IP Library Granted Patent US 11,100,240
Granted Patent B2
US 11,100,240 · App. 16/127,082 · Granted Aug 24, 2021

Secure data parser method and system

Inventors: Mark S. O'Hare (Coto De Caza, CA); Rick L. Orsini (Flower Mound, TX); John VanZandt (Mission Viejo, CA); Roger S. Davenport (Campbell, TX)
Assignee: Security First Corp.
G06F21/62G06F21/31G06F21/32G06F21/33G06F21/40G06F21/41G06F21/60G06F21/602G06Q20/02G06Q20/04G06Q20/12G06Q20/3823G06Q20/3829G06Q20/38215G07F7/1016H04L9/085H04L9/0816H04L9/0894H04L9/3231H04L9/3247H04L9/3263H04L63/0428H04L63/0853H04L63/10H04L63/105G06F2221/2113G06F2221/2115G06F2221/2117H04L2209/24H04L2209/56H04L2209/68H04L2209/805
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,100,240
App. No.
16/127,082
Granted
Aug 24, 2021
Kind
B2
Abstract

The present invention provides a method and system for securing sensitive data from unauthorized access or use. The method and system of the present invention is useful in a wide variety of settings, including commercial settings generally available to the public which may be extremely large or small with respect to the number of users. The method and system of the present invention is also useful in a more private setting, such as with a corporation or governmental agency, as well as between corporation, governmental agencies or any other entity.

Claims (35)

1. A method for securely storing data, the method comprising:

receiving, using an electronic computing system, a request to store primary data;

distributing the primary data into a plurality of shares, wherein each share of the plurality of shares comprises less than all of the primary data;

generating a plurality of secondary data, such that the primary data can be reconstructed using at least a subset of the plurality of secondary data, wherein generating each respective secondary data of the plurality of secondary data comprises:

encrypting a respective share of the plurality of shares with a respective one of a plurality of distinct encryption keys, and

including in the respective secondary data the encrypted respective share and data indicative of at least one of the plurality of the distinct encryption keys, wherein the respective secondary data is based on less than all of the plurality of shares, and wherein the respective secondary data is generated based on a random or pseudorandom value; and

storing the plurality of secondary data on a plurality storage devices.

2. The method of claim 1 , wherein including data indicative of at least one of the distinct encryption keys into the respective secondary data comprises including data indicative of an encryption key that was used to encrypt a different share of the plurality of shares into the respective secondary data.

3. The method of claim 1 , wherein distributing the primary data into the plurality of shares comprises using the generated random or pseudorandom value.

4. The method of claim 3 , wherein a portion of the primary data is distributed into a particular share of the plurality of shares based on the generated random or pseudorandom value.

5. The method of claim 1 , wherein each share of the plurality of shares comprises a substantially random distribution of a subset of the primary data.

6. The method of claim 1 , further comprising generating the primary data by encrypting a data set.

7. The method of claim 1 , further comprising storing at least one of the plurality of distinct encryption keys in a different location from the plurality of secondary data.

8. A computer system for securing a data set, the system comprising:

input circuitry configured to receive a request to store primary data; and

at least one hardware processor, configured to:

distribute the primary data into a plurality of shares, wherein each share of the plurality of shares comprises less than all of the primary data;

generate a plurality of secondary data, such that the primary data can be reconstructed using at least a subset of the plurality of secondary data, wherein generating each respective secondary data of the plurality of secondary data comprises:

encrypting a respective share of the plurality of shares with a respective one of a plurality of distinct encryption keys, and

including in the respective secondary data the encrypted respective share and data indicative of at least one of the plurality of the distinct encryption keys, wherein the respective secondary data is based on less than all of the plurality of shares, and wherein the respective secondary data is generated based on a random or pseudorandom value; and

store the plurality of secondary data on a plurality of different storage devices.

9. The system of claim 8 , wherein, when including data indicative of at least one of the distinct encryption keys into the respective secondary data, the at least one hardware processor is configured to include data indicative of an encryption key that was used to encrypt a different share of the plurality of shares into the respective secondary data.

10. The system of claim 8 , wherein, when distributing the primary data into the plurality of shares, the at least one hardware processor is configured to use the generated random or pseudorandom value.

11. The system of claim 10 , wherein the at least one hardware processor is configured to distribute a portion of the primary data into a particular share of the plurality of shares based on the generated random or pseudorandom value.

12. The system of claim 8 , wherein each share of the plurality of shares comprises a substantially random distribution of a subset of the primary data.

13. The system of claim 8 , the at least one hardware processor is further configured to generate the primary data by encrypting a data set.

14. The system of claim 8 , the at least one hardware processor is further configured to store at least one of the plurality of distinct encryption keys in a different location from the plurality of secondary data.

15. A non-transitory computer-readable storage medium for securely storing data, the non-transitory computer-readable medium comprising:

computer program instructions recorded thereon, wherein the computer program instructions, when executed by a hardware processor, cause the hardware processor to perform operations comprising:

receiving a request to store primary data;

distributing the primary data into a plurality of shares, wherein each share of the plurality of shares comprises less than all of the primary data;

generating a plurality of secondary data, such that the primary data can be reconstructed using at least a subset of the plurality of secondary data, wherein generating each respective secondary data of the plurality of secondary data comprises:

encrypting a respective share of the plurality of shares with a respective one of a plurality of distinct encryption keys, and

including in the respective secondary data the encrypted respective share and data indicative of at least one of the plurality of distinct encryption keys, wherein the respective secondary data is based on less than all of the plurality of shares, and wherein the respective secondary data is generated based on a random or pseudorandom value; and

storing the plurality of secondary data on a plurality of different storage devices.

Assignments (2)
RELEASE OF SECURITY INTEREST Recorded Sep 30, 2022
From: GYENES, ANDY; AUBER INVESTMENTS LTD.; SIMONS, BARBARA; BLT1 C/O FAMILY OFFICE SOLUTIONS; O'REILLY, COLIN; COOPER ROAD LLC.; COYDOG FOUNDATION C/O FAMILY OFFICE SOLUTIONS; DASA INVESTMENTS LLC C/O FAMILY OFFICE SOLUTIONS; LAKOFF, DAVID E.; LEES, DAVID; O'REILLY, DAVID; OKST, DAVID; KEHLER, DEAN C.; KOBAK, DOROTHY; CRAWFORD, ELIZABETH; ALTMANN, ERIC; JOR, GERALD R, JR.; GRANDPRIX LIMITED C/O LOEB BLOCK & PARTNERS L.P.; RAUTENBERG, H.W.; HARPEL, JAMES W.; WU, JASPER; PEISACH, JAIME; LG MANAGEMENT LLC.; LTE PARTNERS; RAUTENBERG, MARK; PINTO, MAURICE; MEYTHALER INVESTMENT PARTNERS LLC; MASELLI, MICHAEL; GYENES, PETER; GINTHER, RAYMOND; BERKELEY, RICHARD M.; MERCER, ROBERT; ROLA INVESTMENTS LLC C/O FAMILY OFFICE SOLUTIONS; SOS & CO.; BARLE, STANKO; STRAUS, SANDOR; MIROCHNIKOFF, SYLVAIN; MERCER, REBEKAH; TOPSPIN SFC HOLDINGS LLC.; BARTON, WESLEY W.; ZUG VENTURES LLC C/O KATHY COOK, FUSION GROUP; ZUCKER, CHARLES; COLEMAN, ROGER T.; COLEMAN, MARGARET E.; COLEMAN, THERESA M.; COLEMAN, JOHN T.; PERLBINDER, STEPHEN
To: SECURITY FIRST CORP.
Reel/Frame 061578/0505 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 29, 2022
From: SECURITY FIRST CORP
To: SECURITY FIRST INNOVATIONS, LLC
Reel/Frame 061262/0865 →
Cited By (1)
US 12,235,946