Mobile Device Biometric Authentication for OS Login Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current password-based login mechanisms for computers are insufficient in security and convenience, as they are vulnerable to phishing and password theft, leading to increased costs and complexity for companies in maintaining authentication systems.
Innovation Solution
A login mechanism that uses a mobile device to verify user biometrics and automatically generate and manage login passwords for a computer operating system, integrating two-factor authentication to enhance security and reduce administrative burdens.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If password-based authentication is used, then login simplicity is maintained, but security is compromised due to password theft and phishing
Solution Approach 1:
The patent introduces a mobile device as an intermediary authentication tool that stores login credentials and provides biometric verification. This mediator bridges the gap between simple password entry and secure authentication by acting as a trusted third party that users carry and control, eliminating the need to directly handle complex passwords while maintaining strong security through biometric verification.
Solution Approach 2:
The patent replaces the mechanical password entry system (typing passwords on keyboards) with a biometric authentication system using the mobile device's camera and image processing capabilities. This substitution eliminates the vulnerability of manual password input while maintaining ease of use through automated facial recognition, directly addressing the security-simplicity contradiction.
2Reliability
If frequent password changes are required, then security is improved, but user convenience deteriorates and administrative burden increases
Solution Approach 1:
The patent enables users to manage their own authentication credentials through the mobile device without requiring administrative intervention. Users can independently update passwords, regenerate credentials, and manage multiple accounts through the application, eliminating the need for security departments to manually reset passwords and reducing administrative time loss.
Solution Approach 2:
The system performs preliminary authentication setup by storing credentials and biometric data in advance on the mobile device. This preliminary action allows users to be prepared for authentication without last-minute password changes or administrative assistance, reducing both security risks and time loss during actual login events.
3Reliability
If card-based authentication credentials are distributed, then security is enhanced, but system complexity and maintenance costs increase
Solution Approach 1:
The patent makes the mobile device universal by leveraging its existing camera, processor, and communication capabilities for authentication purposes. Rather than creating a specialized authentication device, the system utilizes the universal mobile device users already possess, eliminating the need for separate authentication hardware and reducing overall system complexity while maintaining enhanced security.
Solution Approach 2:
The patent merges the authentication credential storage, biometric verification, and communication functions into a single integrated mobile device application. This consolidation eliminates the need for separate authentication cards, tokens, or hardware devices, reducing system complexity while maintaining or enhancing security through multiple integrated verification mechanisms.
Data Source
AI summary
A login mechanism for an operating system, including: a computer device, loaded with a computer operating system; and a mobile device, capable of sending a login password for the computer operating system, and capable of authenticating a human biometric feature. In the login mechanism of the present invention, the login password for the computer operating system is stored on the mobile device. When a user logs in to the computer operating system, the mobile device authenticates a biometric feature. After authentication succeeds, the mobile device transfers the login password to the computer device, so as to log in to the computer operating system. A user does not need to enter a login password, and two-factor authentication including login password authentication and biometric feature authentication is used to protect the security of login to the computer operating system.


