SE545232C2

Beacon-based privacy-enabling communication system for tracing of mobile device users

Abstract

Repeatedly, as a mobile device (10) is carried around by a user who moves to different positions, a short-range wireless beacon signal is received (108, 128) from another mobile device (12, 14) when the devices are proximate to each other. A data entry is produced (110, 130) with information from the beacon signal that identifies the other mobile device or its user. Further functionality involves encrypting (112, 132) the data entry with a cryptographic encryption key, transmitting (114, 134) the encrypted data entry from the mobile device to a cloud-based data aggregation function (30), receiving (116, 136) the encrypted data entry from the mobile device, and storing (118, 138) the received encrypted data entry as aggregated encrypted data together with other encrypted data entries previously received from the mobile device. Subsequently, an access request is received (142, 142’, 142”), and the cryptographic decryption key is made available to allow decryption (144, 146) ofthe aggregated encrypted data ofthe mobile device as stored by the cloud-based data aggregation function.

SE545232C2, drawing sheet 1
Sheet 1 of 6

Term

No projected expiry on record.

  1. Priority and filed
  2. Granted
  3. Today

14 claims: 14 independent, 0 dependent

  1. 1
    A beacon-based privacy-preserving communication system for tracing of mobile device users, the system comprising:a mobile device (10), the mobile device having a short-range wireless communication interface (72) and a broadband communication interface (74);and a cloud-based data aggregation function (30), wherein: the mobile device (10) is configured for storing a cryptographic encryption key and a cryptographic decryption key, the mobile device (10) is configured for repeatedly, as the mobile device is carried around by a user who moves to different positions or locations: • receiving (108, 128), by the short-range wireless communication interface (72), a short-range wireless beacon signal from another mobile device (12, 14) when the devices are proximate to each other at a current position or location, • producing (110, 130) a data entry that at least comprises information from the short-range wireless beacon signal that identifies the other mobile device (12, 14) or a user thereof, • encrypting (112, 132) the data entry with the cryptographic encryption key, • transmitting (114, 134), by the broadband communication interface (74), the encrypted data entry to the cloud-based data aggregation function (30) over a wide-area communication network (20), the cloud-based data aggregation function (30) is configured for repeatedly: • receiving (116, 136) the encrypted data entry from the mobile device (10), and • storing (118, 138) the received encrypted data entry as aggregated encrypted data together with other encrypted data entries previously received from the mobile device (10), and the mobile device (10) is configured for: • receiving (142, 142’, 142”) an access request from a requesting entity being either the cloud-based data aggregation function (30) or another cloud-based function (50), and • in response uploading the cryptographic decryption key to the requesting entity, thereby making the cryptographic decryption key 545 232 available to allow decryption (144, 146) of the aggregated encrypted data of the mobile device (10) as stored by the cloud-based data aggregation function (30).
  2. 2
    A beacon-based privacy-preserving communication system for tracing of mobile device users, the system comprising:a mobile device (10), the mobile device having a short-range wireless communication interface (72) and a broadband communication interface (74);a cloud-based escrow service function (40);and a cloud-based data aggregation function (30), wherein: the mobile device (10) is configured for storing a cryptographic encryption key, the cloud-based escrow service function (40) is configured for storing (104) a cryptographic decryption key, the mobile device (10) is configured for repeatedly, as the mobile device is carried around by a user who moves to different positions or locations: • receiving (108, 128), by the short-range wireless communication interface (72), a short-range wireless beacon signal from another mobile device (12, 14) when the devices are proximate to each other at a current position or location, • producing (110, 130) a data entry that at least comprises information from the short-range wireless beacon signal that identifies the other mobile device (12, 14) or a user thereof, • encrypting (112, 132) the data entry with the cryptographic encryption key, • transmitting (114, 134), by the broadband communication interface (74), the encrypted data entry to the cloud-based data aggregation function (30) over a wide-area communication network (20), the cloud-based data aggregation function (30) is configured for repeatedly: • receiving (116) the encrypted data entry from the mobile device (10), and • storing (118) the received encrypted data entry as aggregated encrypted data together with other encrypted data entries previously received from the mobile device (10), and the cloud-based escrow service function (40) is configured for: 545 232 • receiving (142, 142’, 142”) an access request pertaining to the mobile device (10) or its user, and • in response, and conditionally upon having received a confirmation from the mobile device (10) over the wide-area communication network (20), making the cryptographic decryption key available to allow decryption (144, 146) of the aggregated encrypted data of the mobile device (10) as stored by the cloud-based data aggregation function (30).
  3. 3
    The communication system as defined in claim 1 or 2, wherein the cryptographic encryption key and the cryptographic decryption key are first and second cryptographic keys of a key pair for asymmetric encryption and decryption.
  4. 4
    The communication system as defined in claim 1 or 2, wherein the cryptographic encryption key and the cryptographic decryption key are one and the same single key for symmetric encryption and decryption.
  5. 5
    The communication system as defined in claim 2 or any claim dependent thereon, wherein the mobile device (10) is configured for uploading (102) the cryptographic decryption key to the cloud-based escrow service function (40).
  6. 6
    The communication system as defined in claim 4 when dependent on claim 2, wherein the mobile device (10) is configured for:storing a cryptographic signing key in addition to the key for symmetric encryption and decryption;signing the key for symmetric encryption and decryption with the cryptographic signing key;and uploading (102) the signed key for symmetric encryption and decryption to the cloud-based escrow service function (40).
  7. 7
    The communication system as defined in any preceding claim, wherein the information from the short-range wireless beacon signal that identifies the other mobile device (12, 14) or a user thereof and that is included in the data entry produced by the 545 232 mobile device (10) comprises a tokenized identifier of the mobile device (12, 14) or user thereof.
  8. 8
    The communication system as defined in any preceding claim, wherein the mobile device (10) is configured for producing (110, 130) the data entry by including also information about a received signal strength for the received short-range wireless beacon signal from the other mobile device (12, 14).
  9. 9
    The communication system as defined in any preceding claim, wherein the mobile device (10) is configured for producing (110, 130) the data entry by including also personal data about the user of the mobile device (10).
  10. 10
    The communication system as defined in claim 9, wherein the personal data about the user of the mobile device (10) includes one or more of the following:data that defines geographic locations visited by the mobile device (10);a current date;a current date and time;data that defines an identity of the user of the mobile device (10);data that defines an identity of the mobile device (10);medical health data pertaining to the user of the mobile device (10);- physical exercise data pertaining to the user of the mobile device (10);data about calendar events in the mobile device (10);data about diary entries made by the user of the mobile device (10);data that defines notes made by the user of the mobile device (10);and financial data pertaining to the user of the mobile device (10).
  11. 11
    The communication system as defined in claim 2 or any claim dependent thereon, wherein the cloud-based escrow service function (40) is configured to make the cryptographic decryption key available to allow decryption (144, 146) of the aggregated encrypted data by releasing the cryptographic decryption key to the cloud-based data aggregation function (30), and wherein the cloud-based data aggregation function (30) is configured for decrypting (146) the aggregated encrypted data by using the cryptographic decryption key released by the cloud-based escrow service function (40). 545 232
  12. 12
    The communication system as defined in claim 2 or any claim dependent thereon, wherein the cloud-based data aggregation function (30) is configured for:uploading the aggregated encrypted data to the cloud-based escrow service function (40);and wherein the cloud-based escrow service function (40) is configured for: decrypting the aggregated encrypted data provided by the cloud-based data aggregation function (30) by using the stored cryptographic decryption key, and delivering (148’) the decrypted data to the cloud-based data aggregation function (30).
  13. 13
    The communication system as defined in any of claims, wherein the aggregated encrypted data of the mobile device (10) is used (152, 152’, 152”) after decryption for any of the following:contact tracing;disease spreading control;locating missing people;criminal investigation;medical analysis;physical exercise analysis;and verification of a person’s whereabouts.
  14. 14
    A beacon-based privacy-preserving computerized method for tracing of mobile device users, the method comprising:A) repeatedly, as a mobile device (10) is carried around by a user who moves to different positions or locations: • receiving (108, 128) a short-range wireless beacon signal from another mobile device (12, 14) when the devices are proximate to each other at a current position or location, • producing (110, 130) a data entry that at least comprises information from the short-range wireless beacon signal that identifies the other mobile device (12, 14) or a user thereof, 545 232 • encrypting (112, 132) the data entry with a cryptographic encryption key, • transmitting (114, 134) the encrypted data entry from the mobile device (10) to a cloud-based data aggregation function (30), • receiving (116, 136) the encrypted data entry from the mobile device (10), and • storing (118, 138) the received encrypted data entry as aggregated encrypted data together with other encrypted data entries previously received from the mobile device (10);and B) subsequently: • receiving (142, 142’, 142”) an access request from a requesting entity being either the cloud-based data aggregation function (30) or another cloud-based function (50), and • in response uploading the cryptographic decryption key to the requesting entity, thereby making the cryptographic decryption key available to allow decryption (144, 146) of the aggregated encrypted data of the mobile device (10) as stored by the cloud-based data aggregation function (30).
Independent claims14