Dynamic Authentication Challenge Generation for Mobile Terminals

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing user authentication methods often require high memory storage for authentication information and lack anti-peeping capabilities, making them vulnerable to unauthorized access.

Innovation Solution

A user authentication method that determines first-type and second-type authentication information based on interaction object attributes, where first-type information is frequently used and second-type information interferes with selection, reducing memory load and enhancing anti-peeping capabilities by dynamically generating authentication challenges.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication methods are used, then authentication security is maintained, but memory storage requirements increase and anti-peeping capability is lacking

Engineering Contradiction:
Improveauthentication securityVSAvoidmemory storage requirements
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The authentication information is segmented into first-type authentication information (frequently used interaction objects) and second-type authentication information (interfering information). This segmentation allows the system to reduce memory storage by only retaining essential authentication data while adding interfering information dynamically during authentication processes.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The authentication challenge set is dynamically generated by combining first-type and second-type authentication information. The interfering information is temporarily introduced during authentication and then discarded, making the authentication mechanism dynamic rather than static, which reduces permanent memory storage requirements while maintaining security.

Inventive Principle:
Principle #15Dynamics

2Ease of operation

If traditional authentication methods are used, then authentication functionality is provided, but anti-peeping capability is insufficient

Engineering Contradiction:
Improveauthentication functionalityVSAvoidpeeping vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

Second-type authentication information (interfering information) acts as an intermediary element that is introduced during the authentication process. This interfering information masks the first-type authentication information, making it difficult for peepers to identify the actual authentication data while still allowing the legitimate user to complete authentication successfully.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The composition of the authentication challenge set changes dynamically based on the combination of first-type and second-type authentication information. By changing the parameters of the authentication challenge (which items are included, their arrangement, and their presentation), the system enhances anti-peeping capability while maintaining authentication functionality.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If more authentication information is stored, then authentication security is improved, but memory price increases

Engineering Contradiction:
Improveauthentication securityVSAvoidmemory price
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

Second-type authentication information (interfering information) functions as a disposable element that is introduced temporarily during authentication and then discarded. This approach provides enhanced security during the authentication process without requiring permanent storage of additional information, thus reducing memory price while maintaining authentication security.

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

4Object-affected harmful factors

If authentication information is made more complex, then anti-peeping capability is enhanced, but device complexity increases

Engineering Contradiction:
Improveanti-peeping capabilityVSAvoidauthentication mechanism complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The authentication mechanism is segmented into clear components: first-type authentication information (essential), second-type authentication information (interfering), and the authentication challenge set (combination). This segmentation organizes the complexity into manageable parts, making the system easier to implement and maintain while still providing enhanced anti-peeping capability through the combination of these segments.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS10089450B2User authentication method, authentication apparatus, and terminal
Publication Date: 2018.10.02 HUAWEI TECH CO LTD
  • US10089450B2 patent drawing
  • US10089450B2 patent drawing
  • US10089450B2 patent drawing

AI summary

A user authentication method and a terminal. The method includes determining first-type authentication information and second-type authentication information that are of a terminal, wherein the first-type authentication information includes specific attribute information that is in specific attribute information of an interaction object corresponding to a specific interaction behavior of the terminal and whose occurrence frequency within a preset time falls in a preset range, and wherein the second-type authentication information is used to interfere with selection, by the user of the terminal, of the first-type authentication information; presenting an authentication challenge set to the user of the terminal; receiving an identification result; and determining an authentication result. According to the user authentication method, authentication information is dynamically generated using information about an interaction object to perform authentication on a user.