Trusted Network Browser for Phishing Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face challenges in securely accessing and managing multiple financial website accounts due to password complexity and the risk of phishing attacks, with existing solutions lacking comprehensive multi-tenant capabilities and on-device biometric authentication.

Innovation Solution

A back-end service maintains a database of trusted network URLs, providing a secure browser for single-click access to financial websites, integrated with an identity protection suite that includes a bulletin-board of services, and utilizes white-listed IP addresses and XPath locations for secure login automation, preventing phishing attacks by limiting navigation to trusted sites.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If users manually manage passwords for multiple financial accounts, then they can access their accounts, but the complexity and security risk of password management increases significantly

Engineering Contradiction:
Improvepassword managementVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system enables automated authentication where the credential assistant service automatically fills login credentials and manages authentication processes without requiring manual user intervention for each login, thereby reducing password management complexity while maintaining security through automated secure credential handling

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

A credential assistant service acts as an intermediary between users and financial websites, securely storing credentials and automatically providing them during login processes, thus simplifying user interaction while enhancing security through centralized secure credential management

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If users access financial websites through conventional browsers, then they have browsing freedom, but they are vulnerable to phishing attacks and malicious websites

Engineering Contradiction:
Improvebrowsing freedomVSAvoidphishing attacks
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The system preemptively blocks access to malicious and phishing websites by maintaining a curated list of trusted financial institution domains, preventing users from navigating to harmful sites before they can be compromised, thus protecting against phishing attacks while allowing access to legitimate financial services

Inventive Principle:
Principle #9Preliminary anti-action

Solution Approach 2:

The secure browsing functionality is integrated across multiple device platforms including desktops, laptops, tablets, and smartphones, providing universal protection against phishing attacks while maintaining the ability to access financial services across all devices through a unified trusted network

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If the system supports multiple device platforms, then user accessibility improves, but system complexity and integration challenges increase

Engineering Contradiction:
Improvemulti-platform supportVSAvoidsystem integration
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The credential assistant service is designed as a universal system that operates across multiple device platforms including Windows, Mac, Linux, iOS, and Android, providing consistent secure credential management and protected browsing functionality across all platforms through a unified architecture that reduces integration complexity

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system is segmented into independent components including a credential assistant service, a protected browsing extension, and a trusted network database, allowing each component to be developed and maintained independently for different platforms while working together through standardized interfaces, thus reducing overall system integration complexity

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS9021254B2Multi-platform user device malicious website protection system
Publication Date: 2015.04.28 INTERSECTIONS LLC
  • US9021254B2 patent drawing
  • US9021254B2 patent drawing
  • US9021254B2 patent drawing

AI summary

A security system for defending online users against fraudsters and malicious websites comprises a back-end network server and appropriate apps for each protected user device. An otherwise conventional network server is enhanced with application software instructions for a centralized software-as-a-service (SaaS) to respond to network requests from user devices operating variously under ANDROID-type, APPLE IOS-type, and MICROSOFT WINDOWS-type operating systems. The SaaS investigates, surveys, and watches websites. It calculates confidence scores related to financial fraud and the acceptability and risk to said users of visiting particular websites. It maintains a trusted network database of website URL's calculated to belong to financial websites that can be trusted and present acceptable levels of fraud and financial risk to its visitors. Each user device application provides for secure password management and access via a security browser to websites in the trusted network.