Portable Biometric Security Device Isolating Authentication Data
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing electronic security methods, including passwords and biometric sensors, are vulnerable to malware and data interception, compromising the security of electronic transactions and identity verification.
Innovation Solution
A portable electronic security device that incorporates a biometric sensor, interface component, and control circuit, operating as a standalone unit, which authenticates user identity and outputs an encrypted authentication certificate, and can emulate different device types to interact securely with other devices without relying on non-native software, thus providing a secure platform for identity verification and access control.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If passwords are used for security authentication, then ease of operation is improved, but security reliability deteriorates due to vulnerability to malware and data interception
Solution Approach 1:
The system segments the authentication process by separating the biometric data capture function (performed by the portable device) from the authentication verification function (performed by the host device). This segmentation ensures that sensitive biometric data never leaves the portable device, eliminating the security vulnerability while maintaining ease of operation.
Solution Approach 2:
The patent introduces an intermediary approach where the portable electronic device acts as a secure mediator between the user and the host system. The device captures biometric data locally and provides authentication results without exposing raw biometric data, thus maintaining both security reliability and operational convenience.
2Reliability
If biometric sensors are integrated into host devices for authentication, then security reliability is improved, but vulnerability to electronic snooping and interception worsens
Solution Approach 1:
The patent extracts the biometric sensor and data processing capability from the host device and places it in a separate portable electronic device. This extraction eliminates the security vulnerability of host-based biometric systems while preserving the security benefits of biometric authentication, as the portable device's secure environment prevents malware and snooping from accessing biometric data.
Solution Approach 2:
The system moves the biometric authentication process to a different dimensional space - from the host device's potentially insecure environment to a portable device's controlled secure environment. This dimensional shift isolates the biometric data from host-based threats while maintaining authentication functionality.
3Reliability
If encrypted authentication certificates are output to another device, then security reliability is improved, but device complexity increases
Solution Approach 1:
The patent combines multiple security functions (biometric data capture, encryption, and authentication certificate generation) into a single portable electronic device. This merging simplifies the overall system architecture while maintaining high security reliability, as all critical security operations occur within the portable device's secure environment without requiring complex host-based processing.
Data Source
AI summary
A mobile electronic security device may include a biometric sensor to measure a physical characteristic of a user, an interface component to operatively couple the electronic security device with another device, and a control circuit that are assembled as a single portable unit. Other components, such as a battery, a display, and a memory may be included in the security device. The security device authenticates the identity of a user using output data from the biometric sensor and, in some embodiments, using data from an environmental sensor. Once validated, an encrypted authentication certificate may be output to another device. The security device provides a trusted platform that enables a user to verify his or her identity, show proof of presence of the user, control access to data, etc., and may operate in a standalone manner and/or in conjunction with another device.


