Biometric Identifier Binding for Secure Graphic Code Services

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing two-dimensional code technologies lack effective security measures to prevent unauthorized access and information leakage, as they often carry sensitive user information, making users vulnerable to theft and subsequent losses.

Innovation Solution

A method where a biometric feature identifier is bound to a user account on a server, allowing a graphic code to be displayed that carries this identifier, enabling the server to complete services without including sensitive information in the code, ensuring that only authorized users can perform operations due to biometric matching.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If sensitive user information such as user account is carried in the graphic code, then service completion is enabled, but security is compromised and information leakage occurs

Engineering Contradiction:
Improveservice completionVSAvoidinformation leakage
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent extracts sensitive user information from the graphic code while retaining only the biometric feature identifier. The server performs matching against stored biometric data to authenticate the user, completing the service without exposing sensitive information in the code itself.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces biometric feature identifiers as an intermediary element between the user and the service system. Instead of directly using sensitive user accounts, the system uses biometric features (fingerprint, face, iris) as a secure mediator for authentication, preventing information leakage while enabling service completion.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If biometric feature identifier is used instead of user account in graphic code, then security is improved, but device complexity increases

Engineering Contradiction:
Improveunauthorized access preventionVSAvoidsystem complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent uses biometric feature identifiers as simplified copies or representations of the actual biometric data. The server stores and matches these identifiers against enrolled biometric templates, providing security without requiring complex real-time biometric processing at the client device level.

Inventive Principle:
Principle #26Copying

Data Source

PatentEP3534584B1Service implementation method and apparatus
Publication Date: 2021.09.22 ADVANCED NEW TECHNOLOGIES CO LTD
  • EP3534584B1 patent drawingFigure 1~2
  • EP3534584B1 patent drawingFigure 3
  • EP3534584B1 patent drawingFigure 4

AI summary

The present application provides a method and an apparatus for service implementation. The method includes: after a display instruction of a graphic code is received, obtaining a biometric feature identifier of a biometric feature that has been verified; generating a code string that carries the biometric feature identifier; and displaying a graphic code that carries the code string, so after scanning the graphic code, another terminal device sends the code string to a server, and the server identifies a binding user account based on the biometric feature identifier to complete related services. In the present application, sensitive information such as the user account does not need to be carried in the graphic code. Even if an unauthorized person steals a terminal device of a user, a service operation cannot be performed because a biometric feature does not match, thereby ensuring security of user information and property.