IP Library Granted Patent US 10,789,373
Granted Patent B2
US 10,789,373 · App. 15/952,530 · Granted Sep 29, 2020

System and method for securely storing and sharing information

Inventors: Thomas Alan Reid (Athens, OH); Dennie Guy (Crawford, CO)
Assignee: REID CONSULTING GROUP, INC.
G06F21/602G06F21/6218H04L9/0637H04L9/083H04L9/14H04L9/3213H04L9/3231H04L9/3239H04L9/3271H04L2209/38H04L2209/42
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,789,373
App. No.
15/952,530
Granted
Sep 29, 2020
Kind
B2
Abstract

The present application generally relates to systems, devices, and methods to conduct the secure exchange of encrypted data using a three-element-core mechanism consisting of the key masters, the registries and the cloud lockboxes with application programming interfaces providing interaction with a wide variety of user-facing software applications. Together the mechanism provides full lifecycle encryption enabling cross-platform sharing of encrypted data within and between organizations, individuals, applications and devices. Further the mechanism generates chains of encrypted blocks to provide a distributed indelible ledger and support external validation. Triangulation among users, applications and the mechanism deliver both enterprise and business ecosystem cyber security features. Crowdsourcing of anomaly detection extends to users and to subjects of the data. Robust identity masking offers the benefits of anonymization while retaining accountability and enabling two-way communications. The mechanism may also provide high availability through multi-level fail over or operations to multiple instances of the core mechanism.

Claims (32)

1. A system for use by a plurality of participants within a community of interest for purposes of data integrity, privacy, security, confidentiality and non-repudiation, the system comprising: a tightly-coupled, distributed three-element-core mechanism comprising:

one or more registries managing identities and permissions;

one or more key masters generating, managing and exchanging keys, and providing encryption and decryption services based on third-party encryption libraries; and

one or more cloud lockboxes configured to store encrypted data and enable retrieval of protected data;

wherein the three-element-core mechanism is configured to interface with a software application to generate a chain of encrypted blocks stored in vault abstractions to serve as a distributed indelible ledger of transactions for a verification process in which the indelible ledgers are verifiable by a party or parties provided access to the chain of encrypted blocks.

2. The system of claim 1 , wherein contents of the encrypted blocks in the chain are flexible for adapting to a specific use case.

3. The system of claim 1 , wherein identity tokens and corresponding identity key pairs enable identity assertion within the chain of encrypted blocks.

4. The system of claim 1 , wherein identity masking tokens and corresponding identity masking key pairs enable anonymity within the chain of encrypted blocks.

5. The system of claim 1 , wherein the chain of encrypted blocks is configured to be transformed into additional and related chains of encrypted blocks to support a complex, multi-step use case with the blocks stored in one or more vault abstractions.

6. The system of claim 1 , wherein the verification process traverses all related chains of encrypted blocks.

7. The system of claim 4 , wherein a participant may trace their own anonymized activity through a series of transactions and through all related chains of encrypted blocks with the blocks stored in one or more vault abstractions.

8. The system of claim 1 , wherein contents of a block include data encrypted with two or more cryptographic keys.

9. The system of claim 1 , wherein the chain of encrypted blocks is configured to enable full public access to the chain of encrypted blocks for verification purposes through public access to associated vault abstractions.

10. The system of claim 9 , wherein enabling full public access to the chain of encrypted blocks maintains anonymity of individual identities.

11. The system of claim 1 , wherein the software application may process the chain of encrypted blocks without interaction with the three-element-core mechanism through independent access to the associated vault abstractions.

12. The system of claim 1 , wherein the chain of encrypted blocks is replicated to multiple storage locations as blocks are generated.

13. The system of claim 1 , wherein the system comprises a voting system, wherein the chain of encrypted blocks, identity tokens and corresponding identity key pairs, and masking tokens and corresponding making key pairs provide for a voting application that meets requirements of voter identification, anonymity of the ballot, and vote-count verification, both collectively and by individual voters through use of multiple related vault abstractions.

14. The system of claim 1 , wherein the system comprises a smart contract system, wherein the chain of encrypted blocks, identity tokens and corresponding identity key pairs, and project tokens and corresponding project key pairs provide for a smart contract application.

15. The system of claim 1 , wherein the system comprises a crypto currency system, wherein the chain of encrypted blocks, identity tokens and corresponding identity key pairs, masking tokens and corresponding masking key pairs, coin tokens and related data provide for a crypto currency application including commissioning a new coin offering.

16. The system of claim 15 , wherein the crypto currency system adapts to trade any commodity.

17. The system of claim 1 , further comprising hash values and digital signatures generated by multiple parties for the same data and configured to be used in the verification process.

18. The system of claim 1 , wherein a single block may include segments encrypted with different key lengths or different encryption algorithms.

19. The system of claim 1 , wherein elements of control for accessing data stored in the vault abstractions are split across the registry, the key master, and the cloud lockbox, the elements of control including identity assertion by the registry, cryptography key pairs by the key master, unique file identifiers in the registry, and encrypted files in the cloud lockbox.

20. A system for use by a plurality of participants within a community of interest for purposes of data integrity, privacy, security, confidentiality and non-repudiation, the system comprising: a tightly-coupled, distributed three-element-core mechanism comprising:

one or more registries managing identities and permissions;

one or more key masters generating, managing and exchanging keys, and providing encryption and decryption services based on third-party encryption libraries; and

one or more cloud lockboxes configured to store encrypted data and enable retrieval of protected data;

wherein the three-element-core mechanism is configured to interface with a software application to enable de-identification of identities in a dataset or a transaction stored in vault abstractions by generating and managing a masking token and a related masking key pair.

21. The system of claim 20 , wherein a two-way communication between the recipient of the de-identified data stored in one or more vault abstractions and a subject of the data occurs while maintaining anonymity of a subject.

22. The system of claim 20 , wherein data regarding the subject is added longitudinally to de-identified data while maintaining anonymity of a subject.

23. The system of claim 20 , wherein the data provided to the recipient of the de-identified data is tokenized to prevent re-identification and to eliminate value of the data to a third party.

24. The system of claim 20 , wherein elements of control for accessing data stored in the vault abstractions are split across the registry, the key master, and the cloud lockbox, the elements of control including identity assertion by the registry, cryptography key pairs by the key master, unique file identifiers in the registry, and encrypted files in the cloud lockbox.

Assignments (4)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 29, 2022
From: REID CONSULTING GROUP LLC
To: CROWDSTRIKE, INC.
Reel/Frame 059539/0775 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE NAME ON ASSIGNMENT DOCUMENT PREVIOUSLY RECORDED ON REEL 051728 FRAME 0854. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Mar 9, 2022
From: SEED PROTOCOL, LLC
To: REID CONSULTING GROUP LLC
Reel/Frame 059297/0762 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 5, 2020
From: SEED PROTOCOL, LLC
To: REID CONSULTING GROUP, INC.
Reel/Frame 051728/0854 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 12, 2018
From: REID, THOMAS ALAN; GUY, DENNIE
To: SEED PROTOCOL, LLC
Reel/Frame 047474/0107 →
Continuity (5)
Continuation In Part 15170981 · Jun 2, 2016
Continuation In Part 14539614 · Nov 12, 2014
Continuation In Part 13665861 · Oct 31, 2012
Provisional Application 61553883 · Oct 31, 2011
Related Publication 20180232526A1 · Aug 16, 2018
Cited By (6)
US 12,284,281 US 12,353,583 US 12,353,586 US 12,411,667 US 12,603,162 US 12,670,294