Augmented Reality Data Access Control via Preliminary Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems fail to effectively prevent data leakage and unauthorized access in network environments, leading to delayed detection of network attacks, data exfiltration, and malware issues, which impact network performance and security.

Innovation Solution

A system that allows users to interact with web pages on a user device, store their state, and securely access it later on an augmented reality device, authenticating users and preserving their inputs and settings, thereby enhancing data security and reducing network resource consumption.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If data is stored and accessed across multiple devices in a network environment, then user convenience and accessibility are improved, but vulnerability to data leakage and unauthorized access increases

Engineering Contradiction:
Improvedata accessibilityVSAvoiddata leakage risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary authentication and state capture before data is accessed on new devices. The user device captures the complete web page state (including inputs and settings) and stores it securely, so that when accessing on an augmented reality device, the data is already authenticated and prepared, reducing the window of vulnerability.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary authentication mechanism that mediates between the user and the data across devices. The system authenticates users before allowing data access and uses this authentication state to control data retrieval, acting as a security gatekeeper that allows convenient cross-device access while preventing unauthorized access.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If security checks and authentication processes are implemented, then data security is improved, but system complexity and processing time increase

Engineering Contradiction:
Improveinformation securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

Authentication and security checks are performed in advance when the user initially accesses the web page on their user device. The authentication state is captured and stored with the web page state, so that when the user accesses the same web page on an augmented reality device, the pre-performed authentication validates access without requiring complex real-time security checks.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system creates a copy of the authenticated web page state (including user inputs and settings) and stores it securely. This copy can be retrieved and displayed on different devices without requiring the original authentication process to repeat, simplifying the access mechanism while maintaining security through the authenticated copy.

Inventive Principle:
Principle #26Copying

3Productivity

If web page state including user inputs and settings is preserved and stored, then user experience and productivity are improved, but data storage requirements and security risks increase

Engineering Contradiction:
Improveuser efficiencyVSAvoiddata storage volume
Core Design Contradiction:
ProductivityVSQuantity of substance

Solution Approach 1:

The system creates and stores a copy of the web page state (including user inputs and settings) on the user device and securely on the server. This copy preserves the complete state so users can resume work on different devices without losing their progress, significantly improving productivity while the storage requirements are managed through selective copying of only necessary state data.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The web page state is captured and stored in advance before the user needs to access it again. By performing the state capture preliminarily, the system eliminates the need for users to re-enter data, and the stored state can be quickly retrieved and applied on new devices, improving user efficiency while minimizing real-time processing requirements.

Inventive Principle:
Principle #10Preliminary action

4Device complexity

If delayed response to network attacks is accepted, then system simplicity is maintained, but network security and performance are degraded

Engineering Contradiction:
Improvesystem simplicityVSAvoidmalware impact
Core Design Contradiction:
Device complexityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary authentication and state validation before allowing data access on any device. By checking authentication states in advance and validating web page states before retrieval, the system can detect and prevent malicious activities before they compromise the network, rather than responding after attacks occur.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements feedback mechanisms where authentication states and web page states are continuously validated. When a user attempts to access data on a new device, the system checks the authentication state and compares it against stored records, providing immediate feedback that can prevent unauthorized access or malicious activities before they spread through the network.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS11943227B2Data access control for augmented reality devices
Publication Date: 2024.03.26 BANK OF AMERICA CORP
  • US11943227B2 patent drawing
  • US11943227B2 patent drawing
  • US11943227B2 patent drawing

AI summary

A device configured to receive an access request for a website from an augmented reality device. The device is further configured to determine a user associated with the augmented reality device is authorized to access the website based on user credentials and to identify a user profile for the user associated with the user credentials. The device is further configured to identify information for flagged web pages that are associated with the website within the user profile and to generate a virtual environment with virtual objects that represent the flagged web pages. The device is further configured to provide access to the virtual environment for the augmented reality device.