System and method for registering, identifying and authenticating entities on a digital platform

By generating unique identifiers through a centralized architecture and combining them with databases and modules, the limitations of cross-platform entity identification and authentication in existing technologies are overcome. This enables real-time secure authentication across platforms, reduces the risk of cybercrime, and enhances the security and trustworthiness of digital interactions.

CN122122582APending Publication Date: 2026-05-29R·苏布拉马尼亚姆·S·拉古帕蒂
View PDF 2 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
R·苏布拉马尼亚姆·S·拉古帕蒂
Filing Date
2024-09-23
Publication Date
2026-05-29
Patent Text Reader

Abstract

The present invention relates generally to the field of cybersecurity, and specifically to a system and method for registering, identifying and authenticating entities on digital platforms. The invention aims to address the shortcomings in secure and reliable digital identification and authentication across various digital platforms. The system comprises several integrated components: a registration and identification module for collecting and verifying entity information; an identifier generator or capturer for creating, assigning or capturing a unique identifier for registered entities; a comprehensive registration database for information storage; an authentication module for identity verification during digital access attempts; a digital footprint capturer for monitoring and recording online activities of entities; a notification module for issuing alerts about potential cyber threats; and a platform for supporting requests related to entity authentication, detailed information retrieval and suspicious cyber activity reporting. The invention significantly facilitates secure digital interactions by eliminating security loopholes in existing digital identification systems, thereby providing enhanced security and trust in online environments.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This invention relates to the field of digital security and authentication technology, and is a further extension of the fundamental features established by a previously granted invention (Malaysian Patent No.: MY-196087-A), which focuses on a system and method for prosecuting offensive content through telecommunications and network systems. In contrast, this invention relates to a system and method for registering, identifying, and authenticating entities on a digital platform. These entities include, but are not limited to, individuals, organizations, electronic devices, programs, websites, and browsers. This invention employs a centralized architecture, utilizing a unified database and a set of protocols to ensure the legitimacy of entities operating in the digital environment, thereby reducing potential risks associated with digital corruption and cybercrime. Background Technology

[0002] The digital age has profoundly transformed the modes of communication and transactions between entities, ushering in a new era where all activities—from everyday social interactions to complex business dealings—rely on vast telecommunications and network systems. Social networks, instant messaging services, forums, and various websites provide pathways for real-time information sharing and interaction. However, while technological advancements bring convenience, they also bring serious challenges related to entity identification and authentication, making the digital realm vulnerable to cybercrime. The rampant nature of cybercrimes such as bullying, defamation, phishing, identity theft, ransomware attacks, fraud, and hacking is alarming.

[0003] Criminals utilize advanced techniques such as proxy servers and encryption to conceal their true identities. Through cross-border router operations, they effectively mask their activities, significantly increasing the difficulty of tracking and detection. Such fraudulent activities not only disrupt the order of virtual platforms but also cause substantial economic losses, resulting in billions or even trillions of dollars in losses annually for governments, businesses, and individuals. Therefore, the industry urgently needs a reliable system capable of accurately identifying and authenticating online users globally to ensure the integrity and security of digital interactions.

[0004] In this challenging situation, existing technical document US2014337243A1 discloses a user authentication method that records and compares specific user characteristics, including motion actions, during task execution through a system. This authentication process occurs within a structured workflow, where recorded information associated with user interactions (especially their motion responses) is compared with a stored user profile. While this method is innovative in utilizing physical interaction as the basis for authentication, its application scenarios remain significantly limited. Its initial design aims to verify the identity of a single individual user based on specific interaction patterns, but it lacks a comprehensive solution adaptable to various entity types on different digital platforms and more complex authentication scenarios. Furthermore, it does not provide a universal solution for broader cybersecurity challenges, as its verification process is limited to the details of user-device interaction in specific contexts.

[0005] Similarly, existing technical document CA2532538A1 proposes a device and method specifically for authenticating users when accessing multimedia services. While it reveals a mechanism for reusing authentication data across different services, its applicability is limited to multimedia content access, leaving significant gaps in security measures for other forms of digital interaction and services. Faced with diverse network threats and a complex digital ecosystem, its applicability is clearly insufficient, failing to provide a holistic solution for secure digital identification and authentication that is cross-platform and cross-entity type.

[0006] Against this backdrop, the prior invention detailed in Malaysian Patent No. MY-196087-A proposes an innovative method for initiating electronic litigation against offensive content via telecommunications and network systems. This system features functions such as generating report links for third-party platforms, identifying and locating defendants based on network details, and facilitating plaintiffs' assertion of rights through the platform. However, while this prior invention makes foundational contributions to identity verification, its focus is on legal remedies rather than the broader realm of digital interaction, and it does not provide a comprehensive registration and real-time authentication solution for various types of entities before accessing digital platforms. This invention builds upon and integrates with this foundational system, introducing enhanced functionality based on unique identifiers for entity verification.

[0007] In conclusion, there is indeed a need for a solution that can bridge the existing technological gap—a solution that does not merely focus on one aspect of the challenge, but strives to provide a comprehensive, real-time, centralized digital identification and authentication system for diverse entities operating in the digital realm, ensuring security, transparency, and accuracy. This invention serves as this bridge, integrating the advantages of existing solutions while addressing their limitations, thus providing a robust framework for the contemporary digital age. It proposes a comprehensive, real-time, and centralized system for digital identification and authentication of entities using unique identifiers, thereby enhancing the security and integrity of cross-platform digital communication and transactions.

[0008] Therefore, this invention not only incorporates the innovative elements of prior patented inventions but also significantly expands their functional scope. This invention aims to provide a centralized, real-time solution for digital identification and authentication, thereby critically reducing the risks associated with digital corruption and other forms of cybercrime. Summary of the Invention

[0009] This invention discloses a comprehensive solution to the challenges of the digital security era, with a particular focus on the identification and authentication of various entities in online activities.

[0010] A key feature of this invention is its centralized system and method for registering, identifying, and authenticating entities, including but not limited to individuals, organizations, electronic devices, programs, websites, and browsers, thereby ensuring broad applicability. Unlike the system described in Malaysian Patent No. MY-196087-A (which only partially implements functions related to detecting the identity and location of suspected infringers), this invention provides a more comprehensive framework equipped with several key modules that work together to ensure the construction of a secure digital environment.

[0011] The system operates under the supervision of specific organizations (such as government agencies or their intermediaries, or private entities) to ensure compliance with legal standards and enhance trust among users.

[0012] This disclosure discloses a system for registering, identifying, and authenticating entities on a digital platform, comprising: a registration and identification module configured to collect, verify, and store entity identification information; an identifier generator or capturer configured to create, assign, or capture a unique identifier for each registered entity; a registration database configured to maintain comprehensive information on registered entities, including their assigned unique identifiers and collected identification information; an authentication module that, during an attempt to access the digital platform, cross-references the input unique identifier with corresponding details in the registration database to verify the entity's identity; a digital footprint capturer configured to record the online activities of entities and establish behavioral logs for each entity; a notification module that triggers an alert to the identified entity corresponding to the unique identifier when abnormal activity indicating a potential cyber threat occurs; and a platform that facilitates other entities to submit entity authentication confirmation requests, entity information retrieval requests, and reports of suspected fraudulent activities or other potential cyber threats.

[0013] Furthermore, this disclosure also discloses a method for registering, identifying, and authenticating entities on a digital platform, comprising the following steps: registering and identifying an entity seeking registration, wherein the entity provides its associated details; generating or capturing a unique identifier specific to the registered entity; storing the detailed information of the registered entity and its unique identifier in a registration database; authenticating the entity by cross-referencing the provided unique identifier with the details stored in the registration database; capturing and recording the entity's digital footprint during online interactions on the digital platform, wherein the digital footprint contains a record of the entity's online activities; and facilitating requests from other entities to confirm entity authentication, entity information retrieval requests, and to submit reports related to suspected fraudulent activities or other potential cyber threats.

[0014] In summary, this invention represents a significant technological advancement in the field of cybersecurity, providing a system and method for entity registration and authentication. By filling the gaps left by earlier prior art, this invention establishes a new paradigm for digital security protocols, creating a more secure online environment for all participating entities. Detailed Implementation

[0015] The embodiments described in the following detailed description are not intended to limit the invention. Other embodiments and changes may be made without departing from the spirit or scope of the subject matter presented herein.

[0016] Although the present invention has been described in accordance with the best mode for achieving its objectives, those skilled in the art will recognize that several modifications may be made based on the teachings herein without departing from the spirit or scope of the invention.

[0017] This specification provides comprehensive information on systems and methods for registering, identifying, and authenticating entities, aiming to enhance cybersecurity measures and curb potential digital corruption and cybercrime. In this document, the term "entity" refers to, but is not limited to, individuals, organizations, electronic devices, programs, websites, or browsers within a digital platform. In this document, "program" refers to any form of code available on a digital platform, including but not limited to software and mobile applications, any of which may be the target or medium of network activity. In this document, the term "digital platform" encompasses any platform or medium capable of transmitting signals, thereby enabling the transmission and exchange of all forms of data or information. Furthermore, the term "regulatory body" refers to private organizations or government agencies (such as the Malaysian Communications and Multimedia Commission (MCMC)) or intermediaries (such as telecommunications service providers), each playing a role in regulating, monitoring, or facilitating such digital interactions.

[0018] As detailed in Malaysian Patent No. MY-196087-A, it relates to a method for initiating electronic litigation against offensive content via telecommunications and network systems, by generating report links for third-party platforms, identifying and locating defendants based on network details, and facilitating the plaintiff's assertion of rights through the platform. In this system, a unique identifier is generated or captured for all registered entities. The term "identifier" may include, but is not limited to, codes or any other unique characteristic associated with the entity, such as fingerprints and facial recognition features. This invention focuses on improving mechanisms for identifying, authenticating, and securely managing various entities operating in the digital realm.

[0019] When initiating the registration process, entities must submit detailed identity information that complies with standards established by various domestic and international laws and regulations. This information is crucial for the accurate identification and subsequent authentication of the entity. The nature of the required information depends on the type of entity involved—whether it is an individual, organization, program, or electronic device. For individuals or organizations, basic information comes from government-issued identification documents, including ID cards, passports, business registration certificates, and contact information. For electronic devices, a "device-specific identifier" is required; this refers to detailed information that uniquely identifies each device, encompassing elements such as the International Mobile Equipment Identity (IMEI) and Integrated Circuit Card Identifier (ICCID). Furthermore, registering electronic devices also requires comprehensive information about the device's characteristics, such as brand, model, serial number, and other relevant data. For programs, detailed information related to the development team and overall code structure is required. This meticulous data collection ensures the construction of a multi-layered, highly reliable authentication system, which is crucial for safeguarding the security of digital interactions in a broad online environment. Once an entity submits the aforementioned credentials, the system initiates a robust initial verification phase. This stage is crucial for determining the authenticity and validity of the information provided, forming the first line of defense against potential digital violations.

[0020] Upon successful registration and verification, the system assigns a unique identifier to each entity, establishing its authenticated digital identity. This identifier serves as a digital fingerprint, possessing distinctiveness and non-replicability, ensuring that all interactions of each entity within the digital space can be independently identified and tracked. Whether randomly generated or generated through a precise algorithm, this identifier ensures that each online identity is unique and secure, much like a digital fingerprint. The system's advanced features also enable the capture of various identifiers for digital entities. These identifiers transcend traditional codes, encompassing the unique characteristics inherent to entities, including a range of biometric data points such as fingerprints and digital facial recognition patterns. By integrating these advanced identification methods, the system broadens its range of security parameters, providing a more comprehensive and multi-layered solution for digital identity verification and management. This not only strengthens trust in interactions occurring in the digital environment but also significantly reduces the risk of identity theft or fraud, thereby enhancing the overall integrity of the digital space.

[0021] This invention also includes a registration database, which is a comprehensive repository of all registered entities, storing detailed information about each entity and its corresponding unique identifier. It has real-time update capabilities, ensuring that any changes to entity information are reflected instantly within the system. This database is indispensable for ensuring the accuracy and timeliness of information, and also maintains complete archival records, including the complete code of digital programs and historical data.

[0022] Verifying an entity's authenticity each time it attempts to access a digital platform is crucial. On each attempt, the system could require a unique identifier on the platform—which could be a website, mobile application, web application, or desktop application—and could be integrated with prior-granted patented inventions, thereby mandating self-authentication. This authentication is not a one-off event; it will occur periodically, particularly whenever the device used to access the digital platform is powered on, maintaining continuous security checks.

[0023] The system cross-references the submitted unique identifier with the registration database, and also refers to the entity's historical data and current activity parameters archived in the database to verify its authenticity. This step is crucial for preventing unauthorized access and ensuring a secure digital environment.

[0024] The digital footprint capturer records an entity's comprehensive online activity, generating a detailed digital footprint to assist management in monitoring and analysis for security purposes. This capturer runs continuously in the background, recording all digital activities associated with each unique identifier. Every time an entity accesses a digital platform, it inevitably leaves a digital footprint. This footprint contains rich information, including specific details such as access timestamps, identifiable information such as names, phone numbers, and email addresses, and device technical data including IP addresses and comprehensive device details recorded in the registration database. Furthermore, it captures the entity's geographical location at the time of access, the services it accesses on the digital platform, and the nature of the information exchanged during such interactions. This digital footprint is also systematically archived by the management. The real-time digital footprint (i.e., real-time data tracker) is combined with the registration information maintained by the management. This integration ensures a global view of entity activity, thereby enhancing the robustness of cybersecurity measures and enabling more proactive strategies for maintaining digital order and integrity.

[0025] The advanced notification module can be integrated into the platform of the prior patented invention (Malaysian Patent No. MY-196087-A) to alert the relevant entity in the event of unauthorized access attempts or potential impersonation, especially when using devices not registered under the entity's name. These alerts are sent directly to the entity's registered devices via the platform. This instant notification mechanism allows the entity to take swift action, such as reporting the incident through the same platform. Once this occurs, the system immediately flags it to initiate a review process, utilizing archived digital footprints and detailed registration data to conduct a comprehensive investigation, thereby preventing potential fraudulent activities or other potential cyber threats from other entities. This strategy not only blocks unauthorized access but also empowers entities with control over their digital identities and resources, significantly strengthening the overall security architecture.

[0026] Furthermore, the platform facilitates verification of the authenticity of any entity involved in digital interactions. Such queries can be submitted to the governing body by entering the unique identifier of the entity to be queried on the platform.

[0027] In addition, the platform can be used to query the management authority for the unique identifier of a program, thereby enabling individuals to obtain detailed information related to the ownership and / or developer of the program.

[0028] Furthermore, any significant threats or breaches involving data integrity will be reported to higher-level management agencies, including national security agencies. These agencies have the capability to conduct thorough audits and investigations, tracing the source of any intrusion attempt. This robust approach reaffirms the system's commitment to proactive security, creating a digital environment where users can operate with peace of mind.

[0029] The power of this feature lies in its dual function: on the one hand, it instills confidence in users through transparency; on the other hand, it fully mobilizes the collective vigilance of all registered entities. This underscores the system's commitment to combating digital fraud, unauthorized access, and other forms of cyber threats and crime through collaboration. By ensuring that every entity has avenues for verification, inquiry, and reporting, the system strengthens its protective framework, creating a more secure digital space for all users.

[0030] In summary, this invention revolutionizes digital security protocols by constructing a robust mechanism capable of rigorously verifying the identities of various entities, thereby protecting digital platforms from fraudulent activities and security vulnerabilities. The comprehensiveness of this system stems from the organic combination of advanced technologies and innovative methods, marking a significant advancement in the field of network security solutions.

Claims

1. A system for registering, identifying, and authenticating entities on a digital platform, comprising: A registration and identification module is configured to collect, verify, and store the identification information of entities; An identifier generator or capturer is configured to create, assign, or capture a unique identifier for each registered entity. A registration database is configured to maintain comprehensive information on registered entities, including their unique identifiers and collected identification information. An authentication module cross-references a unique identifier with corresponding details in the registration database during an attempt to access the digital platform to verify the identity of the entity. A digital footprint capturer is configured to record the online activities of the entities and create behavioral logs for each entity; A notification module that triggers an alert to the identified entity corresponding to the unique identifier when abnormal activity indicating a potential network threat occurs; as well as A platform that facilitates other entities to submit entity authentication confirmation requests, entity information retrieval requests, and reports of suspected fraudulent activities or other potential cyber threats.

2. The system according to claim 1, wherein, The entities include individuals, organizations, electronic devices, programs, websites, or browsers.

3. The system according to claim 1, wherein, The registration and identification module performs a verification process that requires the submission of official identification documents or verifiable personal information of individuals and organizations.

4. The system according to claim 1, wherein, The registration and identification module performs a verification process that requires the provision of a device-specific identifier, a registered entity associated with the electronic device, and characteristic information of the electronic device.

5. The system according to claim 1, wherein, The registration and identification module performs a thorough verification process that requires the provision of technical details, including registered entities associated with the program, website, or browser, and relevant components of their source code.

6. The system according to claim 1, wherein, The unique identifier generator assigns a non-copyable unique identifier that can be obtained by any other entity for verification purposes.

7. The system according to claim 1, wherein, The unique identifier capturer is configured to capture the unique characteristics inherent to the entity, including biometric data such as fingerprints, digital facial recognition patterns, etc.

8. The system according to claim 1, wherein, The digital platform operates via the Internet or any other network.

9. The system according to claim 1, wherein, The registration database is maintained based on real-time data and incorporates immediate updates of any changes related to the status or details of the registered entities.

10. The system according to claim 1, wherein, The digital footprint capturer further captures any or a combination of the entity's IP address, geographic location, device information, and history of accessed services.

11. The system according to claim 1, wherein, The unique identifier associated with each entity is structured to be compatible with the verification process, thereby supporting authenticity checks between entities.

12. The system according to claim 1, wherein, The platform includes websites, mobile applications, web applications, desktop applications, or any combination thereof.

13. The system according to claim 1, wherein, The system operates under the supervision of an organization selected from a group of private organizations, government agencies, intermediary agencies, or any combination thereof, which is responsible for regulating, authorizing, or supervising activities within the system.

14. A method for registering, identifying, and authenticating entities on a digital platform, comprising the following steps: Register and identify entities seeking registration, wherein the entities provide their associated details; Generate and capture a unique identifier specific to the registered entity; The detailed information and unique identifier of the registered entity are stored in a registration database; The entity is authenticated by cross-referencing the provided unique identifier with the detailed information stored in the registration database; During the entity's online interactions on a digital platform, its digital footprint is captured and recorded, wherein the digital footprint includes a record of the entity's online activities; and It facilitates other entities to submit requests for verification of entity authentication, requests for entity information retrieval, and reports related to suspected fraudulent activities or other potential cyber threats.

15. The system according to claim 14, wherein, The entities include individuals, organizations, electronic devices, programs, websites, or browsers.

16. The method of claim 14, further comprising the following steps: Register electronic devices used by the registered entity that have access to the digital platform.

17. The method of claim 14, further comprising the step of: registering an entity associated with the program, website, or browser.

18. The method of claim 14, further comprising the following steps: The program, website, or browser is registered by the associated registered entity.

19. The method of claim 14, further comprising the following steps: The registration database is updated based on any revisions or changes to information related to the entity.

20. The method of claim 14, further comprising the following steps: The entity is authenticated each time an attempt is made to access the digital platform via an electronic device.

21. The method according to claim 14, wherein, The record of the entity’s online activity includes information corresponding to at least one of the following groups: the entity’s IP address, geographic location, device information, and history of services accessed.

22. The method of claim 14, further comprising the following steps: A notification module notifies registered entities of unusual activity indicating potential cyber threats.

23. The method of claim 14, further comprising the following steps: The platform allows users to verify entity authentication, retrieve entity information, and submit reports related to suspected fraudulent activities or other potential cyber threats.

Citation Information

Patent Citations

  • Apparatus and method for authenticating a user when accessing to multimedia services

    CA2532538A1

  • Context-dependent authentication system, method and device

    US20140337243A1