Behavioral Stochastic Authentication (BSA)
Abstract
Methods, systems, and computer program products for providing behavioral stochastic authentication (BSA) are disclosed. For example, a computer-implemented method may include authenticating a user of a mobile device at a plurality of different times based on authentication credentials, collecting stochastic data associated with the mobile device during time periods corresponding to authenticating the user of the mobile device at the plurality of different times, and in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A computer system, comprising:
a non-transitory memory storing instructions; and one or more hardware processors coupled to the non-transitory memory and configured to read the instructions from the non-transitory memory to cause the computer system to perform operations comprising:
authenticating, based on authentication credentials, a user of a mobile device at a plurality of different times;
collecting stochastic data associated with the mobile device during time periods corresponding to the authenticating of the user of the mobile device at the plurality of different times; and
in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted.
2 . The computer system of claim 1 , wherein the authenticating of the user of the mobile device in response to the authentication request is further based on a behavioral history of the user.
3 . The computer system of claim 1 , wherein the stochastic data is collected by periodically sampling data associated the mobile device during the plurality of different times.
4 . The computer system of claim 1 , wherein the authenticating the user at the plurality of different times includes authenticating using a plurality of different authentication credentials.
5 . The computer system of claim 1 , wherein at least some of the collected stochastic data is associated with one or more sensors of the mobile device.
6 . The computer system of claim 1 , wherein the mobile device is a near field communication (NFC) enabled device.
7 . A non-transitory machine-readable medium having stored thereon machine-readable instructions executable to cause a machine to perform operations comprising:
authenticating, based on authentication credentials, a user of a mobile device at a plurality of different times; collecting stochastic data associated with the mobile device during time periods corresponding to the authenticating of the user of the mobile device at the plurality of different times; and in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted.
8 . The non-transitory machine-readable medium of claim 7 , wherein the authenticating of the user of the mobile device in response to the authentication request is further based on a behavioral history of the user.
9 . The non-transitory machine-readable medium of claim 7 , wherein the stochastic data is collected by periodically sampling data associated the mobile device during the plurality of different times.
10 . The non-transitory machine-readable medium of claim 7 , wherein the authenticating of the user at the plurality of different times includes authenticating using a plurality of different authentication credentials.
11 . The non-transitory machine-readable medium of claim 7 , wherein at least some of the collected stochastic data is associated with a sensor of the mobile device.
12 . The non-transitory machine-readable medium of claim 7 , wherein the authenticating of the user of the mobile device in response to the authentication request provides the user with access to secure payment services.
13 . The non-transitory machine-readable medium of claim 7 , wherein the mobile device is a near field communication (NFC) enabled device.
14 . The non-transitory machine-readable medium of claim 7 , wherein the collected stochastic data is within a threshold of variance for the user.
15 . A computer-implemented method, comprising:
authenticating, based on authentication credentials, a user of a mobile device at a plurality of different times; collecting stochastic data associated with the mobile device during time periods corresponding to the authenticating of the user of the mobile device at the plurality of different times; and in response to an authentication request, authenticating the user of the mobile device based on comparing current data associated with the mobile device and the collected stochastic data to determine that the user of the mobile device is trusted.
16 . The computer-implemented method of claim 15 , wherein the authenticating of the user of the mobile device in response to the authentication request is further based on a behavioral history of the user.
17 . The computer-implemented method of claim 15 , wherein the stochastic data is collected by periodically sampling data associated the mobile device during the plurality of different times.
18 . The computer-implemented method of claim 15 , wherein the authenticating of the user at the plurality of different times includes authenticating using a plurality of different authentication credentials.
19 . The computer-implemented method of claim 15 , wherein at least some of the collected stochastic data is associated with a sensor of the mobile device.
20 . The computer-implemented method of claim 15 , wherein the mobile device is a near field communication (NFC) enabled device.Join the waitlist — get patent alerts
Track US2017053107A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.