Unauthorized account access lockout reduction

US9635032B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9635032-B2
Application numberUS-201615185669-A
CountryUS
Kind codeB2
Filing dateJun 17, 2016
Priority dateFeb 25, 2014
Publication dateApr 25, 2017
Grant dateApr 25, 2017

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method and system for determining unauthorized account access is provided. The method includes receiving a username of a user and a passcode for access to a secure account or device belonging to a user. The passcode is determined to be incorrect. Unauthorized access attempts with respect to the secure account or the device are determined based on based on the incorrect passcode and in response, a quality factor associated with the incorrect passcode with respect to the secure account or device is determined. The quality factor is compared to a threshold value. Security functions associated with the secure account or device with respect to the incorrect passcode and the results of the comparison are performed based on the quality factor and the unauthorized access attempts.

First claim

Opening claim text (preview).

What is claimed is: 1. An unauthorized passcode access reduction method comprising: remotely receiving over a network, by a computer processor of a computing system from a user via a remote system comprising a first IP address, a username of a user and a passcode for access to a secure account or device belonging to said user, wherein said first IP address differs from a second IP address of said computing system; determining, by said computer processor based on said passcode being determined as an incorrect passcode and determining that said user is accessing said computing system via said first IP address, unauthorized access attempts associated with said secure account or device; determining, by said computer processor, a quality factor associated with said incorrect passcode with respect to said secure account or device, wherein said quality factor indicates a specified percentage and associated correct position of correct characters within said passcode; retrieving, by said computer processor from a secure repository, passcode values for said passcode; comparing, by said computer processor, said passcode values with contents of said passcode; and performing, by said computer processor based on results of said unauthorized access attempts, results of comparing said quality factor to a predetermined threshold percentage value indicating a threshold percentage and position of correct characters within said passcode, and results of said comparing said passcode values with contents of said passcode, security functions associated with prevention of a false access lockout or reset process with respect to said secure account or device with respect to said incorrect passcode. 2. The method of claim 1 , wherein said quality factor indicates a progression of a pattern of characters matching characters of said passcode within a specified number of passcode input attempts. 3. The method of claim 1 , wherein said quality factor indicates a specified level of quality of said incorrect passcode with respect to said passcode, wherein said results of said comparing indicate that said quality factor exceeds said predetermined threshold, and wherein said performing said security functions comprises: disabling said username from access to said secure account or device. 4. The method of claim 3 , wherein said performing said security functions further comprises: locking said secure account or device from being accessed. 5. The method of claim 3 , wherein said performing said security functions further comprises: deleting all information from said secure account or device. 6. The method of claim 3 , wherein said performing said security functions further comprises: enabling, by an administrator, said username for access to said secure account or device. 7. The method of claim 1 , wherein said quality factor indicates a specified level of quality of said incorrect passcode with respect to said passcode, wherein said results of said comparing indicate that said quality factor exceeds said predetermined threshold, and wherein said performing said security functions comprises: locking said secure account or device from being accessed. 8. The method of claim 7 , wherein said performing said security functions further comprises: determining that a specified time period has elapsed; and enabling access to said secure account or device. 9. The method of claim 7 , wherein said performing said security functions further comprises: enabling access from an alternative location to said secure account or device. 10. The method of claim 1 , wherein said quality factor indicates a specified level of quality of said incorrect passcode with respect to said passcode, wherein said results of said comparing indicate that said quality factor exceeds said predetermined threshold, and wherein said performing said security functions comprises: deleting all information from said secure account or device. 11. The method of claim 1 , wherein said quality factor indicates a specified level of quality of said incorrect passcode with respect to said passcode, wherein said results of said comparing indicate that said quality factor is less than said predetermined threshold, and wherein said performing said security functions comprises: determining, based on said specified level of quality, that a lockout function of said secure account or device is not required; and indicating that said secure account or device has been locked out. 12. The method of claim 1 , wherein said quality factor indicates a specified level of quality of said incorrect passcode with respect to said passcode, wherein said results of said comparing indicate that said quality factor is less than said predetermined threshold, and wherein said performing said security functions comprises: determining, based on said specified level of quality, that a system memory wipe function of said secure account or device is not required; and indicating that said system memory wipe function of said secure account or device secure account has been performed. 13. The method of claim 1 , further comprising: providing at least one support service for at least one of creating, integrating, hosting, maintaining, and deploying computer-readable code in the computing system, said code being executed by the computer processor to implement: said receiving, said determining said unauthorized access attempts, said determining said quality factor, said comparing, and said performing. 14. A computing system comprising a computer processor coupled to a computer-readable memory unit, said memory unit comprising instructions that when executed by the computer processor implements an unauthorized passcode access reduction method comprising: remotely receiving over a network, by said computer processor from a user via a remote system comprising a first IP address, a username of a user and a passcode for access to a secure account or device belonging to said user, wherein said first IP address differs from a second IP address of said computing system; determining, by said computer processor based on said passcode being determined as an incorrect passcode and determining that said user is accessing said computing system via said first IP address, unauthorized access attempts associated with said secure account or device; determining, by said computer processor, a quality factor associated with said incorrect passcode with respect to said secure account or device, wherein said quality factor indicates a specified percentage and associated correct position of correct characters within said passcode; retrieving, by said computer processor from a secure repository, passcode values for said passcode; comparing, by said computer processor, said passcode values with contents of said passcode; and performing, by said computer processor based on results of said unauthorized access attempts, results of comparing said quality factor to a predetermined threshold percentage value indicating a threshold percentage and position of correct characters within said passcode, and results of said comparing said passcode values with contents of said passcode, security functions associated with prevention of a false access lockout or reset process with respect to said secure account or device with respect to said incorrect passcode. 15. The computing system of claim 14 , wherein said quality factor indicates a progression of a pattern of characters matching characters of said passcode within a specified number of passcode input attempts. 16. The computing system of claim 14 , wherein said quality fact

Assignees

Inventors

Classifications

  • G06F21/45Primary

    Structures or tools for the administration of authentication · CPC title

  • Authentication · CPC title

  • using a predetermined code, e.g. password, passphrase or PIN (network architectures or network communication protocols for supporting authentication of entities using passwords in a packet data network H04L63/083) · CPC title

  • User authentication · CPC title

  • using passwords (cryptographic mechanisms or cryptographic arrangements for entity authentication using a predetermined code H04L9/3226) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9635032B2 cover?
A method and system for determining unauthorized account access is provided. The method includes receiving a username of a user and a passcode for access to a secure account or device belonging to a user. The passcode is determined to be incorrect. Unauthorized access attempts with respect to the secure account or the device are determined based on based on the incorrect passcode and in respons…
Who is the assignee on this patent?
IBM
What technology area does this patent fall under?
Primary CPC classification G06F21/45. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Apr 25 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 5 related publications on this page (citations in our corpus or others sharing the same primary CPC).