Personal Cloud Authentication Table Matching Device Identifiers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authentication systems for online payment transactions are inefficient and prone to fraudulent activities, leading to delays and lost revenues due to the need for additional verification steps, which can inconvenience legitimate users and fail to accurately authenticate users.

Innovation Solution

A personal cloud authentication (PCA) system that uses device data stored on a personal cloud platform to build an authentication table with user profiles, including identifiers and signatures, and matches secondary device identifiers to authenticate users, reducing the need for additional verification steps and improving fraud detection.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication services are used to verify users before authorization, then fraud detection capability is improved, but transaction processing time increases

Engineering Contradiction:
Improvefraud detection capabilityVSAvoidtransaction processing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary actions by building and storing authentication tables with user profiles, device identifiers, and authentication signatures before transactions occur. When a transaction is initiated, the system matches device identifiers against these pre-built authentication tables, eliminating the need for time-consuming real-time authentication services while maintaining fraud detection capability

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system creates copies of authentication data by storing device identifiers and authentication signatures in authentication tables within the payment network system. These copies enable rapid matching and verification during transactions without requiring access to the original user credentials or real-time authentication services

Inventive Principle:
Principle #26Copying

2Reliability

If multiple verification steps are implemented to prevent fraud, then security is improved, but user convenience deteriorates

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system performs self-service by automatically matching device identifiers against stored authentication tables without requiring user intervention for verification steps. The matching process occurs transparently in the background, providing both security and convenience by eliminating manual verification requirements while maintaining fraud detection

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system extracts only the essential authentication elements (device identifiers and authentication signatures) from complete user profiles and stores them in authentication tables. This extraction enables rapid automated matching that provides security without requiring users to undergo multiple verification steps, as the system independently completes the authentication process

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS11348116B2Systems and methods for enhancing online user authentication using a personal cloud platform
Publication Date: 2022.05.31 MASTERCARD INT INC
  • US11348116B2 patent drawing
  • US11348116B2 patent drawing
  • US11348116B2 patent drawing

AI summary

A personal cloud authentication (PCA) system for authenticating an online user using device data stored on a personal cloud platform of the user is provided. The PCA system configured to build an authentication table using a user profile that includes at least user account information. The PCA system is also configured to receive transaction data associated with the user account information and store the transaction data within a database, wherein the transaction data includes at least an authentication request, a second primary user computing device identifier and a second secondary user computing device identifier. The PCA system is further configured to parse the transaction data, match the first primary user computing device identifier to the second primary user computing device identifier and the first secondary user computing device identifier to the second secondary user computing device identifier, generate an authentication response based on the match, and transmit the authentication response.