Single Key Authentication Image for Account Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication mechanisms, such as username and password combinations, are vulnerable to compromise and require users to remember multiple credentials, increasing the risk of unauthorized access.

Innovation Solution

A single key authentication mechanism using an authentication image that combines user-generated, user application-generated, and service provider-generated data, including a matrix object and digital imprint signature, to authenticate access to a user account, reducing the likelihood of unauthorized access by changing credentials with each request.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional username and password authentication is used, then users can access services, but the system becomes vulnerable to credential compromise and unauthorized access

Engineering Contradiction:
Improveauthentication securityVSAvoidcredential exposure risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the authentication credentials from traditional username/password forms and embeds them within an image structure. The authentication data is taken out of plain text form and hidden within pixel patterns of an image, making it impossible to read or compromise through traditional credential theft methods.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an image as an intermediary carrier between the user and the authentication system. Instead of directly transmitting credentials, the system uses an image containing hidden authentication data as a mediator, which must be processed and analyzed to extract the actual credentials.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If multiple credentials are required for authentication, then security is enhanced, but users must remember multiple credentials increasing complexity

Engineering Contradiction:
Improveauthentication securityVSAvoidcredential management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent merges multiple authentication credentials into a single image structure. Instead of requiring users to manage separate passwords, tokens, or PINs, all authentication data is combined and encoded within one image file, which the user simply needs to upload or display.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The image serves multiple functions simultaneously: it acts as a visual identifier, contains embedded authentication credentials, provides session verification data, and serves as a reusable authentication artifact across different services supporting this standard.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Productivity

If authentication credentials are transmitted in traditional formats, then the process is simple, but the credentials are vulnerable to interception and compromise

Engineering Contradiction:
Improveauthentication speedVSAvoidcredential interception risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent creates a visual copy or representation of authentication credentials within an image rather than transmitting the actual credential data in traditional formats. The image serves as a visual manifestation that contains the authentication information but cannot be directly read or intercepted as usable credentials.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS10237258B2Single key authentication method
Publication Date: 2019.03.19 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US10237258B2 patent drawing
  • US10237258B2 patent drawing
  • US10237258B2 patent drawing

AI summary

Systems, methods, and computer-readable media are disclosed for obtaining authenticated access to a service provider system, or more specifically, to a user account maintained on the service provider system, using a single key authentication mechanism. This mechanism includes generating an authentication image that includes user-generated content, user application-generated content, and service provider-generated content; sending the authentication image to the service provider system, which is configured to authenticate access to the user account based at least in part on the authentication image; and receiving an indication as to whether access to the user account has been authenticated.