Dynamic Authentication Challenge Generation for Mobile Terminals
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing user authentication methods often require high memory storage for authentication information and lack anti-peeping capabilities, making them vulnerable to unauthorized access.
Innovation Solution
A user authentication method that determines first-type and second-type authentication information based on interaction object attributes, where first-type information is frequently used and second-type information interferes with selection, reducing memory load and enhancing anti-peeping capabilities by dynamically generating authentication challenges.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional authentication methods are used, then authentication security is maintained, but memory storage requirements increase and anti-peeping capability is lacking
Solution Approach 1:
The authentication information is segmented into first-type authentication information (frequently used interaction objects) and second-type authentication information (interfering information). This segmentation allows the system to reduce memory storage by only retaining essential authentication data while adding interfering information dynamically during authentication processes.
Solution Approach 2:
The authentication challenge set is dynamically generated by combining first-type and second-type authentication information. The interfering information is temporarily introduced during authentication and then discarded, making the authentication mechanism dynamic rather than static, which reduces permanent memory storage requirements while maintaining security.
2Ease of operation
If traditional authentication methods are used, then authentication functionality is provided, but anti-peeping capability is insufficient
Solution Approach 1:
Second-type authentication information (interfering information) acts as an intermediary element that is introduced during the authentication process. This interfering information masks the first-type authentication information, making it difficult for peepers to identify the actual authentication data while still allowing the legitimate user to complete authentication successfully.
Solution Approach 2:
The composition of the authentication challenge set changes dynamically based on the combination of first-type and second-type authentication information. By changing the parameters of the authentication challenge (which items are included, their arrangement, and their presentation), the system enhances anti-peeping capability while maintaining authentication functionality.
3Reliability
If more authentication information is stored, then authentication security is improved, but memory price increases
Solution Approach 1:
Second-type authentication information (interfering information) functions as a disposable element that is introduced temporarily during authentication and then discarded. This approach provides enhanced security during the authentication process without requiring permanent storage of additional information, thus reducing memory price while maintaining authentication security.
4Object-affected harmful factors
If authentication information is made more complex, then anti-peeping capability is enhanced, but device complexity increases
Solution Approach 1:
The authentication mechanism is segmented into clear components: first-type authentication information (essential), second-type authentication information (interfering), and the authentication challenge set (combination). This segmentation organizes the complexity into manageable parts, making the system easier to implement and maintain while still providing enhanced anti-peeping capability through the combination of these segments.
Data Source
AI summary
A user authentication method and a terminal. The method includes determining first-type authentication information and second-type authentication information that are of a terminal, wherein the first-type authentication information includes specific attribute information that is in specific attribute information of an interaction object corresponding to a specific interaction behavior of the terminal and whose occurrence frequency within a preset time falls in a preset range, and wherein the second-type authentication information is used to interfere with selection, by the user of the terminal, of the first-type authentication information; presenting an authentication challenge set to the user of the terminal; receiving an identification result; and determining an authentication result. According to the user authentication method, authentication information is dynamically generated using information about an interaction object to perform authentication on a user.


