IP Library Granted Patent US 12,580,968
Granted Patent B2
US 12,580,968 · App. 18/393,872 · Granted Mar 17, 2026

System and method for secure data exchange between operational technology systems and external networks in air-gap architecture environment

Inventors: Saad A. Alharbi (Dhahran, SA); Bader W. Alkhaldi (Dammam, SA); Ahmad M. Albarrak (Dhahran, SA); Hussain A. Alkhaldi (Dhahran, SA); Saleem E. Alharthi (Dammam, SA); Saad G. Alamri (Dhahran, SA); Mashary F. Alotaibi (Dammam, SA)
Assignee: SAUDI ARABIAN OIL COMPANY
H04L63/20H04L67/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,580,968
App. No.
18/393,872
Granted
Mar 17, 2026
Kind
B2
Abstract

A system for secure data exchange between an operational technology network and an external information technology network separated by an air gap. The system includes a handheld computing device, a first central station coupled to the external information technology network and a receptacle for detachable coupling to the handheld computing device. The system also includes a second central station coupled to the operational technology network and a receptacle for detachable coupling to the handheld computing device. The system manages secure file transfers between the first central station and the second central station in which a file is uploaded to the detachable handheld device, and in which the handheld device is detachable and moveable from the first central station to the second central station or vice versa. Thereafter, the handheld device is attachable to the central station to which it has been moved to enable secure downloading of the file.

Claims (31)

1 . A system for secure data exchange between an operational technology network and an external information technology network separated from the operational technology network via an air gap comprising:

a handheld computing device;

a first central station coupled to the external information technology network including a processor configured with program instructions and a receptacle for detachable coupling to the handheld computing device; and

a second central station coupled to the operational technology network including a processor configured with program instructions and a receptacle for detachable coupling to the handheld computing device;

wherein data transfers occur between the first central station and the second central station by uploading data to the detachable handheld device, detaching and moving the handheld device from the first central station to the second central station or vice versa, attaching the handheld device to the central station to which it has been moved, and downloading the data.

2 . The system of claim 1 , wherein the first central station and the second central station are configured to authenticate the handheld device upon attachment of the handheld device at the corresponding receptacles of the first and second central stations.

3 . The system of claim 2 , wherein the first central station and the second central station are configured to authenticate a user of the handheld device.

4 . The system of claim 2 , wherein the second central station is configured to authenticate the handheld device after transfer of the handheld device from the first central station to the second central station.

5 . The system of claim 1 , wherein the first central station is configured to sanitize the handheld device by removing all files stored on the handheld device prior to uploading the data to the handheld device.

6 . The system of claim 5 , wherein the first central station is configured to update security information on the handheld device after sanitizing the handheld device and before uploading the data to the handheld device.

7 . The system of claim 6 , wherein the second central station is configured to update security information based on the security information updated on the handheld device at the first central station.

8 . The system of claim 1 , wherein the second central station is configured to further sanitize the handheld device when data is uploaded at a first central station coupled to an operational technology network.

9 . A method for secure data exchange between an operational technology network and an external information technology network separated from the operational technology network via an air gap comprising:

uploading data at a first central station coupled to either: i) and external information technology network or ii) the operational technology network onto an attached secure handheld computing device;

detaching the handheld held device from the first central station;

transferring the handheld computing device to a second central station coupled to the other of the i) external information technology network or ii) the operational technology network;

attaching the secure handheld device to the second central station; and

downloading the data at the second central station.

10 . The method of claim 9 , further comprising authenticating the handheld device at the first central station.

11 . The method of claim 10 , further comprising authenticating a user initiating the upload at the first central station.

12 . The method of claim 10 , further comprising authenticating the handheld device at the second central station after transfer of the handheld device from the first central station to the second central station.

13 . The method of claim 9 , further comprising sanitizing the handheld device by removing all files stored on the handheld device at the first central station prior to uploading the data to the handheld device.

14 . The method of claim 13 , further comprising updating security information on the handheld device after sanitizing the handheld device and before uploading the data to the handheld device.

15 . The method of 14 , further comprising synchronizing the security information updated on the handheld device at the second central station.

16 . The method of claim 9 , further comprising, additionally sanitizing the handheld device at the second central station when data is uploaded at a first central station coupled to an operational technology network.

17 . A system for secure data exchange between an operational technology network and an external information technology network separated from the operational technology network via an air gap comprising:

a handheld computing device;

a first central station coupled to the external information technology network including a processor configured with program instructions and a receptacle for detachable coupling to the handheld computing device; and

a second central station coupled to the operational technology network including a processor configured with program instructions and a receptacle for detachable coupling to the handheld computing device;

wherein data transfers occur between the first central station and the second central station by uploading data to the detachable handheld device, detaching and moving the handheld device from the first central station to the second central station or vice versa, attaching the handheld device to the central station to which it has been moved, and downloading the data, and

wherein the first central station is configured to sanitize the handheld device by removing all files stored on the handheld device prior to uploading the data to the handheld device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 22, 2023
From: ALHARBI, SAAD A.; ALKHALDI, BADER W.; ALBARRAK, AHMAD M.; ALKHALDI, HUSSAIN A.; ALHARTHI, SALEEM E.; ALAMRI, SAAD G.; ALOTAIBI, MASHARY F.
To: SAUDI ARABIAN OIL COMPANY
Reel/Frame 065947/0549 →
Continuity (2)
Provisional Application 63591223 · Oct 18, 2023
Related Publication 20250133117A1 · Apr 24, 2025
References Cited (9)
US 11609994B2 · Eytan · 2023 [cited by examiner]
US 12445351B2 · Wittenschlaeger · 2025 [cited by examiner]
US 20240416398A1 · Yang · 2024 [cited by examiner]
No Author; Honeywell Brochure; Secure Media Exchange 2022; Rev 1; Nov. 2022; 13 pages. [cited by applicant]
No Author; A solution Guide to Operational Technology Cybersecurity; Fortinet; White Paper; Mar. 1, 2021; 24 pages. [cited by applicant]
Navaneeth et al; Secure File/Data Transfer Between Airgap Network; International Journal of Scientific Research in Science, Engineering and Technology, vol. 8, Issue 4, Jul.-Aug. 2021. [cited by applicant]
Sehn, Tim, “Transferring Data In and Out of Air-Gapped Networks | DoltHub Blog”, Jun. 26, 2023 (Jun. 26, 2023), pp. 1-15, XP093235979, Retrieved from the Internet: URL:https://web.archive.org/web/20230627201436/https://… [cited by applicant]
Suzaki, Kuniyasu et al: “DeviceVeil: Robust Authentication for Individual USB Devices Using Physical Unclonable Functions”, 2019 49TH Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), I… [cited by applicant]
International Search Report and Written Opinion for corresponding PCT Application No. PCT/US24/51911 dated Dec. 20, 2024 (10 pages). [cited by applicant]