Patents Assigned to Security First Corporation
-
Patent number: 11068609Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths.Type: GrantFiled: October 21, 2019Date of Patent: July 20, 2021Assignee: Security First CorporationInventors: Mark S. O'Hare, Rick L. Orsini, Roger S. Davenport, Steven Winick
-
Publication number: 20160149873Abstract: A method for facilitating an authentication related to an electronic transaction between a first and a second user is provided. Authentication data is received from the first user along with transaction data defining the first user and the electronic transaction to be authenticated. This authentication data is compared to enrollment authentication data associated with the first user in order to verify the identity of the first user. When the user is properly verified, access to at least one private cryptographic key stored on a secure server is available for use in securing the electronic transaction. The particular private cryptographic key need not be released from the secure server. Data indicating the status of the authentication may then be sent to one of either the first or second user.Type: ApplicationFiled: October 5, 2015Publication date: May 26, 2016Applicant: Security First CorporationInventors: Alexander G. Dickinson, Mark S. O'Hare, Mark D. Rorhbach, James G. Zoccoli, Rick L. Orsini, Aaron A. Brooks, Roger S. Davenport, Philip W. Clough, Richard F. Clayton, Gregory H. Stark, Michelle Ferrante, Brian Berger, Robert T. Dobson, JR.
-
Patent number: 9300649Abstract: A system for performing authentication of a first user to a second user includes the ability for the first user to submit multiple instances of authentication data which are evaluated and then used to generate an overall level of confidence in the claimed identity of the first user. The individual authentication instances are evaluated based upon: the degree of match between the user provided by the first user during the authentication and the data provided by the first user during his enrollment; the inherent reliability of the authentication technique being used; the circumstances surrounding the generation of the authentication data by the first user; and the circumstances surrounding the generation of the enrollment data by the first user. This confidence level is compared with a required trust level which is based at least in part upon the requirements of the second user, and the authentication result is based upon this comparison.Type: GrantFiled: April 18, 2014Date of Patent: March 29, 2016Assignee: Security First CorporationInventors: Alexander G. Dickinson, Brian Berger, Robert T. Dobson
-
Patent number: 9189777Abstract: A method for facilitating an authentication related to an electronic transaction between a first and a second user is provided. Authentication data is received from the first user along with transaction data defining the first user and the electronic transaction to be authenticated. This authentication data is compared to enrollment authentication data associated with the first user in order to verify the identity of the first user. When the user is properly verified, access to at least one private cryptographic key stored on a secure server is available for use in securing the electronic transaction. The particular private cryptographic key need not be released from the secure server. Data indicating the status of the authentication may then be sent to one of either the first or second user.Type: GrantFiled: September 20, 2000Date of Patent: November 17, 2015Assignee: Security First CorporationInventors: Alexander G. Dickinson, Mark S. Ohare, Mark D. Rohrbach, James G. Zoccoli, Rick L. Orsini, Aaron A. Brooks, Roger S. Davenport, Philip W. Clough, Richard F. Clayton, Gregory H. Stark, Michelle Ferrante, Brian Berger, Robert T. Dobson, Jr.
-
Publication number: 20140317414Abstract: A system for performing authentication of a first user to a second user includes the ability for the first user to submit multiple instances of authentication data which are evaluated and then used to generate an overall level of confidence in the claimed identity of the first user. The individual authentication instances are evaluated based upon: the degree of match between the user provided by the first user during the authentication and the data provided by the first user during his enrollment; the inherent reliability of the authentication technique being used; the circumstances surrounding the generation of the authentication data by the first user; and the circumstances surrounding the generation of the enrollment data by the first user. This confidence level is compared with a required trust level which is based at least in part upon the requirements of the second user, and the authentication result is based upon this comparison.Type: ApplicationFiled: April 18, 2014Publication date: October 23, 2014Applicant: Security First CorporationInventors: Alexander G. Dickinson, Brian Berger, Robert T. Dobson
-
Patent number: 8726033Abstract: A system for performing authentication of a first user to a second user includes the ability for the first user to submit multiple instances of authentication data which are evaluated and then used to generate an overall level of confidence in the claimed identity of the first user. The individual authentication instances are evaluated based upon: the degree of match between the user provided by the first user during the authentication and the data provided by the first user during his enrollment; the inherent reliability of the authentication technique being used; the circumstances surrounding the generation of the authentication data by the first user; and the circumstances surrounding the generation of the enrollment data by the first user.Type: GrantFiled: July 2, 2012Date of Patent: May 13, 2014Assignee: Security First CorporationInventors: Alexander G Dickinson, Brian Berger, Robert T Dobson
-
Publication number: 20130064364Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths.Type: ApplicationFiled: November 5, 2012Publication date: March 14, 2013Applicant: Security First CorporationInventor: Security First Corporation
-
Publication number: 20130067234Abstract: A system for performing authentication of a first user to a second user includes the ability for the first user to submit multiple instances of authentication data which are evaluated and then used to generate an overall level of confidence in the claimed identity of the first user. The individual authentication instances are evaluated based upon: the degree of match between the user provided by the first user during the authentication and the data provided by the first user during his enrollment; the inherent reliability of the authentication technique being used; the circumstances surrounding the generation of the authentication data by the first user; and the circumstances surrounding the generation of the enrollment data by the first user.Type: ApplicationFiled: July 2, 2012Publication date: March 14, 2013Applicant: SECURITY FIRST CORPORATIONInventors: Alexander G. Dickinson, Brian Berger, Robert T. Dobson, JR.
-
Patent number: 8320560Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths.Type: GrantFiled: June 29, 2011Date of Patent: November 27, 2012Assignee: Security First CorporationInventors: Rick L. Orsini, Mark S. O'Hare, Roger Davenport, Steven Winick
-
Patent number: 8214650Abstract: A system for performing authentication of a first user to a second user includes the ability for the first user to submit multiple instances of authentication data which are evaluated and then used to generate an overall level of confidence in the claimed identity of the first user. The individual authentication instances are evaluated based upon: the degree of match between the user provided by the first user during the authentication and the data provided by the first user during his enrollment; the inherent reliability of the authentication technique being used; the circumstances surrounding the generation of the authentication data by the first user; and the circumstances surrounding the generation of the enrollment data by the first user. This confidence level is compared with a required trust level which is based at least in part upon the requirements of the second user, and the authentication result is based upon this comparison.Type: GrantFiled: September 9, 2010Date of Patent: July 3, 2012Assignee: Security First CorporationInventors: Alexander G. Dickinson, Brian Berger, Robert T. Dobson, Jr.
-
Publication number: 20110258439Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths.Type: ApplicationFiled: June 29, 2011Publication date: October 20, 2011Applicant: Security First CorporationInventors: Rick Orsini, Mark O'Hare, Roger Davenport, Steven Winick
-
Patent number: 8009830Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths.Type: GrantFiled: November 20, 2006Date of Patent: August 30, 2011Assignee: Security First CorporationInventors: Rick L. Orsini, Mark S. O'Hare, Roger Davenport, Steven Winick
-
Publication number: 20110202763Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths.Type: ApplicationFiled: February 10, 2011Publication date: August 18, 2011Applicant: Security First CorporationInventors: Don Martin, Rick L. Orsini, Mark S. O'Hare
-
Publication number: 20110179271Abstract: The present invention provides a method and system for securing sensitive data from unauthorized access or use. The method and system of the present invention is useful in a wide variety of settings, including commercial settings generally available to the public which may be extremely large or small with respect to the number of users. The method and system of the present invention is also useful in a more private setting, such as with a corporation or governmental agency, as well as between corporation, governmental agencies or any other entity.Type: ApplicationFiled: February 10, 2011Publication date: July 21, 2011Applicant: Security First CorporationInventors: Rick L. Orsini, John VanZandt, Mark S. O'Hare, Roger S. Davenport
-
Publication number: 20110179287Abstract: The present invention provides a method and system for securing sensitive data from unauthorized access or use. The method and system of the present invention is useful in a wide variety of settings, including commercial settings generally available to the public which may be extremely large or small with respect to the number of users. The method and system of the present invention is also useful in a more private setting, such as with a corporation or governmental agency, as well as between corporation, governmental agencies or any other entity.Type: ApplicationFiled: February 10, 2011Publication date: July 21, 2011Applicant: Security First CorporationInventors: Rick L. Orsini, John VanZandt, Mark S. O'Hare, Roger S. Davenport
-
Patent number: 7802104Abstract: A system for performing authentication of a first user to a second user includes the ability for the first user to submit multiple instances of authentication data which are evaluated and then used to generate an overall level of confidence in the claimed identity of the first user. The individual authentication instances are evaluated based upon: the degree of match between the user provided by the first user during the authentication and the data provided by the first user during his enrollment; the inherent reliability of the authentication technique being used; the circumstances surrounding the generation of the authentication data by the first user; and the circumstances surrounding the generation of the enrollment data by the first user. This confidence level is compared with a required trust level which is based at least in part upon the requirements of the second user, and the authentication result is based upon this comparison.Type: GrantFiled: August 16, 2007Date of Patent: September 21, 2010Assignee: Security First CorporationInventors: Alexander G. Dickinson, Brian Berger, Robert T. Dobson, Jr.
-
Publication number: 20090254750Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser may split or share a data set into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting an original data set into portions of data that may be communicated using one or more communications paths. Secure workgroup communication is supported through the secure distribution and management of a workgroup key for use with the secure data parser.Type: ApplicationFiled: February 23, 2009Publication date: October 8, 2009Applicant: Security First CorporationInventors: Stephen C. Bono, Matthew D. Green, Gabriel D. Landau, Rick L. Orsini, Mark S. O'Hare, Roger Davenport
-
Patent number: 7577621Abstract: The invention is a cryptographic server providing interoperability over multiple algorithms, keys, standards, certificate types and issuers, protocols, and the like. Another aspect of the invention is to provide a secure server, or trust engine, having server-centric keys, or in other words, storing cryptographic keys on a server. The server-centric storage of keys provides for user-independent security, portability, availability, and straightforwardness, along with a wide variety of implementation possibilities.Type: GrantFiled: December 20, 2004Date of Patent: August 18, 2009Assignee: Security First CorporationInventors: Alexander G. Dickinson, Mark D. Rohrbach, Richard F. Clayton, Gregory H. Stark, Michelle Ferrante
-
Publication number: 20090177894Abstract: A secure data parser is provided that may be integrated into any suitable system for securely storing and communicating data. The secure data parser parses data and then splits the data into multiple portions that are stored or communicated distinctly. Encryption of the original data, the portions of data, or both may be employed for additional security. The secure data parser may be used to protect data in motion by splitting original data into portions of data, that may be communicated using multiple communications paths. A keyed information dispersal algorithm (keyed IDA) may also be used. The key for the keyed IDA may additionally be protected by an external workgroup key, resulting in a multi-factor secret sharing scheme.Type: ApplicationFiled: January 7, 2009Publication date: July 9, 2009Applicant: Security First CorporationInventors: Rick L. Orsini, Mark S. O'Hare, Mihir Bellare, Phillip Rogaway
-
Publication number: 20090097661Abstract: A common interface for managing cryptographic keys is provided. A request to manage a cryptographic key may be received in a first interface format, translated to a common interface format, and then executed remotely from the first interface. Return arguments may then be translated from the common interface format to a format compatible with the first interface and communicated securely to the first interface. The cryptographic keys may be used in connection with a secure data parser that secures data by randomly distributing data within a data set into two or more shares.Type: ApplicationFiled: September 12, 2008Publication date: April 16, 2009Applicant: Security First CorporationInventors: Rick L. Orsini, Mark S. O'Hare, Roger Davenport