Variable Biometric Authentication System for Cloud Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing biometric authentication systems are vulnerable to security breaches as they rely on permanent biometric information, which can be leaked and misused, and lack a robust method for enhancing security, especially in cloud services and FinTech applications.
Innovation Solution
A variable biometric information-based complex authentication system that dynamically adjusts security levels by combining and managing variable biometric data from multiple users, using mobile terminals, a variable biometric information management server, and an agent server to verify login requests and set different security levels for IDs, thereby minimizing damage from biometric information leaks.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If permanent biometric information is used for authentication, then identification accuracy is improved, but security vulnerability increases due to risk of leakage and illegal use
Solution Approach 1:
The patent transforms static, permanent biometric information into dynamic, variable biometric information that changes over time. Instead of using fixed identifiers like fingerprints or iris patterns, the system employs biometric data that varies with time, environment, and physiological states (e.g., heart rate, body temperature, gait patterns). This dynamic approach maintains identification accuracy while fundamentally reducing security vulnerability, as leaked variable biometric data becomes obsolete over time and cannot be permanently misused.
Solution Approach 2:
The system changes the parameters of biometric information from permanent characteristics to variable characteristics. By selecting biometric parameters that naturally fluctuate (temporal variations in physiological signals, behavioral patterns, environmental contextual data), the patent achieves both accurate identification and enhanced security. The variable nature of these parameters ensures that even if compromised, the authentication mechanism remains secure as the biometric data continuously evolves.
2Reliability
If complex authentication procedures are implemented to enhance security, then security level is improved, but ease of operation deteriorates
Solution Approach 1:
The system employs self-service mechanisms where the authentication process automatically collects and verifies variable biometric information without requiring active user participation. The mobile terminal continuously monitors and captures biometric data (such as heart rate, body temperature, gait) in the background, and the server automatically performs verification by comparing against stored variable biometric profiles. This eliminates complex manual authentication steps while maintaining high security levels, as the variable biometric data is inherently difficult to replicate or forge.
3Reliability
If variable biometric information from multiple users is combined for solidarity authentication, then security is enhanced, but device complexity increases
Solution Approach 1:
The patent implements a universal server architecture that handles multiple authentication functions through a single integrated system. The server performs variable biometric information collection, storage, verification, and comparison operations for multiple users and multiple authentication scenarios. This multi-functional design consolidates what would otherwise require separate systems for each user or authentication type, thereby enhancing security through combined verification while controlling overall system complexity through centralized management.
Data Source
AI summary
A complex authentication system that uses personal variable biometric information which changes according to times and environments, and a complex authentication method using the same are disclosed. The variable biometric information-based complex authentication system includes: a mobile terminal configured to collect variable biometric information; a variable biometric information management server configured to store the variable biometric information received from the mobile terminal; and an agent server configured to, when the mobile terminal requests a login command regarding the ID, verify validity of the login command regarding the ID based on the variable biometric information. Accordingly, even if biometric information used in an authentication procedure is leaked, a damage resulting therefrom can be inhibited, and security of the authentication procedure can be enhanced by combining different types of variable biometric information or by combining variable biometric information of a plurality of users.


