Anti-Phishing System Using Marked Dummy Responses

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Phishing attacks, which involve fraudulent emails mimicking legitimate sources to obtain sensitive information, pose significant risks to companies by damaging brand equity, increasing operational costs, and compromising customer trust, as existing technologies are inadequate in effectively detecting and preventing such scams.

Innovation Solution

A system and method that responds to Phishing attacks by sending mimic responses designed to entrap and detect fraudsters, using techniques like 'honey pots' and content filtering, and employing a central server to monitor and counteract fraudulent activities, including the use of dummy responses and marked data to dilute the quality of data obtained by attackers, thereby reducing the impact and facilitating the detection of originators.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If existing detection technologies are used, then some fraudulent emails can be detected, but the detection effectiveness is inadequate and many phishing attacks succeed

Engineering Contradiction:
Improvedetection effectivenessVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system performs preliminary actions by sending dummy responses to fraudulent email addresses before real victims can be harmed. These dummy responses contain marked data that will be tracked if used, allowing the system to detect and prevent phishing attacks proactively rather than reactively

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system introduces an intermediary layer between phishing attacks and victims by using dummy responses with marked data as mediators. This intermediary data allows the system to monitor and detect fraudulent activities without directly exposing real victims to harm

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If more comprehensive monitoring and tracking is implemented, then fraud detection capability improves, but the system becomes more complex and resource-intensive

Engineering Contradiction:
Improvefraud detection precisionVSAvoidmonitoring system complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The system creates simplified copies of real user responses using dummy data that mimics legitimate email reply patterns. These copied responses are easier to generate and track than monitoring all actual user communications, reducing system complexity while maintaining detection precision

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The system changes parameters by using marked data with unique identifiers in dummy responses. This allows automated tracking and detection without requiring complex analysis of communication content, simplifying the monitoring system while improving detection precision

Inventive Principle:
Principle #35Parameter changes

3Loss of information

If dummy responses with marked data are sent to fraudsters, then the value of stolen data is reduced, but the risk of exposing the detection system increases

Engineering Contradiction:
Improvevalue of stolen dataVSAvoidsystem exposure risk
Core Design Contradiction:
Loss of informationVSObject-affected harmful factors

Solution Approach 1:

The system converts the harm of data theft into a benefit by using marked dummy data that appears valuable to fraudsters but is actually traceable. When fraudsters attempt to use this marked data, it reveals their identities and methods, turning their harmful actions into detection opportunities

Inventive Principle:
Principle #22Blessing in disguise (Convert harm into benefit)

Solution Approach 2:

The system uses cheap, disposable dummy responses with marked data instead of protecting valuable real user information. These dummy responses can be freely distributed without risk, and once used or traced, they serve their purpose of identifying fraudsters without long-term security concerns

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

Data Source

PatentUS9076132B2System and method of addressing email and electronic communication fraud
Publication Date: 2015.07.07 EMC IP HLDG CO LLC
  • US9076132B2 patent drawing
  • US9076132B2 patent drawing
  • US9076132B2 patent drawing

AI summary

A system and method may respond to a fraudulent attack, such as a Phishing attack. The system and method may send a number of responses to party committing fraud, the responses designed to mimic the responses to a Phishing attack. The responses may include codes or marked information designed to entrap or detect the party committing fraud.