Customized Website Interface for Spoofing Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for protecting private information online are ineffective against website spoofing, where users are tricked into entering sensitive data on fake websites, often through phishing, due to lack of authentic website recognition.

Innovation Solution

A system that stores user registration information and issues a marker for customization of website interfaces, allowing users to personalize attributes such as text, color, and layout, which are recognized upon login, thereby enhancing authentication and reducing spoofing attempts.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of manufacture

If website interfaces are standardized and identical for all users, then ease of manufacture and deployment is improved, but user ability to recognize authentic websites is worsened due to spoofing attacks

Engineering Contradiction:
Improveease of website deploymentVSAvoidwebsite authenticity recognition
Core Design Contradiction:
Ease of manufactureVSReliability

Solution Approach 1:

The patent applies local quality by allowing each user to have personalized interface attributes (colors, fonts, layouts) specific to their authentic website interactions. This customization creates unique local characteristics for each user's view of the website, making spoofing difficult while maintaining standardized core functionality. The system stores and retrieves user-specific interface preferences to create personalized viewing experiences.

Inventive Principle:
Principle #3Local quality

2Reliability

If website interfaces are customized for each user, then user recognition of authentic sites is improved, but device complexity and implementation difficulty are worsened

Engineering Contradiction:
Improvewebsite authenticity recognitionVSAvoidsystem implementation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system performs preliminary action by pre-storing user interface customization preferences in a database before actual website access. When a user logs in, their pre-stored preferences are automatically retrieved and applied, eliminating the need for real-time customization processing. This advance preparation reduces runtime complexity while maintaining personalized interface benefits for spoofing detection.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent uses copying by creating and storing digital representations of user-specific interface attributes (colors, fonts, layouts) in a database. These copied interface characteristics are then retrieved and applied during website sessions, allowing personalized authentication without complex real-time generation. The system copies and stores interface phenotype data for later reuse.

Inventive Principle:
Principle #26Copying

3Reliability

If users are required to enter login information on every page, then security is improved, but ease of operation is worsened due to repeated authentication

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies segmentation by dividing the authentication process into distinct phases: initial login authentication and subsequent page-level verification. The system segments website pages into public access pages and protected pages requiring authentication. This allows users to log in once while still maintaining security through marker verification on sensitive pages, balancing convenience and security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system introduces a marker (cookie) as an intermediary between the user and the website authentication system. This marker is issued after initial login and used to automatically verify user identity on subsequent pages, eliminating the need for repeated login credential entry. The marker acts as a mediator that maintains security while improving ease of operation by reducing authentication friction.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9177317B2System and method for consumer protection
Publication Date: 2015.11.03 BANK OF AMERICA CORP
  • US9177317B2 patent drawing
  • US9177317B2 patent drawing
  • US9177317B2 patent drawing

AI summary

A method for combating website spoofing can be used in connection with a website for a financial institution accessible by a plurality of users. Registration information is stored for a user having a financial account with the financial institution, including user login information and customization information for a website associated with the financial institution. A marker is issued, to be stored on a computer used by the user to access the website. At some point, a request is received from the user to display a webpage of the website on the computer, and the user is recognized based on the marker. A webpage is then provided to the computer, having an interface with an attribute customized according to the customization information. The user login information is entered via the website. Upon receiving the user login information, the user is provided access to the financial account.