Multi-stage Email Authentication via Biometric Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The prevalence of spam and malicious emails poses a significant threat to email effectiveness, with existing solutions failing to efficiently filter out benign from malicious communications and prevent bulk unsolicited messages, leading to increased cybersecurity risks and identity theft concerns.

Innovation Solution

The system generates whitelist and blacklist databases to authenticate senders, using biometric and personally identifiable information to verify identities, and imposes penalties for abusive communication, while facilitating secure delivery of non-malicious emails through a multi-tiered authentication process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multi-stage authentication is implemented to verify sender identity, then email security and reliability are improved, but system complexity and authentication time increase

Engineering Contradiction:
Improveemail securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication system is divided into multiple independent stages: first stage verifies sender identity through biometric or PII data, second stage checks against blacklist databases, and third stage validates email content. This segmentation allows each stage to focus on specific verification tasks, improving overall reliability while making the complex authentication process more manageable and efficient.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

Sender identity verification and database checks are performed before email delivery is completed. The system pre-authenticates senders and pre-checks against blacklist databases, so that by the time email content is delivered, the authentication framework is already in place. This preliminary action ensures security requirements are met without adding complexity to the actual email transmission process.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If multiple authentication stages are used to filter malicious emails, then email security is improved, but processing time and system resources increase

Engineering Contradiction:
Improveemail securityVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs sender authentication and blacklist database checks before email delivery is initiated. By completing these verification stages in advance, the system ensures that security checks are performed efficiently without adding significant delay to the actual email transmission process for authenticated senders.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

For senders who successfully complete authentication in the first stage, the system can skip or expedite subsequent verification stages. The multi-stage framework allows the system to rush through remaining checks for pre-authenticated senders, reducing processing time while maintaining security standards.

Inventive Principle:
Principle #21Skipping (Rushing through)

3Object-affected harmful factors

If strict authentication requirements are imposed on senders, then malicious email transmission is prevented, but legitimate communication may be blocked

Engineering Contradiction:
Improvemalicious email preventionVSAvoidcommunication ease
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The system applies different authentication requirements to different senders based on their verification history and risk profile. Established authenticated senders experience streamlined communication, while new or suspicious senders undergo more rigorous multi-stage verification. This local quality approach ensures strict authentication where needed while maintaining ease of operation for legitimate communications.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The system introduces an intermediary authentication framework that mediates between sender and recipient. This intermediary layer verifies sender identity through biometric or PII data and checks against blacklist databases, ensuring malicious emails are blocked while legitimate communications pass through with minimal disruption to the actual email transmission process.

Inventive Principle:
Principle #24Intermediary (Mediator)

4Measurement precision

If biometric and PII data are collected for authentication, then sender verification accuracy is improved, but privacy concerns and data security risks increase

Engineering Contradiction:
Improveverification accuracyVSAvoidprivacy risks
Core Design Contradiction:
Measurement precisionVSObject-affected harmful factors

Solution Approach 1:

The system introduces an intermediary authentication framework that collects and verifies biometric or PII data in a controlled manner. This intermediary layer handles sensitive data securely, performing verification checks without exposing raw biometric or PII information to the broader system. By mediating data collection and verification, the system achieves high verification accuracy while minimizing privacy risks through controlled data handling.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10693880B2Multi-stage authentication of an electronic communication
Publication Date: 2020.06.23 BANK OF AMERICA CORP
  • US10693880B2 patent drawing
  • US10693880B2 patent drawing
  • US10693880B2 patent drawing

AI summary

Systems, methods and apparatus for authenticating and verifying an electronic communication are provided. Systems, apparatus and methods determine which emails pose a threat and which are benign. Systems, apparatus and methods filter malicious emails from non-malicious emails. Systems, apparatus and methods prevent receipt of bulk unsolicited and/or otherwise undesirable communications. Systems, apparatus and methods authenticate an identity of a sender of an electronic communication. Systems, methods and apparatus may involve biometric authentication.