Personal Digital Identity Device for Secure Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Password-based cloud service authentication in mobile devices is vulnerable to hacking, as hackers can gain access to user accounts by obtaining password files, compromising sensitive user information.

Innovation Solution

A personal digital identity device that communicates with mobile devices and cloud services using radio links, requiring user interaction through hardware-based methods such as button presses, fingerprint sensors, or motion sensors to authenticate, making security hardware available only after user interaction, thus enhancing security beyond password-only authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If password-based authentication is used for cloud service access, then ease of operation is improved, but security is worsened

Engineering Contradiction:
Improveease of authenticationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a personal digital identity device as an intermediary between the user and the cloud service. This device contains a security mechanism that must be activated through user interaction (such as pressing a button) before authentication credentials are provided to the mobile device. This intermediary layer prevents direct access to credentials, thereby enhancing security while maintaining ease of operation through the simplified user interaction required.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If hardware-based authentication with user interaction is implemented, then security is improved, but device complexity is worsened

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the authentication system into three distinct components: (1) a personal digital identity device containing the security mechanism, (2) a mobile device for communication, and (3) the cloud service. This segmentation allows the complex security functionality to be isolated in a dedicated hardware device, making the overall system more manageable and modular while providing enhanced security through the interaction-based activation requirement.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS9207650B2Configurable personal digital identity device responsive to user interaction with user authentication factor captured in mobile device
Publication Date: 2015.12.08 SIDEASSURE INC
  • US9207650B2 patent drawing
  • US9207650B2 patent drawing
  • US9207650B2 patent drawing

AI summary

A personal digital ID device provides a digital identifier to a service for a predetermined duration in response to user interaction. The user interaction may include a button press. The personal digital ID device may be in the form of a bracelet, a key fob, or other form factor. The service may be provided by a mobile device, in the cloud, or elsewhere.