Distributed Identity Verification via Segmented Attributes
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current identity verification methods often require individuals to share unnecessary information, and there is a risk of identity fraud due to the ease of counterfeiting government-issued documents and vulnerabilities in digital identities.
Innovation Solution
A system and method for storing verified identity information in a distributed database using a public key infrastructure, where entities can authenticate specific identity attributes without revealing unnecessary information, and only authorized identity providers can modify the database.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If government-issued identification documents include comprehensive personal information, then the document can verify multiple identity attributes, but the person is exposed to security breaches by sharing unnecessary information with entities
Solution Approach 1:
The patent segments identity information into discrete attributes (name, address, date of birth, etc.) and stores them as separate fields in a distributed database. This allows selective disclosure of only the specific attributes needed for verification, rather than exposing all information contained in traditional identification documents.
Solution Approach 2:
The patent introduces a distributed database system as an intermediary between the individual and the requesting entity. The database acts as a mediator that verifies identity attributes without requiring the individual to directly share personal information with the entity, thus reducing security risks while maintaining verification capabilities.
2Ease of operation
If traditional identity verification methods are used, then the process is simple and straightforward, but fraudsters can easily counterfeit documents and compromise digital identities
Solution Approach 1:
The patent replaces the mechanical system of physical document verification (inspecting passports, driver's licenses) with a digital cryptographic system based on public key infrastructure. Instead of manually checking physical documents, the system uses cryptographic signatures and distributed database queries to verify identity attributes, thereby eliminating counterfeiting vulnerabilities while maintaining operational simplicity.
Solution Approach 2:
The patent performs preliminary verification by storing cryptographic signatures of identity attributes in the distributed database before the actual verification transaction. When verification is needed, the system simply checks whether the presented attribute matches the pre-stored signature, making the verification process both simple and secure.
3Ease of operation
If digital identities use username and password schemes, then authentication is convenient for users, but fraudsters can easily misappropriate credentials
Solution Approach 1:
The patent replaces the vulnerable username-password authentication mechanism with cryptographic public key infrastructure. Instead of relying on secret passwords that can be stolen or guessed, the system uses asymmetric cryptography where the user possesses a private key for signing and the system verifies using a public key, providing both convenience and enhanced security against credential misappropriation.
Data Source
AI summary
Systems, methods, and apparatuses for storing verified identification information in a distributed database and for verifying entities to requestors are provided herein. Identity information relating to an entity is verified by a generally recognized identity provider (GRIP). Once verified, the GRIP populates a distributed database with an entry corresponding to the verified identity information. The distributed database is publically accessible such that identity requestors can see the entries in the distributed database. In some arrangements, the distributed database is write-protected such that only an authorized GRIP can modify the distributed database. An entity can provide information to a requestor to verify an identity attribute of the entity to the requestor. The requestor uses information provided by the entity to retrieve verified entity identification information from the distributed database and to confirm that the identity attribute was verified by an authorized GRIP.


