Mobile Identity Protection via Wireless Proximity Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authentication methods for secure computer applications and networks often require multiple tokens and are cumbersome, as they rely on physical hardware tokens that users must carry, leading to inefficiencies and increased risk of identity theft.

Innovation Solution

A system that utilizes a wireless device, such as a mobile phone, as a universal authentication factor, leveraging its unique identifier and proximity to detect and verify the user's identity through a Mobile Access Point, generating authentication results based on the device's presence, location, and authentication key information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple physical hardware tokens are used for authentication, then security is improved, but device complexity and ease of operation deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent combines multiple authentication factors (biometric data, device identifiers, location information, time stamps) into a single integrated authentication system. Instead of requiring separate physical tokens for each factor, the system merges them into one unified authentication process that occurs automatically in the background, eliminating the need for users to manually manage multiple tokens while maintaining high security standards.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent creates a universal authentication mechanism that can be applied across multiple applications and devices. The authentication system uses a single set of credentials (biometric data combined with device information) that can authenticate users across different secure applications, eliminating the need for application-specific tokens and simplifying the overall authentication architecture.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If multiple physical hardware tokens are carried, then authentication security is improved, but ease of operation deteriorates

Engineering Contradiction:
Improveauthentication securityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The authentication system operates automatically without requiring user intervention. Biometric data is captured and processed automatically, device identifiers are retrieved automatically, and authentication decisions are made automatically by the system. Users simply need to present their biometric data (such as a fingerprint or facial recognition), and the system handles all subsequent authentication steps autonomously, eliminating the need for users to manually manage or present multiple physical tokens.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces the mechanical system of physically carrying and presenting multiple hardware tokens with an automated electronic authentication process. Instead of manually handling physical objects, the system uses electronic biometric scanning, automated device identification, and algorithmic authentication decisions, substituting mechanical user actions with automated electronic processes that are both more secure and more convenient.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If traditional authentication methods are used, then security is maintained, but productivity deteriorates due to cumbersome processes

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system performs authentication checks in advance and automatically in the background before users need to access secured content. Biometric data is captured and verified automatically, device identifiers are pre-validated, and authentication credentials are pre-established. This preliminary automated authentication eliminates the need for users to go through lengthy authentication processes when they need to access applications, thereby maintaining security while significantly improving productivity.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11405781B2System and method for mobile identity protection for online user authentication
Publication Date: 2022.08.02 VISA INTERNATIONAL SERVICE ASSOCIATION
  • US11405781B2 patent drawing
  • US11405781B2 patent drawing
  • US11405781B2 patent drawing

AI summary

An automated system and method for authenticating entities or individuals attempting to access a computer application, network, system or device using a wireless device is provided. The system employs one or more short-range wireless interfaces (e.g. BLUETOOTH or Wi-Fi) or long-range wireless interfaces (e.g. cellular or WiMAX) to detect the presence or location of the wireless device and it's proximity to the secure system to be accessed. The wireless device incorporates a unique identifier and secure authentication key information associated with the user of the wireless device. An authentication result is generated and may be used for a variety of applications. The application may process the result and determine the degree of access for which the entity or individual is allowed.