USB HID Authentication Device for Multi-System Password Injection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authentication methods, such as passwords, biometric devices, and multi-factor authentication, face challenges due to vulnerabilities, high implementation costs, and lack of functionality across all system levels, particularly in managing secure access across multiple systems and user IDs without proprietary software.

Innovation Solution

A USB HID device with an integrated authentication program that automatically injects passwords into login prompts, utilizing a credential storage matrix and optional biometric authentication, operates across all systems without requiring proprietary software, and supports multi-factor authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional password authentication is used, then implementation cost is low and compatibility is high, but security reliability is weak and vulnerability to attacks is high

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a security device as an intermediary component between the user and the authentication system. This device intercepts login prompts, manages password injection automatically, and can implement multi-factor authentication, thereby enhancing security without requiring changes to the underlying operating system or applications.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authentication system is segmented into distinct functional components: a security device that handles password management and injection, the operating system that provides the login interface, and applications that require authentication. This segmentation allows the security device to operate independently and enhance security without increasing the complexity of the entire system.

Inventive Principle:
Principle #1Segmentation

2Reliability

If biometric devices or smart cards are used, then authentication security is improved, but implementation cost increases and proprietary software requirements increase complexity

Engineering Contradiction:
Improveauthentication securityVSAvoidimplementation cost
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The security device is designed to be universal and compatible with multiple operating systems and applications without requiring proprietary software. It can manage passwords for various user accounts across different systems, providing multi-functional authentication enhancement that works across diverse platforms.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The security device automatically performs password injection and management without requiring user intervention or additional software installation. It autonomously intercepts login prompts, retrieves appropriate credentials, and completes the authentication process, eliminating the need for complex deployment procedures.

Inventive Principle:
Principle #25Self-service

3Reliability

If existing security products are used, then application-level security is improved, but operating system level functionality is lacking

Engineering Contradiction:
Improveapplication securityVSAvoidoperating system level functionality
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The security device operates at the operating system level by intercepting login prompts at the system interface, rather than only at the application level. This dimensional shift allows it to provide authentication enhancement across all applications that use the operating system's login mechanism, not just specific applications.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Data Source

PatentUS11089013B2Enhanced password authentication across multiple systems and user identifications
Publication Date: 2021.08.10 KYNDRYL INC
  • US11089013B2 patent drawing
  • US11089013B2 patent drawing
  • US11089013B2 patent drawing

AI summary

A method, computer system, and a computer program product for enhanced user authentication is provided. The present invention may include obtaining, from a user device, a user name associated with the user device. The present invention may also include obtaining, from the user device, a system name associated with the user device. The present invention may then include identifying, in a database of a security device in communication with the user device, a password associated with the obtained user name and the obtained system name. The present invention may then include, in response to a login prompt of the user device, automatically injecting the identified password from the security device in communication with the user device into the login prompt.