Biometric Private Key Generation for Secure Deposit Sweep
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing deposit sweep systems require cooperation from partner institutions, lack user control over fund storage institutions, and have security vulnerabilities due to stored biometric and cryptographic key management practices.
Innovation Solution
A biometric private key generation system that uses a secure enclave processor to create a private key from biometric readings and passwords, applying wavelet and Fourier-Mellin transformations to generate an invariant code for secure digital signatures, without storing biometric information, and allows users to control deposit sweep transactions through a mobile device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If biometric information and private keys are stored for authentication, then user authentication capability is improved, but security vulnerability increases due to potential data breaches and hacking
Solution Approach 1:
The patent extracts and removes the vulnerable stored biometric information and private keys from the system. Instead of storing these sensitive data elements, the system uses biometric readings directly to generate private keys that never exist in stored form, eliminating the security vulnerability of stored authentication data while maintaining authentication capability
Solution Approach 2:
The patent introduces an intermediary process where biometric readings are transformed through wavelet and Fourier-Mellin transformations to generate private keys. This intermediary transformation process ensures that neither the original biometric data nor the generated private keys are stored, creating a secure bridge between authentication input and cryptographic function
2Reliability
If deposit sweep systems require cooperation from partner institutions with technological connections, then transaction reliability is improved, but system adaptability and flexibility deteriorate
Solution Approach 1:
The patent enables users to independently control and initiate deposit sweep transactions through mobile devices without requiring institutional cooperation or technological connections. The system performs self-service authentication using biometric data and automatically executes transactions, eliminating the need for partner institution involvement while maintaining transaction reliability
Solution Approach 2:
The patent creates a universal authentication and transaction system that works across different institutions without requiring specific technological connections or partnerships. The biometric-based authentication mechanism and mobile device interface provide multi-institutional compatibility, allowing users to access and control funds at any depository institution
3Productivity
If automated computer-implemented deposit sweep processes are used, then productivity is improved, but user control and notification capability deteriorate
Solution Approach 1:
The patent implements real-time feedback mechanisms where users receive immediate notifications on their mobile devices about deposit sweep transactions, fund locations, and transaction status. This feedback loop maintains user control and awareness while the system performs automated processing, allowing users to monitor and manage their funds in real-time despite the automated nature of the transactions
Data Source
AI summary
Systems, methods, and program products for providing secure authentication for electronic messages are disclosed. A method may comprise generating an asymmetric private key based at least in part upon an invariant biometric feature vector derived from an input biometric reading. The private key may be further based at least in part upon a user password. The resulting private key may not be stored but rather may be generated when required to authenticate an electronic message, at which time it may be used to provide a digital signature for the electronic message. The private key may be deleted after use. The private key may be regenerated by inputting both a new instance of the biometric reading as well as a new instance of the password.


