Biometric Authentication with Cloaked Identifiers for Secure Validation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current Internet transactions face significant security and privacy concerns due to the risk of data hijacking during the transmission of personal or confidential information, as traditional security measures can be circumvented by emerging threats.
Innovation Solution
A self-sovereign information management framework that employs biometric authentication and cloaked identifiers to validate data items securely, minimizing the transmission of sensitive information over networks by using a trusted entity to verify identities and validate data without revealing personal details to service providers.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If personal or confidential information is transmitted over the Internet for validation, then transaction requirements can be met, but security and privacy risks increase due to potential data hijacking
Solution Approach 1:
The patent extracts and transmits only the minimal necessary validation data (specific fields required for transaction verification) rather than complete personal information sets. This selective extraction reduces the attack surface for potential data hijacking while maintaining transaction validation capabilities.
Solution Approach 2:
The patent introduces an intermediary validation service that acts as a trusted third party between the user and the requesting system. This intermediary validates the extracted personal information without requiring direct transmission of sensitive data between the user and the final system, thereby reducing exposure to data hijacking risks.
2Measurement precision
If complete personal information is transmitted for validation, then validation accuracy improves, but data privacy and security exposure increases
Solution Approach 1:
The system extracts only the specific personal information fields necessary for the particular validation requirement (e.g., only date of birth for age verification, only last four digits of SSN for partial identification). This selective extraction maintains validation accuracy by providing sufficient verifying information while minimizing privacy exposure by excluding unnecessary sensitive fields.
3Reliability
If traditional security measures are used to protect transmitted data, then some security is provided, but emerging threats can still circumvent these measures
Solution Approach 1:
The patent performs data extraction and validation before transmission, preparing the data in a minimized and verified state in advance. This preliminary action ensures that only necessary, pre-validated information is transmitted, reducing the security burden during transmission and making it harder for emerging threats to exploit unnecessary data fields.
Data Source
AI summary
The present teaching relates to method, system, medium, and implementation for biometric authentication in secure data management. Authentication is initiated for a person claiming to be a record owner prior to a transaction between the record owner and a service provider. Biometric based authentication of the person is performed by detecting liveness of the person and authenticating an identity of the person based on biometric information of the person. Upon successful authentication of the person, a trusted party processes a request directed to a trusted entity to validate one or more data items related to the record owner in order to proceed with the transaction and forward a cloaked identifier obtained based on the request, where the cloaked identifier is to be used by the service provider to seek a validation response with regard to the one or more data items from the trusted party.


