IP Library Granted Patent US 11,025,595
Granted Patent B2
US 11,025,595 · App. 16/178,919 · Granted Jun 1, 2021

Secure and anonymous data sharing

Inventor: Naga R. Kandregula (Cupertino, CA)
Assignee: Samsung Electronics Co., Ltd.
H04L63/0421H04L67/146H04L67/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,025,595
App. No.
16/178,919
Granted
Jun 1, 2021
Kind
B2
Abstract

A method and system for sharing data anonymously between a user's electronic device and a third-party host is provided. A data vault receives, from the electronic device, information about the electronic device and a third-party identifier. The third-party identifier uniquely identifies the third-party host. Using the information about the electronic device and the third-party identifier, the data vault validates the authenticity of the electronic device and the third-party host and identifies a user preference. The data vault server creates an authenticated baton payload that includes the user preference and does not contain user identification information. The data vault receives from the third-party host a request for user data with the authenticated baton payload previously provided to the electronic device. Upon verification of the request for user data and the authenticated baton payload, the data vault provides the requested data to the third-party host without the user identification information.

Claims (44)

1. A method for anonymous data sharing, the method comprises:

receiving, by a backend server, client device information and a third-party data package;

identifying, based on the client device information and the third-party data package, a personal user preference from a plurality of personal user preferences and interests;

creating an authenticated payload (AP) including a session identifier and the personal user preference without including a user identification, the session identifier corresponding to a data sharing session;

sending the AP to a client device based on the client device information;

receiving, from a third-party server, a request for data and the AP previously sent to the client device; and

providing, to the third-party server, requested data when the request for data corresponds with the personal user preference in the AP.

2. The method of claim 1 , wherein the third-party data package comprises a third-party identifier and third-party data, the method further comprising certifying an identity of a third-party host based on the third-party identifier.

3. The method of claim 2 , wherein the client device information further comprises at least one user option, and wherein the method further comprises corresponding the at least one user option with the third-party data.

4. The method of claim 1 , wherein the personal user preference includes specific personal information, without including user identification information, associated with the client device information that can be provided to a third-party host associated with the third-party data package.

5. The method of claim 1 , further comprising storing, in memory, the identified personal user preference in an access condition matrix and associating the access condition matrix with the session identifier.

6. The method of claim 5 , wherein receiving the request for data and the AP further comprises verifying the received AP corresponds to the access condition matrix.

7. The method of claim 6 , wherein verifying the received AP corresponds to the access condition matrix includes terminating an anonymous data sharing session based on the session identifier.

8. A backend server providing anonymous data sharing, the server comprising:

a memory; and

at least one processor connected to the memory, the at least one processor configured to:

receive, from a client device, client device information and a third-party data package;

identify, based on the client device information and the third-party data package, a personal user preference from a plurality of personal user preferences and interests;

create an authenticated payload (AP) including a session identifier and the personal user preference without including a user identification, the session identifier corresponding to a data sharing session;

send the AP to a client device based on the client device information;

receive, from a third-party server, a request for data and the AP previously sent to the client device; and

provide, to the third-party server, requested data when the request for data corresponds with the personal user preference in the AP.

9. The server of claim 8 , wherein the third-party data package comprises a third-party identifier and third-party data, and wherein the processor is further configured to certify an identity of a third-party host based on the third-party identifier.

10. The server of claim 9 , wherein the client device information further comprises at least one user option, and wherein the processor is further configured to correspond the at least one user option with the third-party data.

11. The server of claim 8 , wherein the personal user preference includes specific personal information, without including user identification information, associated with the client device information, that can be provided to a third-party host associated with the third-party data package.

12. The server of claim 8 , wherein the processor is further configured to store, in the memory, the identified personal user preference in an access condition matrix and to associate the access condition matrix with the session identifier.

13. The server of claim 12 , wherein when the processor receives the request for data and the AP, the processor is further configured to verify that the received AP corresponds with the access condition matrix.

14. The server of claim 13 , wherein when the processor cannot verify that the AP corresponds to the access condition matrix, the processor is configured to terminate an anonymous data sharing session based on the session identifier.

15. A non-transitory computer-readable medium comprising a plurality of instructions that, when executed by a processor of a backend server system, is configured to cause the processor to:

receive, from a client device, client device information and a third-party data package;

identify, based on the client device information and the third-party data package, a personal user preference from a plurality of personal user preferences and interests;

create an authenticated payload (AP) including a session identifier and the personal user preference without including a user identification, the session identifier corresponding to a data sharing session;

send the AP to a client device based on the client device information;

receive, from a third-party server, a request for data and the AP previously sent to the client device; and

provide, to the third-party server, requested data when the request for data corresponds with the personal user preference in the AP.

16. The non-transitory computer-readable medium of claim 15 , wherein the third-party data package comprises a third-party identifier and third-party data, and further comprising instructions that when executed by the processor, cause the processor to certify an identity of a third-party host based on the third-party identifier.

17. The non-transitory computer-readable medium of claim 16 , wherein the client device information further comprises at least one user option, and further comprising instructions that, when executed by the processor, cause the processor to correspond the at least one user option with third-party data.

18. The non-transitory computer-readable medium of claim 15 , wherein the personal user preference include specific personal information, without user identification information, associated with the client device information, that can be provided to a third-party host associated with the third-party data package.

19. The non-transitory computer-readable medium of claim 15 , further comprising instructions that, when executed by the processor, further cause the processor to:

store, in a memory, the identified personal user preference in an access condition matrix; and

associate the access condition matrix with the session identifier.

20. The non-transitory computer-readable medium of claim 19 , further comprising instructions that, when executed by the processor, further cause the processor to:

verify whether the received AP corresponds with the access condition matrix when the processor receives the request for data with the AP; and

terminate an anonymous data sharing session based on the session identifier when the processor cannot verify that the AP corresponds to the access condition matrix.

Assignments (2)
CORRECTIVE ASSIGNMENT TO CORRECT THE MIDDLE INITIAL OF THE INVENTOR PREVIOUSLY RECORDED AT REEL: 047404 FRAME: 0904. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 30, 2020
From: KANDREGULA, NAGA R.
To: SAMSUNG ELECTRONICS CO., LTD.
Reel/Frame 053941/0724 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 2, 2018
From: KANDREGULA, NAGA V
To: SAMSUNG ELECTRONICS CO., LTD
Reel/Frame 047404/0904 →
Continuity (2)
Provisional Application 62658441 · Apr 16, 2018
Related Publication 20190319932A1 · Oct 17, 2019
Cited By (1)
US 12,432,212