IP Library › Granted Patent US 12,554,811
Granted Patent B2
US 12,554,811 · App. 17/310,972 · Granted Feb 17, 2026

Access control

Inventors: Gabriele Gelardi (London, GB); Gery Ducatel (London, GB)
Assignee: British Telecommunications Public Limited Company
G06F21/316G06F21/10G06N20/00H04W12/065
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,554,811
App. No.
17/310,972
Filed
Sep 2, 2021
Granted
Feb 17, 2026
Kind
B2
Art Unit
2493
USPC
726/18
Abstract

A computer implemented method of access control for a user device having at least one component for determining behaviors of the user. The method including accessing a machine learning classifier trained based on at least one prior behavior of the user using the device, the classifier classifying user behavior as compliant or non-compliant such that compliant behavior is determined by the classifier to be consistent with prior behavior for permitting access to the device The method further includes, in response to a determination that a subsequent behavior is classified as non-compliant, requesting a credential-based authentication of the user and permitting access to the device in response to the credential-based authentication, wherein permitting access to the device further includes constructively training the classifier based on the subsequent behavior as a compliant behavior by providing the subsequent behavior as an additional training example.

Claims (13)

1 . A computer implemented method of access control for a user device having at least one component for determining behaviors of a user, the method comprising:

accessing a machine learning classifier trained based on at least one prior behavior of the user using the device, the classifier classifying user behavior as compliant or non-compliant such that compliant behavior is determined by the classifier to be consistent with prior behavior of an authorized user of the device;

initializing a measure of a period since a most recent compliant behavior occurred;

using the classifier, classifying a subsequent behavior as non-compliant;

responsive to a determination that the subsequent behavior is classified as non-compliant, determining if the period meets a threshold;

if the period does not meet the threshold, permitting access to the device;

if the period meets the threshold, requesting a credential-based authentication of the user and permitting access to the device in response to the credential-based authentication being successful;

wherein permitting access to the device further includes constructively training the classifier based on the subsequent behavior as a compliant behavior by providing the subsequent behavior as a training example.

2 . The method as claimed in claim 1 , wherein preventing access to the device further includes constructively training the classifier based on the subsequent behavior as a non-compliant behavior by providing the subsequent behavior as an additional training example.

3 . The method of claim 1 , wherein the component is one or more of: a location sensor; a position sensor; an orientation sensor; an accelerometer; an input device; a touch-screen; a temperature sensor; a time determiner; a pressure sensor; an olfactory sensor; a chemical sensor; a biometric sensor; a heart rate sensor; a cardiogram generator; a sound sensor; a voice recognition component; a handwriting recognition component; a global positioning system; and a gyroscope.

4 . The method of claim 1 , wherein the credential-based authentication includes one or more of: an authentication scheme using a user identifier and password; a key-based user authentication scheme; a token-based user authentication scheme; and a multi-factor authentication scheme in which authentication is requested via a different device.

5 . A computer system comprising a processor and memory storing computer program code for performing the method of claim 1 .

6 . A non-transitory computer-readable storage medium storing computer program code to, when loaded into a computer system and executed thereon, cause the computer to perform the method of claim 1 .

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 29, 2022
From: GELARDI, GABRIELE; DUCATEL, GERY
To: BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY
Reel/Frame 059773/0342 →
Priority Claims (1)
EP 19161163 · Mar 7, 2019 · regional
Continuity (1)
Related Publication 20220156351A1 · May 19, 2022
References Cited (164)
US 8131763B2 · Tuscano et al. · 2012 [cited by applicant]
US 8909297B2 · Matas et al. · 2014 [cited by applicant]
US 9684775B2 · Gupta et al. · 2017 [cited by applicant]
US 9788203B2 · Dutt et al. · 2017 [cited by applicant]
US 9817957B1 · Molina-Markham et al. · 2017 [cited by applicant]
US 9935947B1 · Machani · 2018 [cited by applicant]
US 10055566B2 · Kwok-suzuki et al. · 2018 [cited by applicant]
US 10057227B1 · Hess et al. · 2018 [cited by applicant]
US 10061909B2 · Raviv · 2018 [cited by applicant]
US 10063562B1 · Molina-markham et al. · 2018 [cited by applicant]
US 10104073B2 · Novack et al. · 2018 [cited by applicant]
US 10140441B2 · Cheng et al. · 2018 [cited by applicant]
US 10142308B1 · Duchin et al. · 2018 [cited by applicant]
US 10146922B2 · Guidotti et al. · 2018 [cited by applicant]
US 10652238B1 · Edwards et al. · 2020 [cited by applicant]
US 10693661B1 · Hamlet · 2020 [cited by applicant]
US 10778677B1 · Griffin · 2020 [cited by applicant]
US 11095642B2 · Mitzimberg · 2021 [cited by applicant]
US 11115196B1 · Triandopoulos et al. · 2021 [cited by applicant]
US 11640450B2 · Hazan · 2023 [cited by applicant]
US 20020162031A1 · Levin et al. · 2002 [cited by applicant]
US 20020186838A1 · Brandys · 2002 [cited by applicant]
US 20100115610A1 · Tredoux et al. · 2010 [cited by applicant]
US 20110191837A1 · Guajardo Merchan et al. · 2011 [cited by applicant]
US 20120137340A1 · Jakobsson et al. · 2012 [cited by applicant]
US 20120204035A1 · Camenisch et al. · 2012 [cited by applicant]
US 20130097416A1 · Barra et al. · 2013 [cited by applicant]
US 20130133055A1 · Ali et al. · 2013 [cited by applicant]
US 20140053261A1 · Gupta · 2014 [cited by examiner]
US 20140289833A1 · Briceno et al. · 2014 [cited by applicant]
US 20140300554A1 · Samuel et al. · 2014 [cited by applicant]
US 20140366111A1 · Sheller · 2014 [cited by examiner]
US 20150113631A1 · Lerner et al. · 2015 [cited by applicant]
US 20150143494A1 · Lee · 2015 [cited by examiner]
US 20150169858A1 · Tg · 2015 [cited by applicant]
US 20150178496A1 · Kohlenberg et al. · 2015 [cited by applicant]
US 20150371023A1 · Chen · 2015 [cited by examiner]
US 20150373051A1 · Dayan et al. · 2015 [cited by applicant]
US 20150379253A1 · Cook et al. · 2015 [cited by applicant]
US 20160110528A1 · Gupta et al. · 2016 [cited by applicant]
US 20160180068A1 · Das · 2016 [cited by examiner]
US 20160205094A1 · Harthattu · 2016 [cited by examiner]
US 20160239649A1 · Zhao · 2016 [cited by applicant]
US 20160300049A1 · Guedalia et al. · 2016 [cited by applicant]
US 20160366126A1 · Sharifi et al. · 2016 [cited by applicant]
US 20170006009A1 · Hessler · 2017 [cited by applicant]
US 20170024660A1 · Chen et al. · 2017 [cited by applicant]
US 20170032113A1 · Tunnell et al. · 2017 [cited by applicant]
US 20170109514A1 · Cheng et al. · 2017 [cited by applicant]
US 20170177999A1 · Novik et al. · 2017 [cited by applicant]
US 20170223171A1 · Sirisilla · 2017 [cited by examiner]
US 20170227995A1 · Lee · 2017 [cited by examiner]
US 20170293748A1 · Kurupati · 2017 [cited by applicant]
US 20170353477A1 · Faigon · 2017 [cited by examiner]
US 20170364673A1 · Gupta et al. · 2017 [cited by applicant]
US 20180012003A1 · Asulin et al. · 2018 [cited by applicant]
US 20180032709A1 · Martin Perez et al. · 2018 [cited by applicant]
US 20180068098A1 · Finzi et al. · 2018 [cited by applicant]
US 20180069867A1 · Grajek · 2018 [cited by examiner]
US 20180077154A1 · Smith et al. · 2018 [cited by applicant]
US 20180097806A1 · Blinn · 2018 [cited by applicant]
US 20180107833A1 · Gadepalli et al. · 2018 [cited by applicant]
US 20180181741A1 · Whaley · 2018 [cited by applicant]
US 20180232504A1 · Bradley et al. · 2018 [cited by applicant]
US 20180293367A1 · Urman · 2018 [cited by applicant]
US 20180375859A1 · Huh et al. · 2018 [cited by applicant]
US 20190005408A1 · Tolpin et al. · 2019 [cited by applicant]
US 20190034917A1 · Nolan et al. · 2019 [cited by applicant]
US 20190140833A1 · Grajek et al. · 2019 [cited by applicant]
US 20190236249A1 · Pavlou et al. · 2019 [cited by applicant]
US 20190354787A1 · Fong · 2019 [cited by examiner]
US 20190364027A1 · Pande · 2019 [cited by examiner]
US 20190377853A1 · Obaidi · 2019 [cited by examiner]
US 20190386972A1 · Boutnaru · 2019 [cited by applicant]
US 20200076812A1 · Spurlock · 2020 [cited by examiner]
US 20200125706A1 · Adir · 2020 [cited by examiner]
US 20200242232A1 · Machani · 2020 [cited by applicant]
US 20200412528A1 · Saint et al. · 2020 [cited by applicant]
US 20210076212A1 · Manikantan Shila · 2021 [cited by examiner]
US 20210174813A1 · Huh et al. · 2021 [cited by applicant]
US 20210397683A1 · Liem · 2021 [cited by examiner]
US 20220012672A1 · Inman et al. · 2022 [cited by applicant]
US 20240073207A1 · Gelardi et al. · 2024 [cited by applicant]
AU 2018100672A4 · 2018 [cited by applicant]
CN 105678125B · 2019 [cited by applicant]
EP 3935527A1 · 2022 [cited by applicant]
WO 2012085047A1 · 2012 [cited by applicant]
WO 2013096944A1 · 2013 [cited by applicant]
WO 2014179076A1 · 2014 [cited by applicant]
WO 2014205148A1 · 2014 [cited by applicant]
WO 2018025019A1 · 2018 [cited by applicant]
WO 2018048427A1 · 2018 [cited by applicant]
Hu, Hailong; Li, Yantao; Zhu, Zhangqian; Zhou, Gang; “CNNAuth: Continuous Authentication via Two-Stream Convolutional Neural Networks,” IEEE International Conference on Networking, Architecture and Storage (NAS), Chongq… [cited by examiner]
Frank, Mario; Biedert, Ralf; Ma, Eugene; Martinovic, Ivan; Song, Dawn; “Touchalytics: On the Applicability of Touchscreen Input as a Behavioral Biometric for Continuous Authentication,” IEEE Transactions on Information … [cited by examiner]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. GB1903033.7, mailed on Sep. 9, 2019, 9 pages. [cited by applicant]
Extended European Search Report for Application No. 19161163.1, mailed on Jun. 24, 2019, 7 pages. [cited by applicant]
Extended European Search Report for Application No. 19161164.9, mailed on Jun. 26, 2019, 9 pages. [cited by applicant]
Frank M., et al., “Touchalytics: On the Applicability of Touchscreen Input as a Behavioral Biometric for Continuous Authentication,” Jan. 2013, IEEE Transactions on Information Forensics and Security, vol. 8, No. 1, XP0… [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/EP2020/055367, mailed on Mar. 30, 2020, 14 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/EP2020/055370, mailed on Mar. 30, 2020, 15 pages. [cited by applicant]
Li Y., et al., “Using Data Augmentation in Continuous Authentication on Smartphones,” Feb. 2019, IEEE Internet of Things Journal, vol. 6, No. 1, pp. 628-640. [cited by applicant]
Aldosary, et al. “A Robust Multimodal Biometric Security System using the Polynomial Curve Technique within Shamir's Secret Sharing Algorithm”, Third International Conference on Emerging Security Technologies (EST), sec… [cited by applicant]
Antal, et al. “Identity Information Revealed from Mobile Touch Gestures”, Studia Universitatis Babes-Bolyai, Informatica, vol. LIX, May 21-25, 2014, pp. 5-14. [cited by applicant]
Blakley, G. R. “Safeguarding Cryptographic Keys”, National Computer Conference, 1979, pp. 313-317. [cited by applicant]
Bo, et al. “SilentSense: Silent User Identification via Dynamics of Touch and Movement Behavioral Biometrics”, in MobiCom, arXiv:1309.0073v1 [cs.CR], Aug. 31, 2013, pp. 1-9. [cited by applicant]
Buduru, et al., “An Effective Approach to Continuous User Authentication for Touch Screen Smart Devices”, IEEE International Conference on Software Quality, Reliability and Security (QRS), 2015, pp. 219-226. [cited by applicant]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. 1903029.5, mailed Sep. 5, 2019, 6 pages. [cited by applicant]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. 1903030.3, mailed on Aug. 28, 2019, 6 pages. [cited by applicant]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. 1903031.1, mailed on Sep. 9, 2019, 12 pages. [cited by applicant]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. 1903032.9, mailed on Sep. 3, 2019, 6 pages. [cited by applicant]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. 1910169.0, mailed on Feb. 25, 2020, 10 pages. [cited by applicant]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. 2019297.7, mailed on Sep. 1, 2021, 11 pages. [cited by applicant]
Combined Search and Examination Report under Sections 17 and 18(3) for Great Britain Application No. GB1911314.1 mailed on Nov. 27, 2019, 7 pages. [cited by applicant]
Crawford, Heather Anne “A Framework for Continuous, Transparent Authentication on Mobile Devices”, PhD thesis, University of Glasgow, 2012, 209 pages. [cited by applicant]
Crouse, et al., “Continuous Authentication of Mobile User: Fusion of Face Image and Inertial Measurement Unit Data”, International Conference on Biometrics (ICB), 2015, pp. 135-142. [cited by applicant]
Damgard, et al., “Multiparty Computation from Somewhat Homomorphic Encryption”, Advances in Cryptology—CRYPTO 2012, Proceedings of the 32nd Annual Cryptology Conference, Aug. 19-23, 2012, pp. 643-662. [cited by applicant]
Deutschmann, et al., “Continuous Authentication Using Behavioral Biometrics”, Security DARPA, ITPro, Jul./Aug. 2013, pp. 12-15. [cited by applicant]
Examination Report under section 18(3) for GB Application No. 1910169.0, mailed on Aug. 13, 2021, 4 pages. [cited by applicant]
Examination Report under Section 18(3) for Great Britain Application No. GB1911314.1, mailed on Jan. 25, 2022, 3 pages. [cited by applicant]
Extended European Search Report for Application No. 19161162.3, mailed on Jun. 24, 2019, 7 pages. [cited by applicant]
Extended European Search Report for Application No. 19161165.6, mailed on Jun. 27, 2019, 7 pages. [cited by applicant]
Extended European Search Report for Application No. 19161166.4, mailed on Jun. 27, 2019, 9 pages. [cited by applicant]
Extended European Search Report for Application No. 19186557.5 mailed on Nov. 7, 2019, 6 pages. [cited by applicant]
Extended European Search Report for Application No. 19190589.2, mailed on Dec. 12, 2019, 9 pages. [cited by applicant]
Fathy, et al., “Face-Based Active Authentication on Mobile Devices”, IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP), 2015, pp. 1687-1691. [cited by applicant]
Feng, et al., “Continuous Mobile Authentication using Touchscreen Gestures”, Homeland Security (HST), 2012 IEEE Conference on Technologies for Homeland Security, 2012, pp. 451-456. [cited by applicant]
Gong, et al., “Forgery-Resistant Touch-based Authentication on Mobile Devices”, 11 ACM on Asia Conference on Computer and Communications Security, May 30, 2016-Jun. 3, 2016, 12 pages. [cited by applicant]
Howells, Professor G. “Security and Privacy for the Internet of Things (SPIRIT)”, EPSRC Research Grant Details, Jan. 1, 2017, 2 pages. [cited by applicant]
INTEGO “How to Limit Internet Access by Day and Time with Content Barrier”, Retrieved from https://support.intego.com/hc/en-us/articles/207115178-How-to-Limit-Internet-Access-by-Day-and-Time-with-ContentBarrier, Jun. 10… [cited by applicant]
International Preliminary Report on Patentability for Application No. PCT/EP2020/055367, mailed on Sep. 16, 2021, 10 pages. [cited by applicant]
International Preliminary Report on Patentability for Application No. PCT/EP2020/055369, mailed on Sep. 16, 2021, 8 pages. [cited by applicant]
International Preliminary Report on Patentability for Application No. PCT/EP2020/055370, mailed on Sep. 16, 2021, 11 pages. [cited by applicant]
International Preliminary Report on Patentability for Application No. PCT/EP2020/055371, mailed on Sep. 16, 2021, 11 pages. [cited by applicant]
International Preliminary Report on Patentability for Application No. PCT/EP2020/055372, mailed on Sep. 16, 2021, 10 pages. [cited by applicant]
International Preliminary Report on Patentability for Application No. PCT/EP2020/066598 mailed Jan. 27, 2022, 8 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/EP2020/066598, mailed on Aug. 28, 2020, 11 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/EP2020/055369, mailed on Jun. 9, 2020, 12 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/EP2020/055371, mailed on Mar. 30, 2020, 15 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/EP2021/083049, mailed on Feb. 11, 2022, 14 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/EP2020/055372, mailed Mar. 30, 2020, 14 pages. [cited by applicant]
Kidslox, Inc. “Parental Control by Kidslox”, Google Playstore, Retrieved from the Internet: https://play.google.com/store/apps/details?id=com.kidslox.app&hl=en_IN, Jul. 12, 2019, 4 pages. [cited by applicant]
Kidslox. “Effectively Limit Child Screen Time With Parental Control App”, Retrieved from the Internet: https://kidslox.com, Jul. 12, 2019, 4 pages. [cited by applicant]
Lee, et al., “Implicit Smartphone User Authentication with Sensors and Contextual Machine Learning”, Princeton University, arXiv:1708.09754v1, Aug. 30, 2017, 13 pages. [cited by applicant]
Li, et al., “Understanding OSN-Based Facial Disclosure Against Face Authentication Systems”, Asia CCS'14, Jun. 4-6, 2014, pp. 413-423. [cited by applicant]
Mondal, et al., “Swipe Gesture based Continuous Authentication for Mobile Devices”, International Conference on Biometrics (ICB), Jun. 2015, pp. 458-465. [cited by applicant]
Office Action received for European Patent Application No. 20706348.8, mailed on Jul. 4, 2023, 5 pages. [cited by applicant]
Office Action received for European Patent Application No. 20706349.6, mailed on Jul. 4, 2023, 5 pages. [cited by applicant]
Office Action received for European Patent Application No. 20706351.2, mailed on Jul. 4, 2023, 7 pages. [cited by applicant]
Ometov, et al., “Multi-factor Authentication: A Survey and Challenges in V2X Applications”, 9th International Congress on Ultra Modern Telecommunications and Control Systems and Workshops, Nov. 6, 2017, pp. 129-136. [cited by applicant]
Rathgeb, et al., “A Survey on Biometric Cryptosystems and Cancelable Biometrics”, EURASIP Journal on Information Security, vol. 2011, No. 1, Jan. 1, 2011, 25 pages. [cited by applicant]
Roy, et al., “An HMM-based Multi-sensor Approach for Continuous Mobile Authentication”, Military Communications Conference, MILCOM 2015, Track 3—Cyber Security and Trusted Computing, 2015, pp. 1311-1316. [cited by applicant]
Saevanee, et al., “Continuous User Authentication using Multi-modal Biometrics”, Computers and Security, vol. 53, Issue C, Sep. 2015, 20 pages. [cited by applicant]
Samangouei, et al., “Attribute-based Continuous User Authentication on Mobile Devices”, IEEE 7th International Conference on Biometrics Theory, Applications and Systems (BTAS), 2015, 8 pages. [cited by applicant]
Serwadda, et al., “When Kids' Toys Breach Mobile Phone Security”, ACM SIGSAC Conference on Computer and Communications Security (CCS), Nov. 4-8, 2013, pp. 599-610. [cited by applicant]
Serwadda, et al., “Which Verifiers Work ?: A Benchmark Evaluation of Touch-based Authentication Algorithms”, IEEE Sixth International Conference on Biometrics: Theory, Applications and Systems (BTAS),, Sep. 13, 2013, 8 … [cited by applicant]
Shamir, Adi “How to Share a Secret”, Communications of the ACM, vol. 22, No. 11, Nov. 1979, pp. 612-613. [cited by applicant]
Shi, et al., “SenGuard: Passive User Identification on Smartphones Using Multiple Sensors”, IEEE 7th International Conference on Wireless and Mobile Computing, Networking and Communications (WiMob), Oct. 2011, pp. 141-1… [cited by applicant]
Valero, et al., “Improving the Security and QoE in Mobile Devices Through an Intelligent and Adaptive Continuous Authentication System”, Sensors, vol. 18, 3769, retrieved from https://www.mdpi.com/1424-8220/18/11/3769, … [cited by applicant]
Velten, et al., “User Identity Verification Based on Touchscreen Interaction Analysis in Web Contexts”, 11th International Conference on Information Security Practice and Experience, 2015, pp. 268-282. [cited by applicant]
Wu, et al., “Smartphone Continuous Authentication based on Keystroke and Gesture Profiling”, The 49th Annual IEEE International Carnahan Conference on Security Technology, Sep. 21-24, 2015, pp. 191-197. [cited by applicant]
Xu, et al., “Towards Continuous and Passive Authentication via Touch Biometrics: An Experimental Study on Smartphones”, Tenth Symposium On Usable Privacy and Security, Jul. 9-11, 2014, pp. 187-198. [cited by applicant]
Yampolskiy, et al., “Behavioural Biometrics: a Survey and Classification”, International Journal of Biometrics, vol. 1, No. 1, 2008, pp. 81-113. [cited by applicant]
Zhang, et al., “Robust Multimodal Recognition via Multitask Multivariate Low-Rank Representations”, IEEE International Conference on Automatic Face and Gesture Recognition, 2015, 8 pages. [cited by applicant]
Zhang, et al., “Touch Gesture-Based Active User Authentication Using Dictionaries”, IEEE Winter Conference on Applications of Computer Vision, Waikoloa, 2015, pp. 207-214. [cited by applicant]