IP Library Patent Application 15235069
Patent Application
App. No. 15/235,069

AUTOMATIC MEMORY SECURITY

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
15/235,069
Abstract

A computing device has a security module that (i) receives a request to decrypt encrypted data; (ii) sets up an uninterruptible timer based on a specified time interval; (iii) decrypts the encrypted data to generate and stores corresponding decrypted data in a memory within the computing device; and (iv) provides a trigger signal to delete the decrypted data from the memory after expiration of the specified time interval as determined by the timer. The security module limits the duration that the decrypted data is stored in the memory and thus reduces the chance the data can be subject to unauthorized accessed.

Claims (32)

1 . An article of manufacture comprising a computing device comprising a security module configured to:

receive a request to decrypt encrypted data;

set up an uninterruptible timer based on a specified time interval;

decrypt the encrypted data to generate and store corresponding decrypted data in a memory within the computing device; and

provide a trigger signal to delete the decrypted data from the memory after expiration of the specified time interval as determined by the uninterruptible timer.

2 . The article of claim 1 , wherein:

the encrypted data is part of a key blob further comprising an encrypted blob key; and

the security module is configured to:

decrypt the encrypted blob key using a blob-key encryption key to generate a decrypted version of a blob key; and

decrypt the encrypted data using the decrypted version of the blob key to generate the decrypted data.

3 . The article of claim 2 , wherein the security module is further configured to:

encrypt data using the blob key to generate the encrypted data;

encrypt the blob key using the blob-key encryption key to generate the encrypted blob key; and

combine the encrypted data and the encrypted blob key to generate the key blob.

4 . The article of claim 3 , wherein the computing device comprises:

a random number generator configured to generate the blob key; and

a register configured to store the blob-key encryption key.

5 . The article of claim 4 , wherein the security module comprises the random number generator and the register.

6 . The article of claim 1 , wherein the security module comprises the timer.

7 . The article of claim 1 , wherein the memory is a generic system memory outside of the security module.

8 . The article of claim 1 , wherein the memory is a secure memory inside the security module.

9 . The article of claim 1 , wherein the computing device is implemented as an integrated circuit comprising the security module.

10 . A method for an article of manufacture comprising a computing device comprising a security module, the method comprising:

the security module receiving a request to decrypt encrypted data;

the security module setting up an uninterruptible timer based on a specified time interval;

the security module decrypting the encrypted data to generate and store corresponding decrypted data in a memory within the computing device; and

the security module providing a trigger signal to delete the decrypted data from the memory after expiration of the specified time interval as determined by the timer.

11 . A non-transitory machine-readable storage medium, having encoded thereon program code, wherein, when the program code is executed by a machine, the machine implements a method for an article of manufacture comprising a computing device comprising a security module, the method comprising:

the security module receiving a request to decrypt encrypted data;

the security module setting up an uninterruptible timer based on a specified time interval;

the security module decrypting the encrypted data to generate and store corresponding decrypted data into memory within the computing device; and

the security module providing a trigger signal to delete the decrypted data from the memory after expiration of the timer's specified time interval.

Assignments (3)
CORRECTIVE ASSIGNMENT TO CORRECT THE NATURE OF CONVEYANCE PREVIOUSLY RECORDED AT REEL: 040626 FRAME: 0683. ASSIGNOR(S) HEREBY CONFIRMS THE MERGER AND CHANGE OF NAME EFFECTIVE NOVEMBER 7, 2016. Recorded Jan 12, 2017
From: NXP SEMICONDUCTORS USA, INC. (MERGED INTO); FREESCALE SEMICONDUCTOR, INC. (UNDER)
To: NXP USA, INC.
Reel/Frame 041414/0883 →
CHANGE OF NAME Recorded Nov 16, 2016
From: FREESCALE SEMICONDUCTOR INC.
To: NXP USA, INC.
Reel/Frame 040626/0683 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 11, 2016
From: CHEN, GUOYIN; WANG, HAORAN; WANG, ZENING
To: FREESCALE SEMICONDUCTOR,INC.
Reel/Frame 039412/0606 →