IP Library Granted Patent US 9,762,591
Granted Patent B2
US 9,762,591 · App. 14/583,622 · Granted Sep 12, 2017

Message sender authenticity validation

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,762,591
App. No.
14/583,622
Granted
Sep 12, 2017
Kind
B2
Abstract

In an example, a system and method are provided for validating the sender of a message, such as an e-mail, text message, voice mail, network message, internet posting, or other electronic message. An authenticity server engine may first prescreen the message with anti-spam, anti-malware, and other filters. The screened message is then provided to the end user. If the end user deems the message suspicious, he may request additional validation. The authenticity server engine may then apply an example four-phase validation scheme, including analyzing header data for consistency with the message body, analyzing public data sources, analyzing private data sources, and receiving a result of an off-channel challenge to the sender. The server may then assign the message a sender validity confidence score.

Claims (58)

1. An apparatus comprising:

a network interface; and

one or more logic elements, including at least a processor and a memory, comprising a validation server engine operable for multi-phase validation, comprising:

receiving an unverified message via the network interface;

parsing header data of the message;

analyzing the header data in relation to a content of the message; and

assigning the message a phase 1 credibility score based at least in part on the analyzing the header data; and

working cooperatively with end-user input to validate the unverified message; and

wherein the validation server engine is further operable for:

analyzing a publically-available database via the network interface;

comparing the publically-available database to the content of the message; and

assigning the message a phase 2 credibility score based at least in part on the comparing.

2. The apparatus of claim 1 , wherein analyzing the header data in relation to the content of the message comprises:

determining a likely locus of origin for the message; and

analyzing a body of the message to determine whether location indicators in the body are consistent with the likely locus of origin.

3. The apparatus of claim 1 , wherein the publically-available database comprises an account age for a sender of the message.

4. The apparatus of claim 1 , wherein the validation server engine is further operable for providing an aggregate phase 1 and phase 2 credibility score directed to an end user device via the network interface.

5. The apparatus of claim 1 , wherein the validation server engine is further operable for receiving credentials for accessing a private data source via the network interface.

6. The apparatus of claim 5 , wherein the validation server engine is further operable for:

analyzing the private data source;

comparing the private data source to the content of the message; and

assigning the message a phase 3 credibility score based at least in part on the comparing.

7. The apparatus of claim 1 , wherein the validation server engine is further operable for receiving a user feedback score for the message via the network interface.

8. The apparatus of claim 7 , wherein the validation server engine is further operable for updating a global malware database based at least in part on receiving the user feedback score for the message.

9. The apparatus of claim 7 , wherein the validation server engine is further operable for receiving a result of an end user challenge, and assigning the message a phase 4 credibility score based at least in part on the receiving the result.

10. The apparatus of claim 9 , wherein the validation server engine is further operable for updating a global malware database based at least in part on receiving the result of the end user challenge.

11. The apparatus of claim 1 , wherein the validation server engine is further operable for applying at least one of anti-spam, anti-malware, anti-spyware, or anti-phishing filters to the message.

12. One or more tangible, non-transitory computer-readable mediums having stored thereon executable instructions operable for providing a validation server engine operable for providing a multi-phase authentication, comprising:

receiving an unverified message via a network interface;

parsing header data of the message;

analyzing the header data in relation to a content of the message;

assigning the message a phase 1 credibility score based at least in part on the analyzing the header data; and

working cooperatively with end-user input to validate the unverified message; and

wherein the validation server engine is further operable for:

analyzing a publically-available database via the network interface;

comparing the publically-available database to the content of the message; and

assigning the message a phase 2 credibility score based at least in part on the comparing.

13. The one or more tangible, non-transitory computer-readable mediums of claim 12 , wherein analyzing the header data in relation to the content of the message comprises:

determining a likely locus of origin for the message; and

analyzing a body of the message to determine whether location indicators in the body are consistent with the likely locus of origin.

14. The one or more tangible, non-transitory computer-readable mediums of claim 12 , wherein the validation server engine is further operable for providing an aggregate phase 1 and phase 2 credibility score directed to an end user device via the network interface.

15. The one or more tangible, non-transitory computer-readable mediums of claim 12 , wherein the validation server engine is further operable for receiving credentials for accessing a private data source via the network interface.

16. The one or more tangible, non-transitory computer-readable mediums of claim 15 , wherein the validation server engine is further operable for:

analyzing the private data source;

comparing the private data source to the content of the message; and

assigning the message a phase 3 credibility score based at least in part on the comparing.

17. The one or more tangible, non-transitory computer-readable mediums of claim 16 , wherein the validation server engine is further operable for receiving a result of an end user challenge, and assigning the message a phase 4 credibility score based at least in part on the receiving the result.

18. The one or more tangible, non-transitory computer-readable mediums of claim 17 , wherein the validation server engine is further operable for updating a global malware database based at least in part on receiving the result of the end user challenge.

19. The one or more tangible, non-transitory computer-readable mediums of claim 12 , wherein the validation server engine is further operable for applying at least one of anti-spam, anti-malware, anti-spyware, or anti-phishing filters to the message.

20. A method for providing multi-phase validation on a computing apparatus, comprising:

receiving an unverified message via a network interface;

parsing header data of the message;

analyzing the header data in relation to a content of the message;

assigning the message a phase 1 credibility score based at least in part on the analyzing the header data;

working cooperatively with end-user input to validate the unverified message;

analyzing a publically-available database via the network interface;

comparing the publically-available database to the content of the message; and

assigning the message a phase 2 credibility score based at least in part on the comparing.

Assignments (10)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045056/0676 Recorded Mar 2, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 059354/0213 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 10, 2015
From: SRIVASTAVA, NEETA; ZHENG, YI; BENNETT, JEREMY
To: MCAFEE, INC.
Reel/Frame 034931/0934 →