US2010131409A1PendingUtilityA1

Identification verification with user challenge

Assignee: GOOGLE INCPriority: Nov 22, 2008Filed: Nov 22, 2008Published: May 27, 2010
Est. expiryNov 22, 2028(~2.3 yrs left)· nominal 20-yr term from priority
G06F 16/24575G06Q 20/40H04L 63/08G06F 2221/2103G06F 21/313G06Q 20/425H04L 63/18G06Q 40/00
50
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Methods and apparatus for conducting user identity verification are disclosed. An example method includes requesting, from a user, a name and user identifying information associated with the provided name. The example method also includes querying a trusted database based on the provided name and the user identifying information and determining if a match exists in the database between the provided name and the user identifying information. In the event a match exists, the example method includes presenting a challenge to the user, the challenge being based on the user identifying information and determining a verification status of the user's identity based on a result of the challenge. The example method further includes designating the user's identity as verified or unverified in accordance with the verification status.

Claims

exact text as granted — not AI-modified
1 . A computer-implemented method comprising:
 sending, by an online service provider system to a user, a request for:
 a name; and 
 user identifying information associated with the provided name; 
   querying, by the online service provider system, a trusted database based on the provided name and the user identifying information;   determining, by the online service provider system, based on a result of the query, if a match exists in the database between the provided name and the user identifying information;   in the event a match exists, presenting, by the online service provider system, a challenge to the user, the challenge being based on the user identifying information;   determining, by the online service provider system, a verification status of the user's identity based on a result of the challenge; and   designating, by the online service provider system, the user's identity as verified or unverified in accordance with the verification status.   
     
     
         2 . The computer-implemented method of  claim 1 , wherein:
 the user identifying information comprises a telephone number;   the trusted database comprises a telephone directory database; and   presenting the challenge comprises the online service provider system:
 providing a code to the user; 
 calling the telephone number; 
 prompting the user to enter the provided code via the called telephone; 
 receiving an entered code from the user via the called telephone; and 
 in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as verified. 
   
     
     
         3 . The computer-implemented method of  claim 1 , wherein:
 the user identifying information comprises a telephone number;   the trusted database comprises a telephone directory database; and   presenting the challenge comprises the online service provider system:
 calling the telephone number; 
 providing a code to the user via the called telephone; 
 providing an online graphical interface for entering the code; 
 receiving an entered code; and 
 in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as being verified. 
   
     
     
         4 . The computer-implemented method of  claim 1 , wherein:
 the user identifying information comprises a mobile telephone number;   the trusted database comprises a mobile telephone directory database; and   presenting the challenge comprises the online service provider system:
 sending a short messaging system (SMS) message to the mobile telephone number, the SMS message including a code; 
 providing an online graphical interface for entering the code; 
 receiving an entered code; and 
 in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as verified. 
   
     
     
         5 . The computer-implemented method of  claim 1 , wherein:
 the user identifying information comprises an account number of a credit card account;   the trusted database comprises a database associating credit cardholders' names with corresponding credit card account numbers; and   presenting the challenge comprises the online service provider system:
 carrying out a transaction on the credit card account; 
 providing an online graphical interface for requesting information regarding the transaction; 
 receiving entered transaction information; and 
 in the event the entered transaction information matches the requested transaction information, designating, by the online service provider system, the user's identity as verified. 
   
     
     
         6 . The computer-implemented method of  claim 5 , wherein the requested transaction information comprises an amount of the transaction. 
     
     
         7 . The computer-implemented method of  claim 5 , wherein the requested transaction information comprises a code included in a description of the transaction. 
     
     
         8 . The computer-implemented method of  claim 1 , wherein:
 the user identifying information comprises an account number of a bank account;   the trusted database comprises a database associating bank account numbers with accountholders' names; and   presenting the challenge comprises the online service provider system:
 carrying out a transaction on the bank account; 
 providing an online graphical interface for requesting information regarding the transaction; 
 receiving entered transaction information; and 
 in the event the entered information matches the requested information, designating, by the online service provider system, the user's identity as verified. 
   
     
     
         9 . The computer-implemented method of  claim 1 , wherein:
 the user identifying information comprises an email address;   the trusted database comprises a database associating email addresses with names of corresponding email account holders; and   presenting the challenge comprises the online service provider system:
 emailing a code to the email address; 
 providing an online graphical interface for entering the code; 
 receiving an entered code; and 
 in the event the entered code matches the emailed code, designating, by the online service provider system, the user's identity as verified. 
   
     
     
         10 . The computer-implemented method of  claim 1 , wherein:
 the user identifying information comprises an email address;   the trusted database comprises a database associating email addresses with names of corresponding email account holders; and   presenting the challenge comprises the online service provider system:
 providing a code to the user; 
 sending an email to the user requesting the code; 
 receiving a response email including an entered code; and 
 in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as verified. 
   
     
     
         11 . A computer program product tangibly embodied on a computer-readable medium and including executable instructions that, when executed, are configured to cause one or more data processing apparatuses to:
 request, from a user:
 a name; and 
 user identifying information associated with the provided name; 
   query a trusted database based on the provided name and the user identifying information;   determine if a match exists in the database between the provided name and the user identifying information;   in the event a match exists, presenting a challenge to the user, the challenge being based on the user identifying information;   determine a verification status of the user's identity based on a result of the challenge; and   designate the user's identity as verified or unverified in accordance with the verification status.   
     
     
         12 . The computer program product of  claim 11 , wherein:
 the user identifying information comprises a telephone number;   the trusted database comprises a telephone directory database; and   presenting the challenge comprises:
 providing a code to the user; 
 calling the telephone number; 
 prompting the user to enter the provided code via the called telephone; 
 receiving an entered code from the user via the called telephone; and 
 in the event the entered code matches the provided code, designating the user's identity as verified. 
   
     
     
         13 . The computer program product of  claim 11 , wherein:
 the user identifying information comprises a telephone number;   the trusted database comprises a telephone directory database; and   presenting the challenge comprises:
 calling the telephone number; 
 providing a code to the user via the called telephone; 
 providing an online graphical interface for entering the code; 
 receiving an entered code; and 
 in the event the entered code matches the provided code, designating the user's identity as verified. 
   
     
     
         14 . The computer program product of  claim 11 , wherein:
 the user identifying information comprises a mobile telephone number;   the trusted database comprises a telephone directory database; and   presenting the challenge comprises:
 sending a short messaging system (SMS) message to the mobile telephone number, the SMS message including a code; 
 providing an online graphical interface for entering the code; 
 receiving an entered code; and 
 in the event the entered code matches the provided code, designating the user's identity as verified. 
   
     
     
         15 . The computer program product of  claim 11 , wherein:
 the user identifying information comprises an account number of a credit card account;   the trusted database comprises a database associating credit cardholders' names with corresponding credit card account numbers; and   presenting the challenge comprises:
 carrying out a transaction on the credit card account; 
 providing an online graphical interface for requesting information regarding the transaction; 
 receiving entered transaction information; and 
 in the event the entered transaction information matches the requested transaction information, designating the user's identity as verified. 
   
     
     
         16 . The computer program product of  claim 11 , wherein:
 the user identifying information comprises an account number of a bank account;   the trusted database comprises a database associating bank account numbers with accountholders' names; and   presenting the challenge comprises:
 carrying out a transaction on the bank account; 
 providing an online graphical interface for requesting information regarding the transaction; 
 receiving entered transaction information; and 
 in the event the entered transaction information matches the requested transaction information, designating the user's identity as verified. 
   
     
     
         17 . The computer program product of  claim 11 , wherein:
 the user identifying information comprises an email address;   the trusted database comprises a database associating email addresses with names of corresponding email account holders; and   presenting the challenge comprises:
 emailing a code to the email address; 
 providing an online graphical interface for entering the code; 
 receiving an entered code; and 
 in the event the entered code matches the emailed code, designating the user's identity as verified. 
   
     
     
         18 . The computer program product of  claim 11 , wherein:
 the user identifying information comprises an email address;   the trusted database comprises a database associating email addresses with names of corresponding email account holders; and   presenting the challenge comprises:
 providing a code to the user; 
 sending an email to the user requesting the code; 
 receiving, from the email address, a response email including an entered code; and 
 in the event the entered code matches the provided code, designating the user's identity as verified. 
   
     
     
         19 . A system comprising:
 a server configured to provide online services to one or more users;   one or more computer-readable media including machine-executable instructions;   one or more instruction processors configured to execute at least a portion of the machine-executable instructions stored in the computer-readable media, wherein execution of the instructions, in response to a request from a user for access to the online services, results in:
 requesting, from the user:
 a name; and 
 user identifying information associated with the provided name; 
 
 querying a trusted database based on the provided name and the user identifying information; 
 determining if a match exists in the database between the provided name and the user identifying information; 
 in the event a match exists, presenting a challenge to the user, the challenge being based on the user identifying information; 
 determining a verification status of the user's identity based on a result of the challenge; and 
 designating the user's identity as verified or unverified in accordance with the verification status.

Join the waitlist — get patent alerts

Track US2010131409A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.