Biometric Digital File Binding for Secure Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current digital authentication methods for public keys and digital files are vulnerable to tampering and impersonation, as they rely on central authorities and do not effectively bind the identity of the originator to the digital content, making them susceptible to forgery and Man In The Middle attacks.

Innovation Solution

A method that implants content from a digital data file into biometric information files, such as audio or video recordings, allowing recipients to verify the identity of the transmitting entity by recognizing biometric features, thereby securely binding the digital file to the originator's identity using multi-factor authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a central Certification Authority (CA) is used to authenticate public keys and bind identities, then authentication can be performed, but the system becomes vulnerable to attacks on the central server, requires constant availability, and needs strict security procedures

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication function from the central CA server and distributes it to individual users through their devices. Each user's device stores their own public key and can independently verify identities, eliminating the single point of failure at the central server while maintaining authentication reliability.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

Users authenticate themselves and others using their own stored credentials and biometric data without requiring central CA intervention. The system enables self-service authentication where each user acts as their own authentication authority, reducing dependency on complex central server infrastructure.

Inventive Principle:
Principle #25Self-service

2Reliability

If biometric information is used to bind identity to digital files, then strong binding is achieved, but the system becomes vulnerable to PIN compromise allowing document replacement

Engineering Contradiction:
Improveidentity binding strengthVSAvoidvulnerability to PIN compromise
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent merges multiple authentication factors into a unified system: biometric data, PIN, and device-stored public keys are combined. The biometric information is encrypted with the device's private key, creating a layered security structure where compromise of one factor (PIN) does not enable authentication without the others.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The authentication system uses composite security mechanisms combining cryptographic elements (public/private keys, encrypted hashes) with biometric data. This composite approach creates a security structure where multiple independent elements must be compromised simultaneously, dramatically reducing vulnerability to single-point attacks.

Inventive Principle:
Principle #40Composite materials

3Measurement precision

If digital signatures and certificates are used for authentication, then identity verification is possible, but users cannot directly verify the associated ID of a public key beyond checking the digital signature

Engineering Contradiction:
Improveidentity verification accuracyVSAvoidverification ease
Core Design Contradiction:
Measurement precisionVSEase of operation

Solution Approach 1:

The patent introduces biometric information as an intermediary that directly links identity to the authentication process. Instead of relying solely on abstract digital signatures, the biometric data serves as a tangible, verifiable connection between the user's physical identity and their digital credentials, enabling direct verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system transforms abstract cryptographic verification into tangible, observable verification through biometric matching. The biometric data acts as a visible and audible proof (through voice or image recognition) that directly confirms identity, making verification as easy as recognizing a familiar voice or face rather than checking complex cryptographic signatures.

Inventive Principle:
Principle #32Color changes

Data Source

PatentUS9438589B2Binding a digital file to a person's identity using biometrics
Publication Date: 2016.09.06 PQ SOLUTIONS LTD
  • US9438589B2 patent drawing
  • US9438589B2 patent drawing
  • US9438589B2 patent drawing

AI summary

A method and system are described for authenticating one or more digital files in which a feature, characteristic or a portion of the contents of said files is implanted into one or more biometric information files, which are electronically recorded and transmitted and in which the identity of the originator or a trusted third party and all or part of the feature, characteristic or a portion of the contents of said files is determined from said biometric information files.