Biometric Authentication with Cloaked Identifiers for Secure Validation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current Internet transactions face significant security and privacy concerns due to the risk of data hijacking during the transmission of personal or confidential information, as traditional security measures can be circumvented by emerging threats.

Innovation Solution

A self-sovereign information management framework that employs biometric authentication and cloaked identifiers to validate data items securely, minimizing the transmission of sensitive information over networks by using a trusted entity to verify identities and validate data without revealing personal details to service providers.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If personal or confidential information is transmitted over the Internet for validation, then transaction requirements can be met, but security and privacy risks increase due to potential data hijacking

Engineering Contradiction:
Improvetransaction completionVSAvoiddata hijacking risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent extracts and transmits only the minimal necessary validation data (specific fields required for transaction verification) rather than complete personal information sets. This selective extraction reduces the attack surface for potential data hijacking while maintaining transaction validation capabilities.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an intermediary validation service that acts as a trusted third party between the user and the requesting system. This intermediary validates the extracted personal information without requiring direct transmission of sensitive data between the user and the final system, thereby reducing exposure to data hijacking risks.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If complete personal information is transmitted for validation, then validation accuracy improves, but data privacy and security exposure increases

Engineering Contradiction:
Improvevalidation accuracyVSAvoiddata privacy exposure
Core Design Contradiction:
Measurement precisionVSLoss of information

Solution Approach 1:

The system extracts only the specific personal information fields necessary for the particular validation requirement (e.g., only date of birth for age verification, only last four digits of SSN for partial identification). This selective extraction maintains validation accuracy by providing sufficient verifying information while minimizing privacy exposure by excluding unnecessary sensitive fields.

Inventive Principle:
Principle #2Taking out (Extraction)

3Reliability

If traditional security measures are used to protect transmitted data, then some security is provided, but emerging threats can still circumvent these measures

Engineering Contradiction:
Improvesecurity protectionVSAvoidthreat resistance
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent performs data extraction and validation before transmission, preparing the data in a minimized and verified state in advance. This preliminary action ensures that only necessary, pre-validated information is transmitted, reducing the security burden during transmission and making it harder for emerging threats to exploit unnecessary data fields.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11196740B2Method and system for secure information validation
Publication Date: 2021.12.07 VERIZON PATENT & LICENSING INC
  • US11196740B2 patent drawing
  • US11196740B2 patent drawing
  • US11196740B2 patent drawing

AI summary

The present teaching relates to method, system, medium, and implementation for biometric authentication in secure data management. Authentication is initiated for a person claiming to be a record owner prior to a transaction between the record owner and a service provider. Biometric based authentication of the person is performed by detecting liveness of the person and authenticating an identity of the person based on biometric information of the person. Upon successful authentication of the person, a trusted party processes a request directed to a trusted entity to validate one or more data items related to the record owner in order to proceed with the transaction and forward a cloaked identifier obtained based on the request, where the cloaked identifier is to be used by the service provider to seek a validation response with regard to the one or more data items from the trusted party.