Security Verification Method Using Preset Rule Conversion

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional security verification methods using plaintext numeral information are unreliable due to the ease with which malicious third parties can steal verification codes, compromising the security of network applications.

Innovation Solution

Implementing a security verification method that involves converting verification information according to a preset verification rule, allowing users to input converted verification information instead of the original code, thereby ensuring that only authorized users can complete the verification process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If plaintext numeral verification codes are used, then the verification process is simple and easy to operate, but the security level is low and verification reliability is poor

Engineering Contradiction:
Improveverification process simplicityVSAvoidverification security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent transforms the verification code from plaintext numerals to an image format with specific visual parameters (color, shape, position). This parameter transformation maintains ease of input while significantly enhancing security, as the visual parameters make the code resistant to automated stealing and interception attacks.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent introduces an intermediary transformation process where the verification code is converted into an image format with specific visual characteristics. This intermediary form acts as a mediator between the simple numerical code and the security requirement, preserving user-friendly input while adding security layers through visual parameter complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of manufacture

If verification codes are sent via text message or email, then the delivery is straightforward, but malicious third parties can easily steal the verification information through Trojans

Engineering Contradiction:
Improveverification delivery simplicityVSAvoidverification code theft risk
Core Design Contradiction:
Ease of manufactureVSObject-affected harmful factors

Solution Approach 1:

The patent changes the parameter format of verification codes from text-based to image-based with specific visual parameters. This transformation maintains straightforward delivery through existing communication channels while effectively countering Trojan attacks, as the visual parameter complexity prevents automated stealing and interception.

Inventive Principle:
Principle #35Parameter changes

3Loss of time

If simple numeral verification codes are used, then the user input process is quick, but the security level for accessing network applications is low

Engineering Contradiction:
Improveverification input timeVSAvoidaccess security
Core Design Contradiction:
Loss of timeVSReliability

Solution Approach 1:

The patent transforms verification codes into image format with specific visual parameters (color, shape, position), which maintains quick visual recognition and input speed while significantly enhancing access security. The visual parameters create a barrier against automated stealing and interception without substantially increasing user input time.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS10284565B2Security verification method, apparatus, server and terminal device
Publication Date: 2019.05.07 ADVANCED NEW TECHNOLOGIES CO LTD
  • US10284565B2 patent drawing
  • US10284565B2 patent drawing
  • US10284565B2 patent drawing

AI summary

A security verification method is provided. The method includes receiving a security verification request from a terminal device, sending verification information to the terminal device in response to the security verification request, and receiving first converted verification information from the terminal device. The first converted verification information may be generated by converting the verification information according to a preset verification rule. The method may further include determining whether the first converted verification information matches with second converted verification information. The second converted verification information may be generated by converting the verification information according to the preset verification rule. The method may further include determining that a user associated with the terminal device passes security verification if the first converted verification information matches with the second converted verification information.