Biometric Authentication System for Network Transaction Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current authentication methods for network-based transactions are inadequate in preventing fraudulent activities due to password misuse and sophisticated techniques like phishing, leading to increased risks for users and entities, and are complex and costly to implement.
Innovation Solution
A method and system that utilize biometric authentication data stored in an authentication system, which determines the level of risk for transactions and generates a biometric authentication data capture request, prompting users to provide biometric data through a communications device, validating the user's identity and generating a one-time pass-phrase for secure transactions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional username and password authentication is used, then ease of operation is maintained, but security against fraudulent transactions deteriorates
Solution Approach 1:
The patent introduces a biometric authentication intermediary system that mediates between the user and the transaction system. Instead of directly using passwords, the system uses biometric data (fingerprint, iris, facial recognition) as an intermediary verification layer. This mediator validates the user's identity before allowing password entry or transaction completion, thereby enhancing security while maintaining ease of operation through automated biometric verification.
Solution Approach 2:
The patent changes the authentication parameter from something the user knows (password) to something the user is (biometric characteristics). By transforming the authentication mechanism from knowledge-based to identity-based verification, the system achieves higher reliability against fraud while maintaining ease of operation, as biometric scanning is automated and requires minimal user effort.
2Reliability
If biometric authentication systems are implemented, then security against fraudulent transactions is improved, but device complexity increases
Solution Approach 1:
The patent implements a universal biometric authentication system that can handle multiple types of biometric verification (fingerprint, iris, facial recognition) through a single integrated platform. The system is designed to work across different devices and transaction types, reducing overall complexity by providing a multi-functional authentication solution rather than separate systems for each biometric type.
Solution Approach 2:
The patent uses digital copies of biometric data (stored templates of fingerprint patterns, iris structures, facial features) rather than requiring physical presence or complex hardware for each verification. These digital copies are stored in databases and can be rapidly compared against new scans, simplifying the verification process while maintaining high security standards.
3Reliability
If token-based authentication is deployed, then security is enhanced, but manufacturing and maintenance costs increase
Solution Approach 1:
The patent replaces the mechanical/token-based authentication system with a digital biometric verification system. Instead of distributing physical tokens or hardware devices that require manufacturing and maintenance, the system uses software-based biometric scanning and verification. This substitution eliminates the need for physical token production, distribution, and maintenance while achieving comparable or superior security through irreversible biometric verification.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A method of authenticating users to reduce transaction risks includes indicating a desire to conduct a transaction, inputting information in a workstation, and determining whether the inputted information is known. Moreover, the method includes determining a state of a communications device when the inputted information is known, and transmitting a biometric authentication request from a server to an authentication system when the state of the communications device is enrolled. Additionally, the method includes obtaining biometric authentication data in accordance with a biometric authentication data capture request with the communications device, biometrically authenticating the user, generating a one-time pass-phrase and storing the one-time pass-phrase on the authentication system when the user is authenticated, comparing the transmitted one-time pass-phrase against the stored one-time pass-phrase, and conducting the transaction when the transmitted and stored one-time pass-phrases match.