Router-Based User Activity Authentication for Wi-Fi Fraud Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional Wi-Fi networks lack visibility and security, making them vulnerable to spoofing and fraud due to the difficulty in authenticating the identity of actors engaging in electronic activities, as the actor is not physically present.

Innovation Solution

A network operations center manages wireless communication routers to monitor and authenticate user activities through cloud-based management, using performance and profile data to verify the authenticity of electronic activities and provide authentication services to third-party entities.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If conventional Wi-Fi networks are deployed by end-users without service provider visibility, then network connectivity is provided to various devices, but security and authentication capability deteriorate

Engineering Contradiction:
Improvenetwork connectivity provisionVSAvoidsecurity and authentication
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent introduces a network operations center as an intermediary between end-users and service providers. This mediator collects device information from routers, performs authentication verification, and provides security services without disrupting the existing Wi-Fi network operation. The mediator enables security functionality while maintaining network connectivity productivity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If complex fraud detection algorithms are used to authenticate electronic activities, then identity verification capability is improved, but processing time and system complexity increase

Engineering Contradiction:
Improveidentity verification accuracyVSAvoidprocessing time
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The system performs preliminary actions by collecting device information (MAC addresses, device types, network characteristics) during normal network operation and storing it in advance. When authentication is needed, the pre-collected information is quickly retrieved and compared, eliminating the need for time-consuming data collection during the authentication event itself.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent replaces complex real-time fraud detection algorithms with a simpler comparison-based verification system. Instead of analyzing behavioral patterns and making probabilistic judgments in real-time, the system substitutes mechanical lookup and comparison of pre-collected device identifiers against stored profiles, significantly reducing processing time while maintaining verification accuracy.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS12568368B2Systems and methods for online user activity verification and authentication for enhanced network security
Publication Date: 2026.03.03 PLUME DESIGN INC
  • US12568368B2 patent drawing
  • US12568368B2 patent drawing
  • US12568368B2 patent drawing

AI summary

Systems and methods of the present disclosure enable improved network security by authenticating the identity of the user initiating the network activities. A network operations center of a wireless communication network system may implement an authentication service to monitor for network activities initiated via communications through a router of the wireless communication network system. The router may identify communications to be authenticated and provide the communication and/or associated data to the authentication service. The authentication service may analyze the data based on usage and performance data associated with the router(s) as well as user profile data associated with the user to verify that the user is the sender of the communication, thus authenticating the identity of the user. The authentication may then be communicated to third-party entities associated with the network activity to enable such third-party entities to confirm or deny the network activity.