Systems and methods for creating a user credential and authentication using the created user credential

US10013545B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10013545-B2
Application numberUS-201213604307-A
CountryUS
Kind codeB2
Filing dateSep 5, 2012
Priority dateOct 27, 2011
Publication dateJul 3, 2018
Grant dateJul 3, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Systems, methods and devices for creating a user credential are provided. A device for creating a user credential for user authentication includes one or more processors configured to generate a first list of credential components from a second list of credential components and a network interface component coupled to a network. The network interface component is configured to transmit the generated first list of credential components to a user device, receive a user selection of at least one credential component from the transmitted first list of credential components, at least the user selection being selected by the user during user authentication, and receive a user entry. The device also includes a memory, the memory storing a combination of the user selection and the user entry as a created user credential. Systems, methods, and devices for authenticating a user with the created user credential are also provided.

First claim

Opening claim text (preview).

What is claimed is: 1. A system comprising: a non-transitory memory; a network interface component; and one or more hardware processors coupled to the non-transitory memory and the network interface component, the one or more hardware processors being configured to execute instructions to cause the system to perform operations comprising: creating a new authentication credential of a user by: generating a first list of credential components from a second list of credential components; transmitting, using the network interface component, the first list of credential components to a user device; receiving, using the network interface component, a selection of a first credential component from the first list of credential components; and receiving, using the network interface component, a first user entry that is not a credential component selected from the first list of credential components; determining whether there is a match between the first credential component and the first user entry; and in response to the first credential component and the first user entry not matching, storing the first credential component and the first user entry as a new authentication credential for use in a later authentication attempt; and processing the later authentication attempt by the user after the creating of the new authentication credential by: generating a third list of credential components from the second list of credential components; transmitting, using the network interface component, the third list of credential components to the user; receiving, using the network interface component, an attempted authentication credential from the user, the attempted authentication credential comprising a selection of a second credential component from the third list of credential components and a second user entry; and authenticating the user when the second credential component matches the stored first credential component and the second user entry matches the stored first user entry. 2. The system of claim 1 , wherein the second list of credential components is stored in a credential database. 3. The system of claim 1 , wherein the second list of credential components comprises a list of selectable words. 4. The system of claim 1 , wherein the second list of credential components comprises a list of selectable images. 5. The system of claim 1 , wherein the first user entry comprises a user text entry, a user voice recording, or a combination thereof. 6. The system of claim 1 , wherein the new authentication credential can be used in existing authentication systems. 7. The system of claim 1 , wherein the operations further comprise salting and hashing the new authentication credential before storing the new authentication credential. 8. The system of claim 1 , wherein the operations further comprise storing the new authentication credential when the first credential component does not match an answer to a security question or an employer. 9. The system of claim 1 , wherein the operations further comprise storing the new authentication credential when the first credential component does not match information available from a personal web page or a social media page of the user. 10. A non-transitory computer-readable medium having stored thereon machine-readable instructions executable to cause a machine to perform operations comprising: creating a new authentication credential of a user by: generating a first list of credential components from a second list of credential components; transmitting the first list of credential components to a user; receiving a selection of a first credential component from the first list of credential components; receiving a first user entry that is not a credential component selected from the first list of credential components; determining whether there is a match between the first credential component and the first user entry; and in response to the first credential component and the first user entry not matching, storing the first credential component and the first user entry as a new authentication credential for use in a later authentication attempt; and processing the later authentication attempt by the user after the creating of the new authentication credential by: generating a third list of credential components from the second list of credential components; transmitting the third list of credential components to the user; receiving an attempted authentication credential component from the third list of credential components and a second user entry; and authenticating the user when the attempted authentication credential component matches the stored first credential component and the second user entry matches the stored first user entry. 11. The computer-readable medium of claim 10 , wherein generating a first list of credential components comprises: generating a list of selectable words. 12. The computer-readable medium of claim 10 , wherein generating a first list of credential components comprises: generating a list of selectable images. 13. The computer-readable medium of claim 10 , wherein receiving the first user entry comprises: receiving at least one of a user text entry, a user voice recording, or a combination thereof. 14. The computer-readable medium of claim 10 , wherein the operations further comprise rejecting the new authentication credential when the first credential component and the first user entry match. 15. The computer-readable medium of claim 10 , wherein the operations further comprise salting and hashing the new authentication credential before the new authentication credential is stored. 16. The computer-readable medium of claim 10 , wherein the operations further comprise storing the new authentication credential when the first credential component does not match a birthday, an answer to a security question, or an employer. 17. The computer-readable medium of claim 10 , wherein the operations further comprise storing the new authentication credential when the first credential component does not match information available from a personal web page or a social media page of the user. 18. A non-transitory computer-readable medium having stored thereon machine-readable instructions executable to cause a machine to perform operations comprising: generating a first list of credential components from a second list of credential components; transmitting the first list of credential components to a user device; receiving an attempted authentication credential for a user, the attempted authentication credential comprising a first credential component selected from the first list of credential components and a first user entry that is not selected from the first list of credential components; determining if the attempted authentication credential matches a previously stored authentication credential associated with the user, the previously stored authentication credential comprising a second credential component selected from the second list of credential components during creation of the previously stored authentication credential and a second user entry input by the user during the creation of the previously stored authentication credential and not selected from the second list of credential components, wherein the second credential component and the second user entry have previously been determined by the machine to not match; and authenticating the user when the first credential component matches the second credential component and the first user entry matches the se

Assignees

Inventors

Classifications

  • G06F21/36Primary

    by graphic or iconic representation · CPC title

  • Graphical identity · CPC title

  • using shared identity modules, e.g. SIM sharing · CPC title

  • applying encryption of the keys · CPC title

  • Authentication · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10013545B2 cover?
Systems, methods and devices for creating a user credential are provided. A device for creating a user credential for user authentication includes one or more processors configured to generate a first list of credential components from a second list of credential components and a network interface component coupled to a network. The network interface component is configured to transmit the gene…
Who is the assignee on this patent?
Jakobsson Bjorn Markus, Paypal Inc
What technology area does this patent fall under?
Primary CPC classification G06F21/36. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Jul 03 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).