IP Library Granted Patent US 8,533,815
Granted Patent B1
US 8,533,815 · App. 12/365,102 · Granted Sep 10, 2013

False reject mitigation using non-biometric authentication

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,533,815
App. No.
12/365,102
Granted
Sep 10, 2013
Kind
B1
Abstract

Providing secondary non-biometric authentication to identify a user following a failure of a biometric authentication based on a biometric template. In one embodiment, a knowledge-based authentication scheme may be provided. In another embodiment, a one-time password authentication scheme may be provided. An identity of the user may be confirmed using the non-biometric based authentication scheme.

Claims (43)

1. A method comprising:

denying access to a resource upon a failure of a biometric based keystroke timing authentication;

generating a one-time password to be transmitted to a user;

transmitting a message including the one-time password to the user in response to denying access;

receiving a response message for determining an identity of the user;

confirming the identity of the user based on the response message; and

granting access to the resource in response to the identity of the user being confirmed, wherein confirming the identity of the user is based on the response message matching the one-time password.

2. The method of claim 1 , further comprising:

expiring the one-time password after granting access.

3. The method of claim 1 , further comprising:

expiring the one-time password after a predetermined time period; and

denying access to the resource in response to receiving the expired one-time password.

4. The method of claim 1 , further comprising:

selecting a question to be transmitted in the message to the user;

confirming the identity of the user based on the response message; and

granting access to the resource in response to the identity of the user being confirmed.

5. The method of claim 4 , wherein the identity of the user is confirmed by determining content in the response message matches a predetermined answer to the question submitted in the message to the user.

6. A method comprising:

transmitting a subset of messages to a user, wherein the subset of messages include a plurality of questions from a predefined list of knowledge-based authentication questions;

receiving responses for the subset of message from the user, wherein the responses are a plurality of different answers to the questions and include information based upon personal knowledge of the user;

storing each received response to correspond with a respective message of the subset of message; and

using the subset of messages for a non-biometric based authentication of the user, wherein using the subset of messages for the non-biometric based authentication occurs after a failure of a biometric based authentication of the user.

7. The method of claim 6 , wherein transmitting the subset of messages occurs during enrollment of the user.

8. The method of claim 7 , wherein enrollment of the user results in a keystroke dynamics template containing timing information of key-press and key-release events.

9. The method of claim 8 , wherein the keystroke dynamics template includes data representing key dwell times and key flight times.

10. A non-transitory computer-readable medium storing data and instructions to cause a programmable processor to perform operations comprising:

denying access to a resource upon a failure of a biometric based keystroke timing authentication;

generating a one-time password to be transmitted to a user;

transmitting a message including the one-time password to the user in response to denying access;

receiving a response message for determining an identity of the user;

confirming the identity of the user based on the response message; and

granting access to the resource in response to the identity of the user being confirmed, wherein confirming the identity of the user is based on the response message matching the one-time password.

11. The non-transitory computer-readable medium of claim 10 , including further operations comprising:

expiring the one-time password after granting access.

12. The non-transitory computer-readable medium claim 10 , including further operations comprising:

adding the timing information into a vector containing scalar quantities corresponding to collected timing information of key-press and key-release events.

expiring the one-time password after a predetermined time period; and

denying access to the resource in response to receiving the expired one-time password.

13. The non-transitory computer-readable medium of claim 10 , including further operations comprising:

selecting a question to be transmitted in the message to the user;

confirming the identity of the user based on the response message; and

granting access to the resource in response to the identity of the user being confirmed.

14. The non-transitory computer-readable medium of claim 13 , wherein the identity of the user is confirmed by determining content in the response message matches a predetermined answer to the question submitted in the message to the user.

Assignments (13)
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Apr 21, 2023
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: CONCENTRIX SREV, INC.
Reel/Frame 063424/0684 →
RELEASE OF SECURITY INTEREST Recorded Oct 31, 2022
From: JPMORGAN CHASE BANK, NATIONAL ASSOCIATION
To: SCOUT ANALYTICS, INC.
Reel/Frame 061603/0019 →
NOTICE OF GRANT OF SECURITY INTEREST IN PATENTS Recorded Oct 28, 2022
From: CONCENTRIX SREV, INC.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 061799/0811 →
MERGER Recorded Oct 5, 2022
From: SERVICESOURCE INTERNATIONAL, INC.; CONCENTRIX MERGER SUB, INC.
To: CONCENTRIX SERVICESOURCE INC.
Reel/Frame 061319/0788 →
CHANGE OF NAME Recorded Oct 5, 2022
From: CONCENTRIX SERVICESOURCE INC.
To: CONCENTRIX SREV, INC.
Reel/Frame 061323/0405 →
MERGER Recorded Oct 4, 2022
From: SCOUT ANALYTICS, INC.
To: SERVICESOURCE INTERNATIONAL, INC.
Reel/Frame 061306/0137 →
RELEASE OF SECURITY INTEREST Recorded Sep 19, 2022
From: BANK OF AMERICA, N.A.
To: SERVICESOURCE INTERNATIONAL, INC.
Reel/Frame 061133/0274 →
SECURITY INTEREST Recorded Jul 23, 2021
From: SERVICESOURCE INTERNATIONAL, INC.
To: BANK OF AMERICA, N.A.
Reel/Frame 056960/0874 →
SECURITY AGREEMENT Recorded Feb 21, 2014
From: SCOUT ANALYTICS, INC.
To: JPMORGAN CHASE BANK, NATIONAL ASSOCIATION
Reel/Frame 032323/0468 →
SECURITY AGREEMENT Recorded Jan 28, 2013
From: SCOUT ANALYTICS, INC.
To: BENAROYA CAPITAL COMPANY, L.L.C.
Reel/Frame 029709/0695 →
CHANGE OF NAME Recorded Feb 11, 2011
From: ADMITONE SECURITY, INC.
To: SCOUT ANALYTICS, INC.
Reel/Frame 025799/0258 →
CORRECTIVE ASSIGNMENT TO CORRECT THE TITLE OF THE ASSIGNEE TO BE ADMITONE SECURITY, INC. INSTEAD OF ADMIT ONE SECURITY, INC. PREVIOUSLY RECORDED ON REEL 022720 FRAME 0395. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT OF THE ENTIRE RIGHT, TITLE AND INTEREST IN THE SUBJECT APPLICATION.. Recorded Oct 9, 2009
From: UPSON, MARK BLAINE; HORADAN, PETER HENRY; STARK, YVONNE J.; KELLAS-DICKS, MECHTHILD R.
To: ADMITONE SECURITY, INC.
Reel/Frame 023351/0983 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 21, 2009
From: UPSON, MARK BLAINE; HORADAN, PETER HENRY; STARK, YVONNE J.; KELLAS-DICKS, MECHTHILD R.
To: ADMIT ONE SECURITY, INC.
Reel/Frame 022720/0395 →