Three-Level Visual Authentication System with Decoy Images

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current online authentication systems are not easily operable, deployable, efficient, or cost-effective, and often require users to remember complex codes or rely on costly biometric systems that are vulnerable to hacking, lacking multilevel security.

Innovation Solution

A three-level authentication system using predefined images and tiles, where users select images and tiles to generate a transaction key, with decoy images and tiled versions, providing a user-friendly and cost-effective method for secure online transactions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional PIN verification or challenge response questions are used for authentication, then the system is simple to implement, but the security strength is insufficient and vulnerable to hacking

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication process is divided into three distinct levels: first level image selection, second level tile selection from the selected image, and third level transaction key generation. This segmentation creates multiple security barriers while keeping each individual level simple to understand and operate.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent transitions from traditional one-dimensional password input to a two-dimensional authentication process involving image selection and tile selection within that image. This dimensional change significantly increases the search space for attackers while maintaining user-friendly operation.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Reliability

If biometric authentication systems are implemented, then security is enhanced, but the cost and operational complexity increase significantly

Engineering Contradiction:
Improveauthentication securityVSAvoiduser operability
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

Instead of using complex biometric data storage and processing, the patent uses visual image copies that users can easily recognize and remember. The authentication images serve as simplified representations that capture the essential security function without requiring expensive biometric infrastructure.

Inventive Principle:
Principle #26Copying

3Reliability

If single-level authentication is used, then the system is fast and simple, but the degree of protection is insufficient

Engineering Contradiction:
Improvesecurity protection levelVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

Users pre-select their authentication images and tiles during registration, and these selections are stored for rapid verification during authentication. The system prepares multiple authentication challenges in advance, allowing fast verification without requiring complex real-time processing.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8407762B2System for three level authentication of a user
Publication Date: 2013.03.26 TATA CONSULTANCY SERVICES LTD
  • US8407762B2 patent drawing
  • US8407762B2 patent drawing
  • US8407762B2 patent drawing

AI summary

A system and method for three level authentication of a user has been disclosed. The system 100 performs three level authentication: first level being selection of at least one predefined image from a plurality of images including decoy images; second level being selection of at least one predefined tile in the tiled version of the selected images to generate a transaction key; and the third level being entering a transaction key generated after first and second level are successfully completed, which is used for final account login and grant of transaction rights. The authentication is done on user's computing node 110 by communicating with authentication server 102 for first and second level authentication and the transaction key for third level authentication being generated by transaction key generating server 124 and transmitted on to user's computing node.