Systems and methods for securely managing biometric data
US-2017264599-A1 · Sep 14, 2017 · US
US11316842B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11316842-B2 |
| Application number | US-201916601730-A |
| Country | US |
| Kind code | B2 |
| Filing date | Oct 15, 2019 |
| Priority date | Jul 23, 2019 |
| Publication date | Apr 26, 2022 |
| Grant date | Apr 26, 2022 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Disclosed embodiments relate to uniquely identifying and validating identities based on electronic file fingerprints. Techniques include identifying an identity associated with a computing device; accessing fingerprinting data associated with an electronic file stored on or transmitted from the computing device; generating, based on a diversity of different properties of the fingerprinting data, a profile for the electronic file; accessing a repository storing profiles corresponding to a plurality of identities; comparing the generated profile with one or more of the stored profiles; determining whether the generated profile matches a stored profile, from the repository of stored profiles, associated with the identity; and validating, conditional on the matching, the identity.
Opening claim text (preview).
What is claimed is: 1. A non-transitory computer readable medium including instructions that, when executed by at least one processor, cause the at least one processor to perform operations for validating identities based on electronic file fingerprints, the operations comprising: receiving an electronic registration file from a computing device associated with an identity, the computing device being configured to provide the electronic registration file independent of a request to access a secure resource from the computing device and independent of a query to provide the electronic registration file; updating a stored profile associated with the identity based on the electronic registration file received from the computing device, the stored profile being included in a repository of stored profiles corresponding to a plurality of identities; receiving, from the computing device, the request to access the secure resource; identifying the identity associated with the computing device; receiving, from the computing device, fingerprinting data associated with an electronic file stored on or transmitted from the computing device, wherein the fingerprinting data comprises one or more metadata attributes of the computing device, the metadata attributes being accessed separately from the electronic file; generating, based on a diversity of different properties of the fingerprinting data, a profile for the electronic file comprising a subset of the one or more metadata attributes; accessing the repository storing profiles; comparing the generated profile with one or more of the stored profiles; determining whether the generated profile matches the stored profile associated with the identity by comparing a degree of matching between the generated profile and the stored profile with a threshold; validating the identity conditional on the degree of matching being above the threshold; and granting, based on the validating, the request to access the secure resource. 2. The non-transitory computer readable medium of claim 1 , wherein the identity is at least one of: a unique computing device, a unique user, or an account. 3. The non-transitory computer readable medium of claim 1 , wherein the electronic file is an image file and the fingerprinting data comprises image metadata. 4. The non-transitory computer readable medium of claim 3 , wherein the image file is an image of a user associated with the identity. 5. The non-transitory computer readable medium of claim 3 , wherein the diversity of different properties of the fingerprinting data include at least one of: date data, device data, zoom data, software data, or location data. 6. The non-transitory computer readable medium of claim 1 , wherein the identity provides the electronic file as part of requesting access to a secure resource. 7. The non-transitory computer readable medium of claim 1 , wherein generating the profile for the electronic file includes generating a unique fingerprint for the electronic file that is computationally based on the diversity of different properties of the fingerprinting data. 8. The system of claim 1 , wherein the validating includes authenticating the identity. 9. The non-transitory computer readable medium of claim 1 , wherein the granting includes provisioning a credential for use by the identity in accessing the secure resource. 10. A computer-implemented method for uniquely identifying and validating identities based on electronic file fingerprints, the method comprising: receiving an electronic registration file from a computing device associated with an identity, the computing device being configured to provide the electronic registration file independent of a request to access a secure resource from the computing device and independent of a query to provide the electronic registration file; updating a stored profile associated with the identity based on the electronic registration file received from the computing device, the stored profile being included in a repository of stored profiles corresponding to a plurality of identities; receiving, from the computing device, the request to access the secure resource; identifying the identity associated with the computing device; receiving, from the computing device, fingerprinting data associated with an electronic file stored on or transmitted from the computing device, wherein the fingerprinting data comprises one or more metadata attributes of the computing device, the metadata attributes being accessed separately from the electronic file; generating, based on a diversity of different properties of the fingerprinting data, a profile for the electronic file comprising a subset of the one or more metadata attributes; accessing the repository storing profiles; comparing the generated profile with one or more of the stored profiles; determining whether the generated profile matches the stored profile associated with the identity by comparing a degree of matching between the generated profile and a stored profile with a threshold; validating, conditional on the degree of matching being above the threshold, the identity; and granting, based on the validating, the request to access the secure resource. 11. The computer-implemented method of claim 10 , wherein accessing the fingerprinting data includes querying the computing device from a resource external to the computing device. 12. The computer-implemented method of claim 10 , wherein accessing the fingerprinting data includes receiving the electronic file from the computing device. 13. The computer-implemented method of claim 10 , wherein the fingerprinting data comprises metadata of the electronic file. 14. The computer-implemented method of claim 10 , wherein the repository is a database external to the computing device. 15. The computer-implemented method of claim 10 , wherein the electronic file is at least one of: an image file, a video file, a sound file, or textual document. 16. The computer-implemented method of claim 10 , wherein the identity provides the electronic file as part of requesting access to a secure resource. 17. The computer-implemented method of claim 10 , wherein generating the profile for the electronic file includes generating a fingerprint for the electronic file that is computationally based on the diversity of different properties of the fingerprinting data. 18. The computer-implemented method of claim 10 , wherein the validating includes authenticating the identity. 19. The computer-implemented method of claim 10 , wherein the granting includes provisioning a credential for use by the identity in accessing the secure resource.
Biological data, e.g. fingerprint, voice or retina (network architectures or network communication protocols for supporting authentication of entities using biometrical features in a packet data network H04L63/0861) · CPC title
using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title
based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint · CPC title
Querying · CPC title
for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.