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 18, 2016
From: CROFTON, TEO WINTON; RAISSIPOUR, DAVID
To: CARBONITE, INC.
Reel/Frame 038632/0045 →
Continuity (1)
Related Publication 20170331796A1 · Nov 16, 2017
Cited By (3)
US 12,342,007 US 12,382,148 US 12,436,916