IL277089A

Passwordless security system for data-at-rest

Abstract

This record has no abstract on file.

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

23 claims: 3 independent, 20 dependent

  1. 1
    WO 2019/177712 PCT/US2019/016593 CLAIMS 1, A method comprising:encrypting data with a cryptographic key, the encrypted data being stored on a nontransitory computer memory of a first device;generating a plurality of key shards based on the cryptographic key such that the cryptographic key can be reconstituted from the plurality of key shards;and distributing the plurality of key shards among a plurality of devices such that the encrypted data is secured at the first device because the first device is incapable of decrypting the encrypted data due to an absence of the cryptographic key.
  2. 19
    20. A computing device comprising:a processor: and one or more memories that include data objects and instructions that, when executed by the processor, cause the computing device to: encrypt each of a plurality of data objects with a respective unique cryptographic key;generate a plurality of key shards for each unique cryptographic key;and distribute each of the plurality of key shards among a plurality of devices such that decryption of any of the plurality of data objects requires reconstituting a unique cryptographic key from a threshold number of the plurality of key shards distributed among the plurality of devices.
  3. 22
    23. A method for decrypting encrypted data stored on a non-transitory computer memory, the method comprising:obtaining a plurality of key shards from a plurality of devices;reconstituting a cryptographic key from the plurality of key shards;and enabling decryption of encrypted data stored on a non-transitory computer memory of a computing device with the reconstituted cryptographic key.