Mobile Device Biometric Authentication for OS Login Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current password-based login mechanisms for computers are insufficient in security and convenience, as they are vulnerable to phishing and password theft, leading to increased costs and complexity for companies in maintaining authentication systems.

Innovation Solution

A login mechanism that uses a mobile device to verify user biometrics and automatically generate and manage login passwords for a computer operating system, integrating two-factor authentication to enhance security and reduce administrative burdens.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If password-based authentication is used, then login simplicity is maintained, but security is compromised due to password theft and phishing

Engineering Contradiction:
ImprovesecurityVSAvoidlogin simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a mobile device as an intermediary authentication tool that stores login credentials and provides biometric verification. This mediator bridges the gap between simple password entry and secure authentication by acting as a trusted third party that users carry and control, eliminating the need to directly handle complex passwords while maintaining strong security through biometric verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces the mechanical password entry system (typing passwords on keyboards) with a biometric authentication system using the mobile device's camera and image processing capabilities. This substitution eliminates the vulnerability of manual password input while maintaining ease of use through automated facial recognition, directly addressing the security-simplicity contradiction.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Reliability

If frequent password changes are required, then security is improved, but user convenience deteriorates and administrative burden increases

Engineering Contradiction:
ImprovesecurityVSAvoidadministrative burden
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent enables users to manage their own authentication credentials through the mobile device without requiring administrative intervention. Users can independently update passwords, regenerate credentials, and manage multiple accounts through the application, eliminating the need for security departments to manually reset passwords and reducing administrative time loss.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system performs preliminary authentication setup by storing credentials and biometric data in advance on the mobile device. This preliminary action allows users to be prepared for authentication without last-minute password changes or administrative assistance, reducing both security risks and time loss during actual login events.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If card-based authentication credentials are distributed, then security is enhanced, but system complexity and maintenance costs increase

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent makes the mobile device universal by leveraging its existing camera, processor, and communication capabilities for authentication purposes. Rather than creating a specialized authentication device, the system utilizes the universal mobile device users already possess, eliminating the need for separate authentication hardware and reducing overall system complexity while maintaining enhanced security.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent merges the authentication credential storage, biometric verification, and communication functions into a single integrated mobile device application. This consolidation eliminates the need for separate authentication cards, tokens, or hardware devices, reducing system complexity while maintaining or enhancing security through multiple integrated verification mechanisms.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS10474804B2Login mechanism for operating system
Publication Date: 2019.11.12 GOTRUSTID INC
  • US10474804B2 patent drawing
  • US10474804B2 patent drawing
  • US10474804B2 patent drawing

AI summary

A login mechanism for an operating system, including: a computer device, loaded with a computer operating system; and a mobile device, capable of sending a login password for the computer operating system, and capable of authenticating a human biometric feature. In the login mechanism of the present invention, the login password for the computer operating system is stored on the mobile device. When a user logs in to the computer operating system, the mobile device authenticates a biometric feature. After authentication succeeds, the mobile device transfers the login password to the computer device, so as to log in to the computer operating system. A user does not need to enter a login password, and two-factor authentication including login password authentication and biometric feature authentication is used to protect the security of login to the computer operating system.