Dynamic Authentication System for Financial Account Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Enterprises face challenges in securely managing access to user accounts, particularly with multiple accounts and the risk of password compromise, which leads to burdensome authentication and potential fraudulent transactions.

Innovation Solution

A system that uses interfaces and processors to manage access through account identifiers, contact information, and authentication criteria, including biometric and location authentication, with blockchain authentication for secure transactions and dynamic authentication protocols, allowing for secure access point management and transaction authorization without revealing sensitive information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional password-based authentication is used, then users can access their accounts, but passwords are often illicitly obtained or determined by malicious entities

Engineering Contradiction:
Improveauthentication securityVSAvoidpassword compromise risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent replaces traditional password-based mechanical authentication with biometric authentication (fingerprint, facial recognition, iris scan) and behavioral authentication (typing patterns, device usage patterns). This substitution eliminates the vulnerability of passwords being illicitly obtained while maintaining secure access control.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The system introduces an intermediary authentication server that mediates between the user's device and the target system. This server verifies biometric and behavioral data, providing an additional security layer that prevents direct password compromise while enabling secure authentication.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If multiple authentication factors are required, then security is improved, but user authentication becomes burdensome

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system dynamically adjusts authentication requirements based on risk assessment. For low-risk transactions, simple biometric authentication suffices. For high-risk transactions, additional factors like location verification or device fingerprinting are automatically required. This dynamic approach maintains security while minimizing user burden for routine operations.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system performs automated risk assessment and authentication factor selection without user intervention. The authentication server analyzes transaction characteristics, user behavior patterns, and contextual data to determine appropriate authentication levels, eliminating the need for users to manually select or understand authentication requirements.

Inventive Principle:
Principle #25Self-service

3Reliability

If financial accounts are secured with strict authentication, then fraudulent transactions are reduced, but real-time transactions become prolonged

Engineering Contradiction:
Improvetransaction securityVSAvoidtransaction processing speed
Core Design Contradiction:
ReliabilityVSSpeed

Solution Approach 1:

The system performs preliminary authentication setup during account creation and device pairing, storing verified biometric templates and behavioral baselines. During real-time transactions, the system only needs to verify against pre-stored data rather than performing full authentication sequences, enabling rapid verification while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

For trusted devices and low-risk transactions, the system skips extensive authentication steps and proceeds directly to transaction authorization using pre-verified biometric data. The system rushes through the authentication process by utilizing previously collected behavioral patterns and device fingerprints, maintaining security while minimizing transaction delays.

Inventive Principle:
Principle #21Skipping (Rushing through)

Data Source

PatentUS9935961B2Controlling access to data
Publication Date: 2018.04.03 BANK OF AMERICA CORP
  • US9935961B2 patent drawing
  • US9935961B2 patent drawing
  • US9935961B2 patent drawing

AI summary

A system for controlling access to data, includes: one or more interfaces operable to receive an access point deauthorization message, the access point deauthorization message including one or more access point identifiers; and one or more processors operable to: determine an account identifier associated with the access point identifier included in the received access point deauthorization message, and deauthorize an access point identified by the received access point identifier from accessing the financial account associated with the determined account identifier associated with the received access point identifier.