Authentication Token System for Gaming Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing online gaming systems face challenges in authenticating human users and preventing automated script abuse, as traditional username and password methods are insecure and do not ensure user presence, leading to potential identity theft and unfair advantages in virtual worlds.

Innovation Solution

Implementing an authentication token system that provides one-time passwords or tokencodes, which are used to authorize actions within the game, ensuring that only human users can perform specific actions, thereby enhancing user authentication and verification while maintaining a seamless gaming experience.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional username and password authentication is used, then the system is easy to operate, but security is compromised and automated script abuse cannot be prevented

Engineering Contradiction:
Improveauthentication securityVSAvoiduser authentication process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces an authentication token as an intermediary device between the user and the gaming system. This token generates one-time passwords (OTPs) that serve as a mediator for authentication, replacing the traditional static password system. The token acts as a physical intermediary that users must possess and interact with, thereby enhancing security while maintaining ease of operation through automatic OTP transmission to the gaming server.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If authentication tokens with one-time passwords are implemented, then security and user presence verification are improved, but device complexity increases

Engineering Contradiction:
Improveuser presence verificationVSAvoidauthentication system structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication token is designed to operate autonomously using self-service principles. It automatically generates one-time passwords based on internal algorithms and time synchronization, and can self-transmit these OTPs to the gaming server via various communication channels. This self-service capability eliminates the need for complex manual authentication processes and reduces the burden on the gaming system's authentication infrastructure.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The authentication token is designed as a multi-functional device that can operate through multiple communication channels (SMS, email, push notifications, direct API integration). This universality allows the same token hardware to work across different platforms and gaming systems, reducing overall system complexity while maintaining robust security verification capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Productivity

If automated scripts are allowed, then productivity and gameplay efficiency increase, but fairness and security deteriorate

Engineering Contradiction:
Improvegameplay efficiencyVSAvoidautomated script abuse
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system implements preliminary action by requiring authentication token verification before allowing any game actions to be performed. The one-time password must be successfully validated prior to executing any gameplay commands, thereby preventing automated scripts from accessing the gaming system. This preliminary security check ensures that only human users with physical tokens can interact with the game, maintaining fairness while allowing efficient gameplay for authenticated users.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9280871B2Gaming systems with authentication token support
Publication Date: 2016.03.08 EMC IP HLDG CO LLC
  • US9280871B2 patent drawing
  • US9280871B2 patent drawing
  • US9280871B2 patent drawing

AI summary

Techniques for providing authentication functionality in a gaming system are disclosed. In one aspect, a gaming system is configured such that, at a given point during a current session of a game in progress that involves at least one user previously granted access by the system to participate in the current session, information available from an authentication token associated with the user is obtained prior to allowing the user to take a particular action in the game. A determination is made as to whether or not the user will be allowed to take the particular action in the game, based on the obtained information. The obtained information may comprise, for example, at least a portion of a one-time password generated by a hardware or software authentication token.