IP Library Granted Patent US 11,503,068
Granted Patent B1
US 11,503,068 · App. 16/355,285 · Granted Nov 15, 2022

Session management

Inventors: Traci H. Nguyen (San Francisco, CA); Nairobi N. Kim (Piedmont, CA); Ian Jensen (Oakland, CA); Upul Hanwella (San Francisco, CA); Brian J. Hanafee (Pleasanton, CA); Christopher Wayne Howser (Concord, NC); Ajay Panikkar (Sunnyvale, CA); Michael Chang (Millbrae, CA)
Assignee: Wells Fargo Bank, N.A.
H04L63/1441H04L63/1408H04L67/14
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,503,068
App. No.
16/355,285
Granted
Nov 15, 2022
Kind
B1
Abstract

One or more embodiments of techniques or systems for session management, security scoring, and friction management are provided herein. Sessions may be monitored for commonalities or other attributes or aspects and closed, terminated, or a freeze placed on additional sessions from being initiated. A security score may be provided which is indicative of how secure a user is with respect to one or more ways the user interacts with a resource. One or more suggested actions or score improvement strategies may be suggested to facilitate improvement of a security score for a user. Friction management may be provided by having one or more additional layers of security applied to an account of a user or an entity based on suspicious behavior or other factors.

Claims (35)

1. A system for session management, comprising:

a processor;

a memory storing instructions that, when executed by the processor, cause the processor to:

determine a session behavior profile for a web-based session associated with an authenticated entity, wherein the session behavior profile establishes a degree of familiarity with the entity;

apply one or more initial security measures to the web-based session based on the degree of familiarity;

identify the web-based session as anomalous based on data associated with the web-based session and the session behavior profile; and

apply one or more additional security measures to the web-based session in response to identification of the web-based session as anomalous.

2. The system of claim 1 , wherein the instructions further cause the processor to deny one or more additional web-based sessions based on the identification of the web-based session as anomalous.

3. The system of claim 1 , wherein the instructions further cause the processor to provide a notification based on the identification of the web-based session as anomalous.

4. The system of claim 1 , wherein the instructions further cause the processor to update dynamically the session behavior profile based on a machine learning technique.

5. The system of claim 1 , wherein the instructions further cause the processor to terminate the web-based session based on the identification of the web-based session as anomalous.

6. The system of claim 1 , wherein the web-based session is associated with another web-based session with an authentication credential of the same entity.

7. The system of claim 1 , wherein the session behavior profile comprising a session pattern, a behavior baseline, or a potentially malicious behavior.

8. The system of claim 7 , wherein the session pattern further comprises a location, a session rate, a number of sessions, or a session activity.

9. The system of claim 7 , wherein the behavior baseline comprises a baseline location, a baseline session rate, a baseline number of sessions, or a baseline session activity associated with the entity.

10. The system of claim 7 , wherein the potentially malicious behavior comprises a denial of service behavior, a brute force behavior, a fraud behavior, or a redirection behavior.

11. A method of session management, comprising:

executing, on a processor, instructions stored in a memory that cause a session management system to:

determine a session behavior profile for a web-based session associated with an authenticated entity, wherein the session behavior profile establishes a degree of familiarity with the entity;

apply one or more initial security measures to the web-based session based on the degree of familiarity;

identify the web-based session as anomalous based on data associated with the web-based session and the session behavior profile; and

apply one or more additional security measures to the web-based session in response to identification of the web-based session as anomalous.

12. The method of claim 11 , wherein the instructions further cause the session management system to deny one or more additional web-based sessions for the authenticated entity based on the identification of the web-based session as anomalous.

13. The method of claim 11 , wherein the instructions further cause the session management system to terminate the web-based session identified as anomalous after a predetermined session threshold is exceeded.

14. The method of claim 11 , wherein the instructions further cause the session management system to update the session behavior profile based on a machine learning technique.

15. The method of claim 11 , wherein the session behavior profile comprises a session pattern, a behavior baseline, or a potentially malicious behavior.

16. The method of claim 15 , wherein the session pattern comprises a location, a session rate, a number of sessions, or a session activity.

17. A non-transitory computer-readable storage medium comprising computer-executable instructions, which when executed by a processing unit on a computer performs acts, comprising:

determining one or more session behavior profiles for one or more web-based sessions associated with one or more authenticated entities, wherein the one or more session behavior profiles establish a degree of familiarity with the one or more entities;

applying one or more initial security measures to the one or more web-based sessions based on the degree of familiarity;

identifying at least one of the one or more web-based sessions as anomalous based on data associated with the one or more web-based sessions and the one or more session behavior profiles; and

applying one or more additional security measures to the at least one of the one or more web-based sessions in response to identifying the at least one of the one or more web-based sessions as anomalous.

18. The non-transitory computer-readable storage medium of claim 17 , further comprising denying one or more additional web-based sessions for at least one of the one or more authenticated entities associated with the at least one web-based session identified as anomalous.

19. The non-transitory computer-readable storage medium of claim 17 , further comprising terminating the at least one web-based session identified as anomalous after a predetermined session threshold is exceeded.

20. The non-transitory computer-readable storage medium of claim 17 , further comprising dynamically updating one or more of the session behavior profiles based on a machine learning technique.

Assignments (2)
ADDRESS CHANGE Recorded Jun 2, 2025
From: WELLS FARGO BANK, N.A.
To: WELLS FARGO BANK, N.A.
Reel/Frame 071769/0158 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 15, 2019
From: NGUYEN, TRACI H.; KIM, NAIROBI N.; JENSEN, IAN; HANWELLA, UPUL; HANAFEE, BRIAN J.; HOWSER, CHRISTOPHER WAYNE; PANIKKAR, AJAY; CHANG, MICHAEL
To: WELLS FARGO BANK, N.A.
Reel/Frame 048615/0737 →
Continuity (2)
Continuation 14694084 · Apr 23, 2015
Provisional Application 62013298 · Jun 17, 2014
Cited By (1)
US 12,711,508