Establishing a secure channel with a human user

US9356929B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9356929-B2
Application numberUS-201213451369-A
CountryUS
Kind codeB2
Filing dateApr 19, 2012
Priority dateApr 25, 2002
Publication dateMay 31, 2016
Grant dateMay 31, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method of establishing a secure channel between a human user and a computer application is described. A secret unique identifier (“PIN”) is shared between a user and an application. When the user makes a request that involves utilizing the PIN for authentication purposes, the application renders a randomly selected identifier. The randomly selected identifier is in a format that is recognizable to a human but is not readily recognizable by an automated agent. The randomly selected identifier is then presented to the human user. The user identifies the relationship between the randomly selected identifier and the PIN. If the user's input reflects the fact that the user knows the PIN, then the user is authenticated.

First claim

Opening claim text (preview).

We claim: 1. A secure, computer implemented, and non-cryptographic method of authenticating a user over an insecure communication channel, the method comprising: receiving, at a first computing device associated with the user, an image sent from a second computing device over the insecure communication channel, the image comprising randomly chosen alphanumeric characters, the randomly chosen alphanumeric characters being encoded in the image such that when the image is displayed to the user, at least some of the randomly chosen alphanumeric characters at least partially intersect; displaying the image to the user on the first computing device; receiving, at a user interface from the user, a number of clicks on a sequence of up and down buttons associated with the randomly chosen alphanumeric characters, the number of clicks based on a relationship between each character of the randomly chosen alphanumeric characters and a corresponding character of a predefined password, and collecting the number of clicks on the sequence of up and down buttons as first input data; sending the first input data to the second computing device over the insecure communication channel, the first input data enabling, at least in part, the second computing device to derive the predefined password from the randomly chosen alphanumeric characters; and receiving, from the second computing device, authorization to access a service provided by the second computing device. 2. The method of claim 1 , wherein the first computing device is selected from the group consisting of: personal computer, automated teller machine, set-top box, laptop computer, cellular phone, personal digital assistant, and workstation.

Assignees

Inventors

Classifications

  • by means of a password · CPC title

  • Ciphering apparatus or methods not provided for in the preceding groups, e.g. involving the concealment or deformation of graphic data such as designs, written or printed messages · CPC title

  • for controlling access to devices or network resources · CPC title

  • Active cards, i.e. cards including their own processing means, e.g. including an IC or chip · CPC title

  • Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9356929B2 cover?
A method of establishing a secure channel between a human user and a computer application is described. A secret unique identifier (“PIN”) is shared between a user and an application. When the user makes a request that involves utilizing the PIN for authentication purposes, the application renders a randomly selected identifier. The randomly selected identifier is in a format that is recognizab…
Who is the assignee on this patent?
Pinkas Binyamin, Haber Stuart A, Tarjan Robert E, and 2 more
What technology area does this patent fall under?
Primary CPC classification H04L63/083. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue May 31 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).