Secondary-Device Authentication for Locked User Device Recovery

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is a need for a secure and reliable method to recover a user device when primary authentication fails, preventing permanent unavailability due to multiple failed authentication attempts.

Innovation Solution

A system that provides alternative user authentication methods using a secondary device, such as a smartphone, through wireless connection or scannable codes, to unlock the primary device and execute intended actions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the system locks the first user device after detecting a threshold number of failed authentication attempts, then security is improved, but user accessibility deteriorates

Engineering Contradiction:
Improveauthentication securityVSAvoiduser device accessibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a second user device as an intermediary to mediate the authentication process. When the first device is locked after failed authentication attempts, the second device serves as a mediator to verify the user's identity through alternative authentication methods (such as receiving push notifications, scanning QR codes, or entering verification codes). This intermediary approach maintains security by requiring verification while restoring accessibility by providing a different authentication path that bypasses the locked first device.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If the system provides multiple alternative authentication options, then user accessibility is improved, but system complexity increases

Engineering Contradiction:
Improveauthentication flexibilityVSAvoidauthentication system complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent implements multi-functionality by enabling the second user device to perform multiple authentication methods through a single integrated system. The second device can handle push notifications, QR code scanning, verification code entry, and other authentication mechanisms universally. This approach provides authentication flexibility across different scenarios while managing system complexity by consolidating these functions into a unified second device interface rather than requiring separate systems for each authentication method.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If the system requires a second user device for alternative authentication, then authentication reliability is improved, but device availability requirements worsen

Engineering Contradiction:
Improveauthentication verification reliabilityVSAvoidauthentication scenario adaptability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent applies dynamics by making the authentication system adaptable to different scenarios based on device availability. The system dynamically adjusts its authentication requirements: when the first device is locked, it requires a second device; when the first device remains accessible, it uses standard authentication. The second device itself can dynamically support multiple authentication modes (push notifications, QR codes, verification codes) based on what is most appropriate for the current situation, thereby maintaining verification reliability while improving adaptability to various user contexts.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS20250307359A1System and method for user device recovery through alternative user authentication processes
Publication Date: 2025.10.02 BANK OF AMERICA CORP
  • US20250307359A1 patent drawing
  • US20250307359A1 patent drawing
  • US20250307359A1 patent drawing

AI summary

A system is provided for user device recovery through alternative user authentication processes. In particular, the system may provide to the user one or more alternative user authentication methods in the event that a primary user authentication method associated with a first user device is unsuccessful, where the first user device may become unavailable as a result. In such a scenario, the one or more alternative user authentication methods may include an authentication process involving a second user device. The system may assess the capabilities of the second user device in authenticating the user, and subsequently initiate a secondary authentication process using the second user device. Based on successfully completing the secondary authentication process, the system may allow the user to recover the first user device in the event that the first user device is unavailable.