US2021382985A1PendingUtilityA1

Virus immune computer system and method

Assignee: ATENSE INCPriority: Dec 12, 2017Filed: Aug 24, 2021Published: Dec 9, 2021
Est. expiryDec 12, 2037(~11.4 yrs left)· nominal 20-yr term from priority
Inventors:John Almeida
G06F 8/61G06F 2221/033G06F 21/51G06F 21/56H04L 9/0894G06F 21/54
66
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A method and apparatus prevents hacker code from infecting an application program by requiring decryption of the application program prior to running the application program on a computer. The method includes steps of: providing a security device that is a separate unit from components necessary to operate the computer; storing a symmetric private key on the security device; using the device symmetric private key to produce an encrypted application program upon first installation; thereafter decrypting that part of the encrypted application program needed implement a command to run the application program; and, decrypting, on the fly, only those follow-on parts of the encrypted application program needed to perform functions called for during operation of the application program.

Claims

exact text as granted — not AI-modified
1 . A security device for improving operation of a computer to provide it immunity from infection of a software program by a software virus or in memory software code injection, the security device comprising:
 a first-non-transitory computer storage medium installed within a unit that is separate from components necessary for the operation of the computer;   a symmetric private key usable for encryption and decryption of a software program, the symmetric private key stored on the first-non-transitory computer storage medium within the unit;   a second-non-transitory computer storage medium that is necessary for operation of the computer, the second-non-transitory computer storage medium storing computer code operable to:   enable the computer to which the unit is connected to use the symmetric private key to encrypt a software program upon first installation of the software program and thereby create a first-encrypted software program;   require the computer to use the symmetric private key upon each startup of the first-encrypted software program to decrypt the first-encrypted software program to produce a first-decrypted software program;   execute the first-decrypted software program on the computer; and   prevent access to the symmetric private key after the symmetric private key is first accessed to produce the first-decrypted software program, unless express authorization is first obtained.   
     
     
         2 . The security device of  claim 1 , where in the computer code is further operable to preclude running on the computer any software program that has not been encrypted with the symmetric private key. 
     
     
         3 . The security device of  claim 1 , wherein the first-non-transitory computer storage medium is incorporated into a component selected from the group consisting of an electronic chip, a computer board, a wireless communication device, a central processor unit, and a universal serial bus device. 
     
     
         4 . The security device of  claim 1 , further comprising:
 an electronic chip incorporating the unit;   an electronic tristate switch in the electronic chip; and   the electronic chip configured to activate the electronic tristate switch to prevent transfer of the symmetric private key from the first-non-transitory computer storage medium a second time while the electronic chip is powered-up.   
     
     
         5 . A method for improving operation of a computer to provide the computer with immunity from infection of a software program by a software virus or by memory software code injection, the method comprising the steps of:
 hosting an operating system in a non-transitory computer storage medium accessible by a computer;   receiving at the computer an encrypted device symmetric private key through a network connection;   decrypting the encrypted device symmetric private key on the computer to derive a decrypted device symmetric private key;   encrypting a software program using the decrypted device symmetric private key upon first installation of the software program and thereby create an encrypted software program that is the only installed version of the software program on the computer;   when executing a command to start the software program, requiring the operating system to use the decrypted device symmetric private key to decrypt a first part of the encrypted software program necessary to start the software program;   requiring the computer to use the decrypted device symmetric private key to subsequently decrypt any second part of the encrypted software program that is needed during operation of the first part; and   precluding the operating system from running any executable code that has not been previously encrypted with the decrypted device symmetric private key.   
     
     
         6 . The method of  claim 5 , further comprising the step of storing the first part and any second part that is decrypted in a random access memory accessible by the computer. 
     
     
         7 - 8 : (canceled)

Join the waitlist — get patent alerts

Track US2021382985A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.