IP Library Granted Patent US 12701114
Granted Patent B2
US 12701114 · App. 18/825,248 · Granted Aug 4, 2026

Continuous user verification and service access control method through facial authentication

Inventors: You Serk Han (Gimpo-si, KR); Sang Hun Seok (Goyang-si, KR)
Assignee: AIRCUVE INC.
H04L63/0861
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12701114
App. No.
18/825,248
Granted
Aug 4, 2026
Kind
B2
Abstract

Disclosed is an operation method of a service access control system. The operation method includes, when an access request of a registered user, which includes access right information, is received through a first user terminal, providing, by a service server, a service to the first user terminal, controlling, by the service server, the first user terminal to capture facial images of the registered user at regular intervals regardless of user input while the service is being provided, obtaining, by an authentication server, the facial images captured by the first user terminal at the regular intervals, performing, by the authentication server, facial authentication at the regular intervals on the basis of the facial images, and when the facial authentication fails, deactivating, by the service server, an access session of the first user terminal to the service and interrupting providing the service.

Claims (30)

1 . An operation method of a service access control system, comprising:

when an access request of a registered user, which includes access right information, is received through a first user terminal, providing, by a service server, a service to the first user terminal;

controlling, by the service server, the first user terminal to capture facial images of the registered user at regular intervals regardless of user input while the service is being provided;

obtaining, by an authentication server, the facial images captured by the first user terminal at the regular intervals;

performing, by the authentication server, facial authentication at the regular intervals on the basis of the facial images; and

when the facial authentication fails, deactivating, by the service server, an access session of the first user terminal to the service and interrupting providing the service;

when re-access is requested from the first user terminal in a state in which the access session of the first user terminal is deactivated due to the failure of the facial authentication, requesting, by the service server, reinforced authentication from the authentication server; and

performing, by the authentication server, the reinforced authentication on a user of the first user terminal;

wherein, in the performing of the reinforced authentication, the authentication server is configured to:

transmit an image including code information to the first user terminal; and when another second user terminal that has been previously registered for a reinforced authentication procedure of the user of the first user terminal accesses a web page matching the code information, perform the facial authentication through the second user terminal.

2 . The operation method of claim 1 , further comprising:

upon success of the reinforced authentication, resuming, by the service server, the provision of the service to the first user terminal.

3 . The operation method of claim 2 , wherein the resuming of the provision of the service includes:

upon success of the reinforced authentication, reissuing, by the authentication server, access right information of the registered user that has expired due to the failure of the facial authentication, through the first user terminal;

when an access request of the registered user, which includes the reissued access right information, is received through the first user terminal, identifying, by the service server, whether the reissued access right information is valid through the authentication server; and

when the reissued access right information is valid, providing, by the service server, the service to the first user terminal.

4 . The operation method of claim 2 , wherein, in the performing of the reinforced authentication, a request for performing of the reinforced authentication for the first user terminal is transmitted to an authentication portal connected to a separate authentication channel.

5 . The operation method of claim 1 , further comprising:

when access to the service is requested from a third user terminal of the unregistered user who has not been issued the access right information, requesting, by the service server, registration of authentication information for facial authentication and reinforced authentication of the unregistered user from the authentication server;

registering, by the authentication server, a facial image received from the third user terminal for facial authentication of the unregistered user;

setting, by the authentication server, the third user terminal or another fourth user terminal of the unregistered user as a target terminal of reinforced authentication according to a reinforced authentication procedure selected according to a user input received through the third user terminal;

performing identity authentication related to the reinforced authentication through the target terminal and registering the reinforced authentication procedure of the target terminal; and

when the reinforced authentication procedure is registered, issuing, by the authentication server, access right information to the third user terminal of the unregistered user and registering the unregistered user.

6 . The operation method of claim 5 , wherein, in the registering of the reinforced authentication procedure of the target terminal, when the third user terminal is set as the target terminal matching the reinforced authentication procedure of the unregistered user, the authentication server provides information about a web page for performing the reinforced authentication to the third user terminal through an authentication portal connected to a separate authentication channel.

7 . The operation method of claim 5 , wherein, in the registering of the reinforced authentication procedure of the target terminal, when the fourth user terminal is set as a target terminal matching the reinforced authentication procedure of the unregistered user, at least one web page for identification related to the reinforced authentication is provided to the fourth user terminal, and

when the identity authentication of the fourth user terminal is performed through the web page, the authentication server registers the reinforced authentication procedure of the unregistered user for the fourth user terminal.

8 . The operation method of claim 5 , further comprising:

when a first access request for the service is received from the third user terminal after the access right information is issued, requesting, by the service server, reinforced authentication for the user terminal from the authentication server;

performing, by the authentication server, the reinforced authentication for the registered user of the third user terminal; and

upon success of the reinforced authentication, providing, by the service server, the service to the third user terminal.