Decentralized Data Authentication via Distributed Ledger

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing security systems are vulnerable to phishing and malware distribution, as users are often deceived into accessing fake websites or opening malicious files disguised as legitimate content from trusted sources.

Innovation Solution

A decentralized data authentication system that uses a network environment with a computing environment, client device, identity hub, and distributed ledger to authenticate data and verify the identity of content authors, originators, or distributors, preventing single points of failure and monopolization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a centralized authentication system is used, then the authentication process is simple and efficient, but the system is vulnerable to single points of failure and monopolization

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidsystem structure complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the centralized authentication system into multiple distributed authentication providers and a decentralized authentication service. Each provider operates independently, eliminating the single point of failure while maintaining authentication functionality through distributed verification of digital signatures and credentials across multiple nodes.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a decentralized authentication service as an intermediary layer between users and multiple authentication providers. This mediator coordinates verification across distributed providers without centralizing control, using cryptographic proofs and digital signatures to maintain security while distributing trust.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If decentralized authentication is implemented, then resistance to phishing and malware is improved, but system complexity increases

Engineering Contradiction:
Improvephishing and malware resistanceVSAvoidauthentication system complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent implements preliminary action by requiring pre-verification of authentication provider credentials and establishment of trust relationships before actual authentication occurs. Digital signatures and cryptographic proofs are prepared in advance, allowing the system to resist phishing and malware by validating credentials before users interact with potentially malicious content.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent incorporates feedback mechanisms where the decentralized authentication service continuously monitors and verifies the authenticity of authentication providers. The system provides feedback about the validity of credentials and authentication status, enabling real-time detection and response to phishing attempts or compromised providers.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS12323526B2Decentralized data authentication
Publication Date: 2025.06.03 AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC
  • US12323526B2 patent drawing
  • US12323526B2 patent drawing
  • US12323526B2 patent drawing

AI summary

Disclosed are various embodiments for decentralizing the authentication or verification of data. An identity key can be generated for a data item. A request can then be sent to an authentication service for authentication of the data item, the request comprising the identity key and the data item. A verified claim for the data item can then be received in response. Subsequently, an identity document is generated, the identity document comprising the identity key for the data item and the verified claim. Finally, the identity document can be stored in a distributed ledger.