IP Library Granted Patent US 9,191,411
Granted Patent B2
US 9,191,411 · App. 14/327,068 · Granted Nov 17, 2015

Protecting against suspect social entities

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,191,411
App. No.
14/327,068
Granted
Nov 17, 2015
Kind
B2
Abstract

A method includes identifying data on a social network that is associated with a suspect social entity, and determining one or more characteristics of the identified data. A reference to the identified data is generated for each of the one or more characteristics. One or more of the generated references are compared to one or more stored references, where the one or more stored references are associated with a protected social entity. A profile score for the suspect social entity is determined based on the comparison. Determining the profile score includes identifying a match between one or more of the generated references and one or more of the stored references.

Claims (66)

1. A method comprising:

scanning data that is maintained on multiple social networks, wherein scanning data that is maintained on multiple social networks comprises identifying, by one or more processors, data that is associated with a social entity, and wherein scanning data that is maintained on multiple social networks is performed on a continuous basis, without user initiation;

determining one or more characteristics of the identified data;

generating, for each of the one or more characteristics, a reference to the identified data that indicates the characteristic;

comparing one or more of the generated references to one or more stored references, wherein the one or more stored references are references to one or more characteristics associated with a protected user;

determining, based on an algorithmic comparison of the one or more generated references and the one or more stored references, a profile score for the suspect social entity, wherein determining the profile score comprises identifying a match between one or more of the generated references and one or more of the stored references, wherein the one or more generated references that are compared to the one or more stored references are dynamically determined, being selected from a group of generated references, and wherein the algorithmic comparison comprises:

determining one or more match scores by comparing the one or more generated references to the one or more stored references;

generating a weight for each match score; and

generating a weighted average based on the weighted match scores;

comparing the profile score for the suspect social entity determined by the algorithmic comparison to a threshold;

identifying the suspect social entity as an imposter of the protected social entity if the profile score exceeds the threshold;

monitoring the activity of the identified imposter across the multiple social networks, wherein monitoring the activity of the identified imposter comprises identifying data that is associated with the identified imposter;

determining that the identified data associated with the identified imposter is malicious;

generating an alert; and

providing the alert to the protected social entity.

2. The method of claim 1 wherein the alert identifies the suspect social entity.

3. The method of claim 1 wherein providing the alert to the protected social entity comprises providing a computer-based alert to the protected social entity.

4. The method of claim 3 wherein providing a computer-based alert to the protected social entity comprises emailing the protected social entity.

5. The method of claim 3 wherein providing a computer-based alert to the protected social entity comprises providing a web-based alert to the protected social entity.

6. The method of claim 1 wherein the alert indicates fraud, impersonation, or social engineering.

7. The method of claim 1 , wherein the group of generated references includes generated references that indicate name, date of birth, gender, location, email address, education, and organization.

8. The method of claim 1 , wherein the one or more characteristics include an image, and wherein generating a reference to the image comprises deriving data from the image.

9. The method of claim 8 , wherein deriving data from the image comprises hashing the image for comparison.

10. The method of claim 8 , wherein deriving data from the image comprises determining one or more facial characteristics of an individual included in the image.

11. The method of claim 1 , wherein the algorithmic comparison comprises generation of a weighted average.

12. A system comprising:

one or more processing devices; and

one or more non-transitory computer-readable media coupled to the one or more processing devices having instructions stored thereon which, when executed by the one or more processing devices, cause the one or more processing devices to perform operations comprising:

scanning data that is maintained on multiple social networks, wherein scanning data that is maintained on multiple social networks comprises identifying, by one or more processors, data that is associated with a social entity, and wherein scanning data that is maintained on multiple social networks is performed on a continuous basis, without user initiation;

determining one or more characteristics of the identified data;

generating, for each of the one or more characteristics, a reference to the identified data that indicates the characteristic;

comparing one or more of the generated references to one or more stored references, wherein the one or more stored references are references to one or more characteristics associated with a protected user; and

determining, based on an algorithmic comparison of the one or more generated references and the one or more stored references, a profile score for the suspect social entity, wherein determining the profile score comprises identifying a match between one or more of the generated references and one or more of the stored references, wherein the one or more generated references that are compared to the one or more stored references are dynamically determined, being selected from a group of generated references, and wherein the algorithmic comparison comprises:

determining one or more match scores by comparing the one or more generated references to the one or more stored references;

generating a weight for each match score; and

generating a weighted average based on the weighted match scores;

comparing the profile score for the suspect social entity determined by the algorithmic comparison to a threshold;

identifying the suspect social entity as an imposter of the protected social entity if the profile score exceeds the threshold;

monitoring the activity of the identified imposter across the multiple social networks, wherein monitoring the activity of the identified imposter comprises identifying data that is associated with the identified imposter;

determining that the identified data associated with the identified imposter is malicious;

generating an alert; and

providing the alert to the protected social entity.

13. The system of claim 12 wherein the alert identifies the suspect social entity.

14. The system of claim 12 wherein providing the alert to the protected social entity comprises providing a computer-based alert to the protected social entity.

15. The system of claim of 14 wherein providing the alert to the protected social entity comprises emailing the protected social entity.

16. The system of claim 14 wherein providing computer-based alerts to the protected social entity comprises providing a web-based alert to the protected social entity.

17. The system of claim 12 wherein the alert indicates fraud, impersonation, or social engineering.

18. The system of claim 12 , wherein the group of generated references includes generated references that indicate name, date of birth, gender, location, email address, education, and organization.

19. The system of claim 12 , wherein the one or more characteristics include an image, and wherein generating a reference to the image comprises deriving data from the image.

20. The system of claim 19 , wherein deriving data from the image comprises hashing the image.

21. The system of claim 19 , wherein deriving data from the image comprises determining one or more facial characteristics of an individual included in the image.

22. A non-transitory computer-readable storage medium storing software comprising instructions executable by one or more computers which, upon such execution, cause the one or more computers to perform operations comprising:

scanning data that is maintained on multiple social networks, wherein scanning data that is maintained on multiple social networks comprises identifying, by one or more processors, data that is associated with a social entity, and wherein scanning data that is maintained on multiple social networks is performed on a continuous basis, without user initiation;

determining one or more characteristics of the identified data;

generating, for each of the one or more characteristics, a reference to the identified data that indicates the characteristic;

comparing one or more of the generated references to one or more stored references, wherein the one or more stored references are references to one or more characteristics associated with a protected user; and

determining, based on an algorithmic comparison of the one or more generated references and the one or more stored references, a profile score for the suspect social entity, wherein determining the profile score comprises identifying a match between one or more of the generated references and one or more of the stored references, wherein the one or more generated references that are compared to the one or more stored references are dynamically determined, being selected from a group of generated references, and wherein the algorithmic comparison comprises:

determining one or more match scores by comparing the one or more generated references to the one or more stored references;

generating a weight for each match score; and

generating a weighted average based on the weighted match scores;

comparing the profile score for the suspect social entity determined by the algorithmic comparison to a threshold;

identifying the suspect social entity as an imposter of the protected social entity if the profile score exceeds the threshold;

monitoring the activity of the identified imposter across the multiple social networks, wherein monitoring the activity of the identified imposter comprises identifying data that is associated with the identified imposter;

determining that the identified data associated with the identified imposter is malicious;

generating an alert; and

providing the alert to the protected social entity.

Assignments (12)
RELEASE OF SECURITY INTEREST Recorded May 16, 2024
From: STIFEL BANK
To: ZEROFOX, INC.
Reel/Frame 067429/0328 →
SECURITY INTEREST Recorded May 13, 2024
From: ZEROFOX, INC.; LOOKINGGLASS CYBER SOLUTIONS, LLC; IDENTITY THEFT GUARD SOLUTIONS, INC.
To: MONROE CAPITAL MANAGEMENT ADVISORS, LLC
Reel/Frame 067396/0304 →
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2022
From: ORIX GROWTH CAPITAL, LLC
To: VIGILANTEATI, INC.
Reel/Frame 060821/0137 →
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2022
From: ORIX GROWTH CAPITAL, LLC
To: ZEROFOX, INC.
Reel/Frame 060821/0173 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNOR AND ASSIGNEE'S INFORMATION ON THE COVER SHEET PREVIOUSLY RECORDED AT REEL: 054878 FRAME: 0117. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Jan 6, 2022
From: HERCULES CAPITAL, INC.
To: ZEROFOX, INC.
Reel/Frame 058652/0754 →
SECURITY INTEREST Recorded Jan 28, 2021
From: ZEROFOX, INC.
To: STIFEL BANK
Reel/Frame 055066/0916 →
SECURITY INTEREST Recorded Jan 13, 2021
From: ZEROFOX, INC.
To: ORIX GROWTH CAPITAL, LLC
Reel/Frame 054906/0449 →
RELEASE OF SECURITY INTEREST Recorded Jan 11, 2021
From: ZEROFOX, INC.
To: HERCULES CAPITAL, INC.
Reel/Frame 054878/0117 →
RELEASE OF SECURITY INTEREST Recorded Jun 27, 2019
From: SILVER LAKE WATERMAN FUND II, L.P.
To: ZEROFOX, INC.
Reel/Frame 049607/0961 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Jun 26, 2019
From: ZEROFOX, INC.
To: HERCULES CAPITAL, INC., AS AGENT
Reel/Frame 049602/0173 →
SECURITY INTEREST Recorded Jun 1, 2017
From: ZEROFOX, INC.
To: SILVER LAKE WATERMAN FUND II, L.P., AS AGENT
Reel/Frame 042568/0264 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 9, 2014
From: FOSTER, JAMES C.; CULLISON, CHRISTOPHER B.; FRANCIS, ROBERT; BLAIR, EVAN
To: ZEROFOX, INC.
Reel/Frame 033274/0289 →