Multi-granular authentication techniques
    13.
    发明授权
    Multi-granular authentication techniques 有权
    多粒度认证技术

    公开(公告)号:US09407754B1

    公开(公告)日:2016-08-02

    申请号:US14622742

    申请日:2015-02-13

    CPC classification number: H04M1/72577 H04L63/1425 H04W12/06 H04W12/12

    Abstract: Techniques for authenticating a user of a mobile device at a computing platform are provided. A method according to these techniques includes generating a first profile and second profile of user behavior for the user of the mobile device, the first profile comprising a first type of profile having at least a first duration and the second profile comprising a second type of profile having a second duration that is shorter than the first duration, monitoring user behavior to generate usage behavior data, comparing the usage behavior data to the first profile and the second profile, performing a first type of authentication action responsive to the usage behavior data deviating from the first profile, and performing a second type of authentication action responsive to the usage behavior data deviating from the second profile.

    Abstract translation: 提供了用于在计算平台上认证移动设备的用户的技术。 根据这些技术的方法包括为移动设备的用户生成用户行为的第一简档和第二简档,第一简档包括具有至少第一持续时间的第一类型的简档,并且第二简档包括第二类型的简档 具有比第一持续时间短的第二持续时间,监视用户行为以生成使用行为数据,将使用行为数据与第一配置文件和第二配置文件进行比较,响应于偏离的使用行为数据执行第一类型的认证动作 所述第一简档,以及响应于偏离所述第二简档的所述使用行为数据执行第二类型的认证动作。

    Configuration of a new enrollee device for use in a communication network
    14.
    发明授权
    Configuration of a new enrollee device for use in a communication network 有权
    配置用于通信网络的新的登录设备

    公开(公告)号:US09357385B2

    公开(公告)日:2016-05-31

    申请号:US13659689

    申请日:2012-10-24

    Abstract: An electronic device obtains a device password associated with the new enrollee device to be configured for a communication network. The device password is provided to a network registrar to cause the network registrar to configure the new enrollee device for the communication network. The network registrar performs an enrollment process based upon the device password and provides feedback to the electronic device to indicate whether or not the new enrollee device was successfully added to the communication network. Alternatively, when an electronic device detects the presence of a new enrollee device to be configured for the communication network, the electronic device generates a device password for the new enrollee device and provides the device password to the new enrollee device and to the network registrar, thereby causing the network registrar to initiate an enrollment process for the new enrollee device based upon the device password.

    Abstract translation: 电子设备获得与要配置用于通信网络的新登记器设备相关联的设备密码。 将设备密码提供给网络注册器,以使网络注册商配置通信网络的新注册设备。 网络注册器基于设备密码执行注册过程,并向电子设备提供反馈,以指示新的登记器设备是否已成功添加到通信网络。 或者,当电子设备检测到要为通信网络配置的新的登记器设备的存在时,电子设备生成新的登记者设备的设备密码,并将设备密码提供给新的登记者设备和网络注册器, 从而使得网络注册商基于设备密码启动新的登记者设备的注册过程。

    Multi-granular authentication techniques

    公开(公告)号:US09344553B1

    公开(公告)日:2016-05-17

    申请号:US14622742

    申请日:2015-02-13

    Abstract: Techniques for authenticating a user of a mobile device at a computing platform are provided. A method according to these techniques includes generating a first profile and second profile of user behavior for the user of the mobile device, the first profile comprising a first type of profile having at least a first duration and the second profile comprising a second type of profile having a second duration that is shorter than the first duration, monitoring user behavior to generate usage behavior data, comparing the usage behavior data to the first profile and the second profile, performing a first type of authentication action responsive to the usage behavior data deviating from the first profile, and performing a second type of authentication action responsive to the usage behavior data deviating from the second profile.

    Deploying wireless docking as a service
    16.
    发明授权
    Deploying wireless docking as a service 有权
    部署无线对接作为服务

    公开(公告)号:US09204301B2

    公开(公告)日:2015-12-01

    申请号:US14023205

    申请日:2013-09-10

    Abstract: A method includes establishing, by a wireless docking center, a secure wireless communication connection with a wireless dockee, receiving, by the wireless docking center, from the wireless dockee, an ASP session request for a wireless docking service of the wireless docking center, receiving, by the wireless docking center, from the wireless dockee, a passphrase for authenticating with the wireless docking service, determining, by the wireless docking center, whether the wireless dockee is authorized to access the wireless docking service based on the received passphrase, responsive to determining that the wireless dockee is not authorized to access the wireless docking service, denying, by the wireless docking center, the wireless dockee access to the wireless docking service, and responsive to determining that the wireless dockee is authorized to access the wireless docking service, granting, by the wireless docking center, the wireless dockee access to the wireless docking service.

    Abstract translation: 一种方法包括:通过无线对接中心建立与无线对讲机的安全无线通信连接,由无线对接中心从无线对讲机接收无线对接中心的无线对接服务的ASP会话请求,接收 通过无线对接中心从无线对讲机发送用于使用无线对接服务认证的密码,由无线对接中心确定无线对讲机是否被授权基于接收的密码短语访问无线对接服务,响应于 确定所述无线对讲机没有被授权访问所述无线对接服务,由所述无线对接中心拒绝所述无线对讲机对所述无线对接服务的访问,并且响应于确定所述无线对讲机被授权访问所述无线对接服务, 通过无线对接中心授予无线对接机对无线对接服务的访问权限。

    DEPLOYING WIRELESS DOCKING AS A SERVICE
    17.
    发明申请
    DEPLOYING WIRELESS DOCKING AS A SERVICE 有权
    作为服务的无线锁定

    公开(公告)号:US20140196112A1

    公开(公告)日:2014-07-10

    申请号:US14023205

    申请日:2013-09-10

    Abstract: A method includes establishing, by a wireless docking center, a secure wireless communication connection with a wireless dockee, receiving, by the wireless docking center, from the wireless dockee, an ASP session request for a wireless docking service of the wireless docking center, receiving, by the wireless docking center, from the wireless dockee, a passphrase for authenticating with the wireless docking service, determining, by the wireless docking center, whether the wireless dockee is authorized to access the wireless docking service based on the received passphrase, responsive to determining that the wireless dockee is not authorized to access the wireless docking service, denying, by the wireless docking center, the wireless dockee access to the wireless docking service, and responsive to determining that the wireless dockee is authorized to access the wireless docking service, granting, by the wireless docking center, the wireless dockee access to the wireless docking service.

    Abstract translation: 一种方法包括:通过无线对接中心建立与无线对讲机的安全无线通信连接,由无线对接中心从无线对讲机接收无线对接中心的无线对接服务的ASP会话请求,接收 通过无线对接中心从无线对讲机发送用于使用无线对接服务认证的密码,由无线对接中心确定无线对讲机是否被授权基于接收的密码短语访问无线对接服务,响应于 确定所述无线对讲机没有被授权访问所述无线对接服务,由所述无线对接中心拒绝所述无线对讲机对所述无线对接服务的访问,并且响应于确定所述无线对讲机被授权访问所述无线对接服务, 通过无线对接中心授予无线对接机对无线对接服务的访问权限。

    Adaptive systems and procedures for defending a processor against transient fault attacks

    公开(公告)号:US10380341B2

    公开(公告)日:2019-08-13

    申请号:US15089379

    申请日:2016-04-01

    Abstract: Various features pertain to defending a smartphone processor or other device from a transient fault attack. In one example, the processor is equipped to detect transient faults using a fault detection system and to adaptively adjust a control parameter in response to the transient faults, where the control parameter controls a physical operation of the processor (such as by gating its clock signal) or a functional operation of the fault detection system (such as a particular Software Fault Sensor (SFS) employed to detect transient faults). In some examples, in response to each newly detected fault, the detection system is controlled to consume more processor time to become more aggressive in detecting additional faults. This serves to quickly escalate fault detection in response to an on-going attack to promptly detect the attack so that the device can be disabled to prevent loss of sensitive information, such as security keys or passcodes.

    Dynamic register virtualization
    19.
    发明授权

    公开(公告)号:US10282224B2

    公开(公告)日:2019-05-07

    申请号:US14861637

    申请日:2015-09-22

    Abstract: A method, apparatus, and system for utilizing a register virtualization mapping to improve defense against return-oriented programming-based attacks is disclosed. A register virtualization mapping, which is bijection between nominal registers and physical registers, is generated for a subroutine call when the subroutine call is detected. The register virtualization mapping is applied to instructions within the subroutine call. The register virtualization mapping is stopped for the subroutine call at the return of the subroutine call.

Patent Agency Ranking