IP Library Granted Patent US 10,164,985
Granted Patent B2
US 10,164,985 · App. 15/182,624 · Granted Dec 25, 2018

Device, system, and method of recovery and resetting of user authentication factor

Inventor: Avi Turgeman (Cambridge, MA)
Assignee: BIOCATCH LTD.
H04L63/102G06F3/0481G06F3/0486G06F3/04842G06F3/04886G06F21/31G06F21/316G06F21/32G07C9/00142H04L63/0861H04L63/1408G06F2221/2103G06F2221/2131G06F2221/2133H04L63/0428H04L63/083
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,164,985
App. No.
15/182,624
Granted
Dec 25, 2018
Kind
B2
Abstract

Devices, systems, and methods of password recovery and password reset, as well as resetting or recovering other types of user-authentication factor. A system monitors and tracks user-interactions that are performed by a user of an electronic device or a computerized service. The system defines a user-specific task or challenge, in which the user is requested to enter a phrase or perform a task. A user-specific feature is extracted from the manner in which the user performs the task. Subsequently, that user-specific feature is utilized instead of a security question, in order to verify the identity of the user and to allow the user to perform password reset or to perform a reset of another user-authentication factor; by presenting to the user the same task or a similar task, and monitoring the manner in which the user performs the fresh task.

Claims (24)

1. A method comprising:

(AA) monitoring input-user interactions of a user, that utilizes an electronic device to access a computerized service;

(BB) analyzing said input-user interactions, and identifying a particular word that the user typed multiple times in a user-specific typing manner;

subsequently,

(CC) determining that a current user, that (i) fails to perform an authentication process for accessing said computerized service or (ii) requests to perform a reset process for a user-authentication factor of said computerized service, is a genuine user that is authorized to reset said user-authentication factor of said computerized service, by performing:

(a) constructing a unique multiple-word phrase, which comprises (i) said particular word that was identified in step (BB), and also (ii) one or more other words; and presenting to the current user a fresh task that requires the current user to type said unique multiple-word phrase;

(b) monitoring a fresh manner in which the current user types said unique multiple-word phrase;

(c) determining whether or not fresh typing of said unique multiple-word phrase as monitored in step (b), exhibits during typing of said particular word the user-specific typing manner that was identified in step (BB) during repeated previous typing of said particular word;

(d) if the determining of step (c) is positive, then determining that the current user is the genuine user that is authorized to reset said user-authentication factor of said service.

2. The method of claim 1 , wherein step (c) comprises:

determining whether there is a match between (I) a fresh user-specific characteristic, that is extracted from the fresh manner in which the current user performs typing of said unique multiple-word phrase in step (b), and (II) a previously-extracted user-specific characteristic that was previously extracted from prior user interactions of the genuine user when he typed said particular word multiple types in steps (AA) and (BB).

3. The method of claim 1 , comprising:

injecting an input/output aberration to a behavior of an input unit that the current user utilizes;

tracking a reaction of the user to the input/output aberration;

extracting from said reaction a user-specific reaction characteristic; and

determining whether the current user is authorized to reset said user-authentication factor by taking into account both (i) the user-specific reaction characteristic, and (ii) a result of the determining of step (c).

4. The method of claim 1 , comprising:

injecting an input/output aberration to a behavior of an input unit that the current user utilizes;

tracking a corrective gesture of the user to the input/output aberration;

extracting from said corrective gesture a user-specific corrective characteristic; and

determining whether the current user is authorized to reset said user-authentication factor by taking into account both (i) the user-specific corrective characteristic, and (ii) a result of the determining of step (c).

5. The method of claim 1 , wherein said user authentication factor is utilized as a condition for granting access to the user to a physical location.

6. The method of claim 1 , wherein said user authentication factor is utilized as a condition for granting access to the user to a vehicle.

7. The method of claim 1 , wherein said user authentication factor is utilized for user authentication as part of a multi-factor authentication process.

Assignments (6)
INTELLECTUAL PROPERTY SECURITY AGREEMENT TERMINATION UNDER REEL/FRAME: 049480/0823 Recorded Sep 14, 2020
From: KREOS CAPITAL VI (EXPERT FUND) LP
To: BIOCATCH LTD.
Reel/Frame 053769/0729 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT TERMINATION UNDER REEL/FRAME: 040233/0426 Recorded Sep 14, 2020
From: KREOS CAPITAL V (EXPERT FUND) L.P.
To: BIOCATCH LTD.
Reel/Frame 053770/0145 →
SECURITY INTEREST Recorded Jun 16, 2019
From: BIOCATCH LTD.
To: KREOS CAPITAL VI (EXPERT FUND) L.P.
Reel/Frame 049480/0823 →
CHANGE OF ADDRESS Recorded Jun 13, 2019
From: BIOCATCH LTD.
To: BIOCATCH LTD.
Reel/Frame 049459/0302 →
SECURITY INTEREST Recorded Nov 6, 2016
From: BIOCATCH LTD.
To: KREOS CAPITAL V (EXPERT FUND) L.P.
Reel/Frame 040233/0426 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 13, 2016
From: TURGEMAN, AVI
To: BIOCATCH LTD.
Reel/Frame 039139/0148 →
Continuity (9)
Continuation In Part 15051700 · Feb 24, 2016
Continuation In Part 14325397 · Jul 8, 2014
Continuation In Part 13922271 · Jun 20, 2013
Continuation In Part 13877676
Continuation In Part 14320653 · Jul 1, 2014
Continuation In Part 14320656 · Jul 1, 2014
Provisional Application 61843915 · Jul 9, 2013
Provisional Application 61417479 · Nov 29, 2010
Related Publication 20160294837A1 · Oct 6, 2016
Cited By (2)
US 12,380,455 US 12,417,582