Core Network Authenticator Using Network Profiling for Secure Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional two-factor authentication (2FA) methods can be compromised if an illegitimate user obtains a user's password and email address, allowing access to the user's email account and potentially sensitive information.

Innovation Solution

Utilizing a communication service provider's core network as a second or third factor authenticator, which collects and analyzes network information to enhance user profiling and anomaly detection, thereby improving authentication security and user experience.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional two-factor authentication (password + email) is used, then authentication process is simple and easy to operate, but security is compromised when illegitimate users obtain password and email address

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a core network authenticator as an intermediary component between the user equipment and the authentication system. This mediator leverages existing core network information (IMSI, location data, network registration status) to perform authentication without requiring users to manually provide additional factors, thus maintaining ease of operation while enhancing security through network-based verification

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs authentication automatically by utilizing information already collected by the core network during normal network operations. The core network authenticator self-serviceedly retrieves user identification information, verifies authentication status, and communicates with the authentication server without requiring additional user actions beyond standard network connectivity, thereby maintaining operational simplicity while improving security

Inventive Principle:
Principle #25Self-service

2Reliability

If core network information is used for authentication, then user profiling and anomaly detection are enhanced, but system complexity increases

Engineering Contradiction:
Improveauthentication securityVSAvoidsystem architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The core network authenticator is designed to perform multiple functions using a single integrated component: it retrieves user identification information, verifies authentication status with the authentication server, performs user profiling based on network behavior, detects anomalies in authentication patterns, and communicates results to the application. This multi-functional design consolidates what would otherwise require separate systems into one unified solution

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent introduces a core network authenticator as an intermediary component between the user equipment and the authentication system. This mediator leverages existing core network information (IMSI, location data, network registration status) to perform authentication without requiring users to manually provide additional factors, thus maintaining ease of operation while enhancing security through network-based verification

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12348957B2Core network transformation authenticator
Publication Date: 2025.07.01 AT&T INTELLECTUAL PROPERTY I L P
  • US12348957B2 patent drawing
  • US12348957B2 patent drawing
  • US12348957B2 patent drawing

AI summary

A system may use information obtained by a communication service provider's core network for multi-factor authentication.