Large Transfer Authentication Using Location-Based ATM Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional financial systems lack sufficient safeguards for transferring funds, making them vulnerable to fraudulent transactions, especially when large amounts are involved, and reversing such transfers is difficult.
Innovation Solution
A method and system that requires users to authenticate large transactions at an ATM by comparing authentication information with personal identification data, using location-based ATM selection and biometric verification.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If users can transfer funds with simple account login and address input, then ease of operation is improved, but security and protection against fraudulent transactions deteriorate
Solution Approach 1:
The authentication process is segmented into multiple stages: initial web-based transfer request, threshold determination, and conditional ATM authentication. This segmentation allows simple operations for low-risk transfers while requiring enhanced authentication only when necessary, resolving the contradiction between ease of operation and security.
Solution Approach 2:
The system performs preliminary actions by pre-establishing authentication thresholds and pre-configuring ATM networks. When a transfer request exceeds the threshold, the system has already prepared the authentication flow and identified appropriate ATMs, enabling secure verification without complicating the basic transfer operation.
2Reliability
If additional authentication steps are required at ATMs for large transfers, then security against fraudulent transactions is improved, but device complexity and operational steps increase
Solution Approach 1:
ATMs serve as intermediary devices between the user and the financial institution's authentication system. The ATM handles the complex authentication verification and communicates with the user through a standardized interface, shielding the user from system complexity while maintaining high security for large transfers.
Solution Approach 2:
The system replaces complex multi-step web-based authentication with a simplified ATM-based mechanical process. The ATM handles biometric verification, card insertion, and cash dispensing through established physical interfaces, making the authentication process more intuitive despite the additional step required for large transfers.
3Reliability
If transfer requests above threshold must be authenticated at ATM, then protection against unauthorized fund access is improved, but loss of time for authentication process increases
Solution Approach 1:
The system applies different authentication qualities to different transfer scenarios. Small transfers under the threshold use quick web-based verification, while large transfers trigger enhanced ATM authentication. This local differentiation ensures that time-consuming authentication only occurs when the transfer amount warrants it, protecting against unauthorized access without unnecessarily delaying routine transfers.
Data Source
AI summary
Embodiments disclosed herein generally related to a system and method for authenticating a transfer request. A computing system receives a transfer request from a client device. The computing system determines that the monetary amount specified in the transfer request exceeds a threshold. The computing system identifies an automated teller machine (ATM) based on at least location information associated with a user of the client device. The computing system prompts the user to authenticate the transfer request at the identified ATM by transferring a message to the client device to be displayed thereon. The computing system receives an authentication attempt of the user from the ATM. The computing system compares authentication information in the authentication attempt to personal identification information associated with the user. The computing system determines that the authentication information at least partially matches personal identification information associated with the user. The computing system processes the transfer request.


