IP Library Granted Patent US 11,122,074
Granted Patent B2
US 11,122,074 · App. 15/719,900 · Granted Sep 14, 2021

System and method for omnichannel social engineering attack avoidance

Inventors: Damien Phelan Stolarz (Los Angeles, CA); Johanna Dwyer (Brookline, MA); Ronald J. Pollack (Clearwater, FL)
Assignee: Telepathy Labs, Inc.
H04L63/1441G06N3/0445G06N3/084G06N5/02G06N5/043G06N20/00G10L15/26H04L63/10H04L63/1408H04L63/1416H04L63/1425H04L63/1483H04L67/306H04W12/08H04W12/12H04W4/21H04W12/67
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,122,074
App. No.
15/719,900
Granted
Sep 14, 2021
Kind
B2
Abstract

A method, computer program product, and computer system for identifying social engineering activity associated with at least one of a first communication and a second communication based upon, at least in part, correlation to a predetermined rule. Characteristics of the communications are compared to the predetermined rule to determine if there is a correlation.

Claims (35)

1. A computer-implemented method comprising:

identifying, by a computing device, a first characteristic of a first communication received on a first communication channel;

identifying a second characteristic of a second communication received on a second communication channel, wherein both the first communication channel and the second communication channel are different communication platforms;

comparing, with a predetermined rule, both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel, wherein the first characteristic and the second characteristic are different characteristics;

determining that both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel correlates to the predetermined rule by performing an assessment of both similarities and differences of text for the first communication and the second communication compared to text of at least one of malicious and non-malicious communications; and

identifying potential social engineering activity associated with at least one of the first communication and the second communication based upon, at least in part, correlating both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel to the predetermined rule.

2. The computer-implemented method of claim 1 wherein the predetermined rule includes receiving the first communication and the second communication by a same user.

3. The computer-implemented method of claim 1 wherein the predetermined rule includes receiving the first communication by a first user and receiving the second communication by a user related to the first user.

4. The computer-implemented method of claim 1 wherein the predetermined rule includes a pattern between the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel.

5. The computer-implemented method of claim 1 wherein the first communication channel is a first communication platform and the second communication channel is a second communication platform.

6. The computer-implemented method of claim 1 wherein identifying at least one of the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel includes one or more of voice analysis and text analysis.

7. The computer-implemented method of claim 1 further comprising providing an indication of the potential social engineering activity to at least one of a user participating in the first communication received on the first communication channel and a third party based upon, at least in part, identifying the potential social engineering activity.

8. A computer program product residing on a non-transitory computer readable storage medium having a plurality of instructions stored thereon which, when executed across one or more processors, causes at least a portion of the one or more processors to perform operations comprising:

identifying, by a computing device, a first characteristic of a first communication received on a first communication channel;

identifying a second characteristic of a second communication received on a second communication channel, wherein both the first communication channel and the second communication channel are different communication platforms;

comparing, with a predetermined rule, both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel, wherein the first characteristic and the second characteristic are different characteristics;

determining that both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel correlates to the predetermined rule by performing an assessment of both similarities and differences of text for the first communication and the second communication compared to text of at least one of malicious and non-malicious communications; and

identifying potential social engineering activity associated with at least one of the first communication and the second communication based upon, at least in part, correlating both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel to the predetermined rule.

9. The computer program product of claim 8 wherein the predetermined rule includes receiving the first communication and the second communication by a same user.

10. The computer program product of claim 8 wherein the predetermined rule includes a pattern between the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel.

11. The computer program product of claim 8 wherein the first communication channel is a first communication platform and the second communication channel is a second communication platform.

12. The computer program product of claim 8 wherein identifying at least one of the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel includes one or more of voice analysis and text analysis.

13. The computer program product of claim 8 further comprising providing an indication of the potential social engineering activity to at least one of a user participating in the first communication received on the first communication channel and a third party based upon, at least in part, identifying the potential social engineering activity.

14. A computing system including one or more processors and one or more memories configured to perform operations comprising:

identifying, by a computing device, a first characteristic of a first communication received on a first communication channel;

identifying a second characteristic of a second communication received on a second communication channel, wherein both the first communication channel and the second communication channel are different communication platforms;

comparing, with a predetermined rule, both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel, wherein the first characteristic and the second characteristic are different characteristics;

determining that both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel correlates to the predetermined rule by performing an assessment of both similarities and differences of text for the first communication and the second communication compared to text of at least one of malicious and non-malicious communications; and

identifying potential social engineering activity associated with at least one of the first communication and the second communication based upon, at least in part, correlating both the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel to the predetermined rule.

15. The computing system of claim 14 wherein the predetermined rule includes receiving the first communication and the second communication by a same user.

16. The computing system of claim 14 wherein the predetermined rule includes a pattern between the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel.

17. The computing system of claim 14 wherein the first communication channel is a first communication platform and the second communication channel is a second communication platform.

18. The computing system of claim 14 wherein identifying at least one of the first characteristic of the first communication received on the first communication channel and the second characteristic of the second communication received on the second communication channel includes one or more of voice analysis and text analysis.

19. The computing system of claim 14 further comprising providing an indication of the potential social engineering activity to at least one of a user participating in the first communication received on the first communication channel and a third party based upon, at least in part, identifying the potential social engineering activity.

20. The computing system of claim 14 further comprising a virtual agent for at least one of monitoring and controlling the operations.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 8, 2022
From: TELEPATHY IP HOLDINGS
To: TELEPATHY LABS, INC.
Reel/Frame 062026/0304 →
RELEASE OF SECURITY INTEREST Recorded Mar 31, 2020
From: CIRCINUS-UAE, LLC
To: TELEPATHY LABS, INC.
Reel/Frame 052278/0217 →
SECURITY INTEREST Recorded Feb 19, 2019
From: TELEPATHY LABS, INC.
To: CIRCINUS-UAE, LLC
Reel/Frame 048372/0012 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 2, 2018
From: TELEPATHY LABS, INC.
To: TELEPATHY IP HOLDINGS
Reel/Frame 046251/0525 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 29, 2017
From: STOLARZ, DAMIEN PHELAN; DWYER, JOHANNA; POLLACK, RONALD J.
To: TELEPATHY LABS, INC.
Reel/Frame 043738/0370 →
Continuity (6)
Provisional Application 62403687 · Oct 3, 2016
Provisional Application 62403688 · Oct 3, 2016
Provisional Application 62403691 · Oct 3, 2016
Provisional Application 62403693 · Oct 3, 2016
Provisional Application 62403696 · Oct 3, 2016
Related Publication 20180097841A1 · Apr 5, 2018