Mobile App Entry Point Authentication for Unauthorized Access Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional methods for locking mobile applications fail to prevent unauthorized access through alternative entry points, compromising user privacy and device security.

Innovation Solution

A system and method that authenticate application points of entry by intercepting device inputs, requesting authentication credentials, and performing security actions when invalid credentials are provided, thereby preventing malicious activity.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional locking mechanisms are used to prevent direct application access, then direct application launching is blocked, but alternative entry points (notifications, shortcuts, actions) remain vulnerable to unauthorized access

Engineering Contradiction:
Improveapplication lock reliabilityVSAvoidaccess point coverage
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent segments the application access control by identifying and individually protecting multiple distinct entry points (notifications, shortcuts, actions) rather than treating application locking as a single mechanism. Each entry point is monitored and protected separately, ensuring comprehensive coverage across all possible access vectors.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent creates a universal protection mechanism that handles multiple types of entry points through a single authentication system. The lock manager intercepts and authenticates various input types (clicks, gestures, voice commands) across different entry point categories, providing multi-functional security coverage.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If authentication is required at all application entry points, then unauthorized access is prevented, but user convenience and access speed are reduced

Engineering Contradiction:
Improvesecurity protectionVSAvoidaccess convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements self-service authentication where the system automatically monitors entry point usage, intercepts inputs, verifies credentials, and either grants or denies access without requiring user intervention in the authentication process itself. The lock manager handles the entire authentication workflow autonomously.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent incorporates feedback mechanisms where the system continuously monitors entry point interactions and provides real-time authentication responses. When unauthorized access attempts are detected, the system immediately intercepts the input and prevents execution, providing rapid feedback that maintains security while allowing legitimate access to proceed smoothly.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS11606689B1Systems and methods for authenticating application points of entry to prevent unauthorized use of locked mobile applications
Publication Date: 2023.03.14 GEN DIGITAL INC
  • US11606689B1 patent drawing
  • US11606689B1 patent drawing
  • US11606689B1 patent drawing

AI summary

The disclosed computer-implemented method for authenticating application points of entry to prevent unauthorized use of locked mobile applications may include (i) identifying one or more mobile applications having an access restriction and a group of application entry points associated with at least one mobile application function, (ii) intercepting a series of device inputs from a user for accessing the application entry points to bypass the access restriction for the mobile applications, (iii) requesting authentication credentials to bypass the access restriction from the application entry points, (iv) determining that the requested authentication credentials are invalid, and (v) performing a security action that protects against potentially malicious activity associated with unauthorized access to the mobile applications upon determining that the requested authentication credentials are invalid. Various other methods, systems, and computer-readable media are also disclosed.