IP Library Granted Patent US 10,735,419
Granted Patent B2
US 10,735,419 · App. 15/486,116 · Granted Aug 4, 2020

Techniques for authentication via a mobile device

Inventors: Jason Allen Sabin (Lehi, UT); Jeremy Ray Brown (Bluffdale, UT); Lloyd Leon Burch (Payson, UT)
Assignee: Micro Focus Software Inc.
H04L63/0884G06F21/31G06F21/35G06F21/36G06F21/42G06F21/44H04L9/3226H04L9/3247H04L63/08H04L63/10H04W4/00H04W12/06G06F2221/2107G06F2221/2115G06F2221/2119G06F2221/2153H04L2209/76H04L2209/80
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,735,419
App. No.
15/486,116
Granted
Aug 4, 2020
Kind
B2
Abstract

Techniques for authentication via a mobile device are provided. A mobile device is pre-registered for website authentication services. A user encounters a website displaying an embedded code as an image alongside a normal login process for that website. The image is identified by the mobile device, encrypted and signed by the mobile device and sent to a proxy. The proxy authenticates the code and associates it with the website. Credentials for the user are provided to the website to automatically authenticate the user for access to the website bypassing the normal login process associated with the website.

Claims (17)

1. A method, comprising:

injecting a code into a login interface for a resource;

receiving a different code from a device in response to the device processing the code, wherein receiving further includes obtaining the different code as an encrypted and signed version of a number that is present in the code from the device;

authenticating a user that operates the device for access to the resource based at least in part on processing the different code;

obtaining registered credentials of the user when the user is successfully authenticated;

providing the registered credentials to the resource;

logging the user into an authenticated session with the resource using the registered credentials; and

providing a session handle to the user for the authenticated session between the user and the resource when the user is successfully authenticated, wherein the resource is incapable of performing authentication on the user via the code or the different code, and wherein the resource is a pre-existing and legacy resource that requires the registered credentials for authenticating the user.

2. The method of claim 1 further comprising, injecting a different code into the login interface page when the login interface is reloaded or rendered a different time.

3. The method of claim 1 , wherein injecting further includes randomly generating the code as an encrypted number embedded in a bar code or a Quick Response (QR) code.

4. The method of claim 1 , wherein injecting further includes providing the code to the login interface that is rendered on a different device from the device that provides the different code.

5. The method of claim 1 , wherein receiving further includes ensuring that an elapsed period of time from when the code was initially and first injected into the login interface is unexpired when receiving the different code.

6. The method of claim 1 , wherein providing further includes providing the session handle on a different device operated by the user from the device, wherein the login interface was rendered on the different device.

7. A system, comprising:

a server; and

a proxy configured to: i) execute on at least one processor of the server, ii) inject a unique and random encrypted code into a login interface of a resource each time the login interface is rendered; iii) authenticate a version of the unique and random encrypted code received from a user accessing the login interface, wherein the version represents the unique and random encrypted code that was decrypted and then encrypted and signed by a device of the user using a key associated with the device; iv) obtain registered credentials that were previously registered by the user based on successfully authenticating the version; v) log the user into an authenticated session with the resource by using the registered credentials; and vi) provide a session handle for the authenticated session between the user and the resource to the user, wherein the resource is incapable of performing authentication on the user via the unique and random encrypted code or the version of the unique and random encrypted code, and wherein the resource is a pre-existing and legacy resource that requires the registered credentials for authenticating the user.

8. The system of claim 7 , wherein the server is part of a cloud processing environment.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 11, 2026
From: MICRO FOCUS SOFTWARE INC.
To: MICRO FOCUS LLC
Reel/Frame 073758/0781 →
RELEASE OF SECURITY INTEREST REEL/FRAME 044183/0718 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: MICRO FOCUS LLC (F/K/A ENTIT SOFTWARE LLC); BORLAND SOFTWARE CORPORATION; MICRO FOCUS (US), INC.; SERENA SOFTWARE, INC; ATTACHMATE CORPORATION; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.); NETIQ CORPORATION
Reel/Frame 062746/0399 →
SECURITY INTEREST Recorded Oct 11, 2017
From: ATTACHMATE CORPORATION; BORLAND SOFTWARE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE, INC.; ENTIT SOFTWARE LLC; ARCSIGHT, LLC; SERENA SOFTWARE, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 044183/0718 →