Password Generation Using Segmentation and Intermediary Principles
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing password security methods are inadequate for human users, as they struggle to create and remember robust, complex passwords that resist hacking, while current solutions either require complex memorization or are limited in their application across multiple services.
Innovation Solution
A method and device that generate a complex password from a simple input, such as a series of digits, by concatenating a longer chain of alphanumeric symbols, ensuring robustness without requiring users to memorize lengthy combinations, and incorporating verification and biometric unlocking for enhanced security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a long and complex password is used to increase security, then the robustness against hacking is improved, but the ease of memorization deteriorates
Solution Approach 1:
The password is segmented into two distinct parts: a simple memorable component (first datum) and a complex secure component (second datum). The first datum consists of easily memorizable elements like a name or simple pattern, while the second datum contains the complex random characters. This segmentation allows users to memorize only the simple part while the system generates and stores the complex part, resolving the contradiction between memorability and security.
Solution Approach 2:
The patent introduces an intermediary element (the processing system or password generator) that bridges the gap between simple user input and complex secure password requirements. The system takes the simple first datum from the user, processes it through a generation algorithm, and produces the complex second datum. This intermediary handles the complexity transformation, allowing users to interact with simple inputs while receiving secure outputs.
2Reliability
If a unique security code is associated with a smartcard to prevent unauthorized access, then the security is improved, but the adaptability to various services deteriorates
Solution Approach 1:
The patent creates a universal password generation system that can serve multiple services and applications. Instead of having service-specific security codes, the system generates passwords that can be used across different services. The first datum can be a general identifier or pattern that works universally, while the second datum is generated specifically for each service requirement. This multi-functionality allows a single system to adapt to various services without requiring separate security mechanisms for each.
3Ease of operation
If a simple password is used to ease memorization, then the ease of operation is improved, but the security against hacking deteriorates
Solution Approach 1:
The patent merges two contrasting password components into a single unified password structure. The first datum (simple, memorable) and the second datum (complex, secure) are combined to form the complete password. This merging allows the password to simultaneously exhibit both memorability and security characteristics, as the simple component ensures ease of recall while the complex component provides cryptographic strength against hacking attempts.
4Reliability
If additional software or hardware components are installed to enhance password security, then the reliability is improved, but the device complexity increases
Solution Approach 1:
The patent implements a self-service password generation system that automatically creates secure passwords without requiring manual configuration of complex software or hardware components. The system autonomously generates the second datum based on the first datum input by the user, eliminating the need for users to manually configure security settings. This self-service approach enhances security while minimizing installation and configuration complexity, as the system handles the complex password generation internally without requiring additional user-side software or hardware installations.
Data Source
AI summary
A method and a device for generating a password for access to a service. The method includes the following steps on a password generating device connected to a user terminal: obtaining a first item of data representative of at least one symbol; depending on the obtained first item of data, obtaining at least one second item of data having at least two symbols for a symbol of the first item of data; generating a third item of data, referred to as the password, from the at least one second item of data; and transmitting the password to the terminal.

