Multi-level Authentication Using Application Data
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Investigating unauthorized dealings and returning funds in mobile transactions is inefficient, necessitating enhanced authentication to prevent and manage unauthorized activities.
Innovation Solution
A multi-level authentication system that uses application-level data to validate user actions, including a first level of authentication with credentials and a second level through a questionnaire based on extracted application data, to ensure authorized transactions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional authentication methods are used, then the authentication process is simple and quick, but unauthorized transactions cannot be effectively prevented
Solution Approach 1:
The authentication process is divided into multiple levels: first-level authentication using traditional credentials (password, PIN, or biometrics), and second-level authentication using application-level data verification. This segmentation allows the system to maintain simplicity for basic authentication while adding enhanced security layers when needed, resolving the contradiction between security reliability and process complexity.
Solution Approach 2:
The patent introduces a new dimension of authentication by extracting and verifying application-level data (such as call logs, messaging app data, or other mobile application information) beyond traditional credential verification. This additional dimensional layer of verification enhances security without completely replacing the simple traditional authentication flow, allowing the system to balance both simplicity and security.
2Reliability
If additional authentication layers are implemented, then unauthorized transactions are reduced, but processing time increases
Solution Approach 1:
The system implements partial authentication action by offering two authentication levels: first-level traditional authentication for standard transactions, and optional second-level application-level verification for higher-risk or suspicious transactions. This partial application of enhanced authentication reduces processing time for routine operations while maintaining strong security when needed, resolving the contradiction between security and time efficiency.
Solution Approach 2:
The authentication requirements are made dynamic by changing parameters based on transaction characteristics. The system adjusts whether second-level authentication is required based on factors such as transaction amount, user behavior patterns, and risk assessment. This parameter-based approach ensures strong security for high-risk transactions while maintaining fast processing for low-risk operations, balancing security reliability with time efficiency.
Data Source
AI summary
Embodiments of the present invention provide a multi-level authentication system to provide an additional level of authentication using phone application level data. The system extracts application level data and generates a questionnaire based on the extracted application level data. This questionnaire is transmitted to the device of the user by the system to receive an input related to the questionnaire. The system authorizes a request to execute an action upon validating the input received.


