US2017053107A1PendingUtilityA1

Behavioral Stochastic Authentication (BSA)

Assignee: PAYPAL INCPriority: May 29, 2009Filed: Nov 8, 2016Published: Feb 23, 2017
Est. expiryMay 29, 2029(~2.8 yrs left)· nominal 20-yr term from priority
Inventors:Hadi Nahari
G06Q 20/4014G06F 21/34G06F 21/316G06F 21/31G06Q 20/3278H04L 2463/082H04W 12/069
58
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Methods, systems, and computer program products for providing behavioral stochastic authentication (BSA) are disclosed. For example, a computer-implemented method may include authenticating a user of a mobile device at a plurality of different times based on authentication credentials, collecting stochastic data associated with the mobile device during time periods corresponding to authenticating the user of the mobile device at the plurality of different times, and in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A computer system, comprising:
 a non-transitory memory storing instructions; and   one or more hardware processors coupled to the non-transitory memory and configured to read the instructions from the non-transitory memory to cause the computer system to perform operations comprising:
 authenticating, based on authentication credentials, a user of a mobile device at a plurality of different times; 
 collecting stochastic data associated with the mobile device during time periods corresponding to the authenticating of the user of the mobile device at the plurality of different times; and 
 in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted. 
   
     
     
         2 . The computer system of  claim 1 , wherein the authenticating of the user of the mobile device in response to the authentication request is further based on a behavioral history of the user. 
     
     
         3 . The computer system of  claim 1 , wherein the stochastic data is collected by periodically sampling data associated the mobile device during the plurality of different times. 
     
     
         4 . The computer system of  claim 1 , wherein the authenticating the user at the plurality of different times includes authenticating using a plurality of different authentication credentials. 
     
     
         5 . The computer system of  claim 1 , wherein at least some of the collected stochastic data is associated with one or more sensors of the mobile device. 
     
     
         6 . The computer system of  claim 1 , wherein the mobile device is a near field communication (NFC) enabled device. 
     
     
         7 . A non-transitory machine-readable medium having stored thereon machine-readable instructions executable to cause a machine to perform operations comprising:
 authenticating, based on authentication credentials, a user of a mobile device at a plurality of different times;   collecting stochastic data associated with the mobile device during time periods corresponding to the authenticating of the user of the mobile device at the plurality of different times; and   in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted.   
     
     
         8 . The non-transitory machine-readable medium of  claim 7 , wherein the authenticating of the user of the mobile device in response to the authentication request is further based on a behavioral history of the user. 
     
     
         9 . The non-transitory machine-readable medium of  claim 7 , wherein the stochastic data is collected by periodically sampling data associated the mobile device during the plurality of different times. 
     
     
         10 . The non-transitory machine-readable medium of  claim 7 , wherein the authenticating of the user at the plurality of different times includes authenticating using a plurality of different authentication credentials. 
     
     
         11 . The non-transitory machine-readable medium of  claim 7 , wherein at least some of the collected stochastic data is associated with a sensor of the mobile device. 
     
     
         12 . The non-transitory machine-readable medium of  claim 7 , wherein the authenticating of the user of the mobile device in response to the authentication request provides the user with access to secure payment services. 
     
     
         13 . The non-transitory machine-readable medium of  claim 7 , wherein the mobile device is a near field communication (NFC) enabled device. 
     
     
         14 . The non-transitory machine-readable medium of  claim 7 , wherein the collected stochastic data is within a threshold of variance for the user. 
     
     
         15 . A computer-implemented method, comprising:
 authenticating, based on authentication credentials, a user of a mobile device at a plurality of different times;   collecting stochastic data associated with the mobile device during time periods corresponding to the authenticating of the user of the mobile device at the plurality of different times; and   in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted.   
     
     
         16 . The computer-implemented method of  claim 15 , wherein the authenticating of the user of the mobile device in response to the authentication request is further based on a behavioral history of the user. 
     
     
         17 . The computer-implemented method of  claim 15 , wherein the stochastic data is collected by periodically sampling data associated the mobile device during the plurality of different times. 
     
     
         18 . The computer-implemented method of  claim 15 , wherein the authenticating of the user at the plurality of different times includes authenticating using a plurality of different authentication credentials. 
     
     
         19 . The computer-implemented method of  claim 15 , wherein at least some of the collected stochastic data is associated with a sensor of the mobile device. 
     
     
         20 . The computer-implemented method of  claim 15 , wherein the mobile device is a near field communication (NFC) enabled device.

Join the waitlist — get patent alerts

Track US2017053107A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.