Similarity Hashing for Access Control via Behavioral Analysis
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional access control methods for interactive computing environments, such as username/password combinations and multi-factor authentication, do not adequately consider factors that may affect the risk associated with granting access, and they are not suitable for using low-fidelity data due to the need for exact matches.
Innovation Solution
The use of similarity hashing to control access by generating and comparing similarity-preserving hashes based on entity data, including interaction data that indicates how an entity historically interacted with webpages, to determine the legitimacy of an interaction request.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If conventional access control methods (username/password, multi-factor authentication) are used, then access security is provided, but they do not consider risk factors and require exact matches which are not suitable for low-fidelity data
Solution Approach 1:
The patent transforms the access control mechanism from exact match verification to similarity-based verification by changing the parameter from binary equality to continuous similarity scoring. This allows the system to work with low-fidelity data that may have variations while still providing secure access control based on risk assessment.
Solution Approach 2:
The patent introduces an intermediary risk assessment system between the user and the resource. This intermediary evaluates multiple factors including device characteristics, behavioral patterns, and contextual information to determine access legitimacy, rather than directly comparing credentials.
2Productivity
If similarity hashing is used to control access, then computational resources, memory usage, processing time, and network bandwidth are reduced, but the system must generate and compare hashes based on entity data
Solution Approach 1:
The patent extracts only the essential features from entity data to generate compact similarity-preserving hashes. By selecting and hashing only the most relevant characteristics rather than processing complete entity profiles, the system reduces computational overhead while maintaining access control effectiveness.
Solution Approach 2:
The patent uses similarity-preserving hashes as simplified copies of entity data that retain the essential characteristics needed for access control decisions. These hash representations allow for efficient comparison without requiring access to or processing of the complete original entity data.
Data Source
AI summary
A system can efficiently control access to an interactive computing environment using similarity hashing. The system can receive a first similarity-preserving hash based on an interaction request associated with a target entity for requesting access to an interactive computing environment. The system can receive a second similarity-preserving hash based on entity data relating to an entity and including interaction data. The system can determine, based on a comparison between the first similarity-preserving hash and the second similarity-preserving hash, a likelihood that the interaction request is legitimate. The system can provide a responsive message based on a threshold relating to the likelihood, the responsive message usable to control access to the interactive computing environment.


