One-Time Password Generation Using Personal Data Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Voice-activated systems for electronic devices face security challenges as spoken passwords can be easily overheard by unauthorized individuals, compromising data access.

Innovation Solution

A system that generates one-time, unique passwords using personal data character strings, which are randomly combined with additional digits, and prompts the user to enter these passwords via voice or visual interfaces, ensuring security through randomness and uniqueness.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a password is provided by speech via voice commands, then hands-free operation and ease of use are improved, but security deteriorates because unauthorized persons can hear the password

Engineering Contradiction:
Improvehands-free operationVSAvoidpassword security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the password into multiple components: personal identification information (name, date of birth, address) combined with randomly generated digits. This segmentation ensures that even if someone hears the password, they cannot reconstruct it without knowing the personal information and the random digits, thus maintaining security while allowing voice entry

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system performs preliminary action by requiring the user to first provide personal identification information and have random digits generated and stored before the actual password entry. This preliminary setup creates a secure foundation that combines personal data with unpredictable random elements, making the voice-provided password secure against eavesdropping

Inventive Principle:
Principle #10Preliminary action

2Reliability

If a unique password is created at frequent time intervals, then security is improved, but convenience and ease of operation deteriorate due to the burden on users and system administrators

Engineering Contradiction:
Improvepassword securityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system implements self-service by automatically generating unique passwords based on user's personal identification information and randomly generated digits. The system handles the password creation, storage, and verification processes automatically, eliminating the need for users to manually create and remember multiple passwords, thus maintaining security while improving convenience

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent changes the parameters of password generation by using personal identification information combined with randomly generated digits rather than requiring users to create passwords manually. This parameter change allows the system to generate secure, unique passwords automatically, reducing the burden on users while maintaining high security standards

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS10282526B2Generation of randomized passwords for one-time usage
Publication Date: 2019.05.07 HAND HELD PRODS INC
  • US10282526B2 patent drawing
  • US10282526B2 patent drawing
  • US10282526B2 patent drawing

AI summary

An electronic device dynamically generates a password for one-time only usage. The one-time password is constructed by placing, in a random sequential order: (i) several randomly chosen digits and (ii) several digits, which are randomly selected from personal identification numbers, which were previously provided by an authorized user. The current user of the device is presented with a natural-language password hint, which describes the sequence of digits in the password. Only the authorized user knows the personal identification numbers; and so is able to construct, on-the-fly, the one-time password, and present that password to the device. The password hint may be presented aloud, in audio form, and the password may be entered into the device via speech. If someone nearby hears the hint and/or the password, they cannot use it at a later time to gain device control or data access, since the password is only valid the one time.