Facial Recognition Multi-Factor Authentication Using Eye Tracking

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Electronic devices that rely solely on facial recognition for security can be compromised by malicious duplication or unintentional unlocking, leading to security and privacy exposure.

Innovation Solution

A multi-factor authentication method that includes tracking eye movement and facial activity to select secondary authentication options, such as PINs, patterns, or facial gestures, to confirm user identity after initial facial recognition.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If facial recognition is used for authentication, then ease of operation is improved, but security is worsened due to vulnerability to duplication and unintentional unlocking

Engineering Contradiction:
Improveauthentication convenienceVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The authentication process is divided into multiple independent stages: initial facial recognition authentication followed by a second factor authentication requiring specific facial gestures. This segmentation allows the system to maintain the convenience of facial recognition while adding a security layer that is difficult to duplicate, as the combination of static facial features and dynamic gesture sequences creates a more robust authentication mechanism.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces dynamic facial gestures as a second factor authentication method. Instead of relying solely on static facial recognition, the system requires users to perform specific dynamic movements (such as opening/closing eyes, moving jaw, or facial expressions) in a predetermined sequence. This dynamic component makes authentication more secure because these gestures are difficult to duplicate or replicate with photos or 3D models, while still maintaining ease of operation through natural facial movements.

Inventive Principle:
Principle #15Dynamics

2Reliability

If multiple authentication factors are required, then security is improved, but device complexity is worsened

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system uses the existing facial recognition hardware and camera infrastructure to perform multiple functions: initial static facial authentication and subsequent dynamic gesture recognition. By making the facial recognition system multi-functional, the patent avoids adding separate hardware components for second factor authentication, thereby improving security without proportionally increasing device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system leverages the user's own facial features and natural movements as the authentication mechanism. The user's face serves both as the identifier for initial recognition and as the medium for performing authentication gestures. This self-service approach eliminates the need for additional authentication devices or complex external verification systems, maintaining simplicity while enhancing security through multi-factor authentication.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS11695758B2Second factor authentication of electronic devices
Publication Date: 2023.07.04 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US11695758B2 patent drawing
  • US11695758B2 patent drawing
  • US11695758B2 patent drawing

AI summary

A method for a multi-factor authentication, the method receives results of an initial authentication of a user. Responsive to confirming the initial authentication, an image of a secondary set of authentication options is presented. An option selection is received from the user, wherein the selection is determined by tracking eye movement of the user over the image that includes the set of second factor authentication options. User facial activity is tracked corresponding to the selection made from the secondary set of authentication options. The monitored facial activity is compared to a pre-established authentication condition to determine whether a match exists with the selected secondary set of authentication options, and responsive to facial activity monitored matching the authentication condition pre-established by the user and corresponding to the selection made from the secondary set of authentication options, authentication of the user is confirmed.