Distributed Identity Verification via Segmented Attributes

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current identity verification methods often require individuals to share unnecessary information, and there is a risk of identity fraud due to the ease of counterfeiting government-issued documents and vulnerabilities in digital identities.

Innovation Solution

A system and method for storing verified identity information in a distributed database using a public key infrastructure, where entities can authenticate specific identity attributes without revealing unnecessary information, and only authorized identity providers can modify the database.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If government-issued identification documents include comprehensive personal information, then the document can verify multiple identity attributes, but the person is exposed to security breaches by sharing unnecessary information with entities

Engineering Contradiction:
Improveidentity verification capabilityVSAvoidsecurity breach risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent segments identity information into discrete attributes (name, address, date of birth, etc.) and stores them as separate fields in a distributed database. This allows selective disclosure of only the specific attributes needed for verification, rather than exposing all information contained in traditional identification documents.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a distributed database system as an intermediary between the individual and the requesting entity. The database acts as a mediator that verifies identity attributes without requiring the individual to directly share personal information with the entity, thus reducing security risks while maintaining verification capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If traditional identity verification methods are used, then the process is simple and straightforward, but fraudsters can easily counterfeit documents and compromise digital identities

Engineering Contradiction:
Improveverification process simplicityVSAvoidauthentication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces the mechanical system of physical document verification (inspecting passports, driver's licenses) with a digital cryptographic system based on public key infrastructure. Instead of manually checking physical documents, the system uses cryptographic signatures and distributed database queries to verify identity attributes, thereby eliminating counterfeiting vulnerabilities while maintaining operational simplicity.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The patent performs preliminary verification by storing cryptographic signatures of identity attributes in the distributed database before the actual verification transaction. When verification is needed, the system simply checks whether the presented attribute matches the pre-stored signature, making the verification process both simple and secure.

Inventive Principle:
Principle #10Preliminary action

3Ease of operation

If digital identities use username and password schemes, then authentication is convenient for users, but fraudsters can easily misappropriate credentials

Engineering Contradiction:
Improveauthentication convenienceVSAvoidcredential security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces the vulnerable username-password authentication mechanism with cryptographic public key infrastructure. Instead of relying on secret passwords that can be stolen or guessed, the system uses asymmetric cryptography where the user possesses a private key for signing and the system verifies using a public key, providing both convenience and enhanced security against credential misappropriation.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS11823192B2Identity services systems and methods
Publication Date: 2023.11.21 WELLS FARGO BANK NA
  • US11823192B2 patent drawing
  • US11823192B2 patent drawing
  • US11823192B2 patent drawing

AI summary

Systems, methods, and apparatuses for storing verified identification information in a distributed database and for verifying entities to requestors are provided herein. Identity information relating to an entity is verified by a generally recognized identity provider (GRIP). Once verified, the GRIP populates a distributed database with an entry corresponding to the verified identity information. The distributed database is publically accessible such that identity requestors can see the entries in the distributed database. In some arrangements, the distributed database is write-protected such that only an authorized GRIP can modify the distributed database. An entity can provide information to a requestor to verify an identity attribute of the entity to the requestor. The requestor uses information provided by the entity to retrieve verified entity identification information from the distributed database and to confirm that the identity attribute was verified by an authorized GRIP.