Dynamic Biometric Feature Rotation for Authentication Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Biometric information stored on IC cards is vulnerable to compromise, making it difficult to prevent unauthorized use while maintaining valid authentication.

Innovation Solution

A system that extracts features from an authentication object, compares them with registered features, and updates the registered features to a different combination after successful authentication, reducing the risk of compromised biometric information being used for unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If biometric information is stored in an IC card or server, then authentication accuracy is improved, but security risk increases when the biometric information is compromised

Engineering Contradiction:
Improveauthentication accuracyVSAvoidsecurity risk
Core Design Contradiction:
Measurement precisionVSObject-affected harmful factors

Solution Approach 1:

The biometric information is divided into multiple features (e.g., first feature, second feature, third feature) that are stored separately. During authentication, only a subset of these features is used, preventing compromise of the entire biometric dataset if one feature is exposed.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system dynamically changes which features are used for authentication over time. The feature selection is not fixed but varies between authentication sessions, making it difficult for attackers to exploit static biometric data.

Inventive Principle:
Principle #15Dynamics

2Object-affected harmful factors

If compromised biometric information is discarded to prevent illegal use, then security is improved, but authentication continuity deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication continuity
Core Design Contradiction:
Object-affected harmful factorsVSDuration of action of stationary object

Solution Approach 1:

By segmenting biometric information into multiple features, the system can discard only the compromised features while retaining and continuing to use non-compromised features for authentication, ensuring service continuity.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system changes the parameters (which specific features are used) for authentication over time. When compromise is detected, the system transitions to using different feature combinations, maintaining authentication capability while preventing unauthorized access.

Inventive Principle:
Principle #35Parameter changes

3Object-affected harmful factors

If authentication templates are updated frequently to prevent compromise, then security is improved, but operational cost increases

Engineering Contradiction:
ImprovesecurityVSAvoidoperational cost
Core Design Contradiction:
Object-affected harmful factorsVSLoss of energy

Solution Approach 1:

The system dynamically selects which features to use for authentication rather than updating all features frequently. This reduces the frequency and cost of template updates while maintaining security through variable feature selection.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

Instead of updating all authentication parameters frequently, the system changes only the selection of which features are active for authentication. This parameter change approach maintains security with minimal operational overhead.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS8064646B2Technique for authenticating an object on basis of features extracted from the object
Publication Date: 2011.11.22 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US8064646B2 patent drawing
  • US8064646B2 patent drawing
  • US8064646B2 patent drawing

AI summary

The present invention discourages effective illegal use of compromised biometric information in biometric authentication and allows biometric authentication to be securely continued even when some biometric information is compromised. A user authentication system compares extracted user features with a previously registered combination of features and authenticates the user on the basis of the result of the comparison. If the authentication is successful, the previously registered combination is replaced with a new combination of features that are registered for use in the subsequent authentication of the authentication object.