IP Library Granted Patent US 10,984,095
Granted Patent B2
US 10,984,095 · App. 16/025,743 · Granted Apr 20, 2021

Methods and apparatus to manage password security

Inventors: Hong Li (Folsom, CA); Tobias M. Kohlenberg (Portland, OR); Lawrence Hurst (San Franciso, CA)
Assignee: Intel Corporation
G06F21/46G06F21/45G06F21/554H04L63/06H04L63/083H04L67/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,984,095
App. No.
16/025,743
Granted
Apr 20, 2021
Kind
B2
Abstract

Methods, apparatus, systems and articles of manufacture are described to manage password security. An example apparatus includes a hardware processor to implement a transmission delay manager to invoke a provisional transmission block of a candidate password in response to detecting entry of the candidate password and a vault hash manager to determine hash values of a set of passwords of a list of passwords. The hardware processor further implements a parity verifier to compare the determined hash values to a hash value of the candidate password to determine a count of a number of instances the hash value of the candidate password matches one of the hash values and an alarm action engine to identify a service category type associated with the candidate password, the service category type associated with a threshold and release the provisional transmission block of the candidate password when the count satisfies the threshold.

Claims (22)

1. An apparatus to manage password security, the apparatus comprising:

memory; and

a hardware processor to implement:

a transmission delay manager to invoke a provisional transmission block of a candidate password associated with a user in response to detecting entry of the candidate password, the candidate password identified as new or changing;

a vault hash manager to determine hash values of a set of passwords of a list of passwords, the set of passwords previously used by the user;

a parity verifier to compare the determined hash values to a hash value of the candidate password to determine a count of a number of instances in which the hash value of the candidate password matches one of the hash values;

an alarm action engine to:

identify a service category type associated with the candidate password, the service category type associated with a threshold, the threshold determined by a security risk for the service category type; and

release the provisional transmission block of the candidate password when the count satisfies the threshold; and

a password change monitor to generate a new candidate password to be presented to the user when the count does not satisfy the threshold.

2. The apparatus of claim 1 , wherein determining the hash values of the set of passwords of the list of passwords includes:

retrieving the list of passwords from a password vault; and

calculating the hash values of the set of passwords of the list of passwords.

3. The apparatus of claim 2 , further including a hash manager to calculate the hash value of the candidate password and a set of passwords of the list of passwords.

4. The apparatus of claim 1 , wherein the service category type includes at least one of a photography category, an email category, a shopping category, a banking category, or a social category.

5. The apparatus of claim 4 , wherein the threshold for at least one service category type is greater than two.

6. The apparatus of claim 1 , further including a client risk monitor to monitor a security feed to detect password hacking activity.

7. The apparatus of claim 6 , wherein the security feed includes at least one of a rich site summary feed, a social media feed, a website, a news feed, an email update, a government organization or a local security application.

8. The apparatus of claim 6 , wherein, if the password hacking activity is detected and associated with a service, the client risk monitor is further to determine if the user has one or more passwords associated with the service.

9. The apparatus of claim 8 , wherein the alarm action engine is further to generate a warning message when the user has one or more passwords associated with the service.

10. The apparatus of claim 8 , wherein the password change monitor is to further generate a new candidate password to be presented to the user when the user has one or more passwords associated with the service.

11. The apparatus of claim 1 , wherein the alarm action engine releases the provisional transmission block of the candidate password in response to receiving a blocking release authorization code.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 10, 2018
From: LI, HONG; KOHLENBERG, TOBIAS M.; HURST, LAWRENCE
To: INTEL CORPORATION
Reel/Frame 046611/0654 →
Continuity (3)
Continuation 15397224 · Jan 3, 2017
Continuation 14359437
Related Publication 20180322275A1 · Nov 8, 2018