Caller Authentication via Designated Agent Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for caller authentication and authorization in telephone communications are vulnerable to spoofing and social engineering, as they rely on caller ID and manual verification questions that can be easily compromised, leading to potential identity theft and unauthorized access to user accounts.

Innovation Solution

Implementing a multi-user caller verification system that utilizes a designated agent, such as a family member or trusted individual, to verify the identity of the account holder through phone calls, SMS messages, or digital channels, ensuring that only authorized individuals can access sensitive information or perform account actions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If traditional caller ID and manual verification questions are used for authentication, then the ease of operation is improved, but the reliability of authentication is worsened due to spoofing and social engineering vulnerabilities

Engineering Contradiction:
Improveease of authenticationVSAvoidauthentication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a designated agent as an intermediary party who receives authentication requests and verifies the caller's identity independently. This mediator approach prevents direct exploitation between hackers and target accounts, as the agent acts as a trusted third party that cannot be easily compromised through traditional social engineering attacks.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authentication process is segmented into separate components: the account holder designates an agent, the agent receives authentication requests separately, and the verification occurs through a distributed trust model. This segmentation prevents a single point of failure and makes it difficult for attackers to compromise the entire authentication system.

Inventive Principle:
Principle #1Segmentation

2Reliability

If a designated agent verification system is implemented, then the reliability of authentication is improved, but the device complexity and time required for authentication worsen

Engineering Contradiction:
Improveauthentication securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The account holder proactively designates their own authentication agent during account setup or through self-service interfaces. This eliminates the need for manual configuration by support staff and reduces system complexity by allowing users to manage their own authentication preferences and agent selections.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The authentication agent relationship is established in advance through preliminary designation by the account holder. This pre-configuration eliminates the need for complex real-time setup procedures and reduces authentication time, as the agent relationship is already validated before authentication events occur.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If multiple verification channels are used, then the reliability of authentication is improved, but the loss of time in the authentication process worsens

Engineering Contradiction:
Improveverification securityVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system dynamically adapts the verification process based on pre-established trust relationships. When an account holder has designated an agent, the system dynamically adjusts to use this trusted intermediary for verification, eliminating the need for multiple time-consuming verification steps that would otherwise be required for untrusted callers.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system provides feedback mechanisms where the designated agent can verify caller identity through multiple channels (phone, SMS, email) and provide authentication feedback to the system. This feedback loop allows the system to make informed authentication decisions without requiring exhaustive verification procedures, reducing overall authentication time while maintaining security.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS12126765B1Designated agent for caller authentication and authorization
Publication Date: 2024.10.22 UNITED SERVICES AUTOMOBILE ASSOCIATION (USAA)
  • US12126765B1 patent drawing
  • US12126765B1 patent drawing
  • US12126765B1 patent drawing

AI summary

Methods and systems described herein are directed to verifying a caller's identity and/or authorizing a caller's access to an account using a third party designated agent. A caller verification system can register an agent in association with an account holder's user account with an organization. When a caller attempts to access the account holder's user account during a phone call with a representative from the organization, the caller verification system can automatically request that the agent verify the caller's identity. In some implementations, the caller verification system can bridge or conference in the agent to the phone call to allow the agent to verify the caller's identity and indicate to the representative that the caller's identity matches that of the account holder. The caller verification system can also receive verification messages from the agent via text message, email, HTTP request, or other digital means.