Similarity Hashing for Access Control via Behavioral Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional access control methods for interactive computing environments, such as username/password combinations and multi-factor authentication, do not adequately consider factors that may affect the risk associated with granting access, and they are not suitable for using low-fidelity data due to the need for exact matches.

Innovation Solution

The use of similarity hashing to control access by generating and comparing similarity-preserving hashes based on entity data, including interaction data that indicates how an entity historically interacted with webpages, to determine the legitimacy of an interaction request.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional access control methods (username/password, multi-factor authentication) are used, then access security is provided, but they do not consider risk factors and require exact matches which are not suitable for low-fidelity data

Engineering Contradiction:
Improveaccess securityVSAvoidsuitability for low-fidelity data
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent transforms the access control mechanism from exact match verification to similarity-based verification by changing the parameter from binary equality to continuous similarity scoring. This allows the system to work with low-fidelity data that may have variations while still providing secure access control based on risk assessment.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent introduces an intermediary risk assessment system between the user and the resource. This intermediary evaluates multiple factors including device characteristics, behavioral patterns, and contextual information to determine access legitimacy, rather than directly comparing credentials.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If similarity hashing is used to control access, then computational resources, memory usage, processing time, and network bandwidth are reduced, but the system must generate and compare hashes based on entity data

Engineering Contradiction:
Improveprocessing efficiencyVSAvoidhash generation and comparison system
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent extracts only the essential features from entity data to generate compact similarity-preserving hashes. By selecting and hashing only the most relevant characteristics rather than processing complete entity profiles, the system reduces computational overhead while maintaining access control effectiveness.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent uses similarity-preserving hashes as simplified copies of entity data that retain the essential characteristics needed for access control decisions. These hash representations allow for efficient comparison without requiring access to or processing of the complete original entity data.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS20250045446A1Similarity hashing for access control
Publication Date: 2025.02.06 EQUIFAX INC
  • US20250045446A1 patent drawing
  • US20250045446A1 patent drawing
  • US20250045446A1 patent drawing

AI summary

A system can efficiently control access to an interactive computing environment using similarity hashing. The system can receive a first similarity-preserving hash based on an interaction request associated with a target entity for requesting access to an interactive computing environment. The system can receive a second similarity-preserving hash based on entity data relating to an entity and including interaction data. The system can determine, based on a comparison between the first similarity-preserving hash and the second similarity-preserving hash, a likelihood that the interaction request is legitimate. The system can provide a responsive message based on a threshold relating to the likelihood, the responsive message usable to control access to the interactive computing environment.