Mobile Transaction Authentication via Temporary Identity

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current transaction authentication methods using personal identification numbers (PINs) are vulnerable due to individuals often writing down their PINs and having difficulty remembering multiple PINs for different accounts, leading to a need for improved identity authentication techniques.

Innovation Solution

A system and method utilizing a mobile communication device that leverages a computer network and mobile wireless communication network to authenticate the device operator by generating a temporary identity and providing a security code, such as a PIN, through a transaction authentication server, ensuring the authenticity of the device and user.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a PIN code is used for transaction authentication, then the transaction security is improved, but the ease of operation deteriorates because users must remember multiple PINs for different accounts

Engineering Contradiction:
Improvetransaction securityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system allows users to authenticate themselves using their own mobile device without requiring them to remember or manually input PIN codes. The mobile device automatically performs authentication by communicating with the transaction authentication server, eliminating the need for user memory of multiple PINs while maintaining security.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The transaction authentication server acts as an intermediary between the user's mobile device and the transaction system. It receives authentication requests from the mobile device, verifies the user's identity through the mobile network, and provides security codes to complete transactions, thereby eliminating the need for users to directly handle or remember multiple PINs.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If a PIN code is written down for memory, then the ease of operation is improved, but the reliability deteriorates because the account may be compromised by obtaining the record of the PIN

Engineering Contradiction:
Improveease of operationVSAvoidtransaction security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system replaces the mechanical approach of writing down PIN codes with an electronic authentication mechanism using mobile communication. The mobile device and authentication server communicate electronically to verify identity and provide security codes, eliminating the need for physical records of PINs that could be stolen or lost.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If multiple PINs are created for different accounts, then the transaction security is improved, but the ease of operation deteriorates because people often have difficulty remembering multiple PINs

Engineering Contradiction:
Improvetransaction securityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The mobile device serves as a universal authentication tool that can be used across multiple accounts and transaction types. Instead of requiring separate PINs for each account, the single mobile device handles authentication for all accounts through its communication with the transaction authentication server, providing both security and ease of operation.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8577336B2System and method for transaction authentication using a mobile communication device
Publication Date: 2013.11.05 MOBILESPHERE HOLDINGS LLC
  • US8577336B2 patent drawing
  • US8577336B2 patent drawing
  • US8577336B2 patent drawing

AI summary

A transaction authentication system uses a computer network and mobile telephone network to authenticate a user. The user initiates a transaction and provides an identity token, such as the mobile telephone number. The identity token is used by an authentication server to initiate the issuance of a new temporary identity for the corresponding mobile device. The new temporary identity is forwarded from the mobile device to the authentication server which issues a security code if there is a match between the new temporary identities. The security code is forwarded to a transaction server which relays it to the authentication server. If the forwarded security code matches the generated security code, the transaction is permitted to continue.