IP Library Granted Patent US 12,554,821
Granted Patent B1
US 12,554,821 · App. 19/306,182 · Granted Feb 17, 2026

Authentication with dynamic user identification

Inventor: Ashoo Dhingra (Naperville, IL)
G06F21/32G06F21/46
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,554,821
App. No.
19/306,182
Granted
Feb 17, 2026
Kind
B1
Abstract

An embodiment includes receiving, from a device, at an authentication service, a dynamic user identifier having a one-time password in an authentication message constructed to carry the dynamic user identifier in place of a pre-determined user identifier of a user. The embodiment locates in a profiles database, using a customized search query with a code based on the dynamic user identifier, a user profile. The embodiment receives at the authentication service, a secondary identification data of the user including a biometric information of the user. The embodiment validates the biometric information using the user profile and enables, when the validating is successful, the device to perform an operation. The enabling is not based on the authentication service validating an entirely static user identifier and is not based on the authentication service validating a manually typed password.

Claims (41)

1 . A computer-implemented method, comprising:

receiving, from a device, at an authentication service, a dynamic identifier comprising a static portion and a dynamic portion, wherein a validity of the dynamic portion is time-limited;

locating a profile in a profiles database, using a customized search query with a code based on the static portion of the dynamic user identifier and excluding the dynamic portion; and

enabling, responsive to a validating of a secondary identification data being successful and a validating of the dynamic portion being successful, the device to perform an operation for the user, wherein the enabling is not based on the authentication service validating an entirely static user identifier and is not based on the authentication service validating a manually typed password.

2 . The computer-implemented method of claim 1 , further comprising:

authenticating the user, at the device, using a device-level authentication credential, wherein an authentication message is received responsive to a successful device-level authentication.

3 . The computer-implemented method of claim 1 , further comprising:

authenticating the user, at the device, using an application-level authentication credential, wherein an authentication message is received responsive to a successful application-level authentication.

4 . The computer-implemented method of claim 3 , wherein the application-level authentication is performed responsive to a device-level authentication being successful.

5 . The computer-implemented method of claim 1 , further comprising:

generating the dynamic portion, by sending an instruction to a one-time password generator application, responsive to a user input at a user interface of the device.

6 . The computer-implemented method of claim 5 , wherein the device is a user device associated with the user, and the one-time password generator application is accessible from within an other application.

7 . The computer-implemented method of claim 6 , wherein the other application is a service provider application and permits access to the one-time password generator application subsequent to a successful application-level authentication.

8 . The computer-implemented method of claim 1 , wherein the device is a terminal device of a service provider, and wherein the terminal device is configured with an interface to receive an input from the user, the input containing the dynamic portion.

9 . The computer-implemented method of claim 8 , wherein the dynamic portion is encoded within a scannable encoded image, wherein the interface comprises a scanner, and wherein the input comprises presenting the scannable encoded image at the scanner.

10 . The computer-implemented method of claim 1 , wherein the secondary identification data is transmitted responsive to a successful validation of the dynamic portion, and wherein the secondary identification data is captured after a transmitting of the dynamic portion.

11 . The computer-implemented method of claim 1 , wherein the receiving the dynamic portion and the receiving the secondary identification data occurs in a single received message, the single received message comprising an authentication message.

12 . The computer-implemented method of claim 1 , further comprising:

locating in the user profile a previous version of a biometric information captured at a previous session with a service associated with the authentication service, wherein the validating the secondary identification data comprises using the previous version of the biometric information to validate a biometric information contained in the secondary identification data.

13 . The computer-implemented method of claim 12 , further comprising:

replacing the previous version of the biometric information with the biometric information contained in the secondary identification data.

14 . The computer-implemented method of claim 1 , further comprising:

locating in a user profile marker data corresponding to a version of a biometric information contained in the secondary identification data, wherein the validating the secondary identification data comprises using the user profile marker data to validate the biometric information contained in the secondary identification data.

15 . The computer-implemented method of claim 1 , further comprising:

receiving at the authentication service, the secondary identification data of the user, wherein the secondary identification data comprises a biometric information captured from the user.

16 . The computer-implemented method of claim 1 , further comprising:

capturing a biometric information for including in the secondary identification data using a biometric sensor coupled with the device, wherein the biometric information comprises a facial scan of the user;

performing a liveliness check on the facial scan; and

rejecting the facial scan responsive to the facial scan corresponding to a facsimile of the user.

17 . A computer program product comprising one or more non-transitory computer readable storage media, and program instructions collectively stored on the one or more non-transitory computer readable storage media, the program instructions being executable by a set of one or more processors to cause the set of one or more processors to perform operations comprising:

receiving, from a device, at an authentication service, a dynamic identifier comprising a static portion and a dynamic portion, wherein a validity of the dynamic portion is time-limited;

locating a profile in a profiles database, using a customized search query with a code based on the static portion of the dynamic user identifier and excluding the dynamic portion; and

enabling, responsive to a validating of a secondary identification data being successful and a validating of the dynamic portion being successful, the device to perform an operation for the user, wherein the enabling is not based on the authentication service validating an entirely static user identifier and is not based on the authentication service validating a manually typed password.

18 . The computer program product of claim 17 , wherein the stored program instructions are stored in a computer readable storage device in a data processing system, and wherein the stored program instructions are transferred over a network from a remote data processing system.

19 . The computer program product of claim 17 , wherein the stored program instructions are stored in a computer readable storage device in a server data processing system, and wherein the stored program instructions are downloaded in response to a request over a network to a remote data processing system for use in a computer readable storage device associated with the remote data processing system, further comprising:

program instructions to meter use of the program instructions associated with the request; and

program instructions to generate an invoice based on the metered use.

20 . A computer system comprising a set of one or more processors and one or more non-transitory computer readable storage media, and program instructions collectively stored on the one or more non-transitory computer readable storage media, the program instructions being executable by the set of one or more processors to cause the one or more processors to perform operations comprising:

receiving, from a device, at an authentication service, a dynamic identifier comprising a static portion and a dynamic portion, wherein a validity of the dynamic portion is time-limited;

locating a profile in a profiles database, using a customized search query with a code based on the static portion of the dynamic user identifier and excluding the dynamic portion; and

enabling, responsive to a validating of a secondary identification data being successful and a validating of the dynamic portion being successful, the device to perform an operation for the user, wherein the enabling is not based on the authentication service validating an entirely static user identifier and is not based on the authentication service validating a manually typed password.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 21, 2025
From: DHINGRA, ASHOO
To: U.S. BANK NATIONAL ASSOCIATION
Reel/Frame 072083/0142 →
Continuity (2)
Continuation 19247384 · Jun 24, 2025
Continuation 19097965 · Apr 2, 2025
References Cited (19)
US 9100392B2 · Hubner et al. · 2015 [cited by applicant]
US 9953149B2 · Tussy · 2018 [cited by applicant]
US 10574650B2 · Wallace et al. · 2020 [cited by applicant]
US 10685250B2 · Brown · 2020 [cited by applicant]
US 10885410B1 · Rule et al. · 2021 [cited by applicant]
US 12020512B2 · Vemulapalli et al. · 2024 [cited by applicant]
US 12039024B2 · Wasnik et al. · 2024 [cited by applicant]
US 12361109B1 · Dhingra · 2025 [cited by examiner]
US 12430415B1 · Dhingra · 2025 [cited by examiner]
US 20200328896A1 · Pellizzer · 2020 [cited by examiner]
US 20220215087A1 · Bansal · 2022 [cited by examiner]
US 20220294778A1 · Li et al. · 2022 [cited by applicant]
US 20240291666A1 · Osborn · 2024 [cited by examiner]
Jayandhi et al. Secure Pin Authentication as a Service for ATM, International Journal of Advanced Research in Electrical, Electronics and Instrumentation Engineering, vol. 7, Issue 3, Mar. 2018, https://www.ijareeie.com… [cited by applicant]
Velayuthapandian et al., End-to-End CNN conceptual model for a biometric authentication mechanism for ATM machines, Discover Electronics 1, No. 1: 26, Nov. 21, 2024, https://link.springer.com/content/pdf/10.1007/s44291-… [cited by applicant]
Boraiah, Secure Cardless Transaction Android Application using ECC algorithm and QR code, National College of Ireland, 2019, https://norma.ncirl.ie/4170/1/sumanaponnasamudraboraiah.pdf. [cited by applicant]
Omolara et al., Fingereye: improvising security and optimizing ATM transaction time based on iris-scan authentication, International Journal of Electrical & Computer Engineering (2088-8708) 9, No. 3, Jun. 2019, t: https… [cited by applicant]
Omolara et al., Fingereye: improvising security and optimizing ATM transaction time based on iris-scan authentication, International Journal of Electrical & Computer Engineering (2088-8708) 9, No. 3, Jun. 2019, https://… [cited by applicant]
Muley et al., Prospective solution to bank card system using fingerprint, 2nd International Conference on Inventive Systems and Control (ICISC), pp. 898-902, Jan. 19, 2018, https://www.researchgate.net/profile/Abhinav-M… [cited by applicant]
Cited By (1)
US 12,651,051