Blockchain eSIM Authentication via Biometric Key Generation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing call authentication systems, such as STIR/SHAKEN, are ineffective against caller ID spoofing and rely on centralized authorities, allowing robocalls and fraudulent calls to bypass verification, posing a significant threat to privacy and financial security.

Innovation Solution

A decentralized blockchain-based system using cryptographic digital signatures and biometric authentication generates unique cryptographic keys for eSIMs, verifying call authenticity directly from the source by checking against a decentralized ledger, reducing spoofing and fraud.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If centralized certification authorities are used for call authentication, then call verification can be performed, but the system remains vulnerable to spoofing and centralized points of failure

Engineering Contradiction:
Improvecall authentication reliabilityVSAvoidcentralized authority structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the centralized authentication authority into distributed network nodes that independently verify calls using blockchain-stored cryptographic keys. Each node can authenticate calls without relying on a central authority, distributing the verification function across multiple independent entities in the network.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces blockchain technology as an intermediary layer between callers and call recipients. The blockchain stores immutable cryptographic key pairs and verification records, serving as a neutral mediator that enables authentication without requiring direct trust between parties or reliance on centralized authorities.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If STIR/SHAKEN protocols are implemented, then caller identification is improved, but the protocols cannot actually block robocalls from reaching people

Engineering Contradiction:
Improvecaller identification accuracyVSAvoidfraud prevention effectiveness
Core Design Contradiction:
Measurement precisionVSReliability

Solution Approach 1:

The patent performs authentication verification before the call is completed and delivered to the recipient. By checking the caller's cryptographic credentials and blockchain verification status in advance, the system can prevent fraudulent calls from reaching recipients, rather than merely providing identification information after the call has connected.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements a feedback mechanism where call verification results are recorded on the blockchain and can be checked in real-time. The system provides feedback to network elements about call authenticity, enabling dynamic blocking decisions based on verification outcomes and historical call patterns.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS20250211669A1Systems and Methods for Authenticating Calls Using Blockchain Technology and Cryptology
Publication Date: 2025.06.26 SAMSUNG ELECTRONICS CO LTD
  • US20250211669A1 patent drawing
  • US20250211669A1 patent drawing
  • US20250211669A1 patent drawing

AI summary

In one embodiment, a method includes receiving a request from a first user to register an electronic SIM card from a user device, authenticating biometric information of the first user that is accessed from the user device, generating a private key to be stored on the user device and a public key to be stored on a blockchain network based on the biometric information, determining a block associated with the first user exists on the blockchain network based on the private key, determining whether the first user is eligible for registration based on variables stored on the block, and registering the first user with the electronic SIM card if the first user is eligible for registration, else declining the request from the first user for registration.