Device-Associated Token Identity for Secure Electronic Transactions
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing identity management systems for mobile devices are vulnerable to identity theft and fraud due to the lack of association between device identity modules and customer identifier data, which can lead to security risks when the device identity module is removed or reset, and biometric information is not independently verified.
Innovation Solution
A method is introduced to generate a token identity that combines customer identifier data from various sources, including digital identification, device identity modules, and customer inputs, to verify customer identity during electronic transactions, enhancing security by associating the token identity with the device identity module.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If device identity module is separated from customer identifier data, then device flexibility and ease of operation are improved, but security and reliability deteriorate due to vulnerability to identity theft and fraud
Solution Approach 1:
The patent combines device identity module data with customer identifier data into a unified token identity structure. This merging ensures that when the device identity module is removed or reset, the associated customer identifier data becomes invalid, preventing fraud while maintaining device flexibility through the token-based architecture.
Solution Approach 2:
The patent introduces a token identity as an intermediary that links the device identity module with customer identifier data. This token acts as a mediator that binds the two together, allowing the system to verify customer identity independently of device information while preventing unauthorized access when the device identity module is compromised.
2Ease of operation
If biometric information is used for device access, then ease of operation is improved, but security deteriorates because biometric information may be susceptible to fraud without independent verification
Solution Approach 1:
The patent implements a feedback mechanism where biometric information is collected and then independently verified against the token identity data. This verification process provides feedback to confirm the authenticity of the biometric data, preventing fraud while maintaining convenient device access through biometric authentication.
3Ease of operation
If customer identifier data is stored on mobile device, then ease of operation is improved for automated authentication, but security deteriorates when device is reset or identity module is removed
Solution Approach 1:
The patent performs preliminary binding of customer identifier data to the device identity module during the token identity creation process. This preliminary action ensures that the customer identifier data is pre-associated with the specific device identity module, so when the module is removed or the device is reset, the stored customer identifier data becomes invalid and cannot be used for fraudulent authentication.
Data Source
AI summary
Techniques are disclosed for generating a token identity that is assigned to a device identity module of a customer device. The token identity may be used to incorporate various types of customer identifier data to verify a customer identity during an electronic transaction. For instance, a customer may initially provide customer information on a customer device, which may be used to obtain a digital identification associated with the customer. The customer may subsequently provide an input including a customer identifier on the customer device, which may be verified against the customer information included in the digital identification.


