Story Fill Authentication Using Event Data
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Traditional user authentication methods, such as username and password combinations and security questions, are vulnerable to compromise when security is breached, leading to inadequate protection of sensitive information.
Innovation Solution
A story fill authentication process that generates a story from user event data, with obfuscated portions, which users must complete to access resources, utilizing semantic comparison and text analytics for verification.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional username and password authentication is used, then ease of operation is improved, but security reliability deteriorates
Solution Approach 1:
The patent transforms static authentication credentials (username/password) into dynamic story-based authentication that leverages temporal event data. The authentication mechanism changes from verifying fixed secrets to verifying knowledge of chronological events, fundamentally altering the authentication parameter space to achieve both ease of use and enhanced security
Solution Approach 2:
The system pre-collects and stores event data from multiple sources (social media, device logs, browsing history) before authentication is needed. This preliminary gathering of user-specific event information enables rapid story generation during authentication without requiring real-time data collection, maintaining ease of operation while ensuring security through unique user event patterns
2Reliability
If security questions are used for additional verification, then authentication security is improved, but ease of operation deteriorates
Solution Approach 1:
The patent merges the authentication question generation with the user's existing event data and story creation process. Instead of separate security questions, the system integrates event-based verification into a cohesive narrative story that naturally incorporates multiple verification points, reducing operational steps while maintaining security
Solution Approach 2:
The authentication mechanism transitions from static security questions to dynamic story completion where the story adapts based on the user's event data. The verification process becomes flexible and context-aware, adjusting the authentication challenge based on the user's historical behavior patterns while maintaining ease of operation through natural interaction
3Reliability
If event data from multiple sources is collected and processed, then authentication security is improved, but device complexity increases
Solution Approach 1:
The patent introduces an intermediary layer that aggregates event data from multiple sources (social media APIs, device logs, browsing history) and transforms it into structured story formats. This intermediary processing layer simplifies the complexity by providing a unified interface between diverse data sources and the authentication mechanism, reducing overall system complexity while maintaining security through comprehensive event data utilization
Data Source
AI summary
A method for a story fill authentication process includes, responsive to receiving a first authentication request to authenticate a user, displaying a first generated story with one or more obfuscated portions, where the first generated story is based on event data associated with a first previously captured event and additional data utilized to enrich the event data for the first previously captured event. The method also includes, responsive to determining text provided for the one or more obfuscated portions of the first generated story at least meets a comparison threshold level to a first complete generated story based on a semantic comparison, granting the user access to a resource associated with the first authentication request.


