Location-Based Transaction Authentication via Device-Transaction Location Comparison
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional methods for preventing fraudulent transactions, such as one-time passwords, can be bypassed by fraudsters who obtain stolen data and impersonate financial service representatives, leading to unauthorized transactions.
Innovation Solution
Implementing a transaction authentication manager on a mobile device that compares the device location with the transaction location to ensure the safe delivery of one-time passwords, masking the password if the locations do not match to prevent unauthorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If one-time passwords are sent via email or text message, then user authentication is enabled, but fraudsters can obtain stolen data and impersonate representatives to bypass security
Solution Approach 1:
The patent introduces an intermediary verification mechanism that compares transaction location data with device location data before revealing the one-time password. This intermediary check acts as a mediator between the password delivery system and the fraud prevention requirement, blocking fraudulent access attempts by verifying location consistency through a separate data comparison process.
Solution Approach 2:
The patent performs preliminary location verification before the one-time password is revealed to the user. By comparing transaction location and device location in advance, the system prevents fraudulent transactions from proceeding, rather than relying solely on the password itself for security.
2Reliability
If location verification is implemented, then fraudulent transactions are reduced, but additional authentication steps increase user interaction complexity
Solution Approach 1:
The system performs location comparison and password masking/revealing automatically without requiring user intervention. The transaction authentication manager autonomously verifies location consistency and controls password visibility, eliminating the need for additional user steps while maintaining enhanced security.
Solution Approach 2:
The patent implements a flexible authentication approach where the one-time password is dynamically masked or revealed based on location verification results. This thin layer of conditional logic wraps around the existing password system, adding security without fundamentally changing the user interaction model.
Data Source
AI summary
In aspects of location based transaction authentication, a mobile device includes a location service to determine a device location of the mobile device. The mobile device also implements a transaction authentication manager that can receive a transaction location of a transaction associated with an account of a user of the mobile device, and compare the device location of the mobile device to the transaction location of the transaction. The transaction authentication manager can also receive a one time password that is masked in response to determining that the device location does not match the transaction location, and reveal the one time password in response to receiving an input on the mobile device to authenticate the transaction.


