Authenticating users during and after suspicious voice calls and browsing
US-2024364684-A1 · Oct 31, 2024 · US
US2016337346A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2016337346-A1 |
| Application number | US-201615150558-A |
| Country | US |
| Kind code | A1 |
| Filing date | May 10, 2016 |
| Priority date | May 12, 2015 |
| Publication date | Nov 17, 2016 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Methods and systems for authenticating a user requesting to access one or more resources via a device are described herein. Authentication may be based on or otherwise rely on a plurality of devices. For example, aspects described herein are directed towards a system and method for receiving a request from a user to access one or more resources via a first device. In response to receiving the request to access the one or more resources, the first device may send, e.g., to a second device, a request for user input of a credential at the second device. The first device may receive a credential from the second device, and the first device may authenticate the user based on the received credential. Additionally or alternatively, the second device may authenticate the user based on an input of a user credential, and the second device may send an indication of a successful authentication to the first device.
Opening claim text (preview).
What is claimed is: 1 . A method comprising: making available, by a first user device, a public key of the first user device to devices of a device mesh, wherein the first user device is in the device mesh; receiving, at the first user device and from a user, a request to access one or more resources via the first user device; in response to receiving the request to access the one or more resources, determining a second user device in the device mesh having access to the public key of the first user device; sending, from the first user device to the second user device in the device mesh, a request for user input of a credential at the second user device; receiving, at the first user device, the credential from the second user device; and authenticating, by the first user device, the user based on the credential received from the second user device. 2 . The method of claim 1 , wherein the second user device comprises a mouse or a smartwatch, and wherein the credential is configured to be input at the mouse or the smartwatch by one or more of a wheel or buttons of the mouse or the smartwatch. 3 . The method of claim 1 , further comprising: in response to a determination that a display of the second user device is unavailable, emulating one or more credential input buttons of the second user device for display on a display of the first user device. 4 . The method of claim 3 , wherein the one or more credential input buttons of the second user device comprises one or more of a scroll wheel or an on-screen slider. 5 . The method of claim 1 , further comprising: registering the first user device with the device mesh by providing an identifier for the first user device to the device mesh and correlating the identifier with the public key of the first user device. 6 . The method of claim 1 , further comprising: signing, by the first user device, the request using a private key of the first user device to generate a signed request, wherein sending the request comprises sending the signed request, and wherein the public key of the first user device is available to the second user device for verifying the signed request. 7 . The method of claim 1 , wherein receiving the credential comprises receiving the credential encrypted using the public key of the first user device. 8 . The method of claim 1 , wherein receiving the credential from the second user device is based on one or more of a geographical location of the second user device or a proximity of the second user device to the first user device. 9 . The method of claim 1 , wherein the second user device comprises a mouse having a scroll wheel, and wherein the mouse is configured to receive input of the credential from the user via the scroll wheel. 10 . The method of claim 9 , wherein receiving the credential at the first user device comprises receiving a scrolling input via the scroll wheel of the mouse, the method further comprising: in response to receiving the scrolling input via the scroll wheel of the mouse, generating for display on a display of the first user device a graphical user interface comprising a pointer, an arm, or a highlighted segment corresponding to the scrolling input. 11 . The method of claim 1 , wherein authenticating the user comprises authenticating the user based on the credential received from the second user device and entropy from one or more of the second user device and an authentication server. 12 . The method of claim 1 , further comprising: after authenticating the user by the first user device, sending, from the first user device and to a third user device, a request for the third user device to authenticate the user. 13 . A method comprising: receiving, from a first user device and at a second user device, a request to authenticate a user requesting access to one or more resources via the first user device; in response to receiving the request to authenticate the user, generating for display on a display of the second user device or a display of the first user device a prompt for user input of a credential at the second user device; receiving, at the second user device, input of the credential from the user; authenticating, by the second user device, the user based on the input of the credential received from the user; and in response to authenticating the user, sending, from the second user device to the first user device, an indication of a successful authentication. 14 . The method of claim 13 , wherein the second user device comprises a mouse, wherein the prompt is generated for display on the display of the first user device, and wherein the mouse has a scroll wheel and buttons for input of the credential. 15 . The method of claim 13 , wherein the second user device comprises a smartwatch, and wherein the prompt for user input of the credential is generated for display on the display of the smartwatch. 16 . The method of claim 13 , wherein the request to authenticate the user is signed by a private key of the first user device, the method further comprising: accessing, by the second user device, a public key of the first user device from a device mesh; and verifying the request to authenticate the user signed by the private key using the public key of the first user device. 17 . The method of claim 13 , further comprising: in response to authenticating the user, accessing, by the second user device, a public key of the first user device from a device mesh; and encrypting, by the second user device, the indication of the successful authentication using the public key of the first user device, wherein sending the indication of the successful authentication comprises sending the indication of the successful authentication encrypted using the public key of the first user device. 18 . A method comprising: authenticating, at a first user device, a user requesting to access one or more resources via the first user device; in response to authenticating the user, initiating a session for the user on the first user device and generating state information for the session; in response to a determination that a second user device is in a same device mesh as the first user device, granting access to the session via the second user device by transferring the state information for the session to the second user device. 19 . The method of claim 18 , wherein the state information for the session comprises one or more of an authentication token or an inactivity timer for the session. 20 . The method of claim 18 , further comprising performing one or more of the following: determining that the first user device is within a proximity of the second user device, wherein granting access to the session via the second user device is performed in response to determining that the first user device is within the proximity of the second user device; or determining that the user issued, via the first user device, a command to pair the first user device with the second user device, wherein granting access to the session via the second user device is performed in response to determining that the user issued the command to pair the first user device with the second user device.
Authentication · CPC title
involving the use of external additional devices, e.g. dongles or smart cards · CPC title
Virtual private networks · CPC title
using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title
using shared identity modules, e.g. SIM sharing · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.