Universe avatar identity authentication method

By adopting avatar-based secure identity authentication method in the metaverse, using fuzzy extractors and blockchain technology, the problem of virtual avatars being vulnerable to disguise attacks and privacy leakage is solved, and user privacy protection and system security are improved.

CN120358097AActive Publication Date: 2025-07-22NANJING UNIV OF INFORMATION SCI & TECH
View PDF 3 Cites 0 Cited by

Patent Information

Application Number
CN202510847098.2
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-06-24
Publication Date
2025-07-22
Estimated Expiration
2045-06-24

AI Technical Summary

Technical Problem

In the metaverse, users’ virtual avatars are vulnerable to masquerading attacks and privacy leaks, affecting user experience and system security.

Method used

The secure identity authentication method based on user avatar is adopted, and biological information is encrypted using a fuzzy extractor, combining blockchain storage and session key encryption mechanism to ensure the uniqueness and interaction security of avatar identity.

Benefits of technology

While ensuring an immersive experience, it significantly improves the security and credibility of the metaverse, prevents disguise and information leakage, and enhances users' anti-fraud capabilities.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120358097A_ABST
    Figure CN120358097A_ABST
Patent Text Reader

Abstract

The invention discloses a meta universe avatar identity authentication method, and belongs to the technical field of identity authentication. The method comprises the following steps: obtaining a login result of a user and a scene server according to obtained user login information and information when the user registers to the scene server; and after the user and the scene server log in successfully, when the current user interacts with other users, performing meta universe avatar identity authentication through a security identity authentication mechanism based on the first image. According to the method, the privacy of the user can be ensured while the immersive experience of the user is ensured, the security and credibility of the universe are remarkably improved, the fraud prevention and anti-counterfeiting capability of the user can be effectively enhanced through a security identity authentication mechanism based on the first image, and all-around protection is provided for the activity of the user in the virtual world.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the technical field of identity authentication, and particularly to a method for authenticating the identity of a metaverse avatar. Background Art

[0002] With the rapid development of technology and the acceleration of the digitalization process, the metaverse has become a brand-new digital economic ecosystem, bringing users a highly immersive experience. This experience covers multiple fields such as social, medical, entertainment, education, and commerce. In the metaverse, users can create their digital characters - virtual avatars, which can be strange animals, human-like models, or even completely unique creative images. They are not only the identity identifiers of users in the virtual world but also the media for their interaction with others.

[0003] Although the metaverse provides immersive services, spoofing attacks are still a potential threat. Attackers may fraudulently deceive other users by imitating the virtual avatar images of others and steal their private information. In addition, since users communicate with the scenario server of the metaverse through a public channel, they are extremely vulnerable to various external security threats, such as the leakage of personal information such as users' habits and transaction records. These threats may not only endanger the privacy and security of users but also undermine the trust foundation of the metaverse and hinder its healthy development. Therefore, how to ensure user privacy and the security and credibility of the metaverse while guaranteeing the user experience has become an urgent problem to be solved. Summary of the Invention

[0004] The purpose of the present invention is to overcome the deficiencies in the prior art and provide a method for authenticating the identity of a metaverse avatar, which can ensure user privacy while guaranteeing the user's immersive experience and significantly improve the security and credibility of the metaverse.

[0005] To achieve the above object, the present invention is implemented by the following technical solution:

[0006] The present invention provides a method for authenticating the identity of a metaverse avatar, including:

[0007] Based on the obtained user login information and the information when the user registers with the scenario server, obtain the login results of the user and the scenario server;

[0008] If the login results of the user and the scenario server are login failures, stop the identity authentication; if the user and the scenario server log in successfully, when the current user interacts with other users, the current user sends an interaction notification to the scenario server and sends a first interaction request to other users;

[0009] After the scenario server receives the first interaction request, it encrypts the first image and the secret value of other users using the session key of the current user, generates the current communication ciphertext and sends it to the current user, and encrypts the first image and the secret value of the current user using the session key of other users, generates the other communication ciphertext and sends it to other users;

[0010] After other users receive the first interaction request and the other communication ciphertext, they send a second interaction request to the current user;

[0011] After the current user receives the current communication ciphertext and the second interaction request, it decrypts the current communication ciphertext to obtain the current decryption result, calculates the current user authentication information based on the second interaction request and the current decryption result, and sends the current user authentication information to other users;

[0012] After other users receive the current user authentication information, they decrypt the other communication ciphertext to obtain the other decryption result, obtain the other user response information based on the current user authentication information and the other decryption result, and send the other user response information to the current user;

[0013] After the current user receives the other user response information, it calculates the user identity information based on the other user response information, and obtains the user avatar identity authentication result based on the user identity information.

[0014] Optionally, it further includes:

[0015] Scenario server Construct the identity authentication system parameters ; where represents a non-singular finite field; represents a large prime number; represents the prime order of the cyclic additive group ; represents the cyclic additive group composed of the set of all integral points of the elliptic curve over the non-singular finite field ; represents the cyclic additive group 's generator; represents the identity of the scenario server; represents a one-way hash function.

[0016] Optionally, the acquisition of the information when the user registers with the scenario server includes:

[0017] Current user Inputs the current user account in the smart device connected to the metaverse 、current user password and current user biometric information ; Selects a random number as the first secret value and the current user's private key , the current user uses the fuzzy extractor in the smart device to encrypt the current user's biometric information and the current user's private key to generate the current user's encrypted value and the current user's auxiliary parameter ; calculates the current user's pseudo-identity , the current user's public key , the current user's encrypted value , the first secret value , and the current user's private key ; the current user sends their registration information to the scenario server ; ; ; ;

[0018] After receiving the current user's registration information , the scenario server checks for its existence and uniqueness in its database and on the blockchain; if it exists uniquely, the registration process is terminated, otherwise, the scenario server captures the appearance features of the current user's avatar ; the scenario server respectively selects random numbers as the second secret value , the third secret value , and calculates the current registration identifier , the first ciphertext , the first image of the current user's avatar , the third secret value , the first communication ciphertext ; the scenario server stores in its database, uploads to the blockchain, and sends the first communication ciphertext to the current user ; ; ; ;

[0019] After the current user receives the first communication ciphertext , they use the current user's private key Decrypt the first communication ciphertext , to obtain the first decrypted ciphertext ; According to the first decrypted ciphertext , calculate the first current user ciphertext , the second current user ciphertext , the current user registration and login verification value ; Store the information when the user registers with the scenario server in the database of the intelligent device ; Among them, represents the generator of the cyclic additive group ; represents a one-way hash function; represents the identity of the scenario server; represents the private key of the scenario server; represents encryption using the current user's public key; represents decryption using the current user's private key; represents an exclusive OR operation;

[0020] Similarly, the information of other users registering with the scenario server can be obtained.

[0021] Optionally, according to the obtained user login information and the information when the user registers with the scenario server, obtain the login results of the user and the scenario server, including:

[0022] The current user inputs the current user account in the intelligent device accessing the metaverse , the current user password and the current user's biometric information ; The current user uses the fuzzy extractor in the intelligent device to calculate the current user's encrypted numerical verification value , the current registration identifier verification value , the first ciphertext verification value , the current user login verification value ; The current user verifies whether holds. If it does not hold, the login process is terminated. If it holds, the login verification is successful; After successful login, the current user selects a random number as the fourth secret value , and generates the first timestamp ; According to the fourth secret value and the first timestamp , calculate the first communication digest ; the current user Send the first login information to the scenario server ;

[0023] The scenario server Upon receiving the first login information of the current user generate a second timestamp , and check whether it holds; if not, discard the first login information ; otherwise, calculate the first update value , the second communication digest verification value ; verify whether it holds; if not, the scenario server fails the login for the current user ; if it holds, the scenario server succeeds in logging in the current user , and the scenario server selects a random number as the fifth secret value , and calculates the second ciphertext based on the fifth secret value , the third communication digest , the session key between the current user and the scenario server , the fourth communication digest ; the scenario server sends the second login information to the current user ; where ; represents the preset timestamp difference;

[0024] The current user after receiving the second login information generates a third timestamp , and verifies whether it holds; if not, discard the second login information ; otherwise, calculate the second update value , the session key verification value between the current user and the scenario server , the fourth communication digest verification value ; verify whether it holds, if the equation does not hold, the current user fails to log in to the scenario server , otherwise, the current user to the scenario server Login successful, current user and the scene server successfully completed identity authentication and key negotiation; among them, represents the current user avatar verification value; represents the fourth secret numerical verification value; represents the second ciphertext verification value; represents the fifth secret numerical verification value;

[0025] Similarly, the login results of other users and the scene server can be obtained.

[0026] Optionally, the current user sends an interaction notification to the scene server and sends a first interaction request to other users, including:

[0027] The current user sends an interaction notification to the scene server and captures the appearance feature verification value of the avatar of other users ; the current user sends a first interaction request to other users ; among them, represents the pseudo-identity of the current user; represents the avatar of the current user. ; among them, represents the pseudo-identity of the current user; represents the avatar of the current user.

[0028] Optionally, after receiving the first interaction request, the scene server encrypts the first image and secret numerical value of other users using the session key with the current user, generates the current communication ciphertext and sends it to the current user, and encrypts the first image and secret numerical value of the current user using the session key with other users, generates the other communication ciphertext and sends it to other users, including:

[0029] The scene server after receiving the interaction notification from the current user uses the session key between other users and the scene server to encrypt the first image of the current user and the third secret numerical value to generate the third communication ciphertext ; uses the session key between the current user and the scene server to encrypt the first image of other users and the third secret numerical value Encrypt it to generate the fourth communication ciphertext ; The scenario server Send the third communication ciphertext to other users and send the fourth communication ciphertext to the current user ; Among them, the fourth communication ciphertext is the current communication ciphertext, and the third communication ciphertext is the other communication ciphertext, indicating encryption using the session key between the other user and the scenario server; indicating encryption using the session key between the current user and the scenario server.

[0030] Optionally, after receiving the first interaction request and the other communication ciphertext, the other user sends a second interaction request to the current user, including:

[0031] The other user receives the first interaction request sent by the current user and the other communication ciphertext sent by the scenario server , captures the appearance feature verification value of the current user's avatar ; Send the second interaction information to the current user ; Among them, ; where represents the pseudo-identity of the other user; represents the avatar of the other user.

[0032] Optionally, after receiving the current communication ciphertext and the second interaction request, the current user decrypts the current communication ciphertext to obtain the current decryption result, calculates the current user authentication information based on the second interaction request and the current decryption result, and sends the current user authentication information to the other user, including:

[0033] The current user receives the second interaction request sent by the other user and the current communication ciphertext sent by the scenario server , and uses the pseudo-identity of the other user as an index to retrieve the public key of the other user from the blockchain , selects a random number as the sixth secret value , and generates the fourth timestamp ; ;

[0034] Use the session key with the scenario server to decrypt the fourth communication ciphertext Decrypt to obtain the current decryption result ;

[0035] Calculate the first image verification value of the current user avatar according to the second interaction request and the current decryption result , the fifth ciphertext , the sixth ciphertext , the fifth communication digest , and send the current user authentication information to other users ; where represents the first image of other users ; represents the third secret value; represents the current user avatar 's appearance feature verification value; represents the cyclic additive group 's generator; represents the public key of other users; represents the avatar of other users; represents decrypting using the session key between the current user and the scenario server; represents a one-way hash function.

[0036] Optionally, after receiving the current user authentication information, other users decrypt other communication ciphertexts to obtain other decryption results, and according to the current user authentication information and other decryption results, obtain other user response information and send the other user response information to the current user, including:

[0037] After other users receive the current user 's sent current user authentication information, generate the fifth timestamp , and check whether it holds; if not, discard the current user authentication information; otherwise, use the session key between the current user and the scenario server to decrypt the third communication ciphertext to obtain other decryption results ;

[0038] According to the current user authentication information and other decryption results, calculate the sixth ciphertext verification value and the fifth communication digest verification value , and verify whether it holds; if not, other users fail to authenticate the current user 's identity, if it holds, other users successfully authenticate the current user 's identity;

[0039] Using the pseudo-identity of the current user as an index, retrieve the public key of the current user from the blockchain , and select a random number as the seventh secret value ; ;

[0040] According to the public key of the current user and the seventh secret value , calculate the first image verification value of the avatar of other users , the seventh ciphertext , the eighth ciphertext , the current user and other users the session key between them , the sixth communication digest , and send the response information of other users to the current user ; where represents the fourth timestamp; represents the preset timestamp difference; represents the first image of the current user; represents the third secret value; represents decrypting using the session key between other users and the scenario server; represents the fifth ciphertext; represents the private key of other users; represents the fifth communication digest; represents the avatar of other users; represents the appearance feature verification value of the avatar of other users; represents the cyclic additive group generator; represents the sixth ciphertext; represents the avatar of the current user; represents the one-way hash function.

[0041] Optionally, after the current user receives the response information of other users, calculate the user identity information according to the response information of other users, and obtain the user avatar identity authentication result according to the user identity information, including:

[0042] The current user After receiving the response information of other users sent by other users, generate the sixth timestamp , and check whether it holds; if not, discard the response information of other users; otherwise, calculate the eighth ciphertext verification value according to the response information of other users , the current user Session key verification value with other users ; Sixth communication digest verification value ;

[0043] Verify Whether it holds. If not, the current user Authenticates the avatar identity of other users fails. If it holds, the current user Authenticates the avatar identity of other users succeeds; among them, represents the fifth timestamp; represents the preset timestamp difference; represents the seventh ciphertext; represents the current user's private key; represents the sixth ciphertext; Current user avatar; represents the first image of other users; represents the sixth communication digest; represents the one-way hash function.

[0044] Compared with the prior art, the beneficial effects achieved by the present invention:

[0045] 1. While ensuring the immersive experience of users, the present invention can ensure user privacy and significantly improve the security and credibility of the metaverse. Through the secure identity authentication mechanism based on the first image, it can effectively enhance the user's anti-fraud and anti-disguise capabilities, providing comprehensive protection for the user's activities in the virtual world. The immutability of the first image enables users to be confident that the virtual avatars they see are real and unique, rather than being tampered with or misused by others. This trust mechanism is crucial for social interaction, economic transactions, and data sharing in the metaverse.

[0046] 2. To prevent the leakage of login information, the present invention introduces the fuzzy extractor technology, which is specifically used to protect the user's biometric information; at the same time, the blockchain technology is used to store the user avatar data for subsequent identity authentication. With its decentralized and immutable characteristics, it can prevent data from being maliciously tampered with, enhance privacy protection, and improve the security of identity authentication. BRIEF DESCRIPTION OF THE DRAWINGS

[0047] Figure 1 The figure shows a schematic flowchart of the metaverse avatar identity authentication method of the present invention in an embodiment;

[0048] Figure 2 The figure shows a schematic structural diagram of the metaverse avatar identity authentication system of the present invention in an embodiment. DETAILED DESCRIPTION OF THE INVENTION

[0049] The technical solution of the present invention will be described in detail below with reference to the accompanying drawings and specific embodiments. It should be understood that the embodiments of the present invention and the specific features in the embodiments are detailed descriptions of the technical solution of the present invention, rather than limitations on the technical solution of the present invention. Without conflict, the technical features in the embodiments of the present invention and the embodiments can be combined with each other.

[0050] The term "and / or" is merely a description of the association relationship of associated objects, indicating that there can be three relationships. For example, A and / or B can represent three situations: A exists alone, A and B exist simultaneously, and B exists alone. In addition, the character " / " generally represents an "or" relationship between the associated objects before and after.

[0051] Embodiment 1

[0052] As Figure 1 shown, this embodiment introduces a method for authenticating the identity of a metaverse avatar, including the following steps:

[0053] Step 1: System initialization, specifically:

[0054] The scene server Constructs the identity authentication system parameters ; where represents a non-singular finite field; represents a large prime number; represents the prime order of the cyclic additive group ; represents a non-singular finite field The set of all integral points on the elliptic curve over forms a cyclic additive group; represents the cyclic additive group The generator of; represents the identity of the scene server; represents a one-way hash function.

[0055] Step 2: User registration, specifically:

[0056] In the virtual world of the metaverse, if a user wants to experience various services immersively, they need to first connect to the scene server through an intelligent device, such as a head-mounted display or a virtual reality glasses, etc., and complete the registration. After successful registration, the user becomes a legal user and can enjoy the immersive service experience brought by the metaverse, that is:

[0057] The current user Inputs the current user account In the intelligent device connected to the metaverse The current user password And the current user's biometric information ; Select a random number as the first secret value and the current user's private key , the current user uses the fuzzy extractor in the smart device to encrypt the current user's biometric information and the current user's private key to generate the current user's encrypted value and the current user's auxiliary parameter ; calculates the current user's pseudo-identity ; the current user's public key ; the current user's encrypted value ; the first secret value ; the current user's private key ; and the current user's avatar ; the current user sends their registration information ; the current user's avatar to the scenario server through a secure channel ; where represents the multiplicative group of integers of prime order of the cyclic additive group and contains all positive integers less than and relatively prime to ;

[0058] The scenario server after receiving the current user's registration information checks for its existence and uniqueness in its database and on the blockchain; if it exists uniquely, the registration process is terminated, otherwise, the scenario server captures the physical characteristics of the current user's avatar ; the scenario server respectively selects random numbers as the second secret value and the third secret value , and calculates the current registration identifier ; the current user's avatar ; the first ciphertext ; the first secret value ; the first image of the current user's avatar ; the first communication ciphertext ; the first image of the current user's avatar ; the first communication ciphertext ; the scenario server stores in its database, uploads to the blockchain, and sends the first communication ciphertext Sent to the current user ; among which, represents the private key of the scenario server; represents encryption using the public key of the current user;

[0059] Current user After receiving the first communication ciphertext , use the private key of the current user to decrypt the first communication ciphertext , and obtain the first decrypted ciphertext ; according to the first decrypted ciphertext , calculate the first current user ciphertext , the second current user ciphertext , and the current user registration and login verification value ; store the information when the user registers with the scenario server in the database of the smart device ; among which, represents decryption using the private key of the current user; represents the exclusive OR operation.

[0060] Similarly, the information when other users register with the scenario server can be obtained, which will not be elaborated here.

[0061] Step 3: User login and identity authentication, specifically:

[0062] Before the user enjoys the metaverse service, the login operation must be completed first. The user needs to enter the login account, password, and biometric information on the smart device connected to the metaverse. The system will calculate a user login verification value based on this information and compare it with the user registration and login verification value stored in the smart device. If the two are consistent, the user logs in successfully; otherwise, the login fails and the entire process terminates immediately. After successful login, the user sends an authentication request to the scenario server, which includes the user's authentication information and avatar information. After receiving the request, the scenario server first checks whether the timestamp of the information is reasonable. If the timestamp is unreasonable, the request will be discarded; if it is reasonable, it will further verify whether the authentication information matches the information submitted by the user. If the verification passes, it means that the scenario server has successfully authenticated the user and confirms that the requesting user is a legitimate user. At this time, the scenario server will generate a session key with the user and send it to the user together with its own authentication information. After receiving the response, the user will also verify the timestamp of the information. After successful verification, the user will calculate the session key with the scenario server and verify whether the message digest is consistent. If the verification is successful, it means that the user has also successfully completed the authentication of the scenario server, and the identity authentication and key negotiation process between the two parties is thus completed.

[0063] That is: the current user Enter the current user account in the intelligent device accessing the metaverse and the current user password and the current user's biometric information ; The current user uses the fuzzy extractor in the intelligent device to calculate the current user's encrypted numerical verification value and the current registration identifier verification value and the first ciphertext verification value and the current user login verification value ; The current user verifies whether it holds. If not, the login process is terminated. If it holds, the login verification is successful; After successful login, the current user selects a random number as the fourth secret value and generates the first timestamp ; According to the fourth secret value and the first timestamp , calculate the first communication digest and the second communication digest ; The current user sends the first login information to the scenario server ; ; ;

[0064] The scenario server After receiving the first login information of the current user , generates the second timestamp and checks whether it holds; If not, discard the first login information and the program terminates immediately; Otherwise, calculate the first update value and the second communication digest verification value ; Verify whether it holds; If not, the scenario server fails the login of the current user ; If it holds, the scenario server succeeds in the login of the current user , and the scenario server selects a random number as the fifth secret value and calculates the second ciphertext and the third communication digest and the session key between the current user and the scenario server ; ; ; , Fourth Communication Summary ; Scenario Server Send the second login information to the current user ; Among them, represents the preset timestamp difference;

[0065] Current user After receiving the second login information , generate the third timestamp , and verify whether it holds; if not, discard the second login information ; Otherwise, calculate the second update value , current user and the session key verification value between the scenario server , the fourth communication summary verification value ; Verify whether it holds. If the equation does not hold, the current user fails to log in to the scenario server , terminate the entire process. Otherwise, the current user succeeds in logging in to the scenario server , the current user succeeds in logging in, and the current user and the scenario server successfully complete identity authentication and key negotiation, and both parties can perform secure subsequent communication through the established session key; among them, represents the current user avatar verification value; represents the fourth secret numerical value verification value; represents the second ciphertext verification value; represents the fifth secret numerical value verification value.

[0066] Similarly, the login results of other users and the scenario server can be obtained, which will not be elaborated here.

[0067] Step Four: Authentication between avatars, specifically:

[0068] Due to the existence of impersonation attacks in the Metaverse, attackers may deceive other users by imitating the virtual avatar images of others and steal their private information, such as personal transaction logs and habits. In order to ensure the security of interactions between avatars, we adopt an authentication mechanism based on the invariance of the first image of the user's avatar. This mechanism determines whether the avatar currently interacting is the real user, rather than a fake one, by comparing the first image recorded when the user's avatar registers with the scene server and whether the first image presented when interacting with other avatars is consistent. This allows users to socialize, trade, and engage in various other activities in the virtual world with greater peace of mind, greatly improving the security and credibility of the Metaverse.

[0069] That is: after the user successfully logs in to the scene server, the current user With other users When interacting, the current user To the scene server Send interactive notification to the current user Capture other user avatars Appearance feature verification value ; Current user To other users Send the first interaction request ;

[0070] Scene Server Receive current user After the interaction notification, use other users With scene server The session key between , for the current user The first image and the third secret value Encrypt to generate the third communication ciphertext ; Use current user With scene server The session key between , to other users The first image and the third secret value Encrypt to generate the fourth communication ciphertext ; Scene Server The third communication ciphertext Send to other users , the fourth communication ciphertext Send to current user ; Among them, the fourth communication ciphertext is the current communication ciphertext, the third communication ciphertext For other communication ciphertexts, Indicates encryption using the session key between other users and the scenario server; Indicates encryption using the session key between the current user and the scenario server;

[0071] Other users Receive the first interaction request sent by the current user and the other communication ciphertext sent by the scenario server, and capture the appearance feature verification value of the current user's avatar ; Send the second interaction information to the current user ; Among them, Indicates the pseudo-identity of other users; Indicates the avatar of other users; Indicates the pseudo-identity of other users; Indicates the avatar of other users;

[0072] Current user Receive the second interaction request sent by other users and the current communication ciphertext sent by the scenario server, and use the pseudo-identity of other users as an index to retrieve the public key of other users from the blockchain , select a random number as the sixth secret value , generate the fourth timestamp , select a random number as the sixth secret value , generate the fourth timestamp ; Use the session key between the current user and the scenario server to decrypt the fourth communication ciphertext to obtain the current decryption result ; According to the second interaction request and the current decryption result, calculate the first image verification value of the current user's avatar , the fifth ciphertext , the sixth ciphertext , the fifth communication digest , and send the current user authentication information to other users ; Among them, Indicates the first image of other users ; Indicates the public key of other users; Indicates decryption using the session key between the current user and the scenario server;

[0073] Other users Receive the current user authentication information sent by the current user and generate the fifth timestamp , and check , and check Whether it holds; if not, discard the current user authentication information; otherwise, use the session key between the scenario server to decrypt the third communication ciphertext to obtain other decryption results ; According to the current user authentication information and other decryption results, calculate the sixth ciphertext verification value and the fifth communication digest verification value and verify Whether it holds; if not, the other user fails to authenticate the current user ; if it holds, the other user successfully authenticates the current user ; Use the pseudo-identity of the current user as an index to retrieve the current user's public key from the blockchain and select a random number as the seventh secret value ; According to the current user's public key and the seventh secret value , calculate the first image verification value of the other user's avatar , the seventh ciphertext , the eighth ciphertext , the session key between the current user and the other user , the sixth communication digest ; Send the other user's response information to the current user ; Among them, means decrypting using the session key between the other user and the scenario server; means the other user's private key; After the current user receives the other user's response information sent by the other user , generate the sixth timestamp

[0074] and check Whether it holds; if not, discard the other user's response information; otherwise, calculate the eighth ciphertext verification value according to the other user's response information , the session key verification value between the current user and the other user ; Verify Whether it holds; if not, the current user authenticates the other user unsuccessfully ; if it holds, the current user verifies the session key verification value between the current user and the other user ; if it does not hold, the current user The avatar identity authentication fails. If it holds, the current user to other users The avatar identity authentication is successful, and the two parties have completed the identity authentication and key negotiation, laying the foundation for subsequent secure interactions.

[0075] This embodiment can ensure user privacy while guaranteeing the user's immersive experience, and significantly improve the security and credibility of the metaverse. Through the secure identity authentication mechanism based on the first image, it can effectively enhance the user's anti-fraud and anti-disguise capabilities, providing comprehensive protection for the user's activities in the virtual world. The immutability of the first image enables users to be convinced that the virtual avatars they see are real and unique, rather than being tampered with or misused by others.

[0076] Embodiment 2

[0077] As Figure 2 shown, this embodiment introduces a metaverse avatar identity authentication system, which consists of three core components: a scene server, a blockchain, and users. Specifically, it includes:

[0078] The scene server, as the core hub of the system, is a trustworthy and secure entity, undertaking key tasks such as system initialization, user registration, and recording the first image of the user's avatar.

[0079] During the user registration process, the scene server captures and records the first image of the user's avatar, stores it in its own database, and simultaneously synchronizes and uploads the identity data of the avatar to be saved on the blockchain.

[0080] The introduction of the blockchain aims to provide strong protection for user privacy, ensure the immutability of data, and thus provide a reliable basis for identity authentication between avatars.

[0081] As the core participants in the metaverse, after users complete registration through the scene server, they need to log in and authenticate. After successful login and authentication, users can immerse themselves in the rich services provided by the scene server. The use of the first image is the key mechanism to ensure secure avatar identity authentication and key negotiation between avatars, ensuring that the interaction process of users in the metaverse world can be secure and reliable.

[0082] Those skilled in the art should understand that the embodiments of the present application can be provided as methods, systems, or computer program products. Therefore, the present application can adopt the form of a complete hardware embodiment, a complete software embodiment, or an embodiment combining software and hardware aspects. Moreover, the present application can adopt the form of a computer program product implemented on one or more computer-usable storage media (including but not limited to disk storage, CD-ROM, optical storage, etc.) containing computer-usable program code.

[0083] This application is described with reference to the flowcharts and / or block diagrams of methods, apparatuses (systems), and computer program products according to embodiments of the present application. It should be understood that each flow and / or block in the flowchart and / or block diagram, and the combination of flows and / or blocks in the flowchart and / or block diagram, can be implemented by computer program instructions. These computer program instructions can be provided to the processor of a general-purpose computer, a special-purpose computer, an embedded processor, or other programmable data processing devices to generate a machine, such that the instructions executed by the processor of the computer or other programmable data processing devices produce a means for implementing the functions specified in one flow Figure 1 one flow or multiple flows and / or blocks Figure 1 or a means for implementing the functions specified in multiple blocks

[0084] These computer program instructions can also be stored in a computer-readable memory that can direct a computer or other programmable data processing device to work in a specific manner, such that the instructions stored in the computer-readable memory produce a manufactured article including an instruction means that implements the functions specified in one flow Figure 1 one flow or multiple flows and / or blocks Figure 1 or a means for implementing the functions specified in multiple blocks

[0085] These computer program instructions can also be loaded onto a computer or other programmable data processing device, such that a series of operation steps are executed on the computer or other programmable device to generate a computer-implemented process, and thus the instructions executed on the computer or other programmable device provide steps for implementing the functions specified in one flow Figure 1 one flow or multiple flows and / or blocks Figure 1 or a means for implementing the functions specified in multiple blocks

[0086] The embodiments of the present invention have been described above in conjunction with the accompanying drawings. However, the present invention is not limited to the above specific embodiments. The above specific embodiments are merely illustrative and not restrictive. Under the inspiration of the present invention, those of ordinary skill in the art can also make many forms without departing from the spirit and scope protected by the present invention and the claims. These all belong to the protection scope of the present invention.

Claims

1. A method for authenticating the identity of a metaverse avatar, characterized in that, including: Based on the obtained user login information and the information when the user registered with the scenario server, obtain the login result of the user and the scenario server; If the login result of the user and the scenario server is a login failure, stop the identity authentication; If the login result of the user and the scenario server is a login success, when the current user interacts with other users, the current user sends an interaction notification to the scenario server and sends a first interaction request to other users; After receiving the first interaction request, the scenario server encrypts the first image and secret value of other users using the session key with the current user, generates the current communication ciphertext and sends it to the current user, and encrypts the first image and secret value of the current user using the session key with other users, generates the other communication ciphertext and sends it to other users; After receiving the first interaction request and the other communication ciphertext, other users send a second interaction request to the current user; After receiving the current communication ciphertext and the second interaction request, the current user decrypts the current communication ciphertext to obtain the current decryption result, calculates the current user authentication information based on the second interaction request and the current decryption result, and sends the current user authentication information to other users; After receiving the current user authentication information, other users decrypt the other communication ciphertext to obtain the other decryption result, obtain the other user response information based on the current user authentication information and the other decryption result, and send the other user response information to the current user; After receiving the other user response information, the current user calculates the user identity information based on the other user response information, and obtains the user avatar identity authentication result based on the user identity information.

2. The metaverse avatar identity authentication method according to claim 1, wherein It also includes: Scene server Construct the parameters of the identity authentication system ; where represents a non-singular finite field; represents a large prime number; represents the prime order of the cyclic additive group ; represents the non-singular finite field the cyclic additive group formed by the set of all integral points on the elliptic curve over; represents the cyclic additive group of the generator; represents the identity of the scene server; represents a one-way hash function.

3. The metaverse avatar identity authentication method according to claim 1, characterized in that The acquisition of the information when the user registers with the scenario server includes: Current user Enter the current user account in the intelligent device connected to the metaverse Enter the current user password and the current user's biometric information ; Select a random number as the first secret value and the current user's private key ; The current user uses the fuzzy extractor in the intelligent device to encrypt the current user's biometric information according to the first secret value and the current user's private key to generate the current user's encrypted value and the current user's auxiliary parameter ; Calculate the current user's pseudo identity according to the current user account , the current user's encrypted value , the first secret value , and the current user's private key to calculate the current user's public key , the current user's avatar ; The current user sends their own registration information to the scene server ; ; Scene Server After receiving the registration information of the current user , check its existence and uniqueness in its database and on the blockchain; if it exists uniquely, terminate the registration process, otherwise, the scene server captures the appearance characteristics of the current user's avatar ; the scene server respectively selects random numbers as the second secret value , the third secret value , and calculates the current registration identifier , the first ciphertext , the first image of the current user's avatar , the first communication ciphertext ; the scene server stores in its database, uploads to the blockchain, and sends the first communication ciphertext to the current user ; ; ; ; ; Current user After receiving the first communication ciphertext Use the current user's private key To decrypt the first communication ciphertext To obtain the first decrypted ciphertext According to the first decrypted ciphertext Calculate the first current user ciphertext The second current user ciphertext The current user registration and login verification value Store the information when the user registers with the scenario server In the database of the smart device Among them Represents the generator of the cyclic additive group Of Represents a one-way hash function Represents the identity of the scenario server Represents the private key of the scenario server Represents encryption using the current user's public key Represents decryption using the current user's private key Represents an exclusive OR operation Similarly, information of other users can be obtained when registering with the scene server is also available.

4. The method for authenticating the identity of a metaverse avatar according to claim 3, wherein, Based on the obtained user login information and the information when the user registered with the scenario server, obtain the login result of the user and the scenario server, including: Current user Input the current user account into the smart device accessing the metaverse , the current user password and the current user's biometric information ; The current user uses the fuzzy extractor in the smart device to calculate the current user's encrypted numerical verification value , the current registered identifier verification value , the first ciphertext verification value , the current user's login verification value ; The current user verifies whether it holds. If it does not hold, the login process is terminated. If it holds, the login verification is successful; After successful login, the current user selects a random number as the fourth secret value , and generates the first timestamp ; According to the fourth secret value and the first timestamp , calculate the first communication digest , the second communication digest ; The current user sends the first login information to the scene server ; ; Scene Server After receiving the first login information of the current user generate a second timestamp and check whether it holds; if not, discard the first login information ; otherwise, calculate the first update value and the second communication digest verification value ; verify whether it holds; if not, the scene server fails to log in for the current user ; if it holds, the scene server succeeds in logging in for the current user ; the scene server selects a random number as the fifth secret value and calculates the second ciphertext , the third communication digest , the session key between the current user and the scene server , and the fourth communication digest ; the scene server sends the second login information to the current user ; where represents the preset timestamp difference ; ; ; ; Current user Receives the second login information After that, generates a third timestamp And verifies Whether it holds; if not, discards the second login information ; Otherwise, calculates the second update value The current user And the scenario server The session key verification value between them The fourth communication digest verification value ; Verifies Whether it holds. If the equation does not hold, the current user Fails to log in to the scenario server Otherwise, the current user Succeeds in logging in to the scenario server The current user And the scenario server Successfully completes identity authentication and key negotiation; where Represents the current user avatar verification value; Represents the fourth secret numerical value verification value; Represents the second ciphertext verification value; Represents the fifth secret numerical value verification value; Similarly, the login results of other users can be obtained and the scenario server can also be obtained 5. The method for authenticating the identity of a metaverse avatar according to claim 1, wherein, The current user sends an interaction notification to the scenario server and sends a first interaction request to other users, including: Current User To the scene server Send interactive notification to the current user Capture other user avatars Appearance feature verification value ; Current user To other users Send the first interaction request ;in, Indicates the current user pseudo identity; Represents the current user avatar.

6. The metaverse avatar identity authentication method according to claim 1, wherein After receiving the first interaction request, the scenario server encrypts the first image and secret value of other users using the session key with the current user, generates the current communication ciphertext and sends it to the current user, and encrypts the first image and secret value of the current user using the session key with other users, generates the other communication ciphertext and sends it to other users, including: Scene Server Receive current user After the interaction notification, use other users With scene server The session key between , for the current user The first image and the third secret value Encrypt to generate the third communication ciphertext ; Use current user With scene server The session key between , to other users The first image and the third secret value Encrypt to generate the fourth communication ciphertext ; Scene Server The third communication ciphertext Send to other users , the fourth communication ciphertext Send to current user ; Among them, the fourth communication ciphertext is the current communication ciphertext, the third communication ciphertext For other communication ciphertexts, Indicates encryption using the session key between other users and the scene server; Indicates that the session key between the current user and the scene server is used for encryption.

7. The metaverse avatar identity authentication method according to claim 1, wherein After receiving the first interaction request and the other communication ciphertext, other users send a second interaction request to the current user, including: Other users Receive the first interaction request sent by the current user And the scenario server After receiving other communication ciphertexts sent by the scenario server, capture the appearance feature verification value of the current user's avatar ; Send the second interaction information To the current user ; Among them, Represents the pseudo-identity of other users; Represents the avatar of other users.​ 8. The metaverse avatar identity authentication method according to claim 1, wherein After receiving the current communication ciphertext and the second interaction request, the current user decrypts the current communication ciphertext to obtain the current decryption result, calculates the current user authentication information based on the second interaction request and the current decryption result, and sends the current user authentication information to other users, including: Current user Receives a second interaction request sent by another user And the current communication ciphertext sent by the scenario server After that, using the pseudo-identity of the other user As an index, retrieves the public key of the other user from the blockchain Selects a random number as the sixth secret value Generates the fourth timestamp ; ​ Use the session key with the scenario server to decrypt the fourth communication ciphertext and obtain the current decryption result ; ; Calculate the first image verification value of the current user avatar based on the second interaction request and the current decryption result , the fifth ciphertext , the sixth ciphertext , the fifth communication digest , and send the current user authentication information to other users ; where represents the first image of other users ; represents the third secret value; represents the current user avatar 's appearance feature verification value; represents the cyclic additive group 's generator; represents the public key of other users; represents the avatar of other users; represents decrypting using the session key between the current user and the scene server; represents a one-way hash function.

9. The metaverse avatar identity authentication method according to claim 1, characterized in that After receiving the current user authentication information, other users decrypt the other communication ciphertext to obtain the other decryption result, obtain the other user response information based on the current user authentication information and the other decryption result, and send the other user response information to the current user, including: Other users After receiving the current user 's current user authentication information, generate a fifth timestamp , and check whether it holds; if not, discard the current user authentication information; otherwise, use the session key between the scenario server to decrypt the third communication ciphertext to obtain other decryption results ; Calculate the sixth ciphertext verification value based on the current user authentication information and other decryption results and the fifth communication digest verification value , and verify whether it holds; if not, the identity authentication of the current user by other users fails. If it holds, the identity authentication of the current user by other users succeeds; Using the current user 's pseudo-identity as an index, retrieve the current user's public key from the blockchain , select a random number as the seventh secret value ; According to the current user's public key and the seventh secret value , calculate the first image verification value of other users' avatars , the seventh ciphertext , the eighth ciphertext , the current user and the session key between the current user and other users , the sixth communication digest , and send the other user's response information to the current user ; where represents the fourth timestamp; represents the preset timestamp difference; represents the first image of the current user; represents the third secret value; represents decrypting using the session key between the other user and the scenario server; represents the fifth ciphertext; represents the other user's private key; represents the fifth communication digest; represents the other user's avatar; represents the appearance feature verification value of the other user's avatar; represents the cyclic additive group 's generator; represents the sixth ciphertext; represents the current user's avatar; represents the one-way hash function.

10. The metaverse avatar identity authentication method according to claim 1, wherein, After the current user receives the response information of other users, calculate the user identity information according to the response information of other users, and obtain the user avatar identity authentication result according to the user identity information, including: Current user Receives response information of other users After that, generate the sixth timestamp , and check Whether it holds; if not, discard the response information of other users; otherwise, calculate the eighth ciphertext verification value , the current user And other users The session key verification value between , the sixth communication digest verification value ; Verify whether it holds. If it does not hold, the current user authenticates the avatar identity of other users and fails. If it holds, the current user authenticates the avatar identity of other users and succeeds; where represents the fifth timestamp; represents the preset timestamp difference; represents the seventh ciphertext; represents the private key of the current user; represents the sixth ciphertext; the avatar of the current user; represents the first image of other users; represents the sixth communication digest; represents the one-way hash function.

Citation Information

Patent Citations

  • Anti-arbor identity authentication method based on first impression in element universe

    CN118282663A

  • Metacosm cross-scene anonymous seamless identity authentication method based on double block chains

    CN119299224A

  • Avatar Carrier Generating System for Metaverse and Method Thereof

    US20240070653A1