Dynamic Password Computer Startup Protection System
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current computer startup protection methods using user name/password are vulnerable to security threats due to easily guessable or disclosed passwords, and fail to securely bind physical and digital identities.
Innovation Solution
A dynamic password system where a computer startup protection program loads only if a valid password, generated by a dynamic password generating device using factors like current time or authenticating count, is entered, enhancing security without requiring users to remember static passwords.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If static password verification mode is used, then user authentication can be performed, but password disclosure and illegitimate login occur easily
Solution Approach 1:
The patent transitions from static password verification to dynamic password verification. The dynamic password changes with each authentication attempt and is generated based on time or counter factors, making it impossible to reuse or predict. This dynamic mechanism directly addresses the vulnerability of static passwords being disclosed or guessed, as each password is unique and time-limited.
Solution Approach 2:
The patent changes the parameter of password from static to dynamic by introducing time or counter as variables. The password is no longer a fixed string but varies based on the current time or authentication count, making it computationally infeasible to predict or replay. This parameter change fundamentally resolves the security issues of static password systems.
2Reliability
If user name/password mode is used, then digital identity verification can be achieved, but physical identity binding cannot be guaranteed
Solution Approach 1:
The patent introduces a dynamic password generating device as an intermediary between the user and the authentication system. This device generates time-based or counter-based dynamic passwords that serve as a mediator to bind physical presence (user interacting with the device) with digital identity verification. The intermediary mechanism ensures that only the physical possessor of the generating device can produce valid authentication codes.
3Ease of operation
If static password is used, then authentication process is simple, but security against password guessing and disclosure is insufficient
Solution Approach 1:
The patent maintains operational simplicity while enhancing security by making the password dynamic rather than static. The user still enters a single password field, but the system generates and verifies time-based or counter-based dynamic passwords automatically. This dynamic mechanism provides strong protection against guessing and disclosure while keeping the user interface simple and unchanged.
Data Source
AI summary
A method for computer startup protection, wherein the method includes steps that a computer powers up, and loads and executes a dynamic password computer startup protection program; the dynamic password computer startup protection program receives a password entered by a user; the password is obtained by the user via sending a dynamic password generating command to a dynamic password device; then the dynamic password computer startup protection program determines whether the password is valid, if so, the dynamic password computer startup protection program loads a computer startup program of the computer; otherwise the dynamic password computer startup protection program does not load the computer startup program of the computer. A system includes a computer and a dynamic password generating device.


