IP Library Granted Patent US 10,257,202
Granted Patent B1
US 10,257,202 · App. 15/236,071 · Granted Apr 9, 2019

Systems and methods for logging users out of online accounts

Inventors: Kevin Jiang (San Mateo, CA); Ilya Sokolov (Boston, MA); Rickey Ray (Goleta, CA)
Assignee: Symantec Corporation
H04L63/102G06F21/313G06F21/6263H04L63/0838H04L63/0853H04L63/18
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,257,202
App. No.
15/236,071
Granted
Apr 9, 2019
Kind
B1
Abstract

The disclosed computer-implemented method for logging users out of online accounts may include (i) receiving, from a first computing device of a user, a request from the user to log into an online account hosted by an online platform, (ii) establishing, between the online platform and a second computing device of the user, a network session that both (a) verifies the identity of the user to the online platform and (b) at least partially disrupts the functionality of the second computing device, (iii) logging the user into the online account via the first computing device, (iv) detecting a request from the user to log out of the online account, and then (v) in response to the request to log out of the online account, (a) restoring full functionality of the second computing device by terminating the network session and (b) logging the user out of the online account.

Claims (66)

1. A computer-implemented method for logging users out of online accounts, at least a portion of the method being performed by a computing device comprising at least one processor, the method comprising:

receiving, from a first computing device of a user, a request from the user to log into an online account that:

enables the user to perform at least one online task; and

is hosted by an online platform;

establishing, between the online platform and a second computing device of the user, a network session that both:

verifies the identity of the user to the online platform by providing, to the online platform, authentication credentials associated with the user; and

at least partially disrupts the functionality of the second computing device while the user is logged into the online account via the first computing device such that the user is motivated to log out of the online account after performing the online task;

in response to establishing the network session between the online platform and the second computing device, logging the user into the online account via the first computing device;

detecting a request from the user to log out of the online account; and

in response to detecting the request to log out of the online account:

restoring full functionality of the second computing device by terminating the network session between the online platform and the second computing device; and

logging the user out of the online account.

2. The method of claim 1 , wherein establishing the network session between the online platform and the second computing device of the user comprises establishing a phone call between the online platform and the second computing device.

3. The method of claim 1 , wherein establishing the network session between the online platform and the second computing device of the user comprises providing, via a network connection between the online platform and the second computing device, a software token that runs on the second computing device.

4. The method of claim 1 , wherein the network session provides the authentication credentials associated with the user to the online platform by providing the user with a one-time password that the user enters to the online platform via the first computing device.

5. The method of claim 1 , wherein the network session disrupts the functionality of the second computing device by preventing, while the network session is established via an application running in a foreground of the second computing device, the user from accessing at least one additional application installed on the second computing device.

6. The method of claim 1 , further comprising determining that the user has entered authenticated login credentials into the online platform via the first computing device prior to logging the user into the online account.

7. The method of claim 1 , wherein:

detecting the request from the user to log out of the online account comprises determining that the user has initiated a logout process on the first computing device; and

terminating the network session between the online platform and the second computing device comprises automatically terminating the network session without input from the user on the second computing device.

8. The method of claim 1 , wherein:

detecting the request from the user to log out of the online account comprises determining that the user has initiated terminating the network session on the second computing device; and

logging the user out of the online account comprises automatically logging the user out of the online account without input from the user on the first computing device.

9. The method of claim 1 , further comprising:

logging the user into the online account via a third computing device of the user while the network session is established between the online platform and the second computing device of the user; and

in response to detecting the request to log the user out of the online account, logging the user out of the online account on both the first computing device and the third computing device.

10. The method of claim 1 , wherein logging the user out of the online account comprises preventing an unauthorized entity from accessing sensitive data stored within the online account.

11. A system for logging users out of online accounts, the system comprising:

a request module, stored in memory, that receives, from a first computing device of a user, a request from the user to log into an online account that:

enables the user to perform at least one online task; and

is hosted by an online platform;

an establishing module, stored in memory, that establishes, between the online platform and a second computing device of the user, a network session that both:

verifies the identity of the user to the online platform by providing, to the online platform, authentication credentials associated with the user; and

at least partially disrupts the functionality of the second computing device while the user is logged into the online account via the first computing device such that the user is motivated to log out of the online account after performing the online task;

an authentication module, stored in memory, that logs the user into the online account via the first computing device in response to the network session being established between the online platform and the second computing device;

wherein the request module further detects a request from the user to log out of the online account;

a termination module, stored in memory, that in response to the request to log out of the online account:

restores full functionality of the second computing device by terminating the network session between the online platform and the second computing device; and

logs the user out of the online account; and

at least one hardware processor that is configured to execute the request module, the establishing module, the authentication module, and the termination module.

12. The system of claim 11 , wherein the establishing module establishes the network session between the online platform and the second computing device of the user by establishing a phone call between the online platform and the second computing device.

13. The system of claim 11 , wherein the establishing module establishes the network session between the online platform and the second computing device of the user by providing, via a network connection between the online platform and the second computing device, a software token that runs on the second computing device.

14. The system of claim 11 , wherein the network session provides the authentication credentials associated with the user to the online platform by providing the user with a one-time password that the user enters to the online platform via the first computing device.

15. The system of claim 11 , wherein the network session disrupts the functionality of the second computing device by preventing, while the network session is established via an application running in a foreground of the second computing device, the user from accessing at least one additional application installed on the second computing device.

16. The system of claim 11 , wherein the authentication module further determines that the user has entered authenticated login credentials into the online platform via the first computing device prior to logging the user into the online account.

17. The system of claim 11 , wherein:

the request module detects the request from the user to log out of the online account by determining that the user has initiated a logout process on the first computing device; and

the termination module terminates the network session between the online platform and the second computing device by automatically terminating the network session without input from the user on the second computing device.

18. The system of claim 11 , wherein:

the request module detects the request from the user to log out of the online account by determining that the user has initiated terminating the network session on the second computing device; and

the termination module logs the user out of the online account by automatically logging the user out of the online account without input from the user on the first computing device.

19. The system of claim 11 , wherein:

the authentication module further logs the user into the online account via a third computing device of the user while the network session is established between the online platform and the second computing device of the user; and

in response to the request to log the user out of the online account, the termination module logs the user out of the online account on both the first computing device and the third computing device.

20. A non-transitory computer-readable medium comprising one or more computer-readable instructions that, when executed by at least one processor of a computing device, cause the computing device to:

receive, from a first computing device of a user, a request from the user to log into an online account that:

enables the user to perform at least one online task; and

is hosted by an online platform;

establish, between the online platform and a second computing device of the user, a network session that both:

verifies the identity of the user to the online platform by providing, to the online platform, authentication credentials associated with the user; and

at least partially disrupts the functionality of the second computing device while the user is logged into the online account via the first computing device such that the user is motivated to log out of the online account after performing the online task;

in response to establishing the network session between the online platform and the second computing device, log the user into the online account via the first computing device;

detect a request from the user to log out of the online account; and

in response to detecting the request to log out of the online account:

restore full functionality of the second computing device by terminating the network session between the online platform and the second computing device; and

log the user out of the online account.

Assignments (6)
CHANGE OF NAME Recorded Feb 6, 2023
From: NORTONLIFELOCK INC.
To: GEN DIGITAL INC.
Reel/Frame 062714/0605 →
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
CHANGE OF NAME Recorded Feb 14, 2020
From: SYMANTEC CORPORATION
To: NORTONLIFELOCK INC.
Reel/Frame 051935/0228 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 12, 2016
From: JIANG, KEVIN; SOKOLOV, ILYA; RAY, RICKEY
To: SYMANTEC CORPORATION
Reel/Frame 039423/0880 →
Cited By (5)
US 12,289,308 US 12,393,734 US 12,399,927 US 12,568,124 US 12,579,249