IP Library Granted Patent US 10,290,033
Granted Patent B1
US 10,290,033 · App. 14/621,415 · Granted May 14, 2019

Method, system, and computer-readable medium for warning users about untrustworthy application payment pages

Inventor: Shuaib Ahmad (Tamil Nadu, IN)
Assignee: Symantec Corporation
G06Q30/0609
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,290,033
App. No.
14/621,415
Granted
May 14, 2019
Kind
B1
Abstract

The disclosed computer-implemented method for warning users about untrustworthy application payment pages may include (1) detecting, within an Internet browser, a payment page to purchase an application, (2) determining a source of origin of the payment page, (3) querying a reputation database to determine a reputation of the source of origin of the payment page, (4) receiving a response from the reputation database indicating that the source of origin of the payment page is untrustworthy, and (5) in response to receiving the response that indicates that the source of origin of the payment page is untrustworthy, warning a user of the Internet browser that the source of origin of the payment page is untrustworthy. Various other methods, systems, and computer-readable media are also disclosed.

Claims (70)

1. A computer-implemented method for warning users about untrustworthy application payment pages, at least a portion of the method being performed by a computing device comprising at least one processor, the method comprising:

detecting, within an Internet browser, a payment page to purchase an application, wherein detecting the payment page comprises:

initiating a web page in the Internet browser;

examining the web page initiated in the Internet browser for one or more fields associated with financial transactions; and

identifying the initiated web page as the payment page when the web page includes the one or more fields;

determining a source of origin of the payment page, wherein determining the source of origin comprises backtracking browsing activity of a user of the Internet browser and identifying a web page that is linked to the payment page;

querying a reputation database to determine a reputation of the source of origin of the payment page;

receiving a response from the reputation database comprising a numerical value associated with a trustworthiness score;

and

warning the user that the source of origin of the payment page is untrustworthy based on the trustworthiness score.

2. The computer-implemented method of claim 1 , wherein

determining the source of origin of the payment page further comprises identifying a parent process that initiated the payment page in the Internet browser, wherein the parent process comprises a free version of the application for purchase.

3. The computer-implemented method of claim 1 , wherein

determining the source of origin of the payment page further comprises identifying an additional application that initiated the payment page in the Internet browser, wherein the additional application is identified based on an application programming interface call for initiating the payment page in the Internet browser.

4. The computer-implemented method of claim 1 , wherein

determining the source of origin of the payment page further comprises identifying an additional web page, wherein the additional web page refers the Internet browser to the payment page based on referrer data stored by the Internet browser.

5. The computer-implemented method of claim 1 , wherein the one or more fields associated with the financial transactions comprises, at least one of:

a payment card number field;

a payment card verification value field;

a payment card expiration date field;

a payment card owner name field;

a billing address field;

a payment method selection field;

a bank name field.

6. The computer-implemented method of claim 1 , wherein warning the user of the Internet browser comprises blocking the payment page from displaying in the Internet browser.

7. A system for warning users about untrustworthy application payment pages, the system comprising:

a detection module, stored in memory, that detects, within an Internet browser, a payment page to purchase an application, wherein the detection module detects the payment page by:

initiating a web page in the Internet browser;

examining the web page initiated in the Internet browser for one or more fields associated with financial transactions; and

identifying the web page is the payment page when the web page includes the one or more fields;

a determination module, stored in memory, that determines a source of origin of the payment page, wherein the source of origin is determined by backtracking browsing activity of a user of the Internet browser and identifying a web page that is linked to the payment page;

a querying module, stored in memory, that queries a reputation database to determine a reputation of the source of origin of the payment page;

a receiving module, stored in memory, that:

receives a response from the reputation database comprising a numerical value associated with a trustworthiness score;

a warning module, stored in memory, that, in response to receiving the response that indicates that the source of origin of the payment page is untrustworthy, warns the user of the Internet browser that the source of origin of the payment page is untrustworthy based on the trustworthiness score; and

at least one physical processor configured to execute the detection module, the determination module, the querying module, the receiving module, and the warning module.

8. The system of claim 7 , wherein the determination module further determines the source of origin of the payment page by identifying a parent process that initiated the payment page in the Internet browser, wherein the parent process comprises a free version of the application for purchase.

9. The system of claim 7 , wherein the determination module further determines the source of origin of the payment page by identifying an additional application that initiated the payment page in the Internet browser, wherein the additional application is identified based on an application programming interface call for initiating the payment page in the Internet browser.

10. The system of claim 7 , wherein the determination module further determines the source of origin of the payment page by identifying an additional web page, wherein the additional web page refers the Internet browser to the payment page based on referrer data stored by the Internet browser.

11. The system of claim 7 , wherein the one or more fields associated with the financial transactions comprises at least one of:

a payment card number field;

a payment card verification value field;

a payment card expiration date field;

a payment card owner name field;

a billing address field;

a payment method selection field;

a bank name field.

12. The system of claim 7 , wherein the warning module warns the user of the Internet browser by blocking the payment page from displaying in the Internet browser.

13. A non-transitory computer-readable medium comprising one or more computer-readable instructions that, when executed by at least one processor of a computing device, cause the computing device to:

detect, within an Internet browser, a payment page to purchase an application, wherein the payment page is detected by:

initiating a web page in the Internet browser;

examining the web page initiated in the Internet browser for one or more fields associated with financial transactions; and

identifying the initiated web page as the payment page when the web page includes the one or more fields;

determine a source of origin of the payment page, wherein the source of origin is determined by backtracking browsing activity of a user of the Internet browser and identifying a web page that is linked to the payment page;

query a reputation database to determine a reputation of the source of origin of the payment page;

receive a response from the reputation database comprising a numerical value associated with a trustworthiness score;

and

warn the user of the Internet browser that the source of origin of the payment page is untrustworthy based on the trustworthiness score.

14. The non-transitory computer-readable medium of claim 13 , wherein the one or more computer-readable instructions cause the computing device to further determine the source of origin of the payment page by identifying a parent process that initiated the payment page in the Internet browser, wherein the parent process comprises a free version of the application for purchase.

15. The non-transitory computer-readable medium of claim 13 , wherein the one or more computer-readable instructions cause the computing device to further determine the source of origin of the payment page by identifying an additional application that initiated the payment page in the Internet browser, wherein the additional application is identified based on an application programming interface call for initiating the payment page in the Internet browser.

16. The non-transitory computer-readable medium of claim 13 , wherein the one or more computer-readable instructions cause the computing device to further determines the source of origin of the payment page by identifying an additional web page, wherein the additional web page refers the Internet browser to the payment page based on referrer data stored by the Internet browser.

17. The non-transitory computer-readable medium of claim 13 , wherein the one or more fields associated with the financial transactions comprises at least one of:

a payment card number field;

a payment card verification value field;

a payment card expiration date field;

a payment card owner name field;

a billing address field;

a payment method selection field;

a bank name field.

18. The non-transitory computer-readable medium of claim 13 , wherein the one or more computer-readable instructions cause the computing device to warn the user of the Internet browser by blocking the payment page from displaying in the Internet browser.

Assignments (6)
CHANGE OF NAME Recorded Feb 6, 2023
From: NORTONLIFELOCK INC.
To: GEN DIGITAL INC.
Reel/Frame 062714/0605 →
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
CHANGE OF NAME Recorded Feb 14, 2020
From: SYMANTEC CORPORATION
To: NORTONLIFELOCK INC.
Reel/Frame 051935/0228 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 13, 2015
From: AHMAD, SHUAIB
To: SYMANTEC CORPORATION
Reel/Frame 034955/0589 →