IP Library Granted Patent US 10,621,585
Granted Patent B2
US 10,621,585 · App. 15/194,593 · Granted Apr 14, 2020

Contextual mapping of web-pages, and generation of fraud-relatedness score-values

Inventors: Avi Turgeman (Cambridge, MA); Oren Kedem (Tel Aviv, IL)
Assignee: BIOCATCH LTD.
G06Q20/4016G06F21/31G06F21/316G06F21/32G06F21/552G06F21/554H04L63/08H04L63/1408H04L63/1441G06F2221/2133H04L2463/144
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,621,585
App. No.
15/194,593
Granted
Apr 14, 2020
Kind
B2
Abstract

Devices, systems, and methods of contextual mapping of web-page elements and other User Interface elements, for the purpose of differentiating between fraudulent transactions and legitimate transactions, or for the purpose of distinguishing between a fraudulent user and a legitimate user. User Interface elements of a website or webpage or application or other computerized service, are contextually analyzed. A first User Interface element is assigned a low fraud-relatedness score-value, since user engagement with the first User Interface element does not create a security risk or a monetary exposure. A second, different, User Interface element is assigned a high fraud-relatedness score-value, since user engagement with the second User Interface element creates a security risk or a monetary exposure. The fraud-relatedness score-values are taken into account, together with user-specific behavioral characteristics, in order to determine whether to generate a possible-fraud notification, or as part of generating a possible-fraud score for a particular set-of-operations.

Claims (21)

1. A method comprising:

(a) automatically analyzing content of a banking or retailer website, by performing:

analyzing a log of historical transactions that are known to be fraudulent;

identifying in said log a first Graphical User Interface (GUI) element that is typically clicked by cyber-attackers as part of cyber-attacks;

identifying in said log a second Graphical User Interface (GUI) element that is typically not clicked by cyber-attackers as part of cyber-attacks;

constructing a lookup table that indicates that the first GUI element is typically clicked by cyber-attackers as part of cyber-attacks, and that further indicates that the second GUI element is typically not clicked by cyber-attackers as part of cyber-attacks;

(b) monitoring interactions of a user with said banking or retailer website via one or more input units of an end-user device, and detecting one or more user interactions that indicate a possibly-fraudulent activity based on one or more pre-defined threshold parameters;

(c) if said possibly-fraudulent activity that was detected in step (b), is a click of said user on the first GUI element, then activating a fraud-mitigation unit;

(d) if said possibly-fraudulent activity that was detected in step (b), is a click of said user on the second GUI element, then maintaining said fraud-mitigation unit deactivated;

wherein the method further comprises:

generating a security-exposure map of on-screen GUI elements of said banking or retailer website,

by generating a first indication that user-engagement with a first particular on-screen GUI element on a particular web-page of said banking or retailer website creates a potential security risk for said banking or retailer website,

and by generating a second indication that user-engagement with a second particular on-screen GUI element on said particular web-page of said banking or retailer website does not create a potential security risk for said banking or retailer website.

2. The method of claim 1 , comprising:

generating said fraud-exposure map of on-screen GUI elements of said banking or retailer website,

by generating a first additional indication that user-engagement with a first particular on-screen GUI element on a specific web-page of said banking or retailer website creates a potential fraud risk for said banking or retailer website,

and by generating a second additional indication that user-engagement with a second particular on-screen GUI element on said specific web-page of said banking or retailer website does not create a potential fraud risk for said banking or retailer website.

3. The method of claim 1 ,

wherein web-pages of said banking or retailer website are HTML-based pages that are accessible through a web browser.

4. The method of claim 1 ,

wherein web-pages of said banking or retailer website are components of a native mobile application.

Assignments (6)
INTELLECTUAL PROPERTY SECURITY AGREEMENT TERMINATION UNDER REEL/FRAME: 049480/0823 Recorded Sep 14, 2020
From: KREOS CAPITAL VI (EXPERT FUND) LP
To: BIOCATCH LTD.
Reel/Frame 053769/0729 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT TERMINATION UNDER REEL/FRAME: 040233/0426 Recorded Sep 14, 2020
From: KREOS CAPITAL V (EXPERT FUND) L.P.
To: BIOCATCH LTD.
Reel/Frame 053770/0145 →
SECURITY INTEREST Recorded Jun 16, 2019
From: BIOCATCH LTD.
To: KREOS CAPITAL VI (EXPERT FUND) L.P.
Reel/Frame 049480/0823 →
CHANGE OF ADDRESS Recorded Jun 13, 2019
From: BIOCATCH LTD.
To: BIOCATCH LTD.
Reel/Frame 049459/0302 →
SECURITY INTEREST Recorded Nov 6, 2016
From: BIOCATCH LTD.
To: KREOS CAPITAL V (EXPERT FUND) L.P.
Reel/Frame 040233/0426 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 18, 2016
From: TURGEMAN, AVI; KEDEM, OREN
To: BIOCATCH LTD.
Reel/Frame 039174/0329 →
Continuity (9)
Continuation In Part 14675768 · Apr 1, 2015
Continuation In Part 14320656 · Jul 1, 2014
Continuation In Part 14325396 · Jul 8, 2014
Continuation In Part 13922271 · Jun 20, 2013
Continuation In Part 13877676
Provisional Application 62190264 · Jul 9, 2015
Provisional Application 61843915 · Jul 9, 2013
Provisional Application 61417479 · Nov 29, 2010
Related Publication 20160307201A1 · Oct 20, 2016
Cited By (3)
US 12,229,640 US 12,406,263 US 12,520,142