Preference-Based Authentication for Forgotten Password Recovery

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication methods, such as password-based systems, are vulnerable to forgetting, data-mining, and social engineering, making it difficult to verify user identity and often costly or prone to unauthorized access.

Innovation Solution

Collecting and utilizing user preferences, such as likes and dislikes, to authenticate users through a comparison of stored and received preference data, providing a secondary or primary form of authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If password-based authentication is used, then user identification is achieved, but users may forget passwords and it becomes difficult to verify identity

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidpassword management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces preference information as an intermediary authentication mechanism between the user and the system. Instead of relying solely on passwords, the system uses stored preference data (likes, dislikes, preferences) as a mediator to verify user identity when password-based authentication fails or is forgotten. This intermediary approach resolves the contradiction by providing an alternative verification path that maintains reliability while reducing password management burden.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates a copy of user identity characteristics by storing preference information that reflects user personality and choices. This preference copy serves as an alternative identifier that can be retrieved and compared without requiring the user to remember complex passwords. The copying principle resolves the contradiction by creating a persistent, easily accessible alternative to password-based identification.

Inventive Principle:
Principle #26Copying

2Reliability

If traditional authentication methods are used, then access control is implemented, but systems are vulnerable to data-mining and social engineering

Engineering Contradiction:
Improvesecurity against unauthorized accessVSAvoidvulnerability to data-mining and social engineering
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent changes the authentication parameter from static password data to dynamic preference information. Preference data reflects user personality, choices, and behavioral patterns that are difficult to obtain through data-mining or social engineering. This parameter change resolves the contradiction by transforming the authentication basis from vulnerable static credentials to resilient dynamic characteristics that are inherently more secure against external attacks.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent converts the potentially harmful lack of password complexity requirements into a benefit. By using simple preference-based authentication, the system eliminates the need for complex passwords that users might weakly choose or that could be cracked, while actually achieving stronger security through unique, personalized preference patterns. This converts the apparent weakness of simple authentication into a security strength.

Inventive Principle:
Principle #22Blessing in disguise (Convert harm into benefit)

3Adaptability or versatility

If preference information is collected for authentication, then alternative verification method is provided, but additional data collection is required

Engineering Contradiction:
Improveauthentication method flexibilityVSAvoiddata collection volume
Core Design Contradiction:
Adaptability or versatilityVSQuantity of substance

Solution Approach 1:

The patent makes preference information serve multiple functions: it is used for user profiling, personalization, and authentication verification. By collecting preference data once for legitimate business purposes (improving user experience through personalization), the system simultaneously creates an authentication mechanism. This multi-functionality resolves the contradiction by ensuring that the same data collection serves both business needs and security needs, eliminating redundant data collection.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS12411949B1Performing authentication
Publication Date: 2025.09.09 NUECES BLOCKCHAIN LLC
  • US12411949B1 patent drawing
  • US12411949B1 patent drawing
  • US12411949B1 patent drawing

AI summary

Preference data is received. The received preference data is compared to stored preference data associated with a user with which the received preference data is associated. A determination is made whether to authorize an action based at least on the comparison. The preference data is received as a selection.