Multi-device Credential Validation via Segmented Challenge Questions

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing credential validation systems are vulnerable to hacking as they rely on publicly available information for security questions, which can be easily circumvented by hackers.

Innovation Solution

A method and system that utilize multiple user-owned devices to bolster security through challenge questions presented in a specific order, where responses are validated based on their origin and order of receipt, enhancing scrutiny and authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If traditional security questions using publicly available information are used, then user convenience is improved, but security reliability deteriorates

Engineering Contradiction:
Improveuser convenienceVSAvoidsecurity reliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the authentication process by distributing challenge questions across multiple user-owned devices rather than relying on a single security question. Each device receives a portion of the authentication challenge, and all segments must be completed successfully to validate credentials. This segmentation prevents hackers from obtaining complete authentication information from public sources while maintaining user convenience through familiar device interaction.

Inventive Principle:
Principle #1Segmentation

2Reliability

If multiple user-owned devices are used for challenge questions, then security reliability is improved, but device complexity increases

Engineering Contradiction:
Improvesecurity reliabilityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent employs existing user-owned devices (smartphones, tablets, computers) that users already possess and use for other purposes. These multi-functional devices serve dual roles: their primary functions remain unchanged while they simultaneously participate in the enhanced authentication process. This eliminates the need for dedicated security hardware, reducing system complexity while maintaining high security reliability through multi-device verification.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9608977B2Credential validation using multiple computing devices
Publication Date: 2017.03.28 KYNDRYL INC
  • US9608977B2 patent drawing
  • US9608977B2 patent drawing
  • US9608977B2 patent drawing

AI summary

A tool for credential validation using multiple computing devices. The tool select at least one challenge question. The tool selects two or more user owned devices, wherein selecting the two or more user owned devices includes querying a database for each user owned device associated with a user account. The tool presents the at least one challenge question to the two or more user owned devices. The tool determines whether the at least one response received from the two or more user owned devices is a correct response relative to the at least one challenge question.