Frictionless Multi-Factor Authentication via Mobile Location

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current two-factor authentication methods are cumbersome and have limited adoption due to the need for an additional manual step, which compromises user experience and increases the risk of fraud in Internet-based transactions.

Innovation Solution

A frictionless multi-factor authentication system that uses location-based authentication, leveraging mobile device location to automate the second authentication factor, eliminating the need for manual input and enhancing user experience while maintaining security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional two-factor authentication is implemented, then security is improved, but user experience deteriorates due to additional manual steps

Engineering Contradiction:
ImprovesecurityVSAvoiduser experience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system automatically performs the second authentication factor by detecting the user's mobile device presence through location services, eliminating the need for manual user action. The authentication process serves itself by autonomously verifying the user's identity through device detection rather than requiring the user to manually input codes or credentials.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces manual mechanical authentication actions (typing codes, clicking buttons, physical token insertion) with automated electronic detection systems. The system uses location-based services and device detection algorithms to automatically verify the second factor, substituting the mechanical user interaction with an electronic automated process.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Reliability

If manual two-factor authentication steps are required, then fraud prevention is improved, but adoption rate decreases due to increased complexity

Engineering Contradiction:
Improvefraud preventionVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the manual interaction component from the authentication process, separating the automated device detection function from user actions. By taking out the manual step and replacing it with automatic detection, the system maintains fraud prevention capabilities while reducing the perceived complexity for users.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The system uses the user's mobile device, which they already possess and use for other purposes, as the second authentication factor. This universal approach leverages an existing device with multiple functions (communication, navigation, etc.) to also serve authentication purposes, eliminating the need for separate authentication devices or complex procedures.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Extent of automation

If location-based authentication is implemented, then automation is improved, but privacy concerns increase due to location data collection

Engineering Contradiction:
Improveauthentication automationVSAvoidprivacy concerns
Core Design Contradiction:
Extent of automationVSObject-affected harmful factors

Solution Approach 1:

The system uses location data in a localized manner, only accessing and processing location information when authentication is needed and only for the specific purpose of verifying device presence. The location data is not broadly collected or stored but is accessed locally and temporarily for the authentication transaction, minimizing privacy exposure while maintaining automation.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The patent introduces an intermediary layer between location data collection and authentication verification. The system uses location services as an intermediary mechanism that automatically verifies device presence without exposing detailed location information to the authentication system, thereby maintaining automation while protecting privacy through the intermediary's controlled data handling.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10826910B2Frictionless multi-factor authentication system and method
Publication Date: 2020.11.03 TELESIGN CORP
  • US10826910B2 patent drawing
  • US10826910B2 patent drawing
  • US10826910B2 patent drawing

AI summary

A frictionless multi-factor authentication system and method (“FMFA system”) that facilitates verification of the identity of a website user, registrant or applicant. The FMFA system reduces or removes the burden on the user by eliminating the additional manual second step traditionally required by two-factor authentication methods, and replacing the second step with an automated authentication step based on the location of a mobile device that is associated with the user. The FMFA system may be utilized for authenticating users to access sensitive data on online accounts, applications and websites, download files, perform online transactions, store information through websites or data stores, or the like. The FMFA system allows registration information obtained from a previously-registered user to authenticate the user on subsequent visits or logins to the website.