NFC Security Code Transfer for Mobile Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication methods, such as passwords and two-factor authentication, are cumbersome and prone to errors due to the need for manual entry of security codes, which detract from user experience and provide inadequate security in distributed computing environments.

Innovation Solution

A method utilizing Near Field Communication (NFC) to transfer a one-time security value from a mobile device to a computing device, eliminating the need for manual entry by establishing a connection and auto-filling the authentication form, ensuring secure and efficient two-factor authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual entry of security codes is used for two-factor authentication, then security is improved, but user experience and ease of operation deteriorate due to cumbersome processes and errors

Engineering Contradiction:
ImprovesecurityVSAvoiduser experience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent replaces the mechanical manual typing process with automated optical recognition and form population. The system captures an image of the security code, uses OCR to extract the code, and automatically fills it into the authentication form, eliminating the need for manual entry while maintaining security.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The system enables self-service authentication by automatically capturing and populating security codes without requiring manual user intervention. The automated form population process allows the system to complete the authentication sequence independently, improving user experience while maintaining security integrity.

Inventive Principle:
Principle #25Self-service

2Reliability

If manual launch and generation of security codes is required, then security verification is ensured, but productivity and time efficiency deteriorate due to overhead processes

Engineering Contradiction:
Improveauthentication verificationVSAvoidaccess speed
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system performs preliminary actions by automatically capturing and recognizing security codes before form submission is required. The OCR extraction and form population occur in the background, allowing users to complete authentication faster without sacrificing verification reliability.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent replaces manual security code handling with automated image capture and optical recognition systems. This substitution eliminates the time-consuming manual launch, generation, and entry processes while maintaining authentication verification through automated code extraction and form population.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Ease of operation

If simple passwords are used for access, then ease of operation is improved, but security deteriorates due to inadequate protection against dictionary attacks and disclosure

Engineering Contradiction:
Improveaccess simplicityVSAvoidsecurity protection
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent merges simple password authentication with automated two-factor verification. Users continue to enter their simple passwords manually, but the system simultaneously captures and populates security codes from images, combining both authentication methods into a unified process that maintains simplicity while enhancing security protection.

Inventive Principle:
Principle #5Merging (Combining)

Applied Scientific Principles

This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.

Function Achieved in This Case

This approach enhances user experience by simplifying the authentication process while maintaining strong security, reducing errors, and improving usability in cloud-based environments.

Implementation Method 1

A method utilizing Near Field Communication (NFC) to transfer a one-time security value from a mobile device to a computing device

Methodology Applied
Scientific EffectNear Field Communication (NFC):

Implementation Method 2

transfer a security value from the mobile device to the computing device

Methodology Applied
Scientific EffectNear Field Communication (NFC):

Data Source

PatentUS9104853B2Supporting proximity based security code transfer from mobile/tablet application to access device
Publication Date: 2015.08.11 CA TECH INC
  • US9104853B2 patent drawing
  • US9104853B2 patent drawing
  • US9104853B2 patent drawing

AI summary

Techniques are disclosed for authenticating users to a computing application. A mobile or tablet device is used to generate a security code. Near field communication (NFC) hardware on the mobile device is used to transfer the security code from the mobile device to a computer. To transfer the one-time value, a user simply taps an NFC enabled mobile device on an NFC enabled computing device (e.g. a laptop running a web browser used to access a web service). In one embodiment, doing so triggers a connection between the two devices and an application running on the mobile device transfers the security code to an NFC receiver application running on the computer. The receiving computer may be configured to auto-fill the received security code in the appropriate form field of the application authentication interface.