Location-Based Authentication System for Secure Transactions

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Public networks used for transactions are often unsecured, leading to security and privacy risks as login credentials can be vulnerable to snooping, exposing payment accounts to unauthorized charges.

Innovation Solution

A location-based device and authentication management system that detects trusted locations, pre-configures devices for anticipated activities, and uses wearable devices for additional authentication, allowing secure transactions without sending authentication information over public networks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If users conduct transactions over public networks for convenience, then accessibility and ease of operation are improved, but security and privacy are worsened due to vulnerability to snooping and unauthorized access

Engineering Contradiction:
Improveconvenience of transactionsVSAvoidsecurity of authentication
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary authentication actions by detecting the user's location and automatically logging them into applications associated with anticipated activities before the user actually needs to access them. This pre-authentication eliminates the need for users to send credentials over public networks during transactions, resolving the security vulnerability while maintaining convenience.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system introduces a location-based authentication intermediary that mediates between the user and the network. Instead of directly transmitting credentials over the public network, the system uses location detection as an intermediary verification method, sending authentication information only when the user is at a trusted location, thus securing the authentication process while enabling convenient transactions.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If authentication information is sent over public networks for transaction processing, then transaction capability is improved, but exposure to harmful factors is worsened due to snooping and unauthorized charges

Engineering Contradiction:
Improvetransaction processingVSAvoidvulnerability to snooping
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system applies local quality by differentiating authentication requirements based on location. At trusted locations (home, office), the system allows pre-authentication and automatic logging. At public locations, the system requires additional verification methods such as wearable device authentication. This location-specific approach enables transaction processing while minimizing exposure to snooping by controlling where authentication information is transmitted.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The system performs authentication actions in advance when the user is at a trusted location, before they need to conduct transactions at public locations. This pre-authentication stores authentication information securely on the user's device, eliminating the need to transmit sensitive credentials over public networks during transactions, thus enabling productivity while preventing harmful exposure.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If the system requires additional authentication methods like wearable devices for enhanced security, then reliability is improved, but device complexity is worsened

Engineering Contradiction:
Improveauthentication securityVSAvoidnumber of authentication methods
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system applies dynamics by making the authentication method flexible and adaptive rather than fixed. The system dynamically selects the appropriate authentication level based on location context: at trusted locations, simple pre-authentication suffices; at public locations, additional wearable device verification is required. This dynamic approach enhances reliability at public locations without permanently increasing device complexity, as the additional authentication methods are only activated when needed.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentEP3526664B1Location-based device and authentication system
Publication Date: 2024.03.13 PAYPAL INC
  • EP3526664B1 patent drawingFigure 1
  • EP3526664B1 patent drawingFigure 2
  • EP3526664B1 patent drawingFigure 3

AI summary

Systems and methods for device and payment management include detecting, through a first network, that a user device that is associated with a user is located at a trusted location. A first anticipated activity that is associated with the user is determined. The first anticipated activity identifies a first activity location that is different from the trusted location. A first device management configuration that is associated with the first anticipated activity. A first user device action to be performed on the on the user device at the trusted location is determined using the device management configuration. A first notification that causes the first user device action to be performed on the user device while the user device remains at the trusted location is sent to the user device through the first network.