IP Library Granted Patent US 10,666,656
Granted Patent B2
US 10,666,656 · App. 16/168,613 · Granted May 26, 2020

Systems and methods for protecting users from malicious content

Inventors: Bjorn Markus Jakobsson (San Jose, CA); James Roy Palmer (San Jose, CA)
Assignee: PAYPAL, INC.
H04L63/10H04L63/08H04L63/1483H04L63/168
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,666,656
App. No.
16/168,613
Granted
May 26, 2020
Kind
B2
Abstract

Systems and methods for authenticating a user attempting to access content are provided. The method includes requesting a first at least one user credential, determining if the requested first at least one user credential matches a second at least one user credential used when the user accessed previously accessed content, and generating a list of content providers requiring the second at least one user credential for access when the first at least one user credentials matches a second at least one user credential. The method also includes requiring the user to select a content provider from the list of content providers, allowing the user to access the content if the selected content provider corresponds to the content being accessed by the user, and preventing the user from accessing the content if the selected content provider does not correspond to the content being accessed by the user.

Claims (66)

1. A system, comprising:

a non-transitory memory; and

one or more hardware processors coupled to the non-transitory memory and configured to execute instructions from the non-transitory memory to cause the system to perform operations comprising:

determining that a user has accessed a first content page;

analyzing the first content page;

identifying, in response to analyzing the first content page, an entity that is associated with the first content page and that is associated with an entity image;

identifying a plurality of service providers that are each associated with the user and a respective service provider image;

providing, for display on a display device that is provided with a computing device that is associated with the user:

a first selectable element that corresponds to the entity and that includes the entity image; and

a second selectable element that corresponds to a first service provider of the plurality of service providers and that includes the respective first service provider image associated with the first service provider;

receiving, from the computing device, a user selection of the first selectable element;

determining that the user selection corresponds to the first selectable element; and

permitting, in response to determining that the user selection corresponds to the first selectable element, communication of an authentication credential to the entity.

2. The system of claim 1 , wherein the operations further comprise:

receiving the authentication credential via the first content page;

determining that the authentication credential corresponds to an entry in a database of stored authentication credentials that have been used with at least one second content page; and

providing, for display on the display device that is provided with the computing device that is associated with the user, an indication that the authentication credential is used with at least one second content page.

3. The system of claim 1 , wherein analyzing the first content page further comprises:

analyzing one or more of: a logo displayed on the first content page, key words displayed on the first content page, a destination of information transmitted from the first content page, or a layout of the first content page.

4. The system of claim 1 , wherein the operations further comprise:

providing, for display on the display device that is provided with the computing device that is associated with the user, a user stimulus;

receiving, from the computing device, a response to the user stimulus, wherein the communication of the authentication credential is permitted in response to both receiving the user selection of the first selectable element and receiving the response to the user stimulus.

5. The system of claim 1 , wherein the entity image identifies the entity.

6. The system of claim 1 , wherein at least one of the plurality of service providers is identified based on a history of websites that were previously accessed by the user.

7. The system of claim 1 , wherein at least one of the plurality of service providers is identified based on a website for which the user has previously provided the authentication credential.

8. A non-transitory machine-readable medium having stored thereon machine-readable instructions which, when executed by one or more processors, cause a machine to perform operations comprising:

analyzing a first content page that has been accessed by a user;

identifying, in response to analyzing the first content page, an entity that is associated with the first content page;

identifying a plurality of service providers that are associated with the user;

providing, for display via a computing device that is associated with the user, a plurality of selectable elements that include:

a first selectable element that includes an entity image associated with the entity; and

at least one respective second selectable element for each of the plurality of service providers that were identified, wherein each respective second selectable element includes a respective service provider image associated with a respective one of the plurality of service providers for which that second selectable element is provided;

receiving, from the computing device, a user selection of one of the plurality of selectable elements;

determining that the user selection corresponds to the first selectable element; and

providing, in response to determining that the user selection corresponds to the first selectable element, for communication of authentication credentials to the entity.

9. The non-transitory machine-readable medium of claim 8 , wherein the operations further comprise:

receiving the authentication credentials through the first content page;

determining that the authentication credentials are used with at least one second content page; and

providing, for display via the computing device that is associated with the user, an indication that the authentication credentials are used with the at least one second content page.

10. The non-transitory machine-readable medium of claim 8 , wherein analyzing the first content page further comprises:

analyzing one or more of: a logo displayed on the first content page, key words displayed on the first content page, a destination of information transmitted from the first content page, or a layout of the first content page.

11. The non-transitory machine-readable medium of claim 8 , wherein the operations further comprise:

receiving, from the computing device, a response to a user stimulus provided for display on the computing device, wherein the communication of the authentication credential is permitted in response to both determining that that user selection corresponds to the first selectable element and receiving the response to the user stimulus.

12. The non-transitory machine-readable medium of claim 8 , wherein the entity image includes an entity name of the entity.

13. The non-transitory machine-readable medium of claim 8 , wherein at least one of the plurality of service providers is identified based on an Internet browser history associated with the user.

14. The non-transitory machine-readable medium of claim 8 , wherein at least one of the plurality of service providers is identified based on having previously received the authentication credentials from the user.

15. A computer-implemented method, comprising:

determining, by a system provider device, that a first content page has been accessed;

analyzing, by the system provider device, the first content page;

identifying, by the system provider device in response to analyzing the first content page, an entity that is associated with the first content page and that is associated with an entity image;

identifying, by the system provider device, a plurality of content providers that are each associated with the user and a respective content provider image;

providing, by the system provider device for display on a display device that is provided with a computing device:

a first selectable element that corresponds to the entity and that includes the entity image; and

a second selectable element that corresponds to a first content provider of the plurality of content providers and that includes the respective first content provider image associated with the first content provider;

receiving, from the computing device, a selection of the first selectable element;

determining that the selection corresponds to the first selectable element; and

enabling, in response to determining that the selection corresponds to the first selectable element, communication of an authentication credential to the entity.

16. The method of claim 15 , further comprising:

receiving, by the system provider device, the authentication credentials through the first content page;

determining, by the system provider device, that the authentication credentials are used with at least one second content page; and

providing, by the system provider device for display on a display device that is provided with a computing device, an indication that the authentication credentials are used with the at least one second content page.

17. The method of claim 15 , wherein analyzing the first content page further comprises analyzing one or more of: a logo displayed on the first content page, key words displayed on the first content page, a destination of information transmitted from the first content page, or a layout of the first content page.

18. The method of claim 15 , further comprising

receiving, from the computing device, a response to a stimulus provided for display on a display device that is provided with a computing device, wherein the communication of the authentication credential is permitted in response to both determining that that selection corresponds to the first selectable element and receiving the response to the stimulus.

19. The method of claim 15 , wherein the entity image provides an indication of the entity.

20. The method of claim 15 , wherein at least one of the plurality of content providers is identified based on a history of content page access.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 15, 2019
From: JAKOBSSON, BJORN MARKUS; PALMER, JAMES ROY
To: EBAY INC.
Reel/Frame 048613/0093 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 15, 2019
From: EBAY INC.
To: PAYPAL, INC.
Reel/Frame 048613/0190 →