Telecom Identity Spoofing Detection via Intermediary Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current technologies are inadequate in preventing identity theft, particularly in IP communication systems, where unscrupulous individuals can easily spoof telephone numbers or email addresses, leading to serious consequences for subscribers.

Innovation Solution

A method and device for managing telecommunications domains to verify the authenticity of connection data by searching databases associated with both the originating and destination domains, rejecting communications if the data is invalid, thereby preventing number spoofing.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If caller ID service is provided to display calling number, then subscribers can see caller information and identify contacts, but this enables identity theft and number spoofing by allowing imposters to present false calling numbers

Engineering Contradiction:
Improvecaller ID serviceVSAvoididentity theft
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

A verification system acts as an intermediary between the calling and called parties. The system receives the calling number from the caller, verifies its authenticity against a database of legitimate numbers, and only allows the call to proceed if verification succeeds. This intermediary verification process prevents imposters from successfully spoofing numbers while maintaining the caller ID service functionality.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The verification of the calling number is performed in advance, before the call is established. The system pre-validators the authenticity of calling numbers by checking them against a database of legitimate numbers assigned to subscribers. This preliminary verification action prevents fraudulent calls from being established in the first place, rather than detecting and blocking them after establishment.

Inventive Principle:
Principle #10Preliminary action

2Adaptability or versatility

If number spoofing is allowed in IP communication systems, then users can freely configure calling numbers for various purposes, but this enables fraud and serious consequences for subscribers whose numbers are spoofed

Engineering Contradiction:
Improvenumber configuration freedomVSAvoidfraud
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The verification system serves as an intermediary that mediates between the user's desire to configure calling numbers and the need to prevent fraud. The system accepts number configuration requests but intercepts and verifies the calling number before allowing communication establishment. This intermediary control maintains user adaptability while preventing fraudulent use through automated verification against legitimate number databases.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If third party numbers are positioned in calling number field to circumvent hidden number filtering, then callers can reach victims who block direct calls, but this encourages answer by imposters and facilitates identity theft

Engineering Contradiction:
Improvecall delivery effectivenessVSAvoidimposter fraud
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The verification system acts as an intermediary that blocks the technique of using third-party numbers to circumvent call filtering. By verifying that the calling number matches the actual subscriber initiating the call, the system prevents imposters from using victim's numbers or third-party numbers to trick callers into answering. This maintains legitimate call delivery while blocking fraudulent workarounds.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP3127297B1Method of detecting a spoofing of identity belonging to a domain
Publication Date: 2024.09.04 ORANGE SA
  • EP3127297B1 patent drawingFigure 1
  • EP3127297B1 patent drawingFigure 2
  • EP3127297B1 patent drawingFigure 3

AI summary

The invention relates, according to a first aspect, to a method of control, by a piece of management equipment of a first telecommunication domain, of the authenticity of at least one relationship datum relating to the initiator of a communication and indicated in a message for establishing the communication originating from a second telecommunication domain and destined for the first telecommunication domain, characterized in that it comprises, upon receipt of the message by the management equipment, steps of extracting (200) the at least one relationship datum from the message; of searching (201) for the at least one relationship datum in at least one database of the relationship data associated with the first domain, and of rejecting (203) the communication when an occurrence of the at least one relationship datum is found in the database.