IP Library Granted Patent US 11,431,747
Granted Patent B2
US 11,431,747 · App. 17/385,526 · Granted Aug 30, 2022

Systems and methods for an artificial intelligence driven agent

Inventors: Alin Irimie (Clearwater, FL); Stu Sjouwerman (Bellair, FL); Greg Kras (Dunedin, FL); Eric Sites (Clearwater, FL)
Assignee: KnowBe4, Inc.
H04L63/1433G06F16/951G06F30/20G06N5/02G06N20/00H04L51/212H04L63/1466H04L63/1483H04W12/122H04L51/23H04W12/128
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,431,747
App. No.
17/385,526
Granted
Aug 30, 2022
Kind
B2
Abstract

A system and method is described that sends multiple simulated phishing emails, text messages, and/or phone calls (e.g., via VoIP) varying the quantity, frequency, type, sophistication, and combination using machine learning algorithms or other forms of artificial intelligence. In some implementations, some or all messages (email, text messages, VoIP calls) in a campaign after the first simulated phishing email, text message, or call may be used to direct the user to open the first simulated phishing email or text message, or to open the latest simulated phishing email or text message. In some implementations, simulated phishing emails, text messages, or phone calls of a campaign may be intended to lure the user to perform a different requested action, such as selecting a hyperlink in an email or text message, or returning a voice call.

Claims (27)

1. A method comprising:

providing, by one or more processors, an artificial intelligence agent trained with results from using a plurality of different types of simulated phishing communications;

determining, by the one or more processors using the artificial intelligence agent, a predetermined time between communicating a first simulated phishing communication and a second simulated phishing communication and a second type of simulated phishing communication to communicate to a user after at least the predetermined time to cause the user to take an action responsive to the second type of simulated phishing communication; and

communicating, by the one or more processors, the second type of simulated phishing communication to a device of the user after at least the predetermined time.

2. The method of claim 1 , wherein the artificial intelligence agent is a machine learning agent.

3. A The method of claim 1 , further comprising training the artificial intelligence agent with results from communicating a plurality of sequences of the plurality of different types of simulated phishing communications across a plurality of users.

4. The method of claim 1 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying at least the second type of simulated phishing communication.

5. The method of claim 1 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying at least the first type of simulated phishing communication.

6. The method of claim 1 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying at least the predetermined time.

7. The method of claim 1 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying a sequence of at least the first type of simulated phishing communication followed by the second type of simulated phishing communication.

8. The method of claim 1 , wherein the first type of simulated phishing communication comprises at least one of an email, a text, a short message service (SMS) message, a phone call or an Internet based communication and the second type of simulated phishing communication comprises one of an email, a text, an SMS message, a phone call or an Internet based communication different from the first type of communication.

9. The method of claim 1 , wherein the artificial intelligence agent is configured to provide as output information identifying a predetermined likelihood the user will take the action responsive to the second type of simulated phishing communication.

10. The method of claim 1 , further comprising determining, by the one or more processors using the artificial intelligence agent, a sequence of at least the first type of simulated phishing communication followed by the second type of simulated phishing communication after at least the predetermined time to cause the user to take the action responsive to the second type of simulated phishing communication.

11. A system comprising:

one or more processors, coupled to memory and configured to:

provide an artificial intelligence agent trained with results from using a plurality of different types of simulated phishing communications;

determine, using the artificial intelligence agent, a predetermined time between communicating a first simulated phishing communication and a second simulated phishing communication and a second type of simulated phishing communication to communicate to a user after at least the predetermined time to cause the user to take an action responsive to the second type of simulated phishing communication; and

communicate the second type of simulated phishing communication to a device of the user after at least the predetermined time.

12. The system of claim 11 , wherein the artificial intelligence agent is a machine learning agent.

13. The system of claim 11 , wherein the one or more processors are further configured to train the artificial intelligence agent with results from communicating a plurality of sequences of a plurality of different types of simulated phishing communications across a plurality of users.

14. The system of claim 11 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying at least the second type of simulated phishing communication.

15. The system of claim 11 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying at least the predetermined time.

16. The system of claim 11 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying at least the first type of simulated phishing communication.

17. The system of claim 11 , wherein the artificial intelligence agent is configured to take as input one or more attributes of the user and provide as output information identifying a sequence of at least the first type of simulated phishing communication followed by the second type of simulated phishing communication.

18. The system of claim 11 , wherein the first type of simulated phishing communication comprises at least one of an email, a text, a short message service (SMS) message, a phone call or an Internet based communication and the second type of simulated phishing communication comprises one of an email, a text, an SMS message, a phone call or an Internet based communication different from the first type of communication.

19. The system of claim 11 , wherein the artificial intelligence agent is configured to provide as output information identifying a predetermined likelihood the user will take the action responsive to the second type of simulated phishing communication.

20. The system of claim 11 , wherein the one or more processors are further configured to use the artificial intelligence agent to determine a sequence of at least the first type of simulated phishing communication followed by the second type of simulated phishing communication after at least the predetermined time period to cause the user to take the action responsive to the second type of simulated phishing communication.

Assignments (4)
PATENT SECURITY AGREEMENT Recorded Aug 8, 2025
From: KNOWBE4, INC.
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 072337/0277 →
RELEASE OF SECURITY INTEREST IN PATENT COLLATERAL RECORDED AT REEL/FRAME: 062627/0001 Recorded Jul 28, 2025
From: BLUE OWL CREDIT INCOME CORP. (FORMERLY KNOWN AS OWL ROCK CORE INCOME CORP.)
To: KNOWBE4, INC.
Reel/Frame 072108/0205 →
PATENT SECURITY AGREEMENT Recorded Feb 2, 2023
From: KNOWBE4, INC.
To: OWL ROCK CORE INCOME CORP., AS COLLATERAL AGENT
Reel/Frame 062627/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 27, 2021
From: IRIMIE, ALIN; SJOUWERMAN, STU; KRAS, GREG; SITES, ERIC
To: KNOWBE4, INC.
Reel/Frame 056984/0504 →
Continuity (4)
Continuation 17107294 · Nov 30, 2020
Continuation 15798187 · Oct 30, 2017
Provisional Application 62415390 · Oct 31, 2016
Related Publication 20210360019A1 · Nov 18, 2021
Cited By (2)
US 12,244,553 US 12,506,777