Blockchain Account Security via Certificate Center Binding
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing solutions for managing account insecurity in blockchain systems when a private key is lost, such as trusteeship or smart contracts, require pre-established arrangements and do not guarantee complete security, as the origin of resource loss cannot be definitively proven.
Innovation Solution
A method and apparatus that involve a computer device receiving identity information and a transfer request to transfer resources from a lost account to a target account generated by a certificate center, obtaining owner information, comparing identity information, and submitting an authentication request to the blockchain for transfer, allowing the blockchain to record the transfer event without needing the private key signature of the lost account.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If an intermediary is used as a trustee of a private key, then account security is improved, but device complexity and loss of information increase
Solution Approach 1:
The patent introduces a certificate center as an intermediary that issues binding information linking account addresses to owner identities. This mediator resolves the contradiction by providing a trusted third party that enables secure resource transfer without requiring direct private key custody, thus improving account security while avoiding the complexity of private key management systems.
Solution Approach 2:
The patent extracts the private key verification function from the transfer process by using binding information issued by the certificate center. Instead of requiring the private key itself for resource transfer, the system uses the extracted binding information that proves ownership without exposing the private key, thereby improving security while reducing the complexity of key management.
2Reliability
If trusteeship is established before private key loss, then account security is improved, but loss of time occurs
Solution Approach 1:
The patent applies preliminary action by having the certificate center issue binding information during account creation, before any potential private key loss occurs. This pre-established binding information enables immediate resource transfer without requiring subsequent trusteeship arrangements, thus improving account security while eliminating the time loss associated with establishing trusteeship after key loss.
Solution Approach 2:
The patent segments the account security function into two independent components: the private key for authentication and the binding information for ownership verification. This segmentation allows the binding information to be pre-established and independently used for resource transfer, improving security response time while avoiding the need for post-loss trusteeship establishment.
3Reliability
If private key is entrusted to third party, then account security is improved, but loss of information and reliability decrease
Solution Approach 1:
The patent introduces a certificate center as an intermediary that issues binding information as cryptographic proof of ownership. This mediator enables resource transfer without entrusting the private key to any third party, thus improving account security while preserving the ability to provide definitive proof of loss origin through the binding information verification process.
Solution Approach 2:
The patent creates a cryptographic copy (binding information) that proves ownership without requiring access to the original private key. This copy enables resource transfer and security verification while maintaining the confidentiality and security of the original key, thus improving account security while preserving complete information about the loss origin through blockchain recording.
Data Source
AI summary
A method for processing account information in a block chain is provided. A computer device receives identity information and a transfer request, the transfer request requesting to transfer a resource in an account to a target account, the target account being generated by a certificate center. The computer device obtains owner information of the account from the certificate center according to the transfer request. The computer device compares the identity information and the owner information. The computer device transmits an authentication request to the block chain in response to determining that the identity information and the owner information are consistent, the authentication request requesting the block chain to transfer the resource in the account to the target account.


