IP Library Granted Patent US 11,716,195
Granted Patent B2
US 11,716,195 · App. 17/077,064 · Granted Aug 1, 2023

Facilitating communications using hybrid cryptography

Inventor: Joël Alwen (Vienna, AT)
Assignee: Amazon Technologies, Inc.
H04L9/085H04L9/0822H04L9/0844H04L9/0861H04L9/16H04L9/3247H04L63/0428
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,716,195
App. No.
17/077,064
Granted
Aug 1, 2023
Kind
B2
Abstract

The present application describes a method, system, and non-transitory computer-readable medium for exchanging encrypted communications using hybrid encryption. According to the present disclosure, a first device receives an encrypted communication from a second device. The encrypted communication includes a first encrypted secret, a second encrypted secret, a first signature, and a second signature. The first device verifies the first signature and the second signature, and, when the first and second signatures are valid, decrypts the first encrypted secret using a first encryption algorithm and the second encrypted secret using a second encryption algorithm. The first device combines the first decrypted secret and the second decrypted secret to recover a first communication and provides the first communication to a user of the first device.

Claims (62)

1. A method comprising:

generating, by a first device and based on a secret sharing algorithm, a first secret and a second secret from a first communication;

encrypting, using a first encryption algorithm, the first secret;

encrypting, using a second encryption algorithm, the second secret;

generating a first signature of the first and second encrypted secrets;

generating a second signature of the first and second encrypted secrets; and

transmitting, by the first device to a second device, the first encrypted secret, the second encrypted secret, the first signature, and the second signature.

2. The method of claim 1 , wherein:

the first encryption algorithm is part of a first cipher suite is associated with the first device; and

the second encryption algorithm is part of a second cipher suite is associated with the second device.

3. The method of claim 1 , wherein:

the first encryption algorithm is part of a first cipher suite is associated with the first device; and

the second encryption algorithm is part of a second cipher suite is associated with the first device.

4. The method of claim 3 , wherein the second cipher suite is a post-quantum secure cipher suite.

5. The method of claim 1 , wherein the secret sharing algorithm comprises a Boolean operation.

6. The method of claim 1 , wherein the first communication comprises at least one of: a text message, an SMS message, an MMS message, a video message, a file transfer, a voice recording, a voice memo, and a GIF.

7. The method of claim 1 , wherein the first communication comprises an encryption key.

8. The method of claim 1 , wherein generating the first signature of the first and second encrypted secrets comprises generating the first signature of the first and second encrypted secrets using a first signing key, and wherein generating the second signature of the first and second encrypted secrets comprises generating the second signature of the first and second encrypted secrets using a second signing key.

9. A method comprising:

receiving, by a second device from a first device, a first encrypted secret, a second encrypted secret, a first signature, and a second signature;

verifying the first signature using a first public signing key corresponding to a first combination of the first encrypted secret and the second encrypted secret;

verifying the second signature using a second public signing key corresponding to a second combination of the first encrypted secret and the second encrypted secret; and

based on a verification of the first signature and the second signature:

decrypting the first encrypted secret using a first encryption algorithm;

decrypting the second encrypted secret using a second encryption algorithm; and

combining, using a secret sharing algorithm, the first decrypted secret and the second decrypted secret to recover a first communication.

10. The method of claim 9 , wherein:

the first encryption algorithm is part of a first cipher suite is associated with the first device; and

the second encryption algorithm is part of a second cipher suite is associated with the second device.

11. The method of claim 9 , wherein:

the first encryption algorithm is part of a first cipher suite is associated with the first device; and

the second encryption algorithm is part of a second cipher suite is associated with the first device.

12. The method of claim 11 , wherein the second cipher suite is a post-quantum secure cipher suite.

13. The method of claim 9 , wherein the secret sharing algorithm comprises a Boolean operation.

14. The method of claim 9 , wherein the first communication comprises at least one of: a text message, an SMS message, an MMS message, a video message, a file transfer, a voice recording, a voice memo, and a GIF.

15. The method of claim 9 , wherein the first communication comprises an encryption key.

16. A system comprising:

a first physical device; and

a second physical device,

wherein the first physical device is configured to:

generate, based on a secret sharing algorithm, a first secret and a second secret from a first communication;

encrypt, using a first encryption algorithm, the first secret;

encrypt, using a second encryption algorithm, the second secret;

generate a first signature of the first and second encrypted secrets;

generate a second signature of the first and second encrypted secrets; and

transmit, to the second physical device, the first encrypted secret, the second encrypted secret, the first signature, and the second signature; and

wherein the second physical device is configured to:

receive the first encrypted secret, the second encrypted secret, the first signature, and the second signature;

verify the first signature and the second signature; and

based on a verification of the first signature and the second signature:

decrypt, using the first encryption algorithm, the first encrypted secret;

decrypt, using the second encryption algorithm, the second encrypted secret; and

combine, using the secret sharing algorithm, the first decrypted secret and the second decrypted secret to recover the first communication.

17. The system of claim 16 , wherein:

the first encryption algorithm is part of a first cipher suite is associated with the first physical device; and

the second encryption algorithm is part of a second cipher suite is associated with the second physical device.

18. The system of claim 16 , wherein:

the first encryption algorithm is part of a first cipher suite is associated with the first physical device; and

the second encryption algorithm is part of a second cipher suite is associated with the first physical device, wherein the second cipher suite is a post-quantum secure cipher suite.

19. The system of claim 16 , wherein the secret sharing algorithm comprises a Boolean operation.

20. The system of claim 16 , wherein the first communication comprises at least one of: a text message, an SMS message, an MMS message, a video message, a file transfer, a voice recording, a voice memo, and a GIF.

21. The system of claim 16 , wherein the first communication comprises an encryption key.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 31, 2021
From: WICKR LLC
To: AMAZON TECHNOLOGIES, INC.
Reel/Frame 057366/0573 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 22, 2020
From: ALWEN, JOËL
To: WICKR INC.
Reel/Frame 054136/0305 →