Algorithmic Convention Authentication for Secure User Enrollment

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authentication methods, such as password-based and biometric systems, are vulnerable to attacks like password guessing, social engineering, and theft of possession-based objects, and are complex and expensive to implement.

Innovation Solution

An authentication method based on a secret convention defined by a random selection of elementary algorithmic bricks during user enrollment, where the user applies the convention to a challenge to generate a response, making it virtually impossible for attackers to guess the convention and ensuring security without entering the secret on the terminal.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If password-based authentication is used, then ease of operation is improved, but reliability deteriorates due to vulnerability to attacks

Engineering Contradiction:
Improveease of authenticationVSAvoidsecurity against attacks
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent transforms the authentication secret from a static password into a dynamic convention composed of multiple parameters (algorithmic bricks, data transformations). This convention is applied to a challenge to generate a response, changing the authentication mechanism from simple password matching to a complex parameter-based calculation that prevents direct password exposure while maintaining user-friendly operation.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If challenge-response techniques are used, then reliability is improved against eavesdropping, but ease of operation deteriorates

Engineering Contradiction:
Improveprotection against eavesdroppingVSAvoiduser operation complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments the authentication convention into multiple independent algorithmic bricks (data reading, transformation, calculation steps). The user executes these segmented steps sequentially on a challenge, making the operation systematic and manageable rather than overwhelming, while ensuring that no single captured element reveals the complete secret.

Inventive Principle:
Principle #1Segmentation

3Reliability

If biometric authentication is used, then reliability is improved, but device complexity and cost increase

Engineering Contradiction:
Improveauthentication accuracyVSAvoidterminal equipment requirements
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent replaces complex mechanical/biometric recognition devices with a software-based algorithmic convention that runs on standard terminal equipment. Instead of requiring specialized hardware for fingerprint or iris scanning, the system uses a computationally intensive but hardware-independent convention application process that achieves comparable security with minimal device complexity.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

4Reliability

If possession-based authentication is used, then reliability is improved, but ease of operation deteriorates due to object management

Engineering Contradiction:
Improvepossession verificationVSAvoidobject management complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements self-service authentication where the user's terminal automatically manages the convention and generates responses without requiring physical objects. The convention itself serves as the authentication mechanism, eliminating the need for separate tokens, keys, or physical carriers that users must manage and protect.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3729307B1Methods and devices for enrolling and authenticating a user with a service
Publication Date: 2022.12.21 HIASECURE
  • EP3729307B1 patent drawingFigure 1
  • EP3729307B1 patent drawingFigure 2
  • EP3729307B1 patent drawingFigure 3

AI summary

The proposed authentication method is based on a secret convention between the service and the user. This convention is defined on the basis of a random choice of elementary algorithmic blocks from a collection of elementary algorithmic blocks during the enrolment phase of the user. During authentication, the user uses the convention by applying it to a challenge presented by the service in order to determine a response. The algorithmic blocks are chosen such that they can be memorised by the user. As a result of the diversity of these bricks and the combinatorics behind the conventions, the number of possible conventions is very high, making it virtually impossible for an attacker to guess the convention.