Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

47 results about "Multi-factor authentication" patented technology

Multi-factor authentication (MFA) is an authentication method in which a computer user is granted access only after successfully presenting two or more pieces of evidence (or factors) to an authentication mechanism: knowledge (something the user and only the user knows), possession (something the user and only the user has), and inherence (something the user and only the user is).

Systems and processes for multifactor authentication and identification

A system can include a server having a processor configured to receive, from a first computing device, first data associated with at least one historical data attack. The processor can encode the first data into at least one fixed-size representation. The processor can generate at least one anonymized vector representation based on the at least one fixed-size representation. The processor can receive, from a second computing device, second data associated with a potential attacker. The processor can encode the second data into at least one additional fixed-size representation. The processor can generate a second anonymized vector representation based on the at least one additional fixed-size representation. The processor can generate a confidence measure of the potential attacker as an attacker based on a comparison between the at least one anonymized vector representation and the second anonymized vector representation.
Owner:T STAMP INC

Multi-factor authentication using wearable devices

According to one aspect, a method includes receiving, by a head-mounted display device, an authentication code associated with multi-factor authentication; receiving image data from an image camera on the head-mounted display device; detecting, by the head-mounted display device, that the image data includes an interface for receiving the authentication code; and displaying, by the head-mounted display device, the authentication code in a location corresponding to the interface.
Owner:GOOGLE LLC

Dynamic multi-factor authentication for premises access

Systems, methods, and devices are described herein. An example system is disclosed. The system includes at least one computing device configured to communicate with a premises monitoring system located at a premises. The at least one computing device is further configured to determine that a plurality of authentication factors associated with a person at the premises monitoring system have been satisfied, determine a respective weight of a plurality of weights for each of the plurality of authentication factors, determine a security factor for the premises monitoring system, calculate an authentication value for the person based on the security factor and the plurality of weights for the plurality of authentication factors, determine that the authentication value meets a predefined authentication threshold, and in response to determining that the authentication value meets the predefined authentication threshold, deem the person authenticated.
Owner:THE ADT SECURITY CORPORATION

Limiting discovery of a protected resource in a zero trust access model

According to an embodiment, a system comprises one or more processors and one or more computer-readable non-transitory storage media comprising instructions that, when executed by the one or more processors, cause one or more components of the system to perform operations. The operations comprise determining that an endpoint device has requested to discover a location of a protected resource that is protected by a gateway, determining whether the endpoint device has provided a token that is valid, and permitting the endpoint device to discover the location of the protected resource based on determining that the endpoint device has provided the token that is valid. The token indicates that the endpoint device successfully completed a first multi-factor authentication procedure in connection with accessing an authentication enforcement resource.
Owner:CISCO TECHNOLOGY INC

Multi factor authentication using different devices

Customizing an application on a mobile device includes storing at least a portion of customization data in a customization server that is independent of the mobile device, a user of the mobile device accessing the customization server independently of the mobile device, receiving authorization data from the customization server that enables the mobile device to securely receive customization data from the customization server, and the mobile device using the authorization data to cause the customization server to provide the customization data to the mobile device. The authorization data may be provided by postal message, email message, an SMS text message, and / or a visual code provided on a screen of a computer used to access the customization server. The user may use a computer to provide credential information to access the customization server. Customizing the application may allow the mobile device to access a user service on behalf of the user.
Owner:ASSA ABLOY AB

Biometric Multi-Account Transaction Card

PendingUS20260252837A1MicrocontrollerBiometric data
A biometric multi-account transaction card and associated transaction system. The card includes a card body conforming to ISO / IEC 7810 ID-1, a fingerprint sensor configured to capture user biometric data, an optical element for facial-recognition or optical sensing, and an integrated circuit contact module for EMV communication is disclosed. A secure element stores a non-reversible biometric template and multiple tokenized payment credentials organized in credential slots. A microcontroller executes biometric-matching algorithms, account-selection logic, and generates EMV-compliant cryptograms, while an NFC antenna enables contactless operation. A cooperating point-of-sale terminal displays account options received from the card and can perform facial recognition for multi-factor authentication. Upon successful authentication, the card transmits a tokenized payment credential corresponding to a selected account.
Owner:WOODLEY TYWANA

Multi-factor authentication system for property management

A multi-factor authentication system for property management may provide user a convenient and safe property management service via enrolling with service for multi-factor authentication via an application. The user may log in the multi-factor authentication service platform during the enrollment phase via the application to acquire an account and obtain authority for use, thereby to access the service provided by the multi-factor authentication service platform via a property management station system. In addition, during the property management service, the user may acquire the property management service in fewer steps and a more secure manner during an authentication phase with the multi-factor authentication service platform, thereby to enforce security for identity authentication.
Owner:WANG CHIH CHUN

Concealed three-dimensional data object for multi factor authentication

A workspace management system includes a networked workspace scheduling server. A conferencing device has a three-dimensional authentication object encoded with data that is read using light detection and ranging (LIDAR) and disposed behind a bezel cover. The bezel cover has at least a visible mode and a concealed mode. Upon the bezel cover being in a visible mode, the three-dimensional authentication object is visible to a LIDAR scanner, and upon the bezel cover being in a concealed mode, the three-dimensional authentication object is not visible to the LIDAR scanner. At least one security camera is configured to capture an image of the three-dimensional authentication object of the conferencing device. A mobile user device has an application installed thereon. A form authentication token associated with the mobile user device and encoded in the three-dimensional authentication object is retrievable by the application.
Owner:CRESTRON ELECTRONICS INC

Innovative system for analysing payment means and automatically activating discounts

PCT designated stageWO2026142477A1Mobile Telephone NumberElectronic systems
The invention relates to a smart electronic system for automatically managing and activating discounts during payment. The system is based on linking consumer data (such as national identification number, mobile phone number, and bank card or digital wallet details) to central databases of banking and non-banking offers and discounts. An authentication engine matches the consumer data to the databases, then a smart comparison module selects the best available discount. The discount is automatically applied to the payment at points of sale or in electronic payment portals, and the consumer is immediately notified of the discount applied. The system can be integrated with banks, digital wallets, communications companies, loyalty programmes and work places, and also comprises data protection mechanisms using encryption and multifactor authentication. The invention enables maximum benefit from discounts without manual intervention by the consumer, which enhances the payment experience and the effectiveness of commercial offers for banks and businesses.
Owner:ALSHARIF HANI

Authentication service with shared session tokens for sharing authentication

Disclosed are systems, apparatuses, methods, computer readable medium, and circuits for sharing multifactor authentication with shared session tokens using an authentication service. According to at least one example, a method includes: in response to receiving a request to check an authentication status from a first application, transmitting a first message to an authentication service including shared information; providing first authentication credentials related to a first authentication to the authentication service; and receiving a message related to a second authentication to bypass the second authentication.
Owner:CISCO TECHNOLOGY INC

Multi-factor enabled access using randomly selected digital identity authentication factors

Techniques are described for providing multifactor authentication using randomly selected Digital Identity factors associated with a human user or individual seeking access to a facility, building, computer system, network, application, memory, etc. Digital Identity factors are or memory. Digital Identity factors are retrieved and stored by an authentication agent. The Digital Identity factors can be retrieved from a network such as the internet or can be previously provided by a customer or human individual requesting authorization. Upon receiving a request for authentication, a plurality of Digital Authentication factors are randomly selected. A request is sent to an environment associated with the human individual seeking access, the request including information regarding the randomly selected Digital Authentication factors. A reply is received having information regarding the randomly selected authentication factors. The information in the reply is compared with the randomly Digital Identity factors to determine whether to grant or deny access.
Owner:CISCO TECHNOLOGY INC

Systems and methods of contactless card as one authentication factor for multiple factor authentication

Systems and methods for authenticating a user using a contactless card as one authentication factor for multiple factor authentication are provided. In an exemplary embodiment, a server receives a first request of authenticating a user using a first authentication factor, authenticates the user using the first authentication factor, and receives a second request of authenticating the user using a contactless card as a second authentication factor. The server receives a cryptogram of the contactless card, validates the cryptogram, decrypts the cryptogram, and extracts a unique customer identifier of the contactless card. The server verifies the unique customer identifier, authenticates the user using the unique customer identifier, and transmits an authentication result of authenticating the user using the contactless card as the second authentication factor.
Owner:CAPITAL ONE SERVICES LLC

Multifactor authentication using network address translation data

The present disclosure describes a device, computer-readable medium, and method for multifactor authentication using network address translation data. A method performed by a processing system includes receiving, from a host device in a communication network, a request to authenticate a user, wherein the request includes a purported identity of the user and a public internet protocol address assigned to a user endpoint device from which a request to access a resource at the host device was sent, querying a provider edge server for a verification that the purported identity matches an identity associated with a private internet protocol address that is mapped to the public internet protocol address, receiving a first response from the provider edge server, determining whether to authenticate the user based on the first response from the provider edge server, and sending a second response to the host device indicating a result of the determining.
Owner:AT&T INTELLECTUAL PROPERTY I L P

Electronic signature evidence storage management system and method

The invention discloses an electronic signature evidence storage management system, which belongs to the technical field of privacy protection and comprises a data acquisition module, an evaluation module and an encryption analysis module. The data acquisition module acquires data through a touch input device and an environment sensor, and performs preprocessing and multi-factor identity verification; the evaluation module comprises a risk evaluation unit for judging whether continuous evidence storage operation is allowed or not and a credibility evaluation unit for triggering an evidence storage strategy of a corresponding level; and the encryption analysis module comprises an encryption unit for performing four-stage encryption processing and an encryption adjustment unit for dynamically adjusting an encryption strategy when an abnormal mode is detected. A comprehensive safety protection system is constructed, the comprehensiveness and safety of identity verification are effectively improved, the signature consistency is ensured, the name imposing risk is prevented, the potential risk is recognized in time, the safety of data in all links is ensured through encryption analysis, and the overall safety and reliability of the system are improved.
Owner:ZHONGHENG NUOSEN (QINGDAO) TECHNOLOGY CO LTD

Multi-factor authentication providing a credential via a contactless card for secure messaging

Exemplary embodiments may use a contactless card as a secondary form of authentication in a multi-factor authentication for a secure messaging service. The recipient party of a request to initiate a messaging service session (such as a server computing device) may be programmed to use the phone number of the originating device to look up records regarding an identity of a party and their associated phone number as a primary credential and then may require an authentication credential originating from the contactless card as a secondary credential for the initiating party. In some instances, the credential originating from the contactless card is a onetime password that is valid only for a period of time. The recipient party determines whether the onetime password is valid. If both credentials are valid, a secure messaging session may be initiated with the initiating party.
Owner:CAPITAL ONE SERVICES LLC

Systems and methods for using multi-factor authentication

ActiveUS12718303B2User deviceInternet privacy
An authentication computing device stores a cardholder profile that is associated with a candidate cardholder and includes a cardholder identifier, a device identifier, payment account data, and trusted authentication data in a database system, receives an authentication request that is associated with a tax filing of the candidate cardholder and includes a filing identifier from a revenue computing device, detects the authentication request is associated with the candidate cardholder based upon the filing identifier and the cardholder profile, transmits an identity challenge requesting authentication data associated with the candidate cardholder to a user device associated with the device identifier, receives a challenge response including response authentication data from the user device, determines an authentication status associated with the authentication request based on a comparison of the response authentication data and the trusted authentication data, and transmits the authentication status to the revenue computing device.
Owner:MASTERCARD INT INC

System and method for multi-factor authentication of a communication device metadata with user authentication

The present invention relates to a system and a method for multi-factor authentication of communication device metadata. The system includes a communication device, and a recipient device that work together to authenticate communication device metadata using digital signatures and a user's identity through voice biometrics. User enrolls into the system by providing voice samples, from which a unique voiceprint is created and stored. For authenticating the communication device metadata with user authentication, the user issues a voice command, and the system extracts voice signatures which are compared with the stored voiceprint to verify the user's identity. Upon successful authentication, the communication device metadata is accessed, and corresponding digital signatures are generated. Further, the system authenticates the generated digital signatures and user's identity. If both are verified, the communication device metadata is considered valid and used for further processing.
Owner:CHANDRAN DEEPAK R +1

Information processing apparatus, method for controlling information processing apparatus, and storage medium

In an information processing apparatus having a multifactor authentication function, when user authentication is performed by an authentication server, an additional extended authentication application, or the like, a case where an additional security measure related to multifactor authentication is possible cannot be correctly determined, and a security measure status cannot be displayed in some cases.SOLUTION: In the multi-function peripheral 100, when the application used in the user verification is a standard verification application incorporated in advance in the firmware of the multi-function peripheral 100 and the verification server is not used (No in S414), the security measure status related to the multi-factor verification is displayed based on the setting value related to the multi-factor verification (S415, S416, S412), and when the application used in the user verification is an additional extended verification application (Yes in S411), the fact that the security measure related to the multi-factor verification has been implemented is displayed regardless of the setting value related to the multi-factor verification (S412).SELECTED DRAWING: Figure 4B
Owner:CANON KK

Supply chain data sharing method and system based on block chain

The invention relates to the technical field of supply chain data sharing, and discloses a supply chain data sharing method and system based on a block chain, and the method comprises the steps: confirming a supply chain participant and a block chain system, obtaining a partner creditworthiness set and a cooperation closeness degree set, carrying out the multi-factor identity verification of a to-be-registered supplier, obtaining the identity verification data, and carrying out the verification of the to-be-registered supplier. If the identity verification data accords with preset identity verification passing data, acquiring a distributed identity account book, an access authority and a data block set, performing data sharing auditing on the registered supplier to obtain a plurality of auditing data, acquiring compliant suppliers, compliant manufacturers, compliant logistics providers and compliant retailers, and storing the compliant suppliers, the compliant manufacturers, the compliant logistics providers and the compliant retailers; and completing supply chain data sharing based on the block chain based on the distributed identity account book, the compliance supplier, the compliance manufacturer, the compliance logistics provider and the compliance retailer. According to the invention, the efficiency and security of supply chain data sharing can be improved.
Owner:SHANDONG PETROCHEMICAL INST

Method and system for secure e-mail management with hardware-rooted encryption, verified deletion, and offline access

The invention relates to a computer-implemented method and system for secure e-mail management, employing an indivisible sequence of interdependent modules, enabling automated downloading of messages and attachments via IMAP, POP3, proprietary or future-compatible protocols, authenticated through OAuth2 and mandatory multi-factor authentication (TOTP or FIDO2-compliant biometrics). Multi-layer integrity verification is performed prior to server deletion, using cryptographic checksums, error correction codes, and Merkle tree validation, generating immutable audit logs. The messages are stored locally in encrypted databases with hardware-bound keys managed by TPM, HSM, secure processor enclaves, or equivalents. Deletion is conditioned on multi-stage cryptographic verification and deletion tokens linked to audit logs; omission of any step invalidates the operation. Configurable grace periods with cross-device undo and an offline graphical interface are included, all inseparably integrated to ensure security, traceability and the technical compliance of the invention.
Owner:GONZÁLEZ SANTIAGO OMAR

Mitigating risk from multi-factor authentication fatigue attacks

An authentication system identifies and mitigates the effectiveness of a Multi-factor Authentication (MFA) Fatigue attack. The attack may be detected based on the number of requests for authentication received for a user within a predetermined time window, or through user or administrator input. Once detected, the authentication system is placed in a safe mode to mitigate the MFA Fatigue attack. In safe mode, all pending requests for authentication are automatically rejected. Subsequent requests for mitigation may be automatically rejected or the authentication process may be modified to accurately differentiate authentication attempts from a legitimate user from authentication attempts that are part of the MFA Fatigue attack. To further mitigate the effectiveness of MFA Fatigue attacks, the authentication system may use simulated authentication attempts to identify and train users who are susceptible to MFA Fatigue attacks.
Owner:VERCRIO INC

Multifactor authentication using internet domain name retrieval

An enrollment system uses a camera to scan an identification document to generate an image. A name of an organization is extracted from the image. The enrollment system obtains one or more Internet domain names associated with the organization. Using a graphical user interface, a prompt is displayed seeking input of an e-mail address of a user of the enrollment system. The input of the e-mail address is received via the graphical user interface. The enrollment system determines that the e-mail address is associated with the one or more Internet domain names. An e-mail is sent to the e-mail address of the user. The enrollment system determines that the user has clicked on a hyperlink in the e-mail using a mobile device that is different from the enrollment system. The enrollment system performs functions to enroll the mobile device in a service plan operated by a mobile network operator.
Owner:T MOBILE US INC

Multi-factor authentication based cellular wireless service transfer with account owner consent

ActiveUS12666263B2Security arrangementNetwork data managementOriginal equipment manufacturerOne-time password
The described embodiments set forth techniques for transferring cellular wireless service from a source wireless device to a target wireless device with multi-factor authentication and consent of a mobile network operator (MNO) account owner of a multi-user MNO account that includes one or more MNO account members. Terms and conditions for transfer of the cellular wireless service can be presented via a native operating system user interface of a wireless device of the MNO account owner. When the target wireless device belongs to an MNO account member, the MNO account owner wireless device facilitates transfer of the cellular wireless service by allowing the MNO account owner to review terms and conditions and provide one-time passcode authentication to the target wireless device. An original equipment manufacturer (OEM) cloud network service can be used for transfer of terms and conditions information and / or the one-time passcode.
Owner:APPLE INC

Multi-factor authentication kiosk

ActiveUS12717885B2EngineeringAutoencoder
The provided system and methods describe a Multi-factor Authentication (MFA) kiosk that utilizes various sensors to capture biometric, behavioral, and physiological data for authentication. The kiosk includes a user interface, a set of sensors, and services such as kiosk management, rules configuration, sensor management, and an authentication service. The sensors, both integrated and external, gather diverse data, including facial recognition, fingerprint scans, voice recognition, gait analysis, and more, constructing a physical profile for authentication. The system incorporates a rules service for configuring authentication policies and a sensor management service to optimize sensor performance. Authentication service uses a scoring model, potentially a deep learning algorithm like an autoencoder, to generate an authentication score based on inputs from sensors, rules, and previous attempts. Security measures include encryption, isolation of components, and compliance with data protection regulations. A plurality of MFA kiosks may form an authentication network.
Owner:QOMPLX INC

Crowdsourcing and Verifying a Trusted Entity’s Identification

Methods of verifying a user's identity using trusted members of the user's community are provided. Users may request trusted friends and family members register as vouching users. If a user needs to confirm the user's identity, such as during a multifactor authentication verification or in the event of a forgotten credential, vouching users may be called upon to verify user identity. Vouching users may confirm a user's identity via a group communication session or by proving physical proximity to the user. Physical proximity may be proven by tapping a token, such as an electronic device or a transaction card, to either the user's device and / or the vouching user's device. Using trusted friends and family members to verify a user's identity safeguards online accounts from deep fake AI creations and protects susceptible online users from phishing schemes and social engineering attacks.
Owner:CAPITAL ONE SERVICES LLC

Intelligent self-adaptive power supply and encrypted data transmission USB device and method

The application discloses a kind of intelligent self-adapting power supply and encrypted data transmission USB device and method, it is related to USB technical field, including USB device, USB device is provided with USB equipment interface plug and several USB interfaces, USB device is composed of intelligent power supply module, encrypted data transmission module, equipment identification and connection management module and central control module;Intelligent power supply module includes voltage current detection unit, power supply strategy decision unit and adjustable power output unit;Encrypted data transmission module includes data encryption unit, data decryption unit and security key management unit;Equipment identification and connection management module includes equipment identity authentication unit and connection state monitoring unit;Through intelligent self-adapting power supply technology and hybrid encryption and multi-factor identity authentication data security transmission mechanism, the problems existing in the prior art can be effectively solved.
Owner:BEIJING CATHAY INTERNET INFORMATION TECH CO LTD +1

Firearm monitoring devices, systems, and methods

A firearm safety sensing system for the monitoring and detection of firearm movement including a firearm storage device configured to store a firearm, a firearm monitoring device including one or more processors, sensors, and communication interfaces. The sensors are positioned to sense when either the firearm stored in the firearm storage device and / or the firearm storage device changes position relative to the sensors and may detect when the firearm storage device has been opened or unlocked. The processor receives sense signals, determine whether the sense signal represents a change in position of the firearm relative to the sensors, and send, via a communication interface and firearm monitoring device, a change in position notification to the user and may receive instructions to execute from the user. A user may manually or automatically prevent the firearm storage device from being opened. Multi-factor authentication may be enabled if power or communications are disrupted.
Owner:PAIN ON HIP VIRGIL

Frictionless multi-factor authentication

Devices, methods, and computer-readable media that perform frictionless multi-factor authentication. In one embodiment, a server includes a memory including a frictionless multi-factor authentication (fMFA) service, and an electronic processor communicatively coupled to the memory. The electronic processor is configured to receive a frictionless multi-factor authentication (fMFA) request and collected data of a user interface device, determine, with a unique device identifier (UDID) component, a unique device identifier (UDID) of the user interface device based on device attributes included in the collected data, determine, with a passive biometrics component, a biometrics match assessment against a historical profile, determine whether a user of the user interface device is authenticated under multi-factor authentication (MFA) based on the UDID and the biometrics match assessment, responsive to determining that the user is authenticated under multi-factor authentication (MFA), output a fMFA authentication response that indicates authentication of the user.
Owner:MASTERCARD TECHNOLOGIES CANADA ULC

A more modular multi-factor authentication system with a maximum of 3 to 4 or more factors and live verification.

A multi-factor authentication system consisting of: - at least 3 selectable authentication factors from NFC card, fingerprint, facial recognition, voice, iris, ear shape, nose shape, or other biometric characteristics; - live verification where each factor is checked with every access; - logic that instantly identifies the owner and blocks unauthorized users with each failed factor; - offline functionality that does not require an internet, GPS, or cloud connection.
Owner:HOGL PETER