Biometric MFA Platform for Secure Low-Friction Financial Login
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current financial management services face security issues due to stolen passwords and identity recognition devices, leading to insecure personal property and increased labor costs.
Innovation Solution
A multi-factor authentication system utilizing user devices, financial management stations, and a cloud-based biometric server apparatus that processes and encodes biometric data for secure authentication, without storing the data to prevent leaks and reduce costs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional authentication methods (password, ID device) are used, then ease of operation is maintained, but security reliability deteriorates due to stolen passwords and identity recognition devices
Solution Approach 1:
The authentication process is segmented into multiple independent factors: something you know (password), something you have (ID device), and something you are (biometric data). Each factor is processed separately through different modules (financial management apparatus, cloud server, biometric server) to provide layered security while maintaining user convenience through automated multi-factor verification
Solution Approach 2:
A cloud-based multi-factor authentication service platform acts as an intermediary between the user and the financial management system. This intermediary handles the complex multi-factor authentication process, including biometric data processing and verification, shielding users from operational complexity while enhancing security through centralized authentication management
2Reliability
If biometric data is stored externally for authentication, then authentication capability is improved, but security risk increases due to potential data leaks
Solution Approach 1:
The patent extracts only the essential biometric feature information needed for authentication while removing unnecessary personal identity details from storage. The system processes and compares biometric features without storing complete biometric datasets, thereby maintaining authentication capability while minimizing data leak risks by storing only the minimum necessary information
Solution Approach 2:
The system uses temporary, session-specific authentication tokens and encrypted data transmissions that are discarded after use. Biometric data is processed in memory and not persisted in vulnerable storage systems, creating a disposable authentication mechanism that eliminates long-term storage risks while maintaining authentication functionality
3Reliability
If multiple authentication factors are processed, then authentication security is improved, but processing time increases
Solution Approach 1:
The system performs preliminary registration and biometric template creation during setup phases, storing processed biometric feature templates in advance. During actual authentication, the system only needs to compare incoming biometric data against pre-processed templates, significantly reducing authentication processing time while maintaining multi-factor security requirements
Solution Approach 2:
The authentication process is designed to continuously verify multiple factors in parallel rather than sequentially. The cloud-based platform simultaneously processes password verification, ID device validation, and biometric comparison, maintaining continuous authentication flow without interrupting the user experience for additional security checks
Data Source
AI summary
A multi-factor authentication system for financial management is may provide user a convenient and safe financial management service via enrolling with service for multi-factor authentication via an application. The user may log in the multi-factor authentication service platform during the enrollment phase via the application to acquire an account and obtain authority for use, thereby to access the service provided by the multi-factor authentication service platform via a financial management station system. In addition, during the financial management service, the user may acquire the financial management service in fewer steps and a more secure manner during an authentication phase with the multi-factor authentication service platform, thereby to enforce security for identity authentication.


