IP Library › Granted Patent US 11,601,437
Granted Patent B2
US 11,601,437 · App. 17/301,469 · Granted Mar 7, 2023

Account access security using a distributed ledger and/or a distributed file system

Inventors: Zainab Zaki (Reston, VA); Jeffrey Brown (Reston, VA)
Assignee: Capital One Services, LLC
H04L63/105G06F16/28G06F21/316G06N5/04G06N20/00H04L63/083H04L63/0861H04L63/107H04L63/1425H04L9/50
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,601,437
App. No.
17/301,469
Granted
Mar 7, 2023
Kind
B2
Abstract

A node of a network receives account access information (AAI) for an account that a user has with a system. The node causes a first record to be added to a distributed ledger that is used for managing access to the account, wherein the first record includes the AAI or an encrypted storage identifier that identifies a storage location for the AAI. The node determines a likelihood that the account is being accessed by the user based on the AAI and/or historical AAI for one or more accounts, that include the account, that are used to access the system. The node causes a second record that includes a value representing the likelihood to be added to the distributed ledger. The node causes one or more other nodes of the network to be alerted that the first record and the second record have been added to the distributed ledger.

Claims (64)

1. A method, comprising:

obtaining, by a node of a network and based on user preferences information associated with an account that a user has with an organization, a smart contract that specifies permissible types of account access information that the user has consented to having monitored,

wherein the user preferences information is added to a distributed ledger that is used for managing access to the account, and

wherein the user preferences information specifies two or more of:

which account access information of the user is permitted to be monitored,

when the account access information of the user is permitted to be monitored, or

how the account access information of the user is permitted to be monitored;

receiving, by the node of the network, account access information; and

causing, by the node of the network, a record to be added to the distributed ledger that is used for managing access to the account.

2. The method of claim 1 , wherein the account access information is associated with encrypted identifiers.

3. The method of claim 1 , wherein the account access information includes one or more of:

attempted login information,

login configuration information, or

user behavior metadata.

4. The method of claim 1 , further comprising:

providing the account access information to one or more other nodes in the network.

5. The method of claim 1 , further comprising:

using the smart contract that is stored by the distributed ledger to determine an account security score.

6. The method of claim 1 , wherein the distributed ledger is implemented by a blockchain.

7. The method of claim 1 , further comprising:

causing the smart contract to be stored as another record in the distributed ledger.

8. A node, comprising:

one or more memories; and

one or more processors, coupled to the one or more memories, configured to:

obtain, based on user preferences information associated with an account that a user has with an organization, a smart contract that specifies permissible types of account access information that the user has consented to having monitored,

wherein the user preferences information is added to a distributed ledger that is used for managing access to the account, and

wherein the user preferences information specifies two or more of:

which account access information of the user is permitted to be monitored,

when the account access information of the user is permitted to be monitored, or

how the account access information of the user is permitted to be monitored;

receive account access information; and

cause a record to be added to the distributed ledger that is used for managing access to the account.

9. The node of claim 8 , wherein the account access information is associated with encrypted identifiers.

10. The node of claim 8 , wherein the account access information includes one or more of:

attempted login information,

login configuration information, or

user behavior metadata.

11. The node of claim 8 , wherein the one or more processors are further configured to:

provide the account access information to one or more other nodes.

12. The node of claim 8 , wherein the one or more processors are further configured to:

use the smart contract that is stored by the distributed ledger to determine an account security score.

13. The node of claim 8 , wherein the distributed ledger is implemented by a blockchain.

14. The node of claim 8 , wherein the one or more processors are further configured to:

cause the smart contract to be stored as another record in the distributed ledger.

15. A non-transitory computer-readable medium storing a set of instructions, the set of instructions comprising:

one or more instructions that, when executed by one or more processors of a node, cause the node to:

obtain, based on user preferences information associated with an account that a user has with an organization, a smart contract that specifies permissible types of account access information that the user has consented to having monitored,

wherein the user preferences information is added to a distributed ledger that is used for managing access to the account, and

wherein the user preferences information specifies two or more of:

which account access information of the user is permitted to be monitored,

when the account access information of the user is permitted to be monitored, or

how the account access information of the user is permitted to be monitored;

receive account access information; and

cause a record to be added to the distributed ledger that is used for managing access to the account.

16. The non-transitory computer-readable medium of claim 15 , wherein the account access information is associated with encrypted identifiers.

17. The non-transitory computer-readable medium of claim 15 , wherein the one or more instructions further cause the node to:

attempt login information,

login configuration information, or

user behavior metadata.

18. The non-transitory computer-readable medium of claim 15 , wherein the one or more instructions further cause the node to:

provide the account access information to one or more other nodes.

19. The non-transitory computer-readable medium of claim 15 , wherein the one or more instructions further cause the node to:

use the smart contract that is stored by the distributed ledger to determine an account security score.

20. The non-transitory computer-readable medium of claim 15 , wherein the distributed ledger is implemented by a blockchain.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 5, 2021
From: ZAKI, ZAINAB; BROWN, JEFFREY
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 055823/0279 →
Continuity (2)
Continuation 16776127 · Jan 29, 2020
Related Publication 20210234867A1 · Jul 29, 2021