Credential Patents (Class 726/5)
  • Patent number: 11068767
    Abstract: A patterned smart card module includes a chip module and a patterned ink layer coated on a conductive surface of the chip module. The IC chip of the chip module stores chip data therein, and the chip data includes holder-related data. The patterned ink layer has a pattern relating to the holder-related data.
    Type: Grant
    Filed: November 8, 2019
    Date of Patent: July 20, 2021
    Assignee: MK SMART JSC
    Inventor: Khang Trong Nguyen
  • Patent number: 11070554
    Abstract: A computer system determines that authentication information has been requested from a user device by a requesting device. In response to determining that authentication information has been requested by the requesting device, the computer system identifies information corresponding to the requesting device and determines if one or more risk indications correspond to the identified information corresponding to the requesting device. In response to determining that one or more risk indications correspond to the identified information corresponding to the requesting device, the computer system implements one or more security measures.
    Type: Grant
    Filed: April 30, 2018
    Date of Patent: July 20, 2021
    Assignee: PayPal, Inc.
    Inventors: Nathan Robert Pratt, Bradley Wardman, Meethil Vijay Yadav, Nicole Harris
  • Patent number: 11070533
    Abstract: A method, system, and computer-usable medium are disclosed for: (i) determining if a server response from a server received at a security device and intended for a client includes original encryption key information for encrypting identifying information associated with the server; (ii) if the server response includes original encryption key information for encrypting identifying information associated with the server, determining if a network policy provides for decryption of identifying information associated with the server; and (iii) if the network policy provides for decryption of identifying information associated with the server, replacing the original encryption key information with modified encryption key information associated with the security device and communicating the server response to the client with the modified encryption key information associated with the security device.
    Type: Grant
    Filed: October 10, 2019
    Date of Patent: July 20, 2021
    Assignee: Forcepoint LLC
    Inventors: Olli-Pekka Niemi, Andrew Mortensen, Valtteri Rahkonen
  • Patent number: 11063924
    Abstract: The present invention relates to a communication system and method, an information processing terminal and method, and an information processing device and method which enable simple and secure restricted access. When a PDA 11 is brought close, a reader 2 of a personal computer 1 reads a device ID form an IC tag 12. The personal computer 1 registers device IDs on a connection permission list, and permits only devices registered on the list to connect. When being instructed to perform accessing, the PDA 11 controls a communication unit to access the personal computer 1 and to transmits its device ID. The personal computer 1 determines whether or not the transmitted ID is registered on the connection permission list, and permits the connection when determining that the ID is registered. The present invention can be applied to various information processing devices such as a personal computer and a PDA.
    Type: Grant
    Filed: August 28, 2019
    Date of Patent: July 13, 2021
    Assignee: Sony Corporation
    Inventors: Yuji Ayatsuka, Haruo Oba
  • Patent number: 11063942
    Abstract: A system increases security for personal devices. An authenticating authority receives an authentication request from a personal device. The authenticating authority obtains a current location of the personal device from a location server, where the location server transmits the current location to the authenticating authority. The location server receives location information associated with the personal device, where the location information is transmitted to the location server by a location updating daemon running on the personal device. The authenticating authority compares the current location received from the location server to a zone associated with the personal device to determine processing of the authentication request. The zone is retained by the authenticating authority.
    Type: Grant
    Filed: March 30, 2017
    Date of Patent: July 13, 2021
    Assignee: International Business Machines Corporation
    Inventors: Joseph Celi, Jr., Miriam Margarita Celi
  • Patent number: 11063895
    Abstract: A system and method for creating custom music/video messages to facilitate and/or improve social interaction. The music/video messages may include at least portions of: music, video, pictures, slideshows, and/or text. Custom music/video messages may be created by a user in communication with a music/video provider and a music/video messaging system. The music/video messaging system and/or a distribution network send the music/video messages to one or more intended recipient(s). The custom music/video messages are representative of feelings or emotions to be communicated by the user to the one or more recipient(s).
    Type: Grant
    Filed: November 9, 2017
    Date of Patent: July 13, 2021
    Inventors: Nader Asghari Kamrani, Kamran Asghari Kamrani
  • Patent number: 11062320
    Abstract: A device may receive, from a user device, transaction data, the transaction data including: a user account identifier indicating a user account associated with the user device, and data indicating a particular merchant associated with a transaction. The device may provide the data indicating the particular merchant to a server device and receive, from the server device, a merchant identifier for the particular merchant associated with the transaction. The device may then identify, based on the merchant identifier and the user account identifier, a user account control, the user account control specifying a restriction for transactions associated with the user account and the particular merchant. Based on the transaction data, the device may determine whether the user account control is satisfied and perform an action based on a result of the determination.
    Type: Grant
    Filed: November 3, 2017
    Date of Patent: July 13, 2021
    Assignee: Capital One Services, LLC
    Inventors: Dwij Trivedi, Jeffrey M. Samitt, Dalton L. M. Lebarbenchon, Pavel Fort, Christopher J Stout
  • Patent number: 11062015
    Abstract: An authentication management method executed in a plurality of apparatuses cooperating each other communicably connecting, to allow reception of instruction by a user, a first information processing apparatus which performs authentication that the user is a predetermined person and a second information processing apparatus which is worn by the user, in a case where the user wearing the second information processing apparatus has been identified, by the second information processing apparatus, to be the predetermined person, identifying, by the second information processing apparatus, whether or not the first information processing apparatus and the second information processing apparatus are associated with each other as a plurality of apparatuses which perform cooperative processing.
    Type: Grant
    Filed: August 1, 2019
    Date of Patent: July 13, 2021
    Assignee: Canon Kabushiki Kaisha
    Inventor: Kenichiro Nakagawa
  • Patent number: 11057212
    Abstract: Methods and systems for expedited authentication for mobile applications are described herein. A user of a mobile device may authenticate with an enterprise system, and thereby be granted access to enterprise applications and services on the mobile device. The user may then activate an application in a managed partition of the mobile device. The application may determine that the enterprise system supports expedited authentication. The application may request expedited authentication, and the request may be compared to policies for expedited authentication. If the request is permitted, the application may be granted access to an authorization code for expedited authentication. The application may then perform the expedited authentication, and the user may be granted access to the application when the expedited authentication has completed.
    Type: Grant
    Filed: June 13, 2019
    Date of Patent: July 6, 2021
    Assignee: Citrix Systems, Inc.
    Inventor: Pranav Kumar Konduru
  • Patent number: 11057354
    Abstract: The present invention relates to a method and a system that enable a sender to send a message to a recipient in an anonymous way, allowing the recipient to respond to the sender after receiving the message. No data related to the sender and the recipient are retained in the system.
    Type: Grant
    Filed: November 24, 2020
    Date of Patent: July 6, 2021
    Inventor: Rafal Marek Leszczyna
  • Patent number: 11057777
    Abstract: Typically, when a user switches sessions between devices, the user authenticates the sessions by providing user account information, password, and/or pin code input or other credentials. However, when the user is frequently switching sessions between devices, authenticating sessions may result in the user reducing or even stopping switching across mobile devices. Systems and methods according to this disclosure provide automatic session roaming across mobile devices using proximity authentication. Upon detecting an indication to initiate session roaming, the source device automatically roams the session on the source device to a target device based on a proximity of the source device to the target device. The session is handed off from the source device to the target device as an authenticated user session.
    Type: Grant
    Filed: September 11, 2019
    Date of Patent: July 6, 2021
    Assignee: Citrix Systems, Inc.
    Inventors: Daowen Wei, Jian Ding, Hengbo Wang
  • Patent number: 11050860
    Abstract: A method and an apparatus for network address analysis are provided. In the method, unique identification information of a target client device located in a local area network is obtained. Packets transmitted in the local area network are listened, and a packet transmitted between the target client device and a dynamic host configuration protocol (DHCP) server is identified from the listened packets according to the unique identification information. Finally, the identified packet is analyzed to obtain a network address assigned to the target client device by the DHCP server.
    Type: Grant
    Filed: August 27, 2018
    Date of Patent: June 29, 2021
    Assignee: QNAP SYSTEMS, INC.
    Inventor: Nai-Yuan Cheng
  • Patent number: 11042628
    Abstract: Systems and methods for authentication code entry using mobile electronic devices are disclosed. In one embodiment, in an information processing device comprising at least one computer processor, a display, and an input device a method for authentication code entry may include: (1) receiving, at the information processing device, a masking pattern for receiving entry of an authentication code, the masking pattern specifying an order for entering the authentication code; (2) presenting, on the display, a prompt to enter the authentication code in accordance with the masking pattern; (3) receiving, at the input device, a masked authentication code entry where the masked authentication code entry comprises the authentication code entered in accordance with the masking pattern; and (4) storing the masked authentication code entry.
    Type: Grant
    Filed: February 15, 2018
    Date of Patent: June 22, 2021
    Assignee: VeriFone, Inc.
    Inventors: Chris Anthony Madden, Imran A. Hajimusa
  • Patent number: 11038904
    Abstract: A method includes, in response to receiving an email message, detecting one or more artifacts within an email message, wherein each of the artifacts is associated with a payload; for each artifact, generating, a descriptor object representing the artifact that does not include the payload, so that the processor is prevented from accessing the payload via the descriptor object; and at least one payload button based on the payload associated with the artifact for causing the payload to be transmitted to an external system for analysis of the payload; and presenting an artifact dashboard in a graphical user interface (GUI) rendered on a display of the email security system, the artifact dashboard displaying, for each artifact, the descriptor object representing the artifact and the at least one payload button based on the payload associated with the artifact.
    Type: Grant
    Filed: May 8, 2020
    Date of Patent: June 15, 2021
    Assignee: Chicago Mercantile Exchange Inc.
    Inventors: Thomas Anthony Kemp, Metin Carlo DePaolis, William Robert Gemza, Jr., Ryan Jerome Whalen
  • Patent number: 11025608
    Abstract: A method includes establishing an application layer transport layer security (ATLS) connection between a network device and a cloud server by sending, from the network device, TLS records in transport protocol (e.g., HTTP) message bodies to the cloud server, the ATLS connection transiting at least one transport layer security (TLS) proxy device, receiving, from the cloud server via the ATLS connection, an identifier for a certificate authority, establishing a connection with the certificate authority associated with the identifier and, in turn, receiving from the certificate authority credentials to access an application service different from the cloud server and the certificate authority, and connecting to the application service using the credentials received from the certificate authority.
    Type: Grant
    Filed: April 5, 2018
    Date of Patent: June 1, 2021
    Assignee: CISCO TECHNOLOGY, INC.
    Inventors: Owen Brendan Friel, Max Pritikin, Cullen Jennings, Richard Lee Barnes, II
  • Patent number: 11019047
    Abstract: Disclosed are methods and systems for credential protection. In one aspect, a method includes receiving an authentication credential and an authentication domain. A determination is made as to whether the authentication domain is permitted or unpermitted for authentication by the credential. If the domain is unpermitted, a data store is searched to identify a permitted domain for the credential. The credential is compared against credentials information associated with the domain to determine if it matches any of the associated credentials. If a match is found, an event is instantiated for the account.
    Type: Grant
    Filed: May 9, 2019
    Date of Patent: May 25, 2021
    Assignee: Microsoft Technology Licensing, LLC
    Inventors: Michael Icore, Steven John Faehl
  • Patent number: 11019048
    Abstract: A user authentication technique that allows a user to access a protected resource such as an account on a web site or secure files on a computing device such as a smartphone, personal computer, tablet computer, and the like, employs a shared secret that employs a state machine to sequentially transition between a series of states during which the user is requested to enter predefined information that is also a part of the shared secret. That is, the shared secret includes user-specific data that must be provided and the particular sequence or manner in which the user-specific data or credentials are to be provided. The authentication technique may supplement the user of conventional one or two factor authentication techniques requiring, e.g., a password or both a username and password, which are commonly used to gain access to a resource.
    Type: Grant
    Filed: December 11, 2019
    Date of Patent: May 25, 2021
    Assignee: MICROSOFT TECHNOLOGY LICENSING, LLC
    Inventor: David Michael Callaghan
  • Patent number: 11017095
    Abstract: A method for trusted measurement of a cloud computing platform includes: generating, by a third-party management and audit system, an audit report based on a current running indicator, signed by using a digital certificate, of a software and a running security indicator of the software, where the audit report indicates trustworthiness of a cloud computing platform. In this way, a process of trusted measurement of the cloud computing platform is open and transparent, so that authenticity of trusted measurement of the cloud computing platform is improved, thereby increasing a user's trust in the cloud computing platform.
    Type: Grant
    Filed: August 24, 2018
    Date of Patent: May 25, 2021
    Assignee: HUAWEI TECHNOLOGIES CO., LTD.
    Inventors: Sihai Ye, Xun Shi
  • Patent number: 11019051
    Abstract: This specification provides techniques for secure authentication. One example method includes receiving a login request from a computing device, wherein the login request includes a variable apparatus identifier (ID) associated with the computing device; in response to receiving the login request, determining that the variable apparatus ID corresponds to a user account; in response to determining that the variable apparatus ID corresponds to a user account, determining that an update of the variable apparatus ID is requested based on a timestamp included in the variable apparatus ID and a current time; in response to determining that the update of the variable apparatus ID is requested, generating an updated variable apparatus ID associated with the computing device; and transmitting an account login permission instruction and the updated variable apparatus ID to the computing device.
    Type: Grant
    Filed: April 10, 2019
    Date of Patent: May 25, 2021
    Assignee: Advanced New Technologies Co., Ltd.
    Inventor: Chao Sun
  • Patent number: 11019074
    Abstract: Methods and systems are described for managing a user's contact data which use evolving sequential sets of rules where the applicability of each set depends upon adherence or proper application of a prior set. In an embodiment, an initial set of restrictions are generated based on input from a first user, the restrictions relating to contact made by a second user to the first user. These initial restrictions are subsequently modified in response to the second user contacting the first user based on the contact made and a characteristic of the contact. The methods may apply to any form of contact between the first and second users and in an embodiment applies to contact made by the second user to a cellular telephone number belonging to the first user.
    Type: Grant
    Filed: September 26, 2018
    Date of Patent: May 25, 2021
    Assignee: Microsoft Technology Licensing, LLC
    Inventors: Kenton Paul Anthony O'Hara, Michael Anthony Massimi, Matthew Kay, Richard Harper, James William Scott
  • Patent number: 11010066
    Abstract: A guarded storage facility sets up a boundary indicating a range of addresses to be guarded or protected. When a program attempts to access an address in a guarded section defined by the boundary, a guarded storage event occurs. Use of this facility facilitates performance of certain tasks within a computing environment, including storage reclamation.
    Type: Grant
    Filed: June 28, 2019
    Date of Patent: May 18, 2021
    Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
    Inventors: Dan F. Greiner, Christian Jacobi, Marcel Mitran, Volodymyr Paprotski, Anthony Saporito, Timothy J. Slegel
  • Patent number: 11012313
    Abstract: Methods, apparatus, computer program product and computer readable medium are disclosed for trust management in software defined networking. A method comprises: collecting network performance results after a network policy issued by an application is applied; collecting a feedback for the network policy; and calculating a trust value of the application based at least partly on the network performance results and the feedback.
    Type: Grant
    Filed: April 13, 2017
    Date of Patent: May 18, 2021
    Assignee: Nokia Technologies Oy
    Inventors: Zheng Yan, Shanshan Bian
  • Patent number: 11010999
    Abstract: The systems and methods provided herein use a rolling voice identifier in a multi-factor authentication system to avoid the security problems present in prior voice activated control systems. By implementing a rolling voice identifier in an access control platform, users may no longer need to be concerned with being overheard or recorded when providing voice authentication commands to an access control platform because the rolling voice identifier that the user will be prompted to speak will be specific to the particular instance of control of an access control platform. An access control platform is a platform that controls operation of a movable barrier by, for example, controlling the state of a movable barrier using a remote control. An access control platform may cause a movable barrier to become opened, closed, locked, or unlocked to permit or prevent access to a physical space by a physical object.
    Type: Grant
    Filed: April 11, 2019
    Date of Patent: May 18, 2021
    Assignee: The Chamberlain Group, Inc.
    Inventors: Casparus Cate, James J. Fitzgibbon, Martin B. Heckmann, James D. Johnson, David R. Morris, Cory Sorice
  • Patent number: 11003603
    Abstract: Systems and methods for recording and communicating engine data are provided. One example aspect of the present disclosure is directed to a method for communicating engine data. The method includes receiving data. The method includes separating the data into categories. For one or more categories, the method includes creating a file including the separated data. For one or more categories, the method includes naming the file, at least in part, based on the category and based on a file naming convention. The method includes prioritizing the created files. The method includes transmitting an identification file comprising identification information for a wireless communication unit and the file naming convention. The method includes transmitting the created files based on the priority.
    Type: Grant
    Filed: April 24, 2019
    Date of Patent: May 11, 2021
    Assignee: GE Aviation Systems LLC
    Inventors: Michael Clay Scholten, Richard John Reiffer, Jr., Lambros Lambrou, Robert Alan Meneghini, Jr.
  • Patent number: 10992683
    Abstract: Disclosed herein is a method for electronic authentication, validation, storage, and third party verification of documents by a document service. The method provides a system for authenticating a user by a process that includes presentation of photo identification by the user and generation of an authenticated user code. The user then requests transfer of a document to the document service. The document service then validates, encrypts, and stores the document and associated metadata. A request for verification by a third party is responded to by the document service if the user sends the authenticated user code to confirm permission for verification by the document service.
    Type: Grant
    Filed: June 5, 2019
    Date of Patent: April 27, 2021
    Assignee: Wymsical, Inc.
    Inventors: Eli Yaacoby, Liwen Yaacoby
  • Patent number: 10992659
    Abstract: A device may receive a request from a first user device to access a protected device. The device may verify a user identity of a user of the first device based on user credentials and determine that an authentication code is needed to authenticate the request to access the protected device. The device may dynamically generate multiple codes and transmit the multiple codes to a second user device associated with the user identity of the user of the first device. A first code, of the multiple codes, may correspond to a correct authentication code needed to authenticate the request to access the protected device. The device may transmit a message including an instruction for identifying the correct authentication code from among the multiple codes, receive a second code from the first device, compare the second code and the first code, and selectively authenticate the request to access the protected device.
    Type: Grant
    Filed: June 13, 2019
    Date of Patent: April 27, 2021
    Assignee: Capital One Services, LLC
    Inventors: Michael Mossoba, Abdelkadar M'Hamed Benkreira, Joshua Edwards
  • Patent number: 10986085
    Abstract: Methods and systems for management of subscriber identities associated with user devices are described herein. The user device may enroll the user device to a server and lock a subscriber identity associated with the device by setting a password on the subscriber identity. If a credential entered by a user is verified, the subscriber identity associated with the device may be unlocked. Alternatively, the user device may retrieve one or more identities associated with the user, the user device and/or the subscriber identity. A server may register the one or more identities with a database. If the user device sends a request to connect to the network, the server may verify the one or more identities retrieved by the user device to determine whether to grant access from the user device to the network.
    Type: Grant
    Filed: February 1, 2019
    Date of Patent: April 20, 2021
    Assignee: Citrix Systems, Inc.
    Inventors: Yuran Ou, Bo Zang, Sai Xu
  • Patent number: 10986084
    Abstract: Disclosed herein are embodiments of systems, methods, and products comprises an analytic server, which retains the old passwords during security system migration. The analytic server receives strings corresponding to passwords from an old system. When a user issues a login request after the system migration, the analytic server determines the input password and computes a second string based on the input password. By comparing the second string with the string received from the old system, the analytic server determines whether input password is correct. If the second string and the received string match, the analytic server determines that the input password is the actual password and replaces the received string with the input password. In this way, the analytic server obtains the actual password, which is the original password. As a result, the analytic server retains the old password during the system migration.
    Type: Grant
    Filed: September 17, 2018
    Date of Patent: April 20, 2021
    Assignee: Massachusetts Mutual Life Insurance Company
    Inventor: George Byron Dobbs, II
  • Patent number: 10986136
    Abstract: A method, non-transitory computer readable medium, and access policy manager (APM) device that provides access to applications hosted by server computing devices to client computing devices each associated with an authenticated user. Interactions of the client computing devices with the applications are monitored to obtain usage statistics. The usage statistics are correlated with identifying information for each of the authenticated users or an indication of each of the applications. Notification rule(s) or parameter(s) of a request for information are applied to the correlated usage statistics. Based on the applying, a notification is sent to one or more of the client computing devices or at least a portion of the correlated usage statistics is sent to at least one of an application administrator or an APM administrator.
    Type: Grant
    Filed: September 25, 2014
    Date of Patent: April 20, 2021
    Assignee: F5 NETWORKS, INC.
    Inventors: Ravi Natarajan, Saxon Amdahl
  • Patent number: 10986088
    Abstract: Apparatus and methods are provided for enabling a plurality of applications running on a user device or in communication therewith to share data. In one exemplary embodiment, a single user device is configured to run a plurality of heath-monitoring applications which collect data from a respective plurality of health-monitoring devices and/or via user entry. According to the present disclosure, once the applications are linked, the user accesses, views, and analyzes the plurality of health-related data from the plurality of applications at a single application. Moreover, once the applications are linked, the user may sign-in to one application and be automatically signed into the other applications. In this manner, the user's activity and updated information entered, sensed, or otherwise collected into or by one application may be accessible at the other applications for analysis and display therein as well.
    Type: Grant
    Filed: November 7, 2018
    Date of Patent: April 20, 2021
    Assignee: MyFitnessPal, Inc.
    Inventors: Jim Hanifen, Louise Killeen-Ewing, Eric Wood, Thomas Ryon Day, Karlo Berket
  • Patent number: 10983602
    Abstract: Examples are disclosed that relate to computing devices and methods for identifying an approved input device. In one example, a method comprises: receiving a plurality of input signals from a plurality of target user-actuatable input components operated by a user, applying a plurality of rules to the plurality of input signals to generate a confidence score, and comparing the confidence score to a threshold score to determine if the plurality of target user-actuatable input components are associated with an approved input device.
    Type: Grant
    Filed: September 5, 2017
    Date of Patent: April 20, 2021
    Assignee: Microsoft Technology Licensing, LLC
    Inventors: Jonathan J. Caruana, Hamze M. Kalache, Bhavana Kunigal Shankar
  • Patent number: 10984243
    Abstract: A system is provided which utilizes multiple combinations of object location technology to locate objects and direct users to them, and which provides reliable owner recognition and ownership verification with the use of displayed augmented reality with a predefined image of the object and/or the user. Further, the system utilizes augmented reality fingerprint markers. When the augmented reality fingerprint marker is positioned on an object and scanned with a smart device, information relating to the object is superimposed on the object displayed on the smart device.
    Type: Grant
    Filed: July 28, 2020
    Date of Patent: April 20, 2021
    Inventor: Carl Lamont
  • Patent number: 10986307
    Abstract: Methods, apparatus, systems and articles of manufacture disclosed herein may be used to manage audiovisual recording in a connected vehicle. An example disclosed method includes accessing a profile having a recording parameter and a first quality selected by a user from a recording server. The example method also includes comparing a reading from a vehicle sensor to the recording parameter in the profile to determine whether to record a video. Additionally, the example method includes, in response to determining to record the video, storing the video using the first quality to a memory located in the vehicle.
    Type: Grant
    Filed: September 22, 2017
    Date of Patent: April 20, 2021
    Assignee: AT&T INTELLECTUAL PROPERTY I, L.P.
    Inventors: Roque Rios, James Gordon Beattie, Jr.
  • Patent number: 10977656
    Abstract: A system for detecting a fraudulent ATM transaction is disclosed. The system relates to an ATM machine that receives a bank/ATM card from a customer. The ATM first attempts to read information from the card chip, but is unable to do so due to a read error. The ATM then instead reads the information from the magnetic strip, and initiates a fraud detection procedure. In one such procedure, the ATM uses a local wireless access point to detect a customer's device, such as a phone, in the vicinity of the ATM. In another such procedure, the ATM communicates with a backend server. The backend server then determines the location of the customer device either by transmitting a message to request authorization, or by utilizing GPS or other location-detection means on the customer device to determine whether the customer device is within the ATM vicinity.
    Type: Grant
    Filed: December 26, 2019
    Date of Patent: April 13, 2021
    Assignee: Capital One Services, LLC
    Inventor: Richard Allen Post
  • Patent number: 10972444
    Abstract: The present disclosure provides a data mapping protocol that securely associates the account user information stored in the user pool with corresponding account identity information stored in the identity pool, such that all the account information is searchable, regardless of which pool the information is in. In an embodiment, a mapping service, which may be provided by the resource provider, obtains a set of login credentials and authenticates the login credentials with the user pool. In response to receiving the login credentials and an authentication request, the user pool returns the account credentials associated with the login credentials. The account credentials are used to access the account identifier, and other associate account identity data in the identity pool. Thus, the login credentials from the user pool and the account identifier from the identity are obtained and associated with each other in a searchable data structure.
    Type: Grant
    Filed: April 18, 2017
    Date of Patent: April 6, 2021
    Assignee: Amazon Technologies, Inc.
    Inventor: Steven Eric Schiesser
  • Patent number: 10970379
    Abstract: The present invention generally involves a mobile application configured to guard access to other applications that may be stored within a smartphone. For example, applications stored within the smartphone may include password managers, email clients, or payment applications, which a user of the smartphone may desirably secure by providing an extra layer of protection. In exemplary embodiments, the security application may employ GUI configured to display a folder for allowing a user to select which mobile applications to secure. The GUI may display a set of images as a means of implementing an authentication protocol to provide a user with access to the stored data. The user may control certain settings such as the source of the authenticating images, the number of images and authenticating images, and or a sequence that may be an authenticating sequence associated with the authenticating images for granting access to the data.
    Type: Grant
    Filed: July 22, 2020
    Date of Patent: April 6, 2021
    Inventor: Jessie Cortez
  • Patent number: 10970420
    Abstract: A system may include transaction storage devices. Each transaction storage device may include a data store configured to receive, from a first entity, a request to push a detailed transaction corresponding to a secure identifier. The secure identifier may be generated, using an encoding function, from a user identifier of a user. The detailed transaction may identify at least one selected from a group consisting of products and services received by the user from the first entity. The data store may be further configured to store the detailed transaction based on a first determination to trust the first entity. The system may further include an access controller configured to perform the first determination by applying a first security rule corresponding to a type of the secure identifier to the request to push the detailed transaction, and a registry configured to store at least the first security rule.
    Type: Grant
    Filed: August 20, 2019
    Date of Patent: April 6, 2021
    Assignee: Intuit Inc.
    Inventors: George Chiramattel Kunjachan, Amit Arya, Peter Allen Vogel
  • Patent number: 10957326
    Abstract: Identifier dependent operation processing of packet based data communication is provided. A natural language processor component can parse an input audio signal to identify a request and a trigger keyword. A content selector component can select, based on the request or trigger keyword, a content item. A link generation component can determine whether the client computing device has an account or a record in a database associated with the service provider device. In the absence of the record or account, the link generation device generates and sends a virtual identifier to the service provider device with instructions to generate an account in the database using the virtual identifier. Once the account is created, the service provider device can communicate with the client computing device.
    Type: Grant
    Filed: April 30, 2018
    Date of Patent: March 23, 2021
    Assignee: GOOGLE LLC
    Inventors: Gaurav Bhaya, Robert Stets, Justin Lewis, Ruxandra Davies
  • Patent number: 10956543
    Abstract: The system receives a stream of authentication events, which are associated with authentication events. Next, the system attempts to detect a formation of authentication events, wherein a formation comprises a time window of authentication events that satisfy a formation criterion, which is based on one or more of: a username for the authentication attempt, an Internet Protocol (IP) address from which the authentication attempt originated, and a resource identifier for a computing resource that the authentication attempt was directed to. If a formation is detected, the system determines a number of valid usernames in the formation. If the number of valid usernames is one or less, the system computes a username similarity score for authentication events in the formation, which is a function of a string distance between usernames in the formation. If the username similarity score exceeds a threshold value, the system reports a potential username guessing attack.
    Type: Grant
    Filed: June 18, 2018
    Date of Patent: March 23, 2021
    Assignee: Oracle International Corporation
    Inventors: Aleksey M. Urmanov, Alan Paul Wood, Anton A. Bougaev
  • Patent number: 10948964
    Abstract: A card with power management circuitry is provided. A card may have circuitry contained therein (e.g., a processor) that may have a maximum operating voltage. The card may include a power source (e.g., a battery) that provides power ranging in voltage from a maximum power source voltage to a minimum power source voltage. The maximum power source voltage is greater than the maximum operating voltage. Power management circuitry is provided to manage the power received from the power source such that the voltage provided to the circuitry (e.g., processor) does not exceed the maximum operating voltage.
    Type: Grant
    Filed: March 28, 2016
    Date of Patent: March 16, 2021
    Assignee: DYNAMICS INC.
    Inventor: Bruce S. Cloutier
  • Patent number: 10952077
    Abstract: A method according to one embodiment includes receiving, by a gateway device and from an access control device, credential data received by the access control device from a mobile device in response to presentation of the mobile device to the access control device, comparing the credential data to a gateway credential list stored in a memory of the gateway device, the gateway credential list identifying a plurality of credentials associated with the gateway device, and each credential of the plurality of credentials associated with a unique credential index, transmitting, to a server, the unique credential index associated with the credential data in response to determining that the credential data matches a corresponding credential in the gateway credential list, and receiving, from the server, an access control decision associated with the credential data in response to transmitting the unique credential index.
    Type: Grant
    Filed: September 30, 2019
    Date of Patent: March 16, 2021
    Assignee: Schlage Lock Company LLC
    Inventors: Frederick Holt, Dennis Troy Anfield, Nathanael L. Thomas, Joseph W. Baumgarte
  • Patent number: 10949754
    Abstract: The disclosure generally describes methods, software, and systems, including a method for providing a recommended action. Data that is associated with requests and that is used in supporting actions made regarding the requests is collected from multiple sources. Default criteria based on the data and supporting a determination of a recommended action responsive to the given request is provided for presentation in the user interface. The user interface includes interactive sliders, each interactive slider being associated with a criterion and having a default slider position associated with a relative weighting factor for the criterion. An algorithm is executed that is associated with a request type of the given request. Absolute weights are assigned to the default criteria using the relative weighting factors. The given request is evaluated using the default criteria and the absolute weights to determine the recommended action, which is provided for presentation in the user interface.
    Type: Grant
    Filed: July 26, 2017
    Date of Patent: March 16, 2021
    Assignee: SAP Portals Israel Ltd.
    Inventors: Nirit Cohen-Zur, Rachel Ebner, Eyal Gal
  • Patent number: 10944742
    Abstract: A secure storage apparatus on a mobile device for securing user-access to a mobile application is provided. The secure storage may include, an electronic representation of a mobile token pin selected and inputted when authenticating a user for a first time and an OTP seed, stored in the secure storage. The secure storage may be a secure portion of memory on the mobile device only accessible and visible to the mobile application upon receipt of the mobile token pin. When the mobile token pin is inputted into the mobile application on the mobile device, the mobile application may be configured to transmit the mobile token pin to an authentication server for verification. In response to the verification, the OTP seed may be released from the secure storage and activate an OTP application associated with the mobile application to generate, transparent to the user, an OTP.
    Type: Grant
    Filed: August 2, 2018
    Date of Patent: March 9, 2021
    Assignee: Bank of America Corporation
    Inventors: Robert S. Mumma, John E. Scully, Patrick E. Burgess, Jr.
  • Patent number: 10938921
    Abstract: A method for associating services in an electronic device is provided. The method includes sending, by a first electronic device, a first service with a first private association dialog (PAD) to a second electronic device, wherein the first PAD of the first service includes a first PAD identifier and sending, by the first electronic device, a second service with a second PAD to the second electronic device, wherein the second PAD of the second service includes a second PAD identifier that matches the first PAD identifier to associate the second service with the first service at the second electronic device.
    Type: Grant
    Filed: October 10, 2018
    Date of Patent: March 2, 2021
    Inventors: Vijay Sangameshwara, Siva Prasad Gundur, Bhargav Madishetty, Sreekanth Vadakkepurakkal Chandran
  • Patent number: 10936733
    Abstract: A method is provided to reduce inappropriate online behavior. The method includes providing a network service, receiving a request from a user to use the network service, and requesting a usage report about an email account associated with the user. The usage report is based on analysis of usage data representative of usage of the email account, and the analysis is based on at least one of a date that the email account was established, tracked history of emails received by the email account, and a history of IP addresses used when accessing the email account for communicating with multiple other email accounts, and the usage data is unrelated to content included in email messages exchanged by the email account. Either a first level or a second level of the network service available to the user is selected, wherein selection of the first or second level is based on whether the usage report meets selectable criteria.
    Type: Grant
    Filed: April 8, 2019
    Date of Patent: March 2, 2021
    Inventor: Emmanuel Gonzalez
  • Patent number: 10931464
    Abstract: A communication system is provided, including a plurality of terminal devices and a root certification authority. Each of the plurality of terminal devices includes a certification authority key generation unit, a certification authority public key certificate acquisition unit that acquires a certification authority public key certificate, a certification authority key storage unit, a transmission unit, and a verification unit that verifies the certification authority public key certificate with a root certification authority public key certificate, and verifies a user in a case where the verification succeeds. The root certification authority includes a root certification authority key storage unit, a communication unit, and a certification authority public key certificate generation unit that generates the certification authority public key certificate by encrypting the certification authority public key with the root certification authority secret key.
    Type: Grant
    Filed: February 21, 2017
    Date of Patent: February 23, 2021
    Assignee: KDDI CORPORATION
    Inventors: Keisuke Takemori, Takamasa Isohara, Teruaki Honma
  • Patent number: 10922445
    Abstract: A security device for a local computer, said security device comprising a locked-down system environment that includes a remote-access connector and an authenticator facility. The remote-access connector initiates a remote connection request with a virtual-computer service. The authenticator facility provides first authentication-data to the remote-access connector for ensuring that the security device has permission to be allocated a virtual computer from the virtual-computer service.
    Type: Grant
    Filed: December 1, 2015
    Date of Patent: February 16, 2021
    Assignee: BANKVAULT PTY LTD
    Inventors: Graeme Speak, Chris Hoy Poy, Neil Richardson, Peter Grant McCredie, Adam Law, Corrado Fiore
  • Patent number: 10924479
    Abstract: Embodiments of the disclosure provide a method of establishing a user profile using multiple channels. Embodiments allow compatibility of the user profile across several authentication systems. The user profile is created upon registration and is updated with attributes after authenticating and authorizing the user according to a pre-defined assurance level. The user profile contains attributes pertaining to the user and user device. The attributes can be analyzed by authentication systems to optimize data security.
    Type: Grant
    Filed: July 20, 2017
    Date of Patent: February 16, 2021
    Assignee: Aetna Inc.
    Inventors: Salil Kumar Jain, Abbie Barbir, Sylvan Tran, Jayavardhan N. Marehalli, Derek Swift
  • Patent number: 10911612
    Abstract: An image transmitting apparatus includes a scanner that reads an original, a memory that stores programs, and a processor that executes the programs. The programs are executed to identify destination information of a user for the image transmitting apparatus, and transmit image data corresponding to the read original using the identified destination information in a case where the user does not designate a destination.
    Type: Grant
    Filed: October 17, 2016
    Date of Patent: February 2, 2021
    Assignee: CANON KABUSHIKI KAISHA
    Inventors: Akira Oomori, Nobuyuki Tonegawa
  • Patent number: 10904242
    Abstract: A cognitive one-time password generation method, system, and computer program product, include sending a cognitive one-time password question to a user via a third-party platform and granting access to a secured service when the user inputs into the secured service a cognitive one-time password as a correct answer to the cognitive one-time password question where the user receives the cognitive one-time password question, independently from the secured service via the third-party platform, to formulate the correct answer to input into the secured service.
    Type: Grant
    Filed: April 30, 2019
    Date of Patent: January 26, 2021
    Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
    Inventors: Galina Grunin, Nader M. Nassar, Tamer M. Nassar