IP Library Granted Patent US 11,805,119
Granted Patent B1
US 11,805,119 · App. 17/070,034 · Granted Oct 31, 2023

Systems and methods for one-click two-factor authentication

Inventors: Charles B. Smith (Livermore, CA); Charles O. Schwabacher (San Francisco, CA); Theobolt N. Leung (San Francisco, CA); Daniel O'Shea (San Francisco, CA)
Assignee: BlueOwl, LLC
H04L63/0853H04L63/083H04L2463/082
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,805,119
App. No.
17/070,034
Granted
Oct 31, 2023
Kind
B1
Abstract

A system for one-click two-factor includes a processor and a non-transitory, tangible, computer-readable storage medium having instructions stored thereon that, in response to execution by the processor, cause the processor to perform operations including: (i) receiving an access request from a user, the access request including a first authentication factor; (ii) generating a second authentication factor and a hyperlink that includes the second authentication factor; (iii) providing the hyperlink that includes the second authentication factor to a client device associated with the user; (iv) automatically receiving the second authentication factor in response to selection of the hyperlink by the user; and (v) verifying the first authentication factor and the second authentication factor to authenticate the identity of the user. In one aspect, a remote server may generate and send an email that verifies an email address while also passing an application download link that includes a verification code, eliminating the need for a user to manually copy or enter the code.

Claims (60)

1. A computer system for one-click two-factor authentication, the computer system comprising:

a processor; and

a non-transitory, tangible, computer-readable storage medium having instructions stored thereon that, in response to execution by the processor, cause the processor to perform operations comprising:

receiving an access request from a client device associated with a user, the access request including a channel identifier being a first authentication factor; and

in response to receiving the channel identifier:

generating a second authentication factor in association with the channel identifier;

storing the second authentication factor in a database;

generating a hyperlink with a hyperlink target of the hyperlink being the database storing the second authentication factor;

providing the hyperlink to the client device such that the second authentication factor stored in the database is automatically retrieved in response to a selection of the hyperlink by the user at the client device;

receiving the selection of the hyperlink by the user; and

in response to the selection of the hyperlink by the user:

receiving, from the client device, the second authentication factor, wherein the second authentication factor is automatically retrieved from the database by the client device by at least:

 accessing the hyperlink target of the hyperlink;

 communicating to the database based on the hyperlink; and

 retrieving the second authentication factor generated in association with the channel identifier from a record in the database based upon the hyperlink target, the channel identifier being an email addressor a telephone number;

 comparing the retrieved second authentication factor from the client device and the stored second authentication factor at the database; and

 authenticating the user upon determining that the retrieved second authentication factor from the client device matches the stored second authentication factor at the database.

2. The computer system of claim 1 , wherein the channel identifier corresponds to a verified communication channel verified during an account registration process.

3. The computer system of claim 1 , wherein the providing the hyperlink to the client device includes providing the hyperlink to the client device via the email address.

4. The computer system of claim 1 , wherein the providing the hyperlink to the client device includes providing the hyperlink to the client device via the telephone number.

5. The computer system of claim 1 , wherein the second authentication factor includes one of a numeric code and an alphanumeric code.

6. A computer system for one-click two-factor authentication, the computer system comprising:

a processor; and

a non-transitory, tangible, computer-readable storage medium having instructions stored thereon that, in response to execution by the processor, cause the processor to perform operations comprising:

receiving, from a user, a registration request, an account identifier, a first authentication factor, and a channel identifier;

generating, in response to the registration request, a user account, the user account being associated with the account identifier, the first authentication factor, and the channel identifier;

generating a second authentication factor in association with the channel identifier;

storing the second authentication factor in a database;

generating a hyperlink with a hyperlink target of the hyperlink being the database storing the second authentication factor; and

providing the hyperlink to a client device such that the second authentication factor stored in the database is automatically retrieved in response to a selection of the hyperlink by the user at the client device;

receiving the selection of the hyperlink by the user; and

in response to the selection of the hyperlink by the user:

receiving, from the client device, the second authentication factor, wherein the second authentication factor is automatically retrieved from the database by the client device by at least:

accessing the hyperlink target of the hyperlink;

communicating to the database based on the hyperlink; and

retrieving the second authentication factor generated in association with the channel identifier from a record in the database based upon the hyperlink target, the channel identifier being an email address or a telephone number;

comparing the retrieved second authentication factor from the client device and the stored second authentication factor at the database; and

authenticating the user upon determining that the retrieved second authentication factor from the client device matches the stored second authentication factor at the database.

7. The computer system of claim 6 , wherein the providing the hyperlink to the client device includes providing the hyperlink to the client device via the email address.

8. The computer system of claim 6 , wherein the providing the hyperlink to the client device includes providing the hyperlink to the client device via the telephone number.

9. The computer system of claim 6 , wherein the second authentication factor includes one of a numeric code and an alphanumeric code.

10. A computer-implemented method for one-click two-factor authentication comprising:

receiving an access request from a client device associated with a user, the access request including a channel identifier being a first authentication factor; and

in response to receiving the channel identifier:

generating a second authentication factor in association with the channel identifier;

storing the second authentication factor in a database;

generating a hyperlink with a hyperlink target of the hyperlink being the database storing the second authentication factor;

providing the hyperlink to the client device such that the second authentication factor stored in the database is automatically retrieved in response to a selection of the hyperlink by the user at the client device;

receiving the selection of the hyperlink by the user; and

in response to the selection of the hyperlink by the user:

receiving, from the client device, the second authentication factor, wherein the second authentication factor is automatically retrieved from the database by the client device by at least:

accessing the hyperlink target of the hyperlink;

communicating to the database based on the hyperlink; and

retrieving the second authentication factor generated in association with the channel identifier from a record in the database based upon the hyperlink target, the channel identifier being an email address or a telephone number;

comparing the retrieved second authentication factor from the client device and the stored second authentication factor at the database; and

authenticating the user upon determining that the retrieved second authentication factor from the client device matches the stored second authentication factor at the database.

11. The computer-implemented method of claim 10 , wherein the channel identifier corresponds to a verified communication channel verified during an account registration process.

12. The computer-implemented method of claim 10 , wherein the providing the hyperlink to the client device includes providing the hyperlink to the client device via the email address.

13. The computer-implemented method of claim 10 , wherein the providing the hyperlink to the client device includes providing the hyperlink to the client device via the telephone number.

14. The computer-implemented method of claim 10 , wherein the second authentication factor includes one of a numeric code and an alphanumeric code.

Assignments (2)
CHANGE OF NAME Recorded May 29, 2024
From: BLUEOWL, LLC
To: QUANATA, LLC
Reel/Frame 067558/0600 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 6, 2023
From: SMITH, CHARLES B.; SCHWABACHER, CHARLES O.; LEUNG, THEOBOLT N.; O'SHEA, DANIEL
To: BLUEOWL, LLC
Reel/Frame 063865/0499 →
Continuity (3)
Continuation 15977181 · May 11, 2018
Provisional Application 62520279 · Jun 15, 2017
Provisional Application 62506701 · May 16, 2017