Terminal Authentication Interface Using Interference Objects
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current user authentication methods in terminals, such as displaying photos of contacts, are prone to low security due to easily recognizable images, which can be compromised by unauthorized access.
Innovation Solution
A user authentication method that utilizes a real authentication interaction object, an interference interaction object with similar features, and an obfuscating interaction object, displayed in an authentication interface, to enhance security and user experience by reducing memory burden and increasing authentication difficulty.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If photos of contacts are used for authentication, then the authentication process is simple and familiar to users, but the security is low because the photos are easily recognizable
Solution Approach 1:
The patent applies local quality by using different types of interaction objects for different purposes: authentication interaction objects (real contacts, apps, books, music) for legitimate access, interference interaction objects (virtual objects with similar features) to confuse attackers, and obfuscating interaction objects (real objects designated by user) to further obscure the authentication process. This differentiated use of object types maintains user familiarity while enhancing security.
Solution Approach 2:
The patent introduces an intermediary layer between the user and the authentication system by adding interference and obfuscating interaction objects. These intermediaries do not exist in the traditional photo-based system but serve to protect the actual authentication objects, making it difficult for attackers to directly access or guess the correct authentication target.
2Reliability
If more interaction objects are displayed to increase authentication difficulty, then the anti-attack capability is improved, but the device complexity increases
Solution Approach 1:
The patent segments the authentication interface into distinct categories of interaction objects: authentication interaction objects (first quantity), interference interaction objects (second quantity), and obfuscating interaction objects (third quantity). This segmentation allows the system to manage complexity by organizing objects into functional groups while presenting them together in a unified interface, making the complexity manageable and systematic rather than chaotic.
Solution Approach 2:
The patent applies universality by using a common interaction object framework that can serve multiple functions. The same basic interaction object structure is used for authentication purposes, interference purposes, and obfuscation purposes. This multi-functional approach allows the system to increase authentication difficulty without proportionally increasing the fundamental complexity of the authentication mechanism itself.
3Reliability
If interference interaction objects with similar features are introduced, then the anti-attack capability is improved, but the difficulty of detecting and measuring the correct object increases
Solution Approach 1:
The patent uses visual differentiation (analogous to color changes) by displaying interaction objects with their respective icons, names, and visual characteristics. While interference interaction objects have similar features to authentication objects, they can be distinguished through subtle visual cues, naming conventions, or positioning that are not immediately obvious but allow the legitimate user to identify the correct object after brief observation or recognition.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The present invention relates to the field of terminal technologies and provides a user authentication method and terminal, where the method includes: acquiring an authentication interaction object and an interference interaction object after an authentication request is received, where the authentication interaction object is a real interaction object stored in a terminal, the interference interaction object is a virtual interaction object constructed by the terminal, and the interference interaction object has a similar feature with the authentication interaction object, so as to cause interference to a user when the user is selecting the authentication interaction object; displaying the authentication interaction object and the interference interaction object in an authentication interface for the user to select from; receiving a selection result and determining whether the selection result is the authentication interaction object; and determining, when the selection result is the authentication interaction object, that authentication succeeds. By using the present invention, both an anti-attack capability of a terminal and user experience can be improved.