Electronic Device Binding via Token Vault Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current methods for preventing fraud and theft of payment credentials in mobile devices are inadequate as they require users to enter sensitive information, making them vulnerable to theft and compromise.
Innovation Solution
A system and method for binding a first user device to a second user device using an electronic telecommunications device, which connects wirelessly and authenticates users without requiring them to enter sensitive account information, utilizing a secure communication channel and a token vault to issue a token for secure transactions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If users enter sensitive account information during transactions, then authentication can be performed, but security is compromised due to vulnerability to theft and fraud
Solution Approach 1:
The patent extracts sensitive account information from the user's input process entirely. Instead of requiring users to enter account numbers, the system uses device identification (IMEI, serial numbers) and tokenization to represent accounts, eliminating the vulnerability of transmitting sensitive information while maintaining authentication capability.
Solution Approach 2:
The patent introduces an intermediary binding process that occurs at a secure location (branch office, ATM, kiosk) between the user's first device and second device. This intermediary process establishes secure associations without requiring users to handle or enter sensitive account information, acting as a mediator that protects security while enabling authentication.
2Reliability
If camera systems or authentication methods are used to prevent fraud, then security is improved, but the limitation remains that users must still provide sensitive information into a device
Solution Approach 1:
The patent removes the requirement for users to input sensitive information into any device. The system achieves fraud prevention by extracting the vulnerable step of information entry and replacing it with device-based identification and secure binding processes that occur in controlled environments.
Solution Approach 2:
The patent uses tokenization to create secure representations (tokens) of account information without exposing the actual sensitive data. These tokens serve as safe copies that can be transmitted and processed without compromising security, reducing device complexity requirements for handling sensitive information.
3Reliability
If a secure binding process is implemented without user input of sensitive information, then security is enhanced, but the binding process requires additional authentication steps
Solution Approach 1:
The patent performs the secure binding process in advance at controlled locations (branch offices, ATMs, kiosks) before actual transactions occur. By completing the authentication and binding setup beforehand in secure environments, the system eliminates the need for repeated authentication steps during transactions, reducing time loss while maintaining high security standards.
Data Source
AI summary
A user may utilize an electronic telecommunications device comprising a wireless communications device to bind a first user device and a second user device. The user can insert the first user device into the electronic telecommunications device and enter authentication information. The first user device and the second user device can be bound over a wireless network enabled by the wireless communications device without requiring any sensitive account information to be entered by the user.


