Secure Electronic Signature System with Biometric Hash Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic signature methods fail to ensure secure transmission and storage of signature data and biometric information, particularly in scenarios where the content of documents can be modified after signing, and there is a risk of unauthorized access or misuse of biometric data.

Innovation Solution

A method involving a signing device and a computer system that captures signature data, generates a hash value from a combination of the document and signature information, and uses a private key to create a secure signature, which is then transmitted and stored, ensuring that only authorized parties can modify the document and access the biometric data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If electronic signature data and biometric information are transmitted and stored on a computer, then the convenience and speed of electronic signing process is improved, but the security risk of unauthorized access and misuse of biometric data increases

Engineering Contradiction:
Improvespeed of electronic signing processVSAvoidunauthorized access to biometric data
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an intermediary verification process where the system checks whether a representation of second information (received from the signing device) corresponds to the actual second information before using it for signature verification. This intermediary step prevents unauthorized or tampered biometric data from being accepted, thus mitigating the security risk while maintaining the electronic signing process efficiency.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If document content can be modified after electronic signature, then the flexibility and ease of document processing is improved, but the integrity and authenticity of the signed document deteriorates

Engineering Contradiction:
Improveflexibility of document processingVSAvoidintegrity of signed document
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent performs preliminary verification by checking whether the representation of second information received from the signing device corresponds to the actual second information before finalizing the signature process. This preliminary action ensures that the document integrity is verified at the point of signing, preventing later unauthorized modifications while still allowing legitimate document processing flexibility.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements a feedback mechanism where the system receives second information from the signing device, generates a representation of it, and then verifies whether this representation corresponds to the original second information. This feedback loop ensures that any modifications to the signed document can be detected, maintaining document integrity while allowing flexible document processing workflows.

Inventive Principle:
Principle #23Feedback

Data Source

PatentEP3121992B1Secure electronic signing of information
Publication Date: 2019.08.28 SIGNOTEC
  • EP3121992B1 patent drawingFigure 1
  • EP3121992B1 patent drawingFigure 2~3
  • EP3121992B1 patent drawingFigure 4

AI summary

Disclosed are, among other things, a method, a device, and a program for capturing signature data characteristic of a person when that person signs initial information on a first device (1). Also disclosed are a method, a device, and a program for generating, providing, processing, and/or displaying initial information and/or a representation of the initial information on and/or in a second device (2), wherein the initial information is to be signed by a person on a first device (1) that is connected to the second device (2) by wire or wireless connection. A system (3) comprising the first device (1) and the second device (2) is also disclosed.