Source Checking Server for Mobile Authentication Message Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional mobile communication terminals cannot determine whether received SMS messages are legitimate, leading to vulnerabilities in personal information leakage and micropayment fraud due to pharming and smishing techniques, where users are tricked into entering authentication numbers on fake websites or installing malicious codes.

Innovation Solution

A system and method that includes a source checking server and mobile communication terminal, where the terminal analyzes incoming messages for origination identification information, generates an authentication message legitimacy determination request signal, and processes the message based on the server's verification, ensuring only legitimate messages are acknowledged and illegitimate ones are deleted.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional mobile communication terminals receive SMS messages without verification, then message reception is simple and fast, but the terminal cannot determine whether the message is legitimate, leading to personal information leakage and micropayment fraud

Engineering Contradiction:
Improveauthentication message legitimacyVSAvoidmessage verification system
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a source checking server as an intermediary between the mobile communication terminal and authentication messages. The terminal sends the received authentication message to the source checking server, which verifies the message's legitimacy by checking the sender's identity against registered information. This mediator resolves the contradiction by providing reliable verification without requiring complex verification logic to be embedded in the terminal itself.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If the terminal verifies every authentication message through a source checking server, then message legitimacy is determined accurately, but communication time and system complexity increase

Engineering Contradiction:
Improvesource authentication accuracyVSAvoidauthentication verification time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The source checking server performs preliminary verification by maintaining a database of registered senders and their authentication message formats. When an authentication message is received, the terminal quickly checks whether the sender is in the registered database and whether the message format matches the expected pattern. This preliminary filtering action reduces the need for time-consuming deep verification of every message, as legitimate messages can be rapidly identified through pre-established criteria.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9426655B2Legal authentication message confirmation system and method
Publication Date: 2016.08.23 SECUVE CO LTD
  • US9426655B2 patent drawing
  • US9426655B2 patent drawing
  • US9426655B2 patent drawing

AI summary

Provided is a system for preventing personal information leakage and, more particularly, related to a legal authentication message confirmation system and method which enables a user to identify whether an authentication message transmitted to the user's mobile communication terminal during user authentication originates from a trusted source, thereby preventing damage caused by pharming, smishing, and the like, such as personal information leakage and small sum payment fraud.