IP Library Granted Patent US 8,009,830
Granted Patent B2
US 8,009,830 · App. 11/602,667 · Granted Aug 30, 2011

Secure data parser method and system

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,009,830
App. No.
11/602,667
Granted
Aug 30, 2011
Kind
B2
Abstract

A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths.

Claims (24)

1. A method for securing a transmission of data blocks in a data stream, the method comprising:

generating, using a secure data parser, an encryption key for the data stream;

encrypting each data block in the data stream with the encryption key;

distributing portions of the encryption key into at least two share headers for the data stream;

distributing, using the secure data parser, data units from the encrypted data blocks into at least two data shares, wherein each of the at least two data shares respectfully contains a substantially random distribution of a respective subset of the data units; and

transmitting the at least two data shares and the at least two share headers to a remote location over at least one communications path, wherein the at least two share headers are transmitted independently from the at least two data shares, whereby the encryption key for the data stream is restorable from at least two share headers of the at least two share headers and the data stream is restorable from at least two data shares of the at least two data shares and from the restored encryption key.

2. The method of claim 1 further comprising:

generating integrity information for each encrypted data block in the data stream; and

transmitting the integrity information to the remote location.

3. The method of claim 2 wherein the integrity information is transmitted with the at least two data shares.

4. The method of claim 2 wherein the integrity information is selected from the group consisting of a hash, a MAC signature, and a digital signature.

5. The method of claim 1 wherein distributing portions of the encryption key comprises distributing portions of the encryption key using a secret sharing algorithm.

6. The method of claim 5 wherein the secret sharing algorithm is selected from the group consisting of Shamir and Blakely.

7. The method of claim 1 wherein transmitting the at least two data shares and the at least two share headers comprises transmitting the at least two data shares and the at least two share headers on a single communications path in a serial transmission.

8. The method of claim 1 wherein transmitting the at least two data shares and the at least two share headers comprises transmitting the at least two data shares and the at least two share headers over multiple communications paths in parallel.

9. The method of claim 1 wherein the transmitting is performed using a file-sharing application.

10. The method of claim 1 wherein the transmitting is performed using a voting or polling application.

11. The method of claim 1 wherein the transmitting is performed using a voice over IP (VoIP) application.

12. The method of claim 1 wherein the data blocks are selected from the group consisting of network data packets, network voice packets, and file system data blocks.

13. The method of claim 1 further comprising:

appending redundancy information to the at least two data shares; and

transmitting the redundancy information to the remote location.

14. The method of claim 1 further comprising encrypting the encryption key with a workgroup key before distributing the encryption key.

15. The method of claim 14 wherein encrypting the encryption key with the workgroup key comprises encrypting the encryption key using an AES key wrap function.

Assignments (4)
RELEASE OF SECURITY INTEREST Recorded Sep 30, 2022
From: GYENES, ANDY; AUBER INVESTMENTS LTD.; SIMONS, BARBARA; BLT1 C/O FAMILY OFFICE SOLUTIONS; O'REILLY, COLIN; COOPER ROAD LLC.; COYDOG FOUNDATION C/O FAMILY OFFICE SOLUTIONS; DASA INVESTMENTS LLC C/O FAMILY OFFICE SOLUTIONS; LAKOFF, DAVID E.; LEES, DAVID; O'REILLY, DAVID; OKST, DAVID; KEHLER, DEAN C.; KOBAK, DOROTHY; CRAWFORD, ELIZABETH; ALTMANN, ERIC; JOR, GERALD R, JR.; GRANDPRIX LIMITED C/O LOEB BLOCK & PARTNERS L.P.; RAUTENBERG, H.W.; HARPEL, JAMES W.; WU, JASPER; PEISACH, JAIME; LG MANAGEMENT LLC.; LTE PARTNERS; RAUTENBERG, MARK; PINTO, MAURICE; MEYTHALER INVESTMENT PARTNERS LLC; MASELLI, MICHAEL; GYENES, PETER; GINTHER, RAYMOND; BERKELEY, RICHARD M.; MERCER, ROBERT; ROLA INVESTMENTS LLC C/O FAMILY OFFICE SOLUTIONS; SOS & CO.; BARLE, STANKO; STRAUS, SANDOR; MIROCHNIKOFF, SYLVAIN; MERCER, REBEKAH; TOPSPIN SFC HOLDINGS LLC.; BARTON, WESLEY W.; ZUG VENTURES LLC C/O KATHY COOK, FUSION GROUP; ZUCKER, CHARLES; COLEMAN, ROGER T.; COLEMAN, MARGARET E.; COLEMAN, THERESA M.; COLEMAN, JOHN T.; PERLBINDER, STEPHEN
To: SECURITY FIRST CORP.
Reel/Frame 061578/0505 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 29, 2022
From: SECURITY FIRST CORP
To: SECURITY FIRST INNOVATIONS, LLC
Reel/Frame 061262/0865 →
PATENT SECURITY AGREEMENT Recorded Jun 24, 2016
From: SECURITY FIRST CORP.
To: GYENES, ANDY; AUBER INVESTMENTS LTD.; SIMONS, BARBARA; BLT1; O'REILLY, COLIN; COOPER ROAD LLC; COYDOG FOUNDATION; DASA INVESTMENTS LLC; LAKOFF, DAVID E; LEES, DAVID; O'REILLY, DAVID; OKST, DAVID; KEHLER, DEAN C; KOBAK, DOROTHY; CRAWFORD, ELIZABETH; ALTMANN, ERIC; JORDAN, GERALD R, JR; GRANDPRIX LIMITED; RAUTENBERG, H.W.; HARPEL, JAMES W.; WU, JASPER; PEISACH, JAIME; LG MANAGEMENT LLC; LTE PARTNERS; RAUTENBERG, MARK; PINTO, MAURICE; MEYTHALER INVESTMENT PARTNERS LLC; MASELLI, MICHAEL; GYENES, PETER; GINTHER, RAYMOND; BERKELEY, RICHARD M; MERCER, ROBERT; ROLA INVESTMENTS LLC; SOS & CO.; BARLE, STANKO; STRAUS, SANDOR; MIROCHNIKOFF, SYLVAIN; MERCER, REBEKAH; TOPSPIN SFC HOLDINGS LLC; BARTON, WESLEY W; ZUG VENTURES LLC; ZUCKER, CHARLES; COLEMAN, ROGER T.; COLEMAN, MARGARET E.; COLEMAN, THERESA M.; COLEMAN, JOHN T.; PERLBINDER, STEPHEN
Reel/Frame 039153/0321 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 13, 2007
From: ORSINI, RICK; O'HARE, MARK; DAVENPORT, ROGER; WINICK, STEVEN
To: SECURITY FIRST CORPORATION
Reel/Frame 019053/0553 →