The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jun. 06, 2017

Filed:

Apr. 15, 2013
Applicant:

Authentify, Inc., Chicago, IL (US);

Inventor:

Ravi Ganesan, West Palm Beach, FL (US);

Assignee:

Early Warning Services, LLC, Scottsdale, AZ (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 21/33 (2013.01); G06F 21/42 (2013.01); G06F 21/51 (2013.01); G06F 21/56 (2013.01); H04L 29/08 (2006.01);
U.S. Cl.
CPC ...
H04L 63/08 (2013.01); G06F 21/33 (2013.01); G06F 21/42 (2013.01); G06F 21/51 (2013.01); G06F 21/566 (2013.01); H04L 63/0838 (2013.01); H04L 67/02 (2013.01);
Abstract

The present invention provides a new method of site and user authentication. This is achieved by creating a pop-up window on the user's PC that is in communication with a security server, and where this communication channel is separate from the communication between the user's browser and whichever web site they are at. A legitimate web site embeds code in the web page which communicates to the security server from the user's desktop. The security server checks the legitimacy of the web site and then signals both the web page on the user's browser, as well as the pop-up window to which it has a separate channel. The security server also sends a random image to both the pop-up window and the browser. If user authentication is requested by the web site the user is first authenticated by the security server for instance by out of band authentication. Then the security server computes a one time password based on a secret it shares with the web site and sends it to the pop up window. The user copies this one time password into their browser which sends it to the web site, which can re-compute the one time password to authenticate the user.


Find Patent Forward Citations

Loading…