Preventing unauthorized access to secured information systems using authentication tokens and multi-device authentication prompts

    公开(公告)号:US11184355B2

    公开(公告)日:2021-11-23

    申请号:US17224593

    申请日:2021-04-07

    Abstract: Aspects of the disclosure relate to preventing unauthorized access to secured information systems. A computing platform may receive, from an end user desktop computing device, a request to login to a user account associated with a user account portal. In response to receiving the request, the computing platform may generate an authentication token in an authentication database and may send a notification to at least one registered device linked to the user account. After sending the notification, the computing platform may receive, from the at least one registered device, an authentication response message. If the authentication response message indicates that valid authentication input was received, the computing platform may update the authentication token to indicate that the request to login to the user account has been approved. After updating the authentication token, the computing platform may provide, to the end user desktop computing device, access to a portal interface.

    Preventing Unauthorized Access to Secured Information Systems Using Authentication Tokens and Multi-Device Authentication Prompts

    公开(公告)号:US20210226943A1

    公开(公告)日:2021-07-22

    申请号:US17224593

    申请日:2021-04-07

    Abstract: Aspects of the disclosure relate to preventing unauthorized access to secured information systems. A computing platform may receive, from an end user desktop computing device, a request to login to a user account associated with a user account portal. In response to receiving the request, the computing platform may generate an authentication token in an authentication database and may send a notification to at least one registered device linked to the user account. After sending the notification, the computing platform may receive, from the at least one registered device, an authentication response message. If the authentication response message indicates that valid authentication input was received, the computing platform may update the authentication token to indicate that the request to login to the user account has been approved. After updating the authentication token, the computing platform may provide, to the end user desktop computing device, access to a portal interface.

    Preventing Unauthorized Access to Secured Information Systems Using Authentication Tokens and Multi-Device Authentication Prompts

    公开(公告)号:US20200228523A1

    公开(公告)日:2020-07-16

    申请号:US16832377

    申请日:2020-03-27

    Abstract: Aspects of the disclosure relate to preventing unauthorized access to secured information systems. A computing platform may receive, from an end user desktop computing device, a request to login to a user account associated with a user account portal. In response to receiving the request, the computing platform may generate an authentication token in an authentication database and may send a notification to at least one registered device linked to the user account. After sending the notification, the computing platform may receive, from the at least one registered device, an authentication response message. If the authentication response message indicates that valid authentication input was received, the computing platform may update the authentication token to indicate that the request to login to the user account has been approved. After updating the authentication token, the computing platform may provide, to the end user desktop computing device, access to a portal interface.

    QUANTUM KEY DISTRIBUTION LOGON WIDGET
    4.
    发明申请

    公开(公告)号:US20180309571A1

    公开(公告)日:2018-10-25

    申请号:US15492187

    申请日:2017-04-20

    Inventor: Ashish Arora

    CPC classification number: H04L63/0435 H04L9/0858 H04L63/061 H04L63/1475

    Abstract: A system implements a QKD-secured logon widget. The system generates a first random quantum key using a first random measurement basis; transmits over a fiber optic network, a first random quantum key to a device, encrypts a logon widget instruction set using the first random quantum key and a first encryption algorithm, resulting in an encrypted message. The system then transmits the encrypted message, and the device receives a second random quantum key from the system, and measures the second random quantum key using a second random measurement basis, where the second random measurement basis is compared to the first random measurement basis, resulting in a comparison basis result. The system uses the comparison basis result to determine a level of anomalies present in the second random quantum key and a shared key, and, based on the level of anomalies, determines whether to render a logon widget at the device.

    Preventing unauthorized access to secured information systems using tokenized authentication techniques

    公开(公告)号:US10057249B2

    公开(公告)日:2018-08-21

    申请号:US15214972

    申请日:2016-07-20

    Abstract: A computing platform may receive, from a client portal server, a request to authenticate a user to a user account associated with a client portal provided by the client portal server. Based on receiving the request to authenticate, the computing platform may send, to a social messaging server, an authentication token request message. Subsequently, the computing platform may receive, from the social messaging server, an authentication token. Thereafter, the computing platform may validate the authentication token received from the social messaging server. Based on validating the authentication token received from the social messaging server, the computing platform may generate a validation message directing the client portal server to provide the user with access to the user account. Subsequently, the computing platform may send, to the client portal server, the validation message directing the client portal server to provide the user with access to the user account.

    Preventing Unauthorized Access to Secured Information Systems Using Tokenized Authentication Techniques

    公开(公告)号:US20180026959A1

    公开(公告)日:2018-01-25

    申请号:US15214874

    申请日:2016-07-20

    Abstract: A computing platform may receive, from a social messaging server, a request to authenticate a user to a user account associated with a client portal. In response to receiving the request, the computing platform may send, to the social messaging server, an authentication token request message. Thereafter, the computing platform may receive, from the social messaging server, an authentication token. The computing platform may validate the authentication token received from the social messaging server. Based on validating the authentication token received from the social messaging server, the computing platform may generate a validation message directing a client support server to provide the user with access to the user account. Subsequently, the computing platform may send the validation message to the client support server, which may cause the client support server to initiate a client support session with the user via the social messaging service provided by the social messaging server.

    Providing access to account information using authentication tokens

    公开(公告)号:US09830591B2

    公开(公告)日:2017-11-28

    申请号:US14722849

    申请日:2015-05-27

    CPC classification number: G06Q20/3674 G06Q20/3672 G06Q20/382 G06Q20/38215

    Abstract: Methods, systems, and computer-readable media for providing access to account information using authentication tokens are presented. In some embodiments, a customer of a financial institution may visit an account information aggregator site and request to add an account maintained by the financial institution to a collection of accounts for which the aggregator collects account information on behalf of the customer. Rather than providing their username, password, or other bank login credentials to the aggregator, the customer may be redirected to a page provided by the financial institution where the customer can enter the customer's credentials and authenticate with the financial institution. After authenticating the customer, the financial institution may generate a token and provide the token to the aggregator. Subsequently, the aggregator may use the token to obtain read-only access to financial account information for one or more financial accounts that are maintained by the financial institution for the customer.

    Multifactor network authentication

    公开(公告)号:US10462665B2

    公开(公告)日:2019-10-29

    申请号:US15679793

    申请日:2017-08-17

    Abstract: A network authentication device that includes an authentication engine in signal communication with a network interface. The authentication engine is configured to receive an authentication key request from a first user device that identifies an account linked with a first user and a second user device. The authentication engine is configured to generate an authentication key and to establish a first set of authentication rules for the first user and a second set of authentication rules for the second user. The authentication engine is configured to generate a first authentication key fragment comprising a first portion of the authentication key and a second authentication key fragment comprising a second portion of the authentication key and to send the first authentication key fragment to the first user device and the second authentication key fragment to the second user device.

    Preventing Unauthorized Access to Secure Information Systems Using Dynamic, Multi-Device Authentication

    公开(公告)号:US20190236265A1

    公开(公告)日:2019-08-01

    申请号:US15881033

    申请日:2018-01-26

    Abstract: Systems for dynamically authenticating users are provided. A system may receive a request to access functionality. In response to the received request, an authentication grid may be dynamically generated. The authentication grid may include a plurality of fields, each identifiable by a field identifier, and including one or more characters that may be used to authenticate a user. The authentication grid may be transmitted to a computing device of a user. A character for authentication may be identified by the system. In some arrangements, the system may generate a request for user input including a character appearing in the authentication grid. The user may identify the field and input the character appearing in the field. The system may receive the requested character and may compare it to the identified character for authentication. If the received character and the identified character match, functionality may be enabled. If a match does not exist, functionality may be disabled.

    MULTIFACTOR NETWORK AUTHENTICATION
    10.
    发明申请

    公开(公告)号:US20190058992A1

    公开(公告)日:2019-02-21

    申请号:US15679793

    申请日:2017-08-17

    CPC classification number: H04W12/06 H04L63/08 H04L63/083 H04L63/20

    Abstract: A network authentication device that includes an authentication engine in signal communication with a network interface. The authentication engine is configured to receive an authentication key request from a first user device that identifies an account linked with a first user and a second user device. The authentication engine is configured to generate an authentication key and to establish a first set of authentication rules for the first user and a second set of authentication rules for the second user. The authentication engine is configured to generate a first authentication key fragment comprising a first portion of the authentication key and a second authentication key fragment comprising a second portion of the authentication key and to send the first authentication key fragment to the first user device and the second authentication key fragment to the second user device.

Patent Agency Ranking