Biometric Authentication Binding Transaction Data to Identity
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current data encryption and authentication methods face challenges in securely binding a user's identity to transmitted data, particularly in preventing tampering and ensuring irrefutable association with biometric characteristics, as existing techniques like CA-based systems and multi-factor authentication are vulnerable to impersonation and tampering.
Innovation Solution
A method involving the generation and use of biometric authentication data, such as audio and image data, to create an irrevocable binding of transaction data to a user's biometric characteristics, using techniques like cryptographic hashes and digital signatures implanted into biometric files, ensuring secure and tamper-proof authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If CA-based authentication is used, then public key authenticity can be verified, but system complexity increases and requires constant server availability
Solution Approach 1:
The patent extracts the authentication verification function from the centralized CA server and implements it locally in the client device. The client device stores multiple authentication records including biometric data, digital signatures, and public keys locally, eliminating the need for constant server availability and reducing system complexity while maintaining authentication reliability.
2Reliability
If multi-factor authentication with PIN is used, then originator binding is improved, but document security weakens if PIN is compromised
Solution Approach 1:
The patent merges multiple authentication factors including biometric data, digital signatures, and encrypted authentication records into a single integrated authentication system. This combination creates multiple layers of security where compromising one factor does not enable forgery, as all factors must be validated together to authenticate the originator and bind the document securely.
3Productivity
If biometric data is stored locally, then authentication speed improves, but security risk increases if device is compromised
Solution Approach 1:
The patent implements local quality by storing different types of authentication data with different security characteristics in the same device. Biometric data is stored in encrypted form for fast local comparison, while digital signatures and authentication records are stored separately and can be verified without exposing the biometric data, thus enabling fast authentication while maintaining security even if the device is compromised.
Data Source
AI summary
Methods and systems are described for binding a data transaction to a person's identity using biometrics. The method comprises the generation of data which includes information associated with a transaction, or an encrypted transaction, between a server and a client device associated with a user, generating authentication data providing an irrevocable binding of the information to biometric characteristics of the user, by capturing biometric input by the user of said authentication data or information associated with the transaction, wherein this information is implanted into the captured data. A predetermined minimum number of quorum portions may be generated from a portion of the data generated or processed by the method, wherein at least a predetermined minimum number of received quorum data portions are required to reconstruct the data portion.


