Timing Array Password Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication systems are inadequate in preventing unauthorized access, as they rely solely on username and password combinations, which can be compromised, leading to security breaches and customer inconvenience.

Innovation Solution

Incorporating timing information as an additional dimension for password verification, where the timing intervals between each character input are stored and matched during authentication, enhancing security without significantly burdening users.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional username and password authentication is used, then ease of operation is maintained, but security is insufficient and vulnerable to unauthorized access

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent adds a temporal dimension to password authentication by recording and verifying the timing of each character input. This transforms the traditional static password verification into a multi-dimensional verification process that includes both the password content and the timing pattern, thereby enhancing security without requiring additional user actions beyond natural typing behavior

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Reliability

If additional security layers such as secret questions are added, then security is improved, but customer convenience deteriorates significantly

Engineering Contradiction:
ImprovesecurityVSAvoidcustomer convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements a security measure that captures timing information passively during normal password input without requiring additional user actions. The system records the natural typing rhythm and uses this timing pattern as part of the verification process, providing enhanced security through partial action (capturing only the timing aspect of existing user behavior) rather than requiring complete additional authentication steps

Inventive Principle:
Principle #16Partial or excessive action

3Reliability

If timing verification is implemented, then security against password guessing is significantly improved, but system complexity increases

Engineering Contradiction:
Improvesecurity against unauthorized accessVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the authentication verification process into two independent components: password content verification and timing pattern verification. The timing information is captured and stored separately from the password itself, allowing each component to be verified independently. This segmentation simplifies the overall system architecture by dividing the complex authentication process into manageable, modular components

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS10911440B2Timing array as credentials
Publication Date: 2021.02.02 APEX IP HLDG LLC
  • US10911440B2 patent drawing
  • US10911440B2 patent drawing
  • US10911440B2 patent drawing

AI summary

A multi-dimensional approach can be used to verify a password. In addition to requiring the input of the correct password, the timing at which the characters of the password are input can be determined and compared to stored timing values. Even if the correct password is input, authentication can still fail if the characters of the password are not input in accordance with a required timing.