UWB Transaction Privacy via Segmented Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
RF communication devices using UWB technology face challenges in protecting user privacy due to their longer communication range, making it easier for attackers to intercept transactions, whereas traditional RFID systems offer better privacy protection but with limited usability.
Innovation Solution
A method and system that utilize a UWB network with multiple anchors to securely wake up a mobile device, verify the network's genuineness, generate a session key for secure communication, track the device's location within a predetermined area, and commit transactions only when the device enters a designated trigger area, ensuring user anonymity until a transaction is initiated.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If UWB technology is used to extend communication range for seamless transactions, then usability convenience is improved, but user privacy protection deteriorates due to easier interception by attackers
Solution Approach 1:
The patent segments the communication process into distinct phases: initial network discovery, authentication, location tracking, and transaction execution. Each phase uses different levels of information disclosure, with sensitive data only revealed during the final authenticated transaction phase, thereby maintaining privacy during navigation while enabling seamless operation.
Solution Approach 2:
The patent introduces an intermediary authentication mechanism that acts as a trusted mediator between the mobile device and the network. This intermediary verifies device identity and network legitimacy before allowing full communication, preventing direct exposure of sensitive information to potential attackers while maintaining seamless transaction capability.
2Productivity
If location tracking is performed continuously to enable seamless transactions, then transaction readiness is improved, but information security deteriorates due to potential exposure of sensitive data
Solution Approach 1:
The patent performs preliminary actions including network authentication, session key establishment, and device verification before location tracking and transaction execution. These preliminary security measures ensure that even though location is tracked continuously, sensitive information remains protected until the authenticated transaction moment.
Solution Approach 2:
The patent implements dynamic information disclosure where the level of data exposure changes based on the transaction phase. During navigation and location tracking, minimal information is revealed, while full information exchange occurs only after successful authentication and during the actual transaction, thus maintaining security while enabling productivity.
Applied Scientific Principles
This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.
Function Achieved in This Case
This approach effectively protects user privacy by ensuring only location tracking occurs without revealing sensitive information until a transaction is committed, maintaining anonymity unless the user enters a trigger area, thereby enhancing security and usability.
Implementation Method 1
tracking the location of the mobile device within the predetermined area based on secure communication between the mobile device and one or more anchors within the UWB network
Data Source
AI summary
There is described a system and method of committing a transaction within a UWB network comprising a plurality of anchors, the UWB network covering a predetermined area having at least one trigger area, the method comprising waking up a mobile device upon entering the predetermined area, receiving initial network data at the mobile device, verifying that the UWB network is genuine based on the initial network data, initiating communication between the mobile device and an anchor, including partial mutual authentication, generating a session key for secure communication between the mobile device and the UWB network, tracking the location of the mobile device within the predetermined area based on secure communication between the mobile device and one or more anchors within the UWB network using the session key, and committing the transaction, if the location of the mobile device is within the at least one trigger area.

