Telephony Authentication via Voice Signal Sampling and Comparison
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing authentication methods for telephony services are vulnerable to identity changes during communication, man-in-the-middle attacks, and data interception, leading to security breaches and inability to unequivocally verify the authenticity of participants.
Innovation Solution
A method that involves setting up a transmission channel between terminals, sampling voice signals, generating test data sets, and comparing them via a secure channel to ensure the authenticity of participants and integrity of the transmission channel, using synchronized scanning and feature extraction techniques to analyze voice patterns without requiring extensive training or adaptation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If conventional authentication features are transmitted during communication, then authentication can be performed, but the authentication data can be intercepted and reused by attackers
Solution Approach 1:
The patent applies preliminary action by establishing a secure authentication mechanism before communication begins. The system performs initial authentication using authentication features, then establishes cryptographic keys and authentication objects that will be used throughout the communication session to verify identity changes, preventing interception and reuse attacks
Solution Approach 2:
The patent implements feedback by continuously monitoring authentication features during the communication session. The system periodically verifies whether authentication features remain consistent with the original authenticated identity, providing ongoing feedback to detect and prevent identity impersonation or man-in-the-middle attacks
2Object-affected harmful factors
If voice-based or biometric speaker verification is used for authentication, then authentication can be performed without transmitting authentication features, but training is required and authentication takes longer time
Solution Approach 1:
The patent applies preliminary action by performing voice or biometric authentication before the communication session to establish the initial identity, then using this established identity to generate authentication objects that can be quickly verified during the session, avoiding the need for repeated training and lengthy authentication processes
Solution Approach 2:
The patent uses copying by creating authentication objects (such as cryptographic keys or digital signatures) that represent the authenticated identity. These authentication objects can be quickly generated and verified during communication without requiring repeated biometric scanning or voice analysis, significantly reducing authentication time while maintaining security
3Object-affected harmful factors
If authentication features are used once or transmitted on a separate channel, then security is improved, but it is not always possible to unequivocally assign the authentication feature to the actual identity
Solution Approach 1:
The patent implements feedback by continuously verifying that authentication features observed during communication match the originally authenticated identity. The system monitors for changes in authentication features and provides feedback to confirm or reject the identity, ensuring unequivocal assignment while maintaining security through ongoing verification rather than one-time authentication
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The method involves establishing communication channel (13) between client and server terminals of subscribers of telephone service. The sampling speech signals are transmitted over communication channel at each terminal. The test data set is generated from sampled speech signals at each terminal. The test data set of server terminal is transmitted over a security channel (11). The transmitted test data set is compared with the test data set of client terminal. Independent claims are included for the following: (1) computer readable medium storing program for authentication of subscribers of telephone service; (2) system for authentication of subscribers of telephone service; and (3) device for authentication of subscribers of telephone service.