US2015286830A1PendingUtilityA1

Secure data parser method and system

Assignee: SECURITY FIRST CORPPriority: Sep 20, 1999Filed: May 12, 2015Published: Oct 8, 2015
Est. expirySep 20, 2019(expired)· nominal 20-yr term from priority
G06F 21/602H04L 63/0428G06F 21/62H04L 2209/68G06F 21/32G06F 21/41G06Q 20/04G06F 21/31G06F 21/40G06Q 20/02H04L 2209/805H04L 2209/24G06Q 20/3823G06Q 20/3829G06F 21/60G06F 21/33H04L 9/3231H04L 63/0853H04L 9/3247H04L 9/085G06Q 20/12G06F 2221/2115G06Q 20/38215H04L 2209/56H04L 63/105H04L 9/0894H04L 63/10G06F 2221/2113H04L 9/3263G06F 2221/2117G07F 7/1016H04L 9/0816
57
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

The present invention provides a method and system for securing sensitive data from unauthorized access or use. The method and system of the present invention is useful in a wide variety of settings, including commercial settings generally available to the public which may be extremely large or small with respect to the number of users. The method and system of the present invention is also useful in a more private setting, such as with a corporation or governmental agency, as well as between corporation, governmental agencies or any other entity.

Claims

exact text as granted — not AI-modified
1 . (canceled) 
     
     
         2 . A method performed by a programmed computer system for securing a data set in a computer network, the method comprising:
 a. producing a plurality of data shares, wherein each share comprises at least some but less than all of the data set;   b. substantially randomly assigning the data shares to a plurality of available data share receiving locations within the computer network; and   c. storing the data shares in the assigned receiving locations.   
     
     
         3 . The method of  claim 2 , further comprising encrypting the data set to generate an encrypted data set, wherein the at least some of the data set of each data share comprises at least some of the encrypted data set. 
     
     
         4 . The method of  claim 2 , further comprising encrypting the data shares. 
     
     
         5 . The method of  claim 2 , further comprising compressing the data set to generate a compressed data set, wherein the at least some of the data set of each data share comprises at least some of the compressed data set. 
     
     
         6 . The method of  claim 2 , further comprising encrypting and compressing the data set to generate an encrypted compressed data set, wherein the at least some of the data set of each data share comprises at least some of the encrypted compressed data set. 
     
     
         7 . The method of  claim 2 , wherein the computer network comprises an Internet network and the plurality of data share receiving locations comprise a plurality of data storage devices at geographically dispersed locations. 
     
     
         8 . The method of  claim 2 , wherein at least two of the plurality of data shares are stored in respectively different data share receiving locations. 
     
     
         9 . The method of  claim 2 , wherein the substantially randomly assigning is performed by a client computer system coupled to the computer network, and wherein the method further comprises communicating the plurality of data shares from the client computer system to respective assigned receiving locations of the computer network. 
     
     
         10 . The method of  claim 9 , wherein the communicating comprises separately transmitting at least two data shares to their respective assigned receiving locations, and wherein the storing comprises storing the at least two data shares on respective different data storage devices at geographically separated and independent data storage locations. 
     
     
         11 . The method of  claim 2 , wherein the data set is provided by a client computer coupled to the computer network, and the producing and substantially randomly assigning are performed by one or more computers coupled to the computer network that receive the data set from the client computer. 
     
     
         12 . A system for securing a data set in a computer network, the system comprising: one or more hardware processors configured to:
 d. produce a plurality of data shares, wherein each share comprises at least some but less than all of the data set;   e. substantially randomly assign the data shares to a plurality of available data share receiving locations within the computer network; and   f. store the data shares in the assigned receiving locations.   
     
     
         13 . The system of  claim 12 , wherein the one or more hardware processors are further configured to encrypt the data set to generate an encrypted data set, wherein the at least some of the data set of each data share comprises at least some of the encrypted data set. 
     
     
         14 . The system of  claim 12 , wherein the one or more hardware processors are further configured to encrypt the data shares. 
     
     
         15 . The system of  claim 12 , wherein the one or more hardware processors are further configured to compress the data set to generate a compressed data set, wherein the at least some of the data set of each data share comprises at least some of the compressed data set. 
     
     
         16 . The system of  claim 12 , wherein the one or more hardware processors are further configured to encrypt and compress the data set to generate an encrypted compressed data set, wherein the at least some of the data set of each data share comprises at least some of the encrypted compressed data set. 
     
     
         17 . The system of  claim 12 , wherein the computer network comprises an Internet network and the plurality of data share receiving locations comprise a plurality of data storage devices at geographically dispersed locations. 
     
     
         18 . The system of  claim 12 , wherein at least two of the plurality of data shares are stored in respectively different data share receiving locations. 
     
     
         19 . The system of  claim 12 , wherein the system comprises a client computer system, and wherein the one or more hardware processors are further configured to communicate the plurality of data shares from the client computer system to respective assigned receiving locations of the computer network. 
     
     
         20 . The system of  claim 19 , wherein the one or more hardware processors are configured to communicate by separately transmitting at least two data shares to their respective assigned receiving locations, and wherein the one or more hardware processors are configured to store by storing the at least two data shares on respective different data storage devices at geographically separated and independent data storage locations. 
     
     
         21 . The system of  claim 12 , wherein the data set is provided by a client computer coupled to the computer network. 
     
     
         22 . A non-transitory computer readable medium comprising instructions thereon for securing a data set in a computer network, the instructions comprising:
 g. instructions for producing a plurality of data shares, wherein each share comprises at least some but less than all of the data set;   h. instructions for substantially randomly assigning the data shares to a plurality of available data share receiving locations within the computer network; and   i. instructions for storing the data shares in the assigned receiving locations.   
     
     
         23 . The non-transitory computer readable medium of  claim 22 , further comprising instructions for encrypting the data set to generate an encrypted data set, wherein the at least some of the data set of each data share comprises at least some of the encrypted data set. 
     
     
         24 . The non-transitory computer readable medium of  claim 22 , further comprising instructions for encrypting the data shares. 
     
     
         25 . The non-transitory computer readable medium of  claim 22 , further comprising instructions for compressing the data set to generate a compressed data set, wherein the at least some of the data set of each data share comprises at least some of the compressed data set. 
     
     
         26 . The non-transitory computer readable medium of  claim 22 , further comprising instructions for encrypting and compressing the data set to generate an encrypted compressed data set, wherein the at least some of the data set of each data share comprises at least some of the encrypted compressed data set. 
     
     
         27 . The non-transitory computer readable medium of  claim 22 , wherein the computer network comprises an Internet network and the plurality of data share receiving locations comprise a plurality of data storage devices at geographically dispersed locations. 
     
     
         28 . The non-transitory computer readable medium of  claim 22 , wherein at least two of the plurality of data shares are stored in respectively different data share receiving locations. 
     
     
         29 . The non-transitory computer readable medium of  claim 22 , wherein the instructions for substantially randomly assigning are performed by a client computer system coupled to the computer network, and wherein the non-transitory computer readable medium further comprises instructions for communicating the plurality of data shares from the client computer system to respective assigned receiving locations of the computer network. 
     
     
         30 . The non-transitory computer readable medium of  claim 29 , wherein the instructions for communicating comprises instructions for separately transmitting at least two data shares to their respective assigned receiving locations, and wherein the instructions for storing comprises instructions for storing the at least two data shares on respective different data storage devices at geographically separated and independent data storage locations. 
     
     
         31 . The non-transitory computer readable medium of  claim 22 , wherein the data set is provided by a client computer coupled to the computer network, and the instructions for producing and substantially randomly assigning are performed by one or more computers coupled to the computer network that receive the data set from the client computer.

Join the waitlist — get patent alerts

Track US2015286830A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.