IP Library Granted Patent US 10,778,680
Granted Patent B2
US 10,778,680 · App. 14/909,629 · Granted Sep 15, 2020

Method and apparatus for accessing website

Inventor: Jie Liang (Guangdong, CN)
Assignee: ALIBABA GROUP HOLDING LIMITED
H04L63/0876G06F16/9566H04L9/32H04L63/102H04L67/02H04L67/10H04L69/04
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,778,680
App. No.
14/909,629
Granted
Sep 15, 2020
Kind
B2
Abstract

Methods, apparatuses, and computer program products are provided in order to protect user information by applying fingerprint signature authentication to a webpage being accessed by user. A method is provided comprising generating a user fingerprint signature in accordance with a user's local cookie information of a current website and original URLs of all webpages of the current web site related to the user to generate encrypted URLs of all webpages of the current website related to the user and having the generated user fingerprint signature; and in response to an access request to the encrypted URLs by the user, verifying the user, wherein verifying the user comprises determining based, at least in part, on the generated user fingerprint signature, whether the user has authority to access the encrypted URLs. A corresponding apparatus and computer program product are also provided.

Claims (37)

1. A method comprising:

acquiring a user's local cookie information of a current website and original uniform resource locators (URLs) of all webpages of the current website related to the user in accordance with a first access request for a website page by the user, wherein the user's local cookie information is stored on a browser client of the user's device;

generating a user fingerprint signature in accordance with the user's local cookie information of the current website and the original URLs of all webpages of the current website related to the user to generate encrypted URLs of all webpages of the current website related to the user and having the generated user fingerprint signature, wherein generating the user fingerprint signature to generate the encrypted URLs comprises:

extracting user fingerprint information from the user's local cookie information;

generating ciphertexts for each of the original URLs of all webpages of the current website related to the user according to the fingerprint information; and

embedding the ciphertexts into each of the original URLs of all webpages, respectively to generate the encrypted URLs of all webpages;

returning, to the browser client, the encrypted URLs of all webpages of the current website related to the user and having the generated user fingerprint signature along with content information of the website page corresponding to the first access request for the website page by the user; and

performing user fingerprint verification on the second access request in response to a second access request to a webpage resource associated with the encrypted URLs by the user, wherein performing user fingerprint verification on the second access request comprises:

extracting the original URLs of the requested webpage from the encrypted URLs of all webpages of the current website related to the user and having a user fingerprint signature in the second access request;

extracting user fingerprint information from the user's local cookie information uploaded along with the second access request;

performing encryption computation in accordance with the original URLs of the requested webpage and the user fingerprint information to generate a verification ciphertext corresponding to the second access request;

providing access authority to the browser client in response to the verification ciphertext being consistent with the ciphertext carried by the second access request; and

denying access authority to the browser client in response to the verification ciphertext being inconsistent with the ciphertext carried by the second access request.

2. A method comprising:

sending a first access request to a website page, and uploading a user's local cookie information of a current website, wherein the user's local cookie information is stored on a browser client of the user's device;

receiving encrypted uniform resource locators (URLs) of all webpages of the current website related to the user and having a user fingerprint signature along with content information of the website page corresponding to the first access request, wherein the user fingerprint signature is generated in accordance with the user's local cookie information of the current website and original URLs of all webpages of the current website related to the user;

causing to display the encrypted URLs of all webpages as well as the content information of the website page corresponding to the first access request, wherein the encrypted URLs comprise ciphertexts, respectively according to the user fingerprint signature;

in sending a second access request to access a webpage resource associated with the encrypted URL in response to a selection, by the user, of an encrypted URL; and

receiving content information of the webpage corresponding to the second access request and subjected to fingerprint verification, wherein performing fingerprint verification on the second access request comprises:

extracting the original URLs of the requested webpage from the encrypted URLs of all webpages of the current website related to the user and having a user fingerprint signature in the second access request;

extracting user fingerprint information from the user's local cookie information uploaded along with the second access request;

performing encryption computation in accordance with the original URLs of the requested webpage and the user fingerprint information to generate a verification ciphertext corresponding to the second access request;

providing access authority to the browser client in response to the verification ciphertext being consistent with the ciphertext carried by the second access request; and

denying access authority to the browser client in response to the verification ciphertext being inconsistent with the ciphertext carried by the second access request.

3. An apparatus comprising at least one processor and at least one non-transitory computer readable storage medium including computer program code, the at least one non-transitory computer readable storage medium and the computer code configured to, with the at least one processor, cause the apparatus to at least:

acquire a user's local cookie information of a current website and original uniform resource locators (URLs) of all webpages of the current website related to the user in accordance with a first access request for a website page by the user, wherein the user's local cookie information is stored on a browser client of the user's device;

generate a user fingerprint signature in accordance with the user's local cookie information of the current website and the original URLs of all webpages of the current website related to the user to generate encrypted URLs of all webpages of the current website related to the user and having the generated user fingerprint signature, wherein to generate the user fingerprint signature to generate the encrypted URLs causes the apparatus to:

extract user fingerprint information from the user's local cookie information;

generate ciphertexts for each of the original URLs of all webpages of the current website related to the user according to the fingerprint information; and

embed the ciphertexts into each of the original URLs of all webpages, respectively to generate the encrypted URLs of all webpages;

return, to the browser client, the encrypted URLs of all webpages of the current website related to the user and having the generated user fingerprint signature along with content information of the website page corresponding to the first access request for the website page by the user; and

perform user fingerprint verification on the second access request in response to a second access request to a webpage resource associated with the encrypted URLs by the user, wherein to perform user fingerprint verification on the second access request comprises:

extracting the original URLs of the requested webpage from the encrypted URLs of all webpages of the current website related to the user and having a user fingerprint signature in the second access request;

extracting user fingerprint information from the user's local cookie information uploaded along with the second access request;

performing encryption computation in accordance with the original URLs of the requested webpage and the user fingerprint information to generate a verification ciphertext corresponding to the second access request;

providing access authority to the browser client in response to the verification ciphertext being consistent with the ciphertext carried by the second access request; and

denying access authority to the browser client in response to the verification ciphertext being inconsistent with the ciphertext carried by the second access request.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 15, 2020
From: UC MOBILE CO., LTD.
To: ALIBABA GROUP HOLDING LIMITED
Reel/Frame 052672/0610 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE STREET ADDRESS PREVIOUSLY RECORDED AT REEL: 038246 FRAME: 0759. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT . Recorded Jul 19, 2016
From: LIANG, JIE
To: UC MOBILE CO., LTD.
Reel/Frame 039390/0286 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 11, 2016
From: LIANG, JIE
To: UC MOBILE CO., LTD.
Reel/Frame 038246/0759 →
Priority Claims (2)
CN 2013 1 0334944 · Aug 2, 2013 · national
CN 2013 1 0744195 · Dec 30, 2013 · national
Continuity (1)
Related Publication 20160191522A1 · Jun 30, 2016