Call Authentication via Server-Side Contact Retrieval
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current methods fail to effectively authenticate the identity of calling parties in call sessions over communications networks, leading to potential fraud and misuse of sensitive information, as existing processes do not verify if incoming calls are initiated by authorized representatives.
Innovation Solution
A method and apparatus that automatically retrieve and display contact information associated with a calling party's organization from a database, allowing the called party to verify the identity of the organization through a communication device, which may include displaying organizational names, logos, or one-time-passwords (OTPs) to authenticate the caller.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If automated authentication system is implemented, then fraud risk is reduced, but device complexity increases
Solution Approach 1:
The patent introduces an intermediary authentication system that acts as a mediator between the calling party and the called party. The system retrieves contact information from a database, verifies organizational affiliation, and presents authentication credentials (such as organizational names, logos, or one-time-passwords) to the called party. This intermediary layer adds reliability to call authentication without requiring complex changes to the communication terminals themselves, as the authentication logic resides in the server-side system.
2Productivity
If contact information retrieval is automated, then verification efficiency is improved, but information security requirements increase
Solution Approach 1:
The system performs preliminary actions by pre-retrieving and storing contact information, including organizational affiliations, in a secure database before actual call authentication is needed. When a call occurs, the system quickly matches the calling party's information against pre-stored data, enabling efficient verification without real-time security risks. The automated retrieval process is designed with security measures to prevent unauthorized access to the contact information database.
Data Source
AI summary
Methods and apparatus for authenticating a calling party in respect of a call session are disclosed. The call session is carried out over a communications network between a first communication terminal associated with the calling party and a second communication terminal associated with a called party. The calling party is associated with an organization and the method includes retrieving contact information of one or more calling parties from a database in communication with the server, the contact information including, for each said calling party, an association between a phone number of the first communication terminal and an identity of the associated organization of the calling party, and transmitting the contact information to the second communication terminal, to cause information representing the identity of the associated organization to be displayed by the second communication terminal in response to the second communication terminal receiving an incoming call from the phone number.


