IP Library Granted Patent US 8,965,340
Granted Patent B1
US 8,965,340 · App. 13/628,441 · Granted Feb 24, 2015

Mobile device indentification by device element collection

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,965,340
App. No.
13/628,441
Granted
Feb 24, 2015
Kind
B1
Abstract

A technique is described that determines if a request for authentication is made on the mobile device belonging to the authorized user by examining non confidential memory parameters of the mobile device, for example a total free memory, or a number of stored phone numbers. The technique examines past authorized user values for the memory parameters and performs a statistical analysis and projects a current memory range for each of the parameters for the authorized user. The projection may include factors such as the amount of time elapsed since the mobile device was acquired, the normal variation over a day, a week, a month or a year, and cyclic variations such as many new applications during a specific month each year. The projection may also include baseline variations which may be provided by analysis of a large number of different people. If the device used for the authorization request has memory parameters different from the projected range of authorized user values, then authorization may be refused.

Claims (68)

1. A method of authenticating a mobile device transaction, the method comprising:

establishing a preliminary user identification based upon user provided login information;

measuring preliminary user mobile device variable memory parameters to generate a measured value;

comparing the measured value to a stored authorized user value range;

providing a failure to authenticate signal if the comparing indicates the measured value is outside the stored authorized user value range; and

providing an authenticate signal if the comparing indicates that the measured value is inside the stored authorized user value range.

2. The method of claim 1 wherein comparing the measured value comprises:

measuring a value of the preliminary user mobile device total free memory and comparing it to a stored authorized user value range of expected total free memory;

providing an authenticate signal if comparing results in a value inside of the stored authorized user value range;

providing a failure to authenticate signal if comparing results in a value outside of the stored authorized user value range; and

calculating a statistical trend in the stored authorized user values over a time period since mobile device acquisition to generate an updated expected value range for the total free memory; and

repeating the comparing with the updated expected value range used as the authorized user value range.

3. The method of claim 2 wherein calculating the statistical trend further includes an average change value of the authorized user per week, an average change value of the authorized user per month, and a common change rate in a total population of users to form a baseline rate of change.

4. The method of claim 1 wherein measuring the preliminary user mobile device variable memory parameters include a number of address book entries, a number of stored photographic images, a number of stored MP3 files, a number of installed applications from official markets, a number of installed applications from unofficial markets, a number of installed game applications, a number of installed social applications, a number of installed productivity applications, a number of SMS messages, a number of Email messages, a number of MMS messages, a number of BBM active chats, and an amount of total free memory.

5. The method of claim 1 wherein providing a failure to authenticate signal includes increasing a level of authentication inquiry to the user provided login information.

6. The method of claim 1 wherein providing a failure to authenticate signal if the measured value is within a selected difference value outside of the stored authorized user value range further includes:

measuring preliminary user mobile device factors including at least one of network ID, device ID, typing speed, transaction type, time of day, physical location of the mobile device, and;

comparing the network ID and device ID against stored authorized user mobile device factors; and

providing a stolen mobile device signal if network ID and device ID match the stored values and the other device factors do not match the stored values.

7. The method of claim 1 wherein providing an authenticate signal if the measured value is within a selected difference value inside of the stored authorized user value range further includes:

measuring preliminary user mobile device factors including at least one of network ID, device ID, typing speed, transaction type, time of day, physical location of the mobile device, and;

comparing the mobile device factors against stored authorized user mobile device factors; and

providing an increase security alert if the network ID and device ID match the stored values and the other device factors do not match the stored values.

8. The method of claim 1 wherein measuring preliminary user mobile device variable memory parameters to generate a measured value is in response to establishing the preliminary user identification based upon the user provided login information, and

wherein comparing the measured value to the stored authorized user value range includes verifying whether the measured value is greater than a lower limit of the user value range and less than an upper limit of the user value range.

9. An adaptive authentication server apparatus to authenticate a mobile device transaction, the adaptive authentication server apparatus comprising:

an interface;

a database; and

a controller coupled to the interface and the database, the controller being constructed and arranged to:

store a plurality of authorized users mobile device variable memory parameter values in a memory location of the database;

generate a preliminary user identification upon receipt of login information;

retrieve a stored authorized user mobile device variable memory parameter value range from a user memory location indicated by the preliminary user identification to generate a range of expected values;

obtain preliminary user variable memory parameters from the mobile device to generate a measured value;

compare the measured value to the range of expected values;

transmit an authorization failure signal if the measured value is outside the range of expected values; and

transmit an authorization signal if the measured value is inside the range of expected values.

10. The adaptive authentication server apparatus of claim 9 wherein preliminary user variable memory parameters include at least one of the following:

a number of address book entries, a number of stored photographic images, a number of stored MP3 files, a number of installed applications from official markets, a number of installed applications from unofficial markets, a number of installed game applications, a number of installed social applications, a number of installed productivity applications, a number of SMS messages, a number of Email messages, a number of MMS messages, a number of BBM active chats, and an amount of total free memory.

11. The adaptive authentication server apparatus of claim 10 wherein the measured value is generated by measuring a plurality of mobile device variable memory parameters, the controller constructed and arranged to;

generate a measured value for each mobile device variable memory parameter;

compare each measured value against a stored authorized user expected value range;

provide an authenticate signal if each measured value is inside the expected value range; and

provide a failure to authenticate signal if any measured value is outside the expected value range.

12. The adaptive authentication server apparatus of claim 11 wherein authorized user expected value ranges include a calculated statistical trend in each of the stored authorized user values over at least one of a time period since mobile device acquisition, an average rate of change per month, an average rate of change per week, an average rate of change for the same month in the previous year, and a baseline rate of change in the general population, to generate an expected value range for each of the mobile device variable memory parameters.

13. The adaptive authentication server apparatus of claim 11 further including an increased level of authentication inquiry to the preliminary user provided login information after a failure to authenticate signal is received by the controller.

14. The adaptive authentication server apparatus of claim 11 further including:

if any of the measured values is within a small selected difference value of the stored authorized user value range limits;

then compare a set of preliminary user mobile device factors including at least one of typing speed, transaction type, time of day, physical location of the mobile device, and network ID against a set of stored authorized user mobile device factors to generate a difference; and

generate a stolen mobile device signal if the network ID is the same and the difference is greater than a selected value.

15. A computer program product which includes a non transitory computer readable storage medium storing instructions which, when executed on a computer, cause the computer to authenticate a mobile device transaction, the instructions comprising:

instructions to establish a preliminary user ID based upon user provided login information;

instructions to measure preliminary user mobile device variable memory parameter values;

instructions to perform a comparison between the preliminary user mobile device variable memory parameter values and a stored authorized user's stored mobile device variable memory parameter values; and

instructions to issue an authorization failure alert if the comparison results in preliminary user mobile device variable memory parameter values that are outside of a selected range of the user's stored mobile device variable memory parameter values, or issue an authorization signal if the comparison values are within the selected range.

16. The computer program product of claim 15 wherein instructions to measure preliminary user mobile device variable memory parameter values include at least one of the following:

instructions to measure a number of address book entries, a number of stored photographic images, a number of stored MP3 files, a number of installed applications from official markets, a number of installed applications from unofficial markets, a number of installed game applications, a number of installed social applications, a number of installed productivity applications, a number of SMS messages, a number of Email messages, a number of MMS messages, a number of BBM active chats, and an amount of total free memory.

17. The computer program product of claim 15 wherein the measured preliminary user mobile device variable memory parameter values includes;

instructions to generate a measured value for each mobile device variable memory parameter value;

instructions to compare each measured value against a stored authorized user expected value range;

instructions to provide an authenticate signal if each measured value is inside the expected value range; and

instructions to provide a failure to authenticate signal if any measured value is outside the expected value range.

18. The computer program product of claim 17 wherein stored authorized user's stored mobile device variable memory parameter values includes instructions to calculate a statistical trend in the values over at least one of a time period since mobile device acquisition, an average rate of change per month, an average rate of change per week, an average rate of change for the same month in the previous year, and a baseline rate of change in the general population, to generate an expected value range for each of the mobile device variable memory parameters.

19. The computer program product of claim 17 further including instructions to increase a level of authentication inquiry to the preliminary user provided login information after a failure to authenticate signal is provided.

20. The computer program product of claim 17 further including instructions to generate a stolen mobile device signal if:

any of the measured values is within a small selected difference value of a range limit of the stored authorized user value;

measuring preliminary user mobile device factors including at least one of typing speed, transaction type, time of day, physical location of the mobile device, and network ID;

comparing the measured factors against stored authorized user mobile device factors to generate a difference; and

if the network ID is the same and the difference is greater than a selected value.

Assignments (18)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (045455/0001) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061753/0001 →
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENTS RECORDED AT REEL 054155, FRAME 0815 Recorded Apr 29, 2021
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: RSA SECURITY LLC
Reel/Frame 056104/0841 →
SECOND LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Apr 29, 2021
From: RSA SECURITY LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 056098/0534 →
FIRST LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Apr 29, 2021
From: RSA SECURITY LLC
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 056096/0525 →
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN PATENTS RECORDED AT REEL 053666, FRAME 0767 Recorded Apr 29, 2021
From: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
To: RSA SECURITY LLC
Reel/Frame 056095/0574 →
PARTIAL RELEASE OF SECURITY INTEREST Recorded Nov 24, 2020
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: ASAP SOFTWARE EXRESS, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054511/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 7, 2020
From: EMC IP HOLDING COMPANY LLC
To: RSA SECURITY LLC
Reel/Frame 053717/0020 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040136/0001) Recorded Sep 3, 2020
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS AGENT
To: ASAP SOFTWARE EXPRESS; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054163/0416 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Sep 3, 2020
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS AGENT
To: DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054191/0287 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (049452/0223) Recorded Sep 3, 2020
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS AGENT
To: DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054250/0372 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Sep 1, 2020
From: RSA SECURITY LLC
To: JEFFERIES FINANCE LLC
Reel/Frame 053666/0767 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Sep 1, 2020
From: RSA SECURITY LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 054155/0815 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 29, 2016
From: EMC CORPORATION
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 040203/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040134/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040136/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 9, 2012
From: BIGER-LEVIN, AYELET; YARON, ORIT; MAGI-SHAASHUA, TRIINU; SHOVAL, ASAF
To: EMC CORPORATION
Reel/Frame 029273/0268 →