Caller Authentication via Designated Agent Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current methods for caller authentication and authorization in telephone communications are vulnerable to spoofing and social engineering, as they rely on caller ID and manual verification questions that can be easily compromised, leading to potential identity theft and unauthorized access to user accounts.
Innovation Solution
Implementing a multi-user caller verification system that utilizes a designated agent, such as a family member or trusted individual, to verify the identity of the account holder through phone calls, SMS messages, or digital channels, ensuring that only authorized individuals can access sensitive information or perform account actions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional caller ID and manual verification questions are used for authentication, then the ease of operation is improved, but the reliability of authentication is worsened due to spoofing and social engineering vulnerabilities
Solution Approach 1:
The patent introduces a designated agent as an intermediary party who receives authentication requests and verifies the caller's identity independently. This mediator approach prevents direct exploitation between hackers and target accounts, as the agent acts as a trusted third party that cannot be easily compromised through traditional social engineering attacks.
Solution Approach 2:
The authentication process is segmented into separate components: the account holder designates an agent, the agent receives authentication requests separately, and the verification occurs through a distributed trust model. This segmentation prevents a single point of failure and makes it difficult for attackers to compromise the entire authentication system.
2Reliability
If a designated agent verification system is implemented, then the reliability of authentication is improved, but the device complexity and time required for authentication worsen
Solution Approach 1:
The account holder proactively designates their own authentication agent during account setup or through self-service interfaces. This eliminates the need for manual configuration by support staff and reduces system complexity by allowing users to manage their own authentication preferences and agent selections.
Solution Approach 2:
The authentication agent relationship is established in advance through preliminary designation by the account holder. This pre-configuration eliminates the need for complex real-time setup procedures and reduces authentication time, as the agent relationship is already validated before authentication events occur.
3Reliability
If multiple verification channels are used, then the reliability of authentication is improved, but the loss of time in the authentication process worsens
Solution Approach 1:
The system dynamically adapts the verification process based on pre-established trust relationships. When an account holder has designated an agent, the system dynamically adjusts to use this trusted intermediary for verification, eliminating the need for multiple time-consuming verification steps that would otherwise be required for untrusted callers.
Solution Approach 2:
The system provides feedback mechanisms where the designated agent can verify caller identity through multiple channels (phone, SMS, email) and provide authentication feedback to the system. This feedback loop allows the system to make informed authentication decisions without requiring exhaustive verification procedures, reducing overall authentication time while maintaining security.
Data Source
AI summary
Methods and systems described herein are directed to verifying a caller's identity and/or authorizing a caller's access to an account using a third party designated agent. A caller verification system can register an agent in association with an account holder's user account with an organization. When a caller attempts to access the account holder's user account during a phone call with a representative from the organization, the caller verification system can automatically request that the agent verify the caller's identity. In some implementations, the caller verification system can bridge or conference in the agent to the phone call to allow the agent to verify the caller's identity and indicate to the representative that the caller's identity matches that of the account holder. The caller verification system can also receive verification messages from the agent via text message, email, HTTP request, or other digital means.


