Mobile Carrier Identity Verification for False Rejection Reduction
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing identity authentication systems using one-time passwords (OTPs) sent to mobile devices often result in high false rejections, particularly when the mobile number is part of a family or group plan, leading to time-consuming and costly password reset processes.
Innovation Solution
Enhanced identity matching is facilitated by verifying the user's identity using a mobile number, personal identifying information, user information from the mobile account, and credit bureau information, allowing verification even when the user is not the primary account holder.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Extent of automation
If OTP authentication using mobile number verification is implemented, then automated identity authentication is achieved, but false rejections increase significantly
Solution Approach 1:
The patent combines multiple data sources including mobile carrier information, credit bureau data, and device identifiers to create a comprehensive verification system. This merging of multiple authentication factors allows the system to distinguish between primary and secondary users on family plans, reducing false rejections while maintaining automated authentication.
Solution Approach 2:
The patent introduces an intermediary verification process that queries both mobile carriers and credit bureaus to mediate between the user's claimed identity and the mobile number ownership. This intermediary layer resolves conflicts when the mobile number is shared in family plans by finding matching personal information across multiple sources.
2Reliability
If mobile carrier verification is used to confirm account holder identity, then unauthorized access is prevented, but password reset process becomes time-consuming
Solution Approach 1:
The patent performs preliminary verification by querying credit bureau information and mobile carrier data before initiating the password reset process. By pre-verifying the user's identity through multiple data sources, the system can quickly confirm legitimate users without requiring time-consuming manual verification steps during the actual password reset.
Solution Approach 2:
The patent replaces manual phone support verification with an automated electronic verification system that queries mobile carriers and credit bureaus programmatically. This substitution of automated electronic processes for manual verification dramatically reduces the time required for password reset while maintaining verification accuracy.
3Reliability
If strict mobile number to account holder matching is enforced, then fraud is reduced, but false rejections occur frequently
Solution Approach 1:
The patent changes the verification parameters from strict mobile number-to-account-holder matching to a more flexible multi-factor verification system. By incorporating credit bureau data, device identifiers, and personal information matching, the system maintains fraud prevention while accommodating legitimate secondary users on family mobile plans.
Solution Approach 2:
The patent implements a dynamic verification approach that adapts the authentication requirements based on the verification results. When mobile carrier verification alone is insufficient (as in family plan scenarios), the system dynamically incorporates additional verification methods such as credit bureau checks and device fingerprinting to maintain security while reducing false rejections.
Data Source
AI summary
A mobile network based authentication system for authenticating a user's access to a restricted-access account includes an application server and an identification server. The application server is configured to authenticate the user's access to the restricted-access account by transmitting a one-time password to a mobile computing device of the user and confirming that the one-time password has been entered by the user. The identification server communicates with the application server after the application server receives a request from the user to access the restricted-access account and before the application transmits the one-time password to the mobile device, to verify that an attribute of the restricted-access account is linked to a network identification of the mobile computing device.


