Dynamic Transaction Card With Multi-Factor Authentication Token
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current authentication methods are burdensome, time-consuming, and vulnerable to fraud, particularly due to reliance on knowledge-based systems and the transmission of sensitive data over insecure channels.
Innovation Solution
A dynamic transaction card paired with a user device application, utilizing a secure memory chip and microprocessor to facilitate multi-factor authentication through wireless connections, including NFC and Bluetooth, and storing validation information for secure login credentials.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If knowledge-based authentication is used to verify customer identity, then authentication can be performed without physical tokens, but the system becomes vulnerable to fraud and data compromise
Solution Approach 1:
The patent combines multiple authentication factors (something you know, something you have, and something you are) into a unified authentication system. The biometric sensor integrated into the transaction card captures physiological data, which is then verified against stored templates, creating a merged authentication approach that is more secure than any single factor alone.
Solution Approach 2:
The transaction card acts as an intermediary device that bridges the gap between the customer and the authentication system. It contains embedded biometric sensors and secure storage for authentication data, serving as a physical mediator that prevents direct exposure of sensitive information while enabling secure verification.
2Reliability
If multiple authentication factors are required, then security is improved, but the authentication process becomes more time-consuming and complex
Solution Approach 1:
The biometric authentication templates are pre-captured and stored securely in the transaction card during an enrollment phase. When authentication is needed, the system simply compares the newly captured biometric data against the pre-stored template, eliminating the need for multiple manual verification steps and reducing authentication time.
Solution Approach 2:
The biometric sensor is integrated directly into the transaction card, allowing the customer to authenticate themselves using their own physiological characteristics without requiring external verification devices or personnel. The card itself performs the authentication function, streamlining the process.
3Ease of operation
If sensitive data is transmitted over network channels, then authentication can be performed remotely, but the data becomes vulnerable to interception and phishing attacks
Solution Approach 1:
The patent extracts the most sensitive authentication data (biometric templates) from network transmission and stores it locally within the secure memory of the transaction card. Only encrypted verification data is transmitted over the network, significantly reducing the risk of data interception and phishing attacks while maintaining remote authentication capability.
4Ease of manufacture
If traditional authentication questions are used, then implementation is simple, but customers may be locked out if they forget answers
Solution Approach 1:
The patent replaces the mechanical/memory-based authentication system (remembering answers to security questions) with a biometric authentication system that uses physiological characteristics. This substitution eliminates the risk of customers being locked out due to forgotten answers, as biometric traits are inherent and cannot be forgotten, while the implementation complexity is managed through integrated sensor technology.
Data Source
AI summary
A dynamic transaction card comprising an outer surface, a sensor, and a display disposed on the outer surface is disclosed. The dynamic transaction card can include an antenna and a microcontroller controlling a dynamic transaction card application. The dynamic transaction card can also include a secure payment chip having a plurality of contact points and storing a passive tag associated with a user. The passive tag can include a unique identifier and one or more log-in credentials for the user. When making a purchase, the user can be authenticated via a connection between the dynamic transaction card and a user device. The unique identifier can be used as an authentication token and the one or more log-in credentials can be verified against log-in credentials associated with the user.


