Communication Session Caller Attestation for Secure Biometric Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing wireless communication systems are vulnerable to identity theft attacks, particularly during interactive communication sessions, where attackers exploit always-on biometric sensor activation to steal user biometric information by impersonating legitimate users, leading to unauthorized access and data leakage.

Innovation Solution

Implement caller attestation information, such as an attestation bitmask, generated by the initiating device based on detected user gestures, voice, and biometric data, which is verified by the recipient device against authentication configuration to ensure the legitimacy of the caller before allowing biometric data sharing.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Speed

If biometric sensors are kept always-on for quick authentication, then authentication speed is improved, but security is worsened due to vulnerability to identity theft attacks and unauthorized biometric data collection

Engineering Contradiction:
Improveauthentication speedVSAvoidsecurity
Core Design Contradiction:
SpeedVSReliability

Solution Approach 1:

The system performs preliminary attestation of the initiating device before allowing biometric data sharing. The recipient device receives attestation information from the initiator device that proves the initiator's identity and device legitimacy in advance, so that when biometric sensors are activated, the system can quickly verify against pre-validated credentials rather than performing full authentication from scratch

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces attestation information as an intermediary mechanism between the initiator device and recipient device. This attestation data acts as a trusted mediator that carries verification of the initiator's identity, allowing the recipient to quickly authenticate without directly exposing biometric data to unverified parties, thus maintaining both speed and security

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If biometric data sharing is enabled for seamless communication, then ease of operation is improved, but security is worsened due to potential data leakage and unauthorized access

Engineering Contradiction:
Improvecommunication setup easeVSAvoiddata security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary attestation and validation of the initiator device before enabling biometric data sharing. The recipient device verifies attestation information that confirms the initiator's legitimate identity in advance, so that biometric data can be shared seamlessly during the communication session without compromising security

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

Attestation information serves as an intermediary that enables seamless biometric data sharing while maintaining security. The verified attestation data acts as a trusted bridge that allows the recipient device to share biometric information with the initiator without direct exposure to unverified entities, thus achieving both ease of operation and data protection

Inventive Principle:
Principle #24Intermediary (Mediator)

3Speed

If device sensors are continuously active for rapid response, then responsiveness is improved, but energy consumption is worsened

Engineering Contradiction:
Improveresponse timeVSAvoidsensor energy consumption
Core Design Contradiction:
SpeedVSUse of energy by moving object

Solution Approach 1:

The system performs preliminary attestation and validates device credentials before activating biometric sensors for communication. By pre-verifying the initiator's identity through attestation information, the system can keep sensors dormant until needed, then activate them quickly for the duration of the authenticated session, reducing overall energy consumption while maintaining rapid response capability

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS20260075413A1Attestation and authentication for communication sessions between devices
Publication Date: 2026.03.12 QUALCOMM INC
  • US20260075413A1 patent drawing
  • US20260075413A1 patent drawing
  • US20260075413A1 patent drawing

AI summary

Systems and techniques are provided for wireless communications. A first device can receive a request to initiate a communication session between a second device and the first device, the request including caller attestation information corresponding to a user of the second device and determined by the second device based on information obtained from one or more sensors included in the second device. An authentication result corresponding to the request to initiate the communication session can be determined, based on comparing the caller attestation information included in the request with authentication configuration information associated with a user of the first device. The communication session between the second device and the first device can be configured based on the authentication result, by processing one or more inputs corresponding to biometric information of the user of the first device based on the authentication result.