IP Library Granted Patent US 11,233,812
Granted Patent B2
US 11,233,812 · App. 15/816,207 · Granted Jan 25, 2022

Account theft risk identification

Inventor: Chunping Tan (Hangzhou, CN)
Assignee: Advanced New Technologies Co., Ltd.
H04L63/1433G06F21/57H04L63/08H04L63/0876H04L63/107H04W12/06H04W12/126H04W12/63
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,233,812
App. No.
15/816,207
Granted
Jan 25, 2022
Kind
B2
Abstract

An operation request is received from a terminal device. An identification of the terminal device is determined. Based on the identification of the terminal device, historical operation requests initiated from the terminal device in a predetermined time period prior to the operation request are determined. A user identity location is determined for each historical operation request. A number of different user identity locations for the historical operation requests is determined. Based on the number of different user identity locations, an account theft risk value is determined.

Claims (46)

1. A computer-implemented method, comprising:

receiving an operation request from a terminal device;

determining an identification of the terminal device;

based on the identification of the terminal device, determining historical operation requests associated with a plurality of respective user accounts belonging respectively to a plurality of different users who initiated the historical operation requests from the terminal device in a predetermined time period prior to the operation request;

determining a respective user identity location for each historical operation request initiated by the plurality of different users based on respective user registration information for each of the plurality of different users, wherein a granularity of the user identity location is a city or a county;

computing, from the user registration information for the plurality of different users, a number of different cities or counties among the user identity locations for the plurality of different users associated with the historical operation requests;

computing a risk level for the terminal device based on the number of different cities or counties computed from the user registration information for the plurality of different users indicating the user identity locations for the plurality of different users associated with the historical operation requests initiated from the terminal device;

computing an account theft risk level for a user of the operation request; and

computing an overall account theft risk level by combining the risk level for the terminal device and the account theft risk level for the user of the operation request.

2. The computer-implemented method of claim 1 , wherein the terminal device is a personal computer (PC), and the identification of the terminal device includes at least one of a Medium Access Control (MAC) address, an Internet Protocol (IP) address, or a Unique Material Identifier (UMID).

3. The computer-implemented method of claim 1 , wherein the terminal device is a mobile communication device, and the identification of the terminal device includes at least one of a Medium Access Control (MAC) address, an International Mobile Equipment Identity (IMEI), a Thread Identifier (TID), or a mobile phone number.

4. The computer-implemented method of claim 1 , wherein, determining the respective user identity location for each historical operation request initiated by the plurality of different users based on the respective user registration information for each of the plurality of different users comprises determining the respective user identity location based on a credential type and a credential number comprised in the respective user registration information.

5. The computer-implemented method of claim 4 , wherein the credential type is a resident identification (ID) card, and the credential number is a resident ID number.

6. The computer-implemented method of claim 5 , wherein the user identity location is determined by initial digits of the resident ID number.

7. The computer-implemented method of claim 1 , further comprising determining account theft if the overall account theft risk level exceeds a threshold.

8. A non-transitory, computer-readable medium storing one or more instructions executable by a computer system to perform operations comprising:

receiving an operation request from a terminal device;

determining an identification of the terminal device;

based on the identification of the terminal device, determining historical operation requests associated with a plurality of respective user accounts belonging respectively to a plurality of different users who initiated the historical operation requests from the terminal device in a predetermined time period prior to the operation request;

determining a respective user identity location for each historical operation request initiated by the plurality of different users based on respective user registration information for each of the plurality of different users, wherein a granularity of the user identity location is a city or a county;

computing, from the user registration information for the plurality of different users, a number of different cities or counties among the user identity locations for the plurality of different users associated with the historical operation requests;

computing a risk level for the terminal device based on the number of different cities or counties computed from the user registration information for the plurality of different users indicating the user identity locations for the plurality of different users associated with the historical operation requests initiated from the terminal device;

computing an account theft risk level for a user of the operation request; and

computing an overall account theft risk level by combining the risk level for the terminal device and the account theft risk level for the user of the operation request.

9. The non-transitory, computer-readable medium of claim 8 , wherein the terminal device is a personal computer (PC), and the identification of the terminal device includes at least one of a Medium Access Control (MAC) address, an Internet Protocol (IP) address, or a Unique Material Identifier (UMID).

10. The non-transitory, computer-readable medium of claim 8 , wherein the terminal device is a mobile communication device, and the identification of the terminal device includes at least one of a Medium Access Control (MAC) address, an International Mobile Equipment Identity (IMEI), a Thread Identifier (TID), or a mobile phone number.

11. The non-transitory, computer-readable medium of claim 8 , wherein, determining the respective user identity location for each historical operation request initiated by the plurality of different users based on the respective user registration information for each of the plurality of different users comprises determining the respective user identity location based on a credential type and a credential number comprised in the respective user registration information.

12. The non-transitory, computer-readable medium of claim 11 , wherein the credential type is a resident identification (ID) card, and the credential number is a resident ID number.

13. The non-transitory, computer-readable medium of claim 12 , wherein the user identity location is determined by initial digits of the resident ID number.

14. The non-transitory, computer-readable medium of claim 8 , wherein the operations further comprise determining account theft if the overall account theft risk level exceeds a threshold.

15. A computer-implemented system, comprising:

one or more computers; and

one or more computer memory devices interoperably coupled with the one or more computers and having tangible, non-transitory, machine-readable media storing one or more instructions that, when executed by the one or more computers, perform one or more operations comprising:

receiving an operation request from a terminal device;

determining an identification of the terminal device;

based on the identification of the terminal device, determining historical operation requests associated with a plurality of respective user accounts belonging respectively to a plurality of different users who initiated the historical operation requests from the terminal device in a predetermined time period prior to the operation request;

determining a respective user identity location for each historical operation request initiated by the plurality of different users based on respective user registration information for each of the plurality of different users, wherein a granularity of the user identity location is a city or a county;

computing, from the user registration information for the plurality of different users, a number of different cities or counties among the user identity locations for the plurality of different users associated with the historical operation requests;

computing a risk level for the terminal device based on the number of different cities or counties computed from the user registration information for the plurality of different users indicating the user identity locations for the plurality of different users associated with the historical operation requests initiated from the terminal device;

computing an account theft risk level for a user of the operation request; and

computing an overall account theft risk level by combining the risk level for the terminal device and the account theft risk level for the user of the operation request.

16. The computer-implemented system of claim 15 , wherein the terminal device is a personal computer (PC), and the identification of the terminal device includes at least one of a Medium Access Control (MAC) address, an Internet Protocol (IP) address, or a Unique Material Identifier (UMID).

17. The computer-implemented system of claim 15 , wherein the terminal device is a mobile communication device, and the identification of the terminal device includes at least one of a Medium Access Control (MAC) address, an International Mobile Equipment Identity (IMEI), a Thread Identifier (TID), or a mobile phone number.

18. The computer-implemented system of claim 15 , wherein, determining the respective user identity location for each historical operation request initiated by the plurality of different users based on the respective user registration information for each of the plurality of different users comprises determining the respective user identity location based on a credential type and a credential number comprised in the respective user registration information.

19. The computer-implemented system of claim 18 , wherein the credential type is a resident identification (ID) card, and the credential number is a resident ID number.

20. The computer-implemented system of claim 19 , wherein the user identity location is determined by initial digits of the resident ID number.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 10, 2020
From: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
To: ADVANCED NEW TECHNOLOGIES CO., LTD.
Reel/Frame 053754/0625 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 31, 2020
From: ALIBABA GROUP HOLDING LIMITED
To: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
Reel/Frame 053743/0464 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 1, 2018
From: TAN, CHUNPING
To: ALIBABA GROUP HOLDING LIMITED
Reel/Frame 044795/0809 →