Biometric Authentication Apparatus Using Differential Transformation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional biometric authentication systems face security risks due to the potential theft of transformation parameters, which can lead to unauthorized access and increased processing loads, especially when using different transformation parameters for registration and checking data.

Innovation Solution

A biometric authentication apparatus transforms checking biometric information using a differential transformation variable that aligns the transformation state with the registration state, allowing for secure authentication without referencing the registration transformation parameter, thereby reducing the risk of parameter leakage and processing loads.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the same transformation parameter is used for both registration data and checking data, then the transformation state is consistent and authentication can be performed, but the transformation parameter must be stored in memory and referenced every time checking is performed, increasing the risk of parameter theft

Engineering Contradiction:
Improveauthentication accuracyVSAvoidparameter theft risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the transformation parameter from the authentication process by pre-applying it to the registration data during enrollment. The parameter is never stored in memory during checking operations, eliminating the security vulnerability of parameter theft while maintaining authentication accuracy through the stored transformed registration data

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The transformation parameter is applied in advance during the registration phase, transforming the original biometric data into encrypted form before storage. This preliminary transformation eliminates the need to handle the parameter during checking operations, preventing parameter leakage while ensuring consistent transformation state for accurate authentication

Inventive Principle:
Principle #10Preliminary action

2Object-affected harmful factors

If different transformation parameters are used for registration data and checking data, then the security is improved by not storing the transformation parameter, but the registration data must be transformed every time checking is performed, increasing processing load

Engineering Contradiction:
Improveparameter leakage riskVSAvoidauthentication speed
Core Design Contradiction:
Object-affected harmful factorsVSProductivity

Solution Approach 1:

The transformation is performed in advance during registration, converting the biometric data into a transformed state that is stored for future checking. This eliminates the need for repeated transformation operations during authentication, maintaining high processing speed while ensuring security through the use of different transformation states for registration and checking

Inventive Principle:
Principle #10Preliminary action

3Reliability

If the transformation parameter is stored in memory for frequent reference, then consistent transformation state is achieved, but the memory becomes a target for attacks and parameter theft

Engineering Contradiction:
Improvetransformation consistencyVSAvoidmemory attack vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The transformation parameter is extracted from the system's active memory by pre-applying it to transform the registration data during enrollment. The parameter never resides in memory during checking operations, eliminating the attack target while maintaining transformation consistency through the stored transformed data

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The transformed registration data acts as an intermediary that replaces the need to store and reference the transformation parameter. This intermediary contains the transformation effect without exposing the parameter itself, ensuring consistency while preventing memory attacks

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9009486B2Biometric authentication apparatus, biometric authentication method, and computer readable storage medium
Publication Date: 2015.04.14 FUJITSU LTD
  • US9009486B2 patent drawing
  • US9009486B2 patent drawing
  • US9009486B2 patent drawing

AI summary

An authentication processing device receives biometric data to be checked from a biometric measuring device; transforms the biometric data that is input from the biometric measuring device by using a checking transformation parameter that is different from a registration transformation parameter; and creates checking biometric data. Then, the authentication processing device performs a differential transformation process on the created checking biometric data by using a differential parameter by which a transformation state transformed by the checking transformation parameter and a transformation state transformed by the registration transformation parameter have the same state. Thereafter, the authentication processing device checks the transformed checking biometric data against the registration biometric data stored in a transformation registration data DB and performs authentication.