EP3594845B1

Method, system and computer-readable medium for searching polymorphically encrypted data

Abstract

This record has no abstract on file.

EP3594845B1, drawing sheet 1
Sheet 1 of 18

Term

12.8 yearsleft in the term

Expires 11 July 2039.

  1. Priority and filed
  2. Granted
  3. Today
  4. Expires

13 claims: 2 independent, 11 dependent

  1. 1
    A method executed by one or more computing devices for searching polymorphically encrypted data, the method comprising:generating, by at least one of the one or more computing devices, one or more pseudonymous tokens by encrypting a ciphertext using a first algorithm and an encryption key, the first algorithm comprising a polymorphic algorithm configured to generate a distinct pseudonymous token for each application of the polymorphic algorithm to the same ciphertext with the same encryption key;storing, by at least one of the one or more computing devices, the one or more pseudonymous tokens in a data store;and identifying, by at least one of the one or more computing devices, data in the data store that corresponds to the ciphertext by querying the data store using a search token generated by encrypting the ciphertext using a second algorithm and the encryption key, the search token being distinct from the one or more pseudonymous tokens.
  2. 13
    At least one non-transitory computer-readable medium storing computer-readable instructions that, when executed by one or more computing devices, cause at least one of the one or more computing devices to:generate one or more pseudonymous tokens by encrypting a ciphertext using a first algorithm and an encryption key, the first algorithm comprising a polymorphic algorithm configured to generate a distinct pseudonymous token for each application of the polymorphic algorithm to the same ciphertext with the same encryption key;store the one or more pseudonymous tokens in a data store;and identify data in the data store that corresponds to the ciphertext by querying the data store using a search token generated by encrypting the ciphertext using a second algorithm and the encryption key, the search token being distinct from the one or more pseudonymous tokens.