Biometric Authentication Binding Transaction Data to Identity

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current data encryption and authentication methods face challenges in securely binding a user's identity to transmitted data, particularly in preventing tampering and ensuring irrefutable association with biometric characteristics, as existing techniques like CA-based systems and multi-factor authentication are vulnerable to impersonation and tampering.

Innovation Solution

A method involving the generation and use of biometric authentication data, such as audio and image data, to create an irrevocable binding of transaction data to a user's biometric characteristics, using techniques like cryptographic hashes and digital signatures implanted into biometric files, ensuring secure and tamper-proof authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If CA-based authentication is used, then public key authenticity can be verified, but system complexity increases and requires constant server availability

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication verification function from the centralized CA server and implements it locally in the client device. The client device stores multiple authentication records including biometric data, digital signatures, and public keys locally, eliminating the need for constant server availability and reducing system complexity while maintaining authentication reliability.

Inventive Principle:
Principle #2Taking out (Extraction)

2Reliability

If multi-factor authentication with PIN is used, then originator binding is improved, but document security weakens if PIN is compromised

Engineering Contradiction:
Improveoriginator bindingVSAvoidforgery vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent merges multiple authentication factors including biometric data, digital signatures, and encrypted authentication records into a single integrated authentication system. This combination creates multiple layers of security where compromising one factor does not enable forgery, as all factors must be validated together to authenticate the originator and bind the document securely.

Inventive Principle:
Principle #5Merging (Combining)

3Productivity

If biometric data is stored locally, then authentication speed improves, but security risk increases if device is compromised

Engineering Contradiction:
Improveauthentication speedVSAvoiddevice compromise risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent implements local quality by storing different types of authentication data with different security characteristics in the same device. Biometric data is stored in encrypted form for fast local comparison, while digital signatures and authentication records are stored separately and can be verified without exposing the biometric data, thus enabling fast authentication while maintaining security even if the device is compromised.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS10122710B2Binding a data transaction to a person's identity using biometrics
Publication Date: 2018.11.06 PQ SOLUTIONS LTD
  • US10122710B2 patent drawing
  • US10122710B2 patent drawing
  • US10122710B2 patent drawing

AI summary

Methods and systems are described for binding a data transaction to a person's identity using biometrics. The method comprises the generation of data which includes information associated with a transaction, or an encrypted transaction, between a server and a client device associated with a user, generating authentication data providing an irrevocable binding of the information to biometric characteristics of the user, by capturing biometric input by the user of said authentication data or information associated with the transaction, wherein this information is implanted into the captured data. A predetermined minimum number of quorum portions may be generated from a portion of the data generated or processed by the method, wherein at least a predetermined minimum number of received quorum data portions are required to reconstruct the data portion.