Invalid Request Detection for Phishing Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users often unintentionally provide personal information to illegitimate entities through phishing scams, where fraudulent websites mimic legitimate ones, leading to identity and monetary theft.

Innovation Solution

A processing system that receives data, compares it to predetermined criteria, and generates a notification if an invalid request is detected, such as a phishing attempt, allowing for user alert and central server analysis to determine the level of invalidity and update the status of the request.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If users access websites or respond to emails without verification, then ease of operation is improved, but reliability deteriorates due to phishing scams

Engineering Contradiction:
Improveease of accessVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary verification of websites and emails before users interact with them. Invalid request indicators are determined in advance by comparing received data to predetermined criteria, and users are notified before they can be deceived, thus maintaining ease of operation while improving reliability

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system provides feedback to users about the validity of requests they encounter. By notifying users of potential phishing attempts through invalid request indicators, the system creates a feedback loop that allows users to make informed decisions, thereby maintaining operational ease while enhancing security

Inventive Principle:
Principle #23Feedback

2Reliability

If a processing system analyzes all received data for validity, then reliability is improved, but device complexity increases

Engineering Contradiction:
Improvedetection accuracyVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system changes the parameter of validation from comprehensive analysis to criterion-based comparison. By using predetermined criteria and comparing specific portions of received data against these criteria, the system achieves reliable detection without requiring complex analysis of all data, thus improving reliability while controlling device complexity

Inventive Principle:
Principle #35Parameter changes

3Reliability

If the system notifies users of potential phishing attempts, then reliability is improved, but loss of time occurs due to notifications

Engineering Contradiction:
Improveprotection levelVSAvoiduser time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system applies partial action by notifying users only when invalid request indicators are determined, rather than requiring full verification of all communications. This selective notification approach provides adequate protection while minimizing time loss, as users are alerted only to potentially harmful requests

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS8141132B2Determining an invalid request
Publication Date: 2012.03.20 GEN DIGITAL INC
  • US8141132B2 patent drawing
  • US8141132B2 patent drawing
  • US8141132B2 patent drawing

AI summary

A method of determining an indication of an invalid request, the method including the steps of, in a processing system: receiving data at step 100, comparing at least a portion of the received data to predetermined criteria at step 110, determining an indication of an invalid request included in the data at step 120, and generating a notification in accordance with the determined invalid request at step 140.