IP Library Granted Patent US 10,891,616
Granted Patent B2
US 10,891,616 · App. 16/159,560 · Granted Jan 12, 2021

System and method for effort-based user authentication

Inventors: John D. Rome (Warrenton, VA); Bethann G. Rome (Warrenton, VA); Thomas E. Ketcham, II (Warrenton, VA)
Assignee: Intensity Analytics Corporation
G06Q20/4014G06F3/04883G06F16/1824G06F16/1834G06F16/27G06F21/33G06F21/36G06F21/6245G06K7/1417G06Q20/02G06Q20/10G06Q20/223G06Q20/24G06Q20/3274G06Q20/383G06Q20/3829G06Q20/401H04L9/0861H04L9/3213H04L9/3271H04L63/0414H04L63/083H04L63/0807H04L63/0861H04L63/102H04L63/123H04L67/22H04L2209/38H04L2463/102
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,891,616
App. No.
16/159,560
Granted
Jan 12, 2021
Kind
B2
Abstract

A method of authenticating a user of a user device, the method includes receiving a user effort-based identity authentication token from a user device, generating a challenge request, receiving an effort validation response, generated by an effort validation server in response to a user performed requested effort, receiving the effort-based identity authentication token, and authenticating the user as a function of the received validation response and the user effort-based identity authentication token.

Claims (38)

1. A method of authenticating a user of a user device, the method comprising:

receiving, from a user device, a user effort-based identity authentication token, the user effort-based identity authentication token being a package of data that is cryptographically signed;

generating a challenge request to the user device;

receiving, from the user device, an effort validation response and the user effort-based identity authentication token, the effort validation response having return data generated by an effort validation server in response to a user performed effort from the user device, the effort validation response including a validation key that includes both a rendered Boolean match conclusion and statistics about calculations associated with the rendered Boolean match conclusion, as well as information about the challenge request; and

authenticating the user as a function of the received effort validation response and the user effort-based identity authentication token.

2. The method of claim 1 , wherein the user performed effort comprises user device keyboard user efforts.

3. The method of claim 1 , wherein the user performed effort comprises gestures associated with user device touch screen user interaction.

4. The method of claim 1 , wherein the user effort-based identity authentication token comprises user effort data encoded into a QR code.

5. The method of claim 1 , wherein the user effort-based identity authentication token comprises user effort data encoded into a portable digital storage device.

6. The method of claim 1 , wherein the authentication server is a server running an application that the user device attempts to access.

7. The method of claim 1 , wherein the authentication server is a separate server from a server running an application that the user device attempts to access.

8. The method of claim 1 , wherein the effort validation response includes a validation key that includes both a rendered Boolean match conclusion and statistics about calculations associated with the rendered Boolean match conclusion, as well as information about the challenge.

9. The method of claim 1 , wherein the challenge request includes an effort challenge provided to the user device.

10. The method of claim 1 , wherein data of the challenge request is provided to the effort validation server from the user device.

11. The method of claim 1 , wherein, the validation key is a unique, cryptographically signed value.

12. A system for performing a method of authenticating a user of a user device, the system comprising:

a processor; a communication device coupled to the processor for communicating with other devices; and

a memory storing computer readable instructions coupled to the processor, the instructions for execution by the processor to perform operations comprising:

receiving, from a user device, a user effort-based identity authentication token, the user effort-based identity authentication token being a package of data that is cryptographically signed;

generating a challenge request to the user device;

receiving, from the user device, an effort validation response and the user effort-based identity authentication token, the effort validation response having return data generated by an effort validation server in response to a user performed effort from the user device, the effort validation response including a validation key that includes both a rendered Boolean match conclusion and statistics about calculations associated with the rendered Boolean match conclusion, as well as information about the challenge request; and

authenticating the user as a function of the received effort validation response and the user effort-based identity authentication token.

13. A method of authenticating a user, the method comprising:

receiving, from a user device, an access request with a user effort-based identity authentication token, the user effort-based identity authentication token being a package of data that is cryptographically signed;

generating an effort challenge as a function of the user effort-based identity authentication token;

sending the effort challenge to the user device;

receiving, from a user device, a validation response and the user effort-based identity authentication token, wherein the validation response is based on user effort responsive to the effort challenge being validated by a validation server that provides a validation key to the user device, the validation key including both a rendered Boolean match conclusion and statistics about calculations associated with the rendered Boolean match conclusion, as well as information about the effort challenge; and granting access, by the user device, responsive to the access request with the user effort-based identity authentication token and the validation response with the user effort-based identity authentication token.

14. The method of claim 13 , wherein the validation response includes the validation key.

15. The method of claim 13 , wherein the validation response includes a validation key that includes both a rendered Boolean match conclusion and statistics about calculations associated with the rendered Boolean match conclusion, as well as information about the effort challenge.

16. The method of claim 13 , wherein the effort challenge is provided to the validation server.

17. The method of claim 13 , wherein granting access includes granting access to an application.

18. A method of authenticating a user via an authentication server in communication with a user device and an application, the method comprising:

receiving an access request from the user device;

generating and sending a challenge request to the authentication server;

receiving a validation response from the validation server, wherein the validation response is representative of an effort challenge to the user device and a corresponding effort and user effort-based identity authorization token received from the user device at the validation server, the user effort-based identity authentication token being a package of data that is cryptographically signed, the validation response including a validation key that includes both a rendered Boolean match conclusion and statistics about calculations associated with the rendered Boolean match conclusion, as well as information about the challenge request; and

allowing access responsive to the validation response.

19. The method of claim 18 , wherein the authentication server is a separate server from a server running an application that the user device attempts to access.

20. The method of claim 18 , wherein the access request includes a public value identifying the user.

Assignments (5)
SECURITY INTEREST Recorded Apr 21, 2023
From: INTENSITY ANALYTICS CORPORATION
To: RUBINGER, BRUCE
Reel/Frame 063405/0379 →
SECURITY INTEREST Recorded Apr 21, 2023
From: INTENSITY ANALYTICS CORPORATION
To: RUBINGER, BRUCE
Reel/Frame 063405/0420 →
SECURITY INTEREST Recorded Jan 15, 2021
From: INTENSITY ANALYTICS CORPORATION
To: RUBINGER, BRUCE P.
Reel/Frame 054933/0348 →
SECURITY INTEREST Recorded Jun 30, 2020
From: INTENSITY ANALYTICS CORPORATION
To: RUBINGER, BRUCE P.
Reel/Frame 053088/0479 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 5, 2019
From: ROME, JOHN D.; ROME, BETHANN G.; KETCHAM, THOMAS E., II
To: INTENSITY ANALYTICS CORPORATION
Reel/Frame 048244/0492 →
Continuity (2)
Provisional Application 62572366 · Oct 13, 2017
Related Publication 20190116051A1 · Apr 18, 2019
Cited By (1)
US 12,518,216