IP Library Granted Patent US 10,796,318
Granted Patent B2
US 10,796,318 · App. 16/169,122 · Granted Oct 6, 2020

System to identify vulnerable card readers

Inventors: Ananya Shukla (New York, NY); Daniel Norris (New York, NY)
Assignee: Palantir Technologies Inc.
G06Q30/0185G06F16/955G06K7/01G06K19/073G07F19/2055
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,796,318
App. No.
16/169,122
Granted
Oct 6, 2020
Kind
B2
Abstract

Example embodiments relate to a network-based vulnerability detection system configured to access a database of customer transaction data corresponding to a set of card readers that includes transaction codes, receive an identification of a set of compromised card readers among the set of card readers, identify common transaction codes within the transaction data of the set of compromised card readers, and correlate the common transaction codes to one or more instances of fraud associated with the compromised set of card readers. In some example embodiments, the vulnerability detection system may be applied to monitor one or more card readers, receive transaction data corresponding to transaction conducted through the card readers, identify the common transaction codes correlated to the instances of fraud, and cause display of a notification that includes an indication of the instance of fraud at a client device.

Claims (70)

1. A method comprising:

receiving transaction data from a first device among a set of devices, the transaction data including a set of transaction codes and a first device identifier that identifies the first device among the set of devices;

accessing a transaction database that comprises historical transaction data associated with the set of devices, the historical transaction data including a correlation between a transaction code among the historical transaction data and an instance of fraud;

identifying the transaction code correlated with the instance of fraud among the set of transaction codes from the first device; and

disabling the first device among the set of devices in response to the identifying the transaction code correlated with the instance of fraud.

2. The method of claim 1 , wherein the method further comprises:

receiving the historical transaction data from the set of devices;

receiving an identification of the instance of fraud among the historical transaction data, the identification identifying the transaction code; and

generating the correlation between the transaction code and the instance of fraud.

3. The method of claim 2 , wherein the historical transaction data comprises a set of timestamps that indicate a time of a transaction, and wherein the receiving the identification of the instance of fraud among the historical transaction data includes:

receiving an identification of a time period correlated with the instance of fraud;

identifying a subset of the historical transaction data based on the time period and the set of timestamps; and

correlating the subset of the historical transaction data with the instance of fraud.

4. The method of claim 1 , wherein the method further comprises:

causing display of a notification at a client device in response to the identifying the transaction code correlated with the instance of fraud, the notification including an identification of the first device.

5. The method of claim 1 , wherein the transaction data includes a user identifier, and the method further comprises:

transmitting a notification to a user account associated with the user identifier in response to the identifying the transaction code correlated with the instance of fraud among the set of transaction codes from the first device.

6. The method of claim 1 , wherein the method further comprises:

calculating a vulnerability score of the first device based on at least the transaction code; and

assigning the vulnerability score to the first device within a database.

7. The method of claim 1 , wherein the transaction codes indicate a status of a transaction, and wherein the status includes at least one of:

an incomplete transaction;

a complete transaction; and

a declined transaction.

8. A system comprising:

one or more processors of a machine; and

a memory storing instructions that, when executed by at least one processor among the one or more processors, causes the machine to perform operations comprising:

receiving transaction data from a first device among a set of devices, the transaction data including a set of transaction codes and a first device identifier that identifies the first device among the set of devices;

accessing a transaction database that comprises historical transaction data associated with the set of devices, the historical transaction data including a correlation between a transaction code among the historical transaction data and an instance of fraud;

identifying the transaction code correlated with the instance of fraud among the set of transaction codes from the first device; and

disabling the first device among the set of devices in response to the identifying the transaction code correlated with the instance of fraud.

9. The system of claim 8 , wherein the instructions cause the machine to perform operations further comprising:

receiving the historical transaction data from the set of devices;

receiving an identification of the instance of fraud among the historical transaction data, the identification identifying the transaction code; and

generating the correlation between the transaction code and the instance of fraud.

10. The system of claim 9 , wherein the historical transaction data comprises a set of timestamps that indicate a time of a transaction, and wherein the receiving the identification of the instance of fraud among the historical transaction data includes:

receiving an identification of a time period correlated with the instance of fraud;

identifying a subset of the historical transaction data based on the time period and the set of timestamps; and

correlating the subset of the historical transaction data with the instance of fraud.

11. The system of claim 8 , wherein the instructions cause the machine to perform operations further comprising:

causing display of a notification at a client device in response to the identifying the transaction code correlated with the instance of fraud, the notification including an identification of the first device.

12. The system of claim 8 , wherein the transaction data includes a user identifier, and the instructions cause the system to perform operations further comprising:

transmitting a notification to a user account associated with the user identifier in response to the identifying the transaction code correlated with the instance of fraud among the set of transaction codes from the first device.

13. The system of claim 8 , wherein the instructions cause the system to perform operations further comprising:

calculating a vulnerability score of the first device based on at least the transaction code; and

assigning the vulnerability score to the first device within a database.

14. The system of claim 8 , wherein the transaction codes indicate a status of a transaction, and wherein the status includes at least one of:

an incomplete transaction;

a complete transaction; and

a declined transaction.

15. A non-transitory machine-readable storage medium comprising instructions that, when executed by one or more processors of a machine, cause the machine to perform operations comprising:

receiving transaction data from a first device among a set of devices, the transaction data including a set of transaction codes and a first device identifier that identifies the first device among the set of devices;

accessing a transaction database that comprises historical transaction data associated with the set of devices, the historical transaction data including a correlation between a transaction code among the historical transaction data and an instance of fraud;

identifying the transaction code correlated with the instance of fraud among the set of transaction codes from the first device; and

disabling the first device among the set of devices in response to the identifying the transaction code correlated with the instance of fraud.

16. The non-transitory machine-readable storage medium of claim 15 , wherein the instructions cause the machine to perform operations further comprising:

receiving the historical transaction data from the set of devices;

receiving an identification of the instance of fraud among the historical transaction data, the identification identifying the transaction code; and

generating the correlation between the transaction code and the instance of fraud.

17. The non-transitory machine-readable storage medium of claim 16 , wherein the historical transaction data comprises a set of timestamps that indicate a time of a transaction, and wherein the receiving the identification of the instance of fraud among the historical transaction data includes:

receiving an identification of a time period correlated with the instance of fraud;

identifying a subset of the historical transaction data based on the time period and the set of timestamps; and

correlating the subset of the historical transaction data with the instance of fraud.

18. The non-transitory machine-readable storage medium of claim 15 , wherein the instructions cause the machine to perform operations further comprising:

causing display of a notification at a client device in response to the identifying the transaction code correlated with the instance of fraud, the notification including an identification of the first device.

19. The non-transitory machine-readable storage medium of claim 15 , wherein the transaction data includes a user identifier, and the instructions cause the system to perform operations further comprising:

transmitting a notification to a user account associated with the user identifier in response to the identifying the transaction code correlated with the instance of fraud among the set of transaction codes from the first device.

20. The non-transitory machine-readable storage medium of claim 15 , wherein the instructions cause the system to perform operations further comprising:

calculating a vulnerability score of the first device based on at least the transaction code; and

assigning the vulnerability score to the first device within a database.

Assignments (8)
ASSIGNMENT OF INTELLECTUAL PROPERTY SECURITY AGREEMENTS Recorded Jul 3, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: WELLS FARGO BANK, N.A.
Reel/Frame 060572/0640 →
SECURITY INTEREST Recorded Jul 3, 2022
From: PALANTIR TECHNOLOGIES INC.
To: WELLS FARGO BANK, N.A.
Reel/Frame 060572/0506 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ERRONEOUSLY LISTED PATENT BY REMOVING APPLICATION NO. 16/832267 FROM THE RELEASE OF SECURITY INTEREST PREVIOUSLY RECORDED ON REEL 052856 FRAME 0382. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Aug 26, 2021
From: ROYAL BANK OF CANADA
To: PALANTIR TECHNOLOGIES INC.
Reel/Frame 057335/0753 →
SECURITY INTEREST Recorded Jun 4, 2020
From: PALANTIR TECHNOLOGIES INC.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 052856/0817 →
RELEASE OF SECURITY INTEREST Recorded Jun 4, 2020
From: ROYAL BANK OF CANADA
To: PALANTIR TECHNOLOGIES INC.
Reel/Frame 052856/0382 →
SECURITY INTEREST Recorded Jan 27, 2020
From: PALANTIR TECHNOLOGIES INC.
To: MORGAN STANLEY SENIOR FUNDING, INC., AS ADMINISTRATIVE AGENT
Reel/Frame 051713/0149 →
SECURITY INTEREST Recorded Jan 27, 2020
From: PALANTIR TECHNOLOGIES INC.
To: ROYAL BANK OF CANADA, AS ADMINISTRATIVE AGENT
Reel/Frame 051709/0471 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 24, 2018
From: SHUKLA, ANANYA; NORRIS, DANIEL
To: PALANTIR TECHNOLOGIES INC.
Reel/Frame 047292/0725 →