IP Library Granted Patent US 12,363,152
Granted Patent B2
US 12,363,152 · App. 17/563,459 · Granted Jul 15, 2025

Systems and methods for detecting security risks in network pages

Inventor: Brant Peterson (Denver, CO)
Assignee: Worldpay, LLC
H04L63/1433G06Q20/401G06Q10/10G06Q20/02G06Q20/14G06Q20/382G06Q20/40G06Q20/405G06Q20/4097G06Q30/02H04L63/14
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,363,152
App. No.
17/563,459
Granted
Jul 15, 2025
Kind
B2
Abstract

Embodiments include methods and systems for detecting security risks in network pages, comprising providing at least one secure transaction page to a secure transaction provider, the secure transaction page enabling the secure transaction provider to request secure transactions, determining a request rate for the secure transaction page associated with the secure transaction provider, determining a predetermined threshold for a change in request rate for the secure transaction page by the secure transaction provider, determining that the predetermined threshold, for the change in request rate for the secure transaction page by the secure transaction provider, has been exceeded, and providing a notification to the secure transaction provider based on the determination that the predetermined threshold, for the change in request rate for the secure transaction page by the secure transaction provider, has been exceeded.

Claims (34)

1. A computer-implemented method for detecting security risks in network pages, the method comprising:

providing, via a telecommunication network, a secure transaction page to a secure transaction provider, the secure transaction page enabling the secure transaction provider to request secure transactions;

determining an expected request rate for the secure transaction page associated with the secure transaction provider, wherein the expected request rate for the secure transaction page is determined based on a size of the secure transaction provider, a historical request rate and real-time event data associated with the secure transaction provider, and wherein the determined expected request rate is viewable and modifiable by the secure transaction provider;

determining an actual request rate for the secure transaction page associated with the secure transaction provider, wherein the actual request rate determined is indicative of an actual number of calls for the secure transaction page over a predetermined time period;

determining that a difference between the expected request rate for the secure transaction page and the actual request rate for the secure transaction page satisfies a threshold; and

performing an action to deny the secure transactions associated with the secure transaction provider based on determining that the difference between the expected request rate for the secure transaction page and the actual request rate for the secure transaction page satisfies the threshold, wherein the action performed is viewable and modifiable by the secure transaction provider.

2. The computer-implemented method of claim 1 , wherein determining the expected request rate further comprises determining the expected request rate based on a time of day.

3. The computer-implemented method of claim 1 , wherein determining the expected request rate further comprises determining the expected request rate based on a week.

4. The computer-implemented method of claim 1 , wherein determining the expected request rate further comprises determining the expected request rate based on a date.

5. The computer-implemented method of claim 1 , wherein determining the expected request rate further comprises determining the expected request rate based on exogenous event data.

6. The computer-implemented method of claim 1 , wherein determining the expected request rate further comprises determining the expected request rate based on network outage information.

7. A computer system for detecting security risks in network pages, the computer system comprising:

a hardware data storage device storing instructions; and

a processor configured to execute the instructions to perform operations comprising:

providing, via a telecommunication network, a secure transaction page to a secure transaction provider, the secure transaction page enabling the secure transaction provider to request secure transactions;

determining an expected request rate for the secure transaction page associated with the secure transaction provider, wherein the expected request rate for the secure transaction page is determined based on a size of the secure transaction provider, a historical request rate and real-time event data associated with the secure transaction provider, and wherein the determined expected request rate is viewable and modifiable by the secure transaction provider;

determining an actual request rate for the secure transaction page associated with the secure transaction provider, wherein the actual request rate determined is indicative of an actual number of calls for the secure transaction page over a predetermined time period;

determining that a difference between the expected request rate for the secure transaction page and the actual request rate for the secure transaction page satisfies a threshold; and

performing an action to deny the secure transactions associated with the secure transaction provider based on determining that the difference between the expected request rate for the secure transaction page and the actual request rate for the secure transaction page satisfies the threshold, wherein the action performed is viewable and modifiable by the secure transaction provider.

8. The computer system of claim 7 , wherein determining the expected request rate further comprises determining the expected request rate based on a time of day.

9. The computer system of claim 7 , wherein determining the expected request rate further comprises determining the expected request rate based on a week.

10. The computer system of claim 7 , wherein determining the expected request rate further comprises determining the expected request rate based on a date.

11. The computer system of claim 7 , wherein determining the expected request rate further comprises determining the expected request rate based on exogenous event data.

12. The computer system of claim 7 , wherein determining the expected request rate further comprises determining the expected request rate based on network outage information.

13. A non-transitory computer-readable medium storing instructions that, when executed by a transaction processor, cause the transaction processor to perform operations for detecting security risks in network pages, the operations comprising:

providing via a telecommunication network, a secure transaction page to a secure transaction provider, the secure transaction page enabling the secure transaction provider to request secure transactions;

determining an expected request rate for the secure transaction page associated with the secure transaction provider, wherein the expected request rate for the secure transaction page is determined based on a size of the secure transaction provider, a historical request rate and real-time event data associated with the secure transaction provider, and wherein the determined expected request rate is viewable and modifiable by the secure transaction provider;

determining an actual request rate for the secure transaction page associated with the secure transaction provider, wherein the actual request rate determined is indicative of an actual number of calls for the secure transaction page over a predetermined time period;

determining that a difference between the expected request rate for the secure transaction page and the actual request rate for the secure transaction page satisfies a threshold; and

performing an action to deny the secure transactions associated with the secure transaction provider based on determining that the difference between the expected request rate for the secure transaction page and the actual request rate for the secure transaction page satisfies the threshold, wherein the action performed is viewable and modifiable by the secure transaction provider.

14. The non-transitory computer-readable medium of claim 13 , wherein determining the expected request rate further comprises determining the expected request rate based on a time of day.

15. The non-transitory computer-readable medium of claim 13 , wherein determining the expected request rate comprises determining the expected request rate based on a week.

16. The non-transitory computer-readable medium of claim 13 , wherein determining the expected request rate further comprises determining the expected request rate based on a date.

17. The non-transitory computer-readable medium of claim 13 , wherein determining the expected request rate further comprises determining the expected request rate based on exogenous event data.

Assignments (6)
RELEASE OF SECURITY INTERESTS RECORDED AT REEL/FRAMES 066626/0655, 066625/0426, 066625/0347, AND 066625/0276 Recorded Jan 12, 2026
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: WORLDPAY, LLC; WORLDPAY ISO AND ECOMMERCE, LLC; PAYMETRIC, LLC; WORLDPAY US, LLC
Reel/Frame 074314/0622 →
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY RECORDED AT R/F 066624/0719 Recorded Jan 12, 2026
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: WORLDPAY, LLC
Reel/Frame 074315/0412 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 066624/0719 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 066626/0655 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 20, 2022
From: PETERSON, BRANT
To: VANTIV, LLC
Reel/Frame 058716/0645 →
CHANGE OF NAME Recorded Jan 20, 2022
From: VANTIV, LLC
To: WORLDPAY, LLC
Reel/Frame 058791/0233 →
Continuity (3)
Continuation 16599715 · Oct 11, 2019
Continuation 15381908 · Dec 16, 2016
Related Publication 20220124116A1 · Apr 21, 2022
References Cited (71)
US 7765481B2 · Dixon et al. · 2010 [cited by applicant]
US 8090679B2 · Zhuge · 2012 [cited by applicant]
US 8346921B1 · Goodspeed · 2013 [cited by examiner]
US 8423476B2 · Bishop et al. · 2013 [cited by applicant]
US 8621635B2 · Zeigler · 2013 [cited by applicant]
US 8804139B1 · Arora · 2014 [cited by examiner]
US 9083562B2 · Bates · 2015 [cited by examiner]
US 9197511B2 · Mathis · 2015 [cited by applicant]
US 9235611B1 · Murray · 2016 [cited by examiner]
US 9621566B2 · Gupta · 2017 [cited by applicant]
US 10614364B2 · Krumm · 2020 [cited by examiner]
US 20020194096A1 · Falcone · 2002 [cited by examiner]
US 20030009377A1 · Asami · 2003 [cited by examiner]
US 20030023715A1 · Reiner · 2003 [cited by applicant]
US 20070055477A1 · Chickering · 2007 [cited by examiner]
US 20070245403A1 · Ginter et al. · 2007 [cited by applicant]
US 20090055570A1 · Madrid · 2009 [cited by examiner]
US 20090199264A1 · Lang · 2009 [cited by applicant]
US 20100192201A1 · Shimoni · 2010 [cited by examiner]
US 20110015951A1 · Lv · 2011 [cited by examiner]
US 20110119226A1 · Ruhl · 2011 [cited by examiner]
US 20110119374A1 · Ruhl · 2011 [cited by examiner]
US 20110131322A1 · Aust · 2011 [cited by examiner]
US 20110246406A1 · Lahav · 2011 [cited by examiner]
US 20120030066A1 · Stringfellow et al. · 2012 [cited by applicant]
US 20120265580A1 · Kobayashi · 2012 [cited by examiner]
US 20120278741A1 · Garrity · 2012 [cited by applicant]
US 20130041881A1 · Wierman et al. · 2013 [cited by applicant]
US 20130042111A1 · Fiske · 2013 [cited by examiner]
US 20130276125A1 · Bailey · 2013 [cited by applicant]
US 20140040180A1 · Ruhl · 2014 [cited by examiner]
US 20140106736A1 · Olson · 2014 [cited by examiner]
US 20140108640A1 · Mathis · 2014 [cited by examiner]
US 20140316981A1 · Muthukrishnan · 2014 [cited by examiner]
US 20140373093A1 · Wood · 2014 [cited by examiner]
US 20150032628A1 · Randall · 2015 [cited by examiner]
US 20150066768A1 · Williamson · 2015 [cited by applicant]
US 20150142673A1 · Nelsen · 2015 [cited by applicant]
US 20150193850A1 · Tamir · 2015 [cited by examiner]
US 20150235207A1 · Murphy · 2015 [cited by applicant]
US 20160086184A1 · Carpenter et al. · 2016 [cited by applicant]
US 20160117389A1 · Saini · 2016 [cited by examiner]
US 20160173510A1 · Harris · 2016 [cited by examiner]
US 20160173525A1 · Thomas · 2016 [cited by examiner]
US 20160189144A1 · Dayalan · 2016 [cited by applicant]
US 20160239842A1 · Cash et al. · 2016 [cited by applicant]
US 20160261621A1 · Srivastava · 2016 [cited by examiner]
US 20170004573A1 · Hussain · 2017 [cited by applicant]
US 20170180389A1 · Kozolchyk et al. · 2017 [cited by applicant]
US 20170221167A1 · Weeks · 2017 [cited by examiner]
US 20180005220A1 · Laracey et al. · 2018 [cited by applicant]
US 20180012130A1 · Taylor · 2018 [cited by examiner]
BR PI0614996A2 · 2011 [cited by examiner]
CN 1507235A · 2004 [cited by examiner]
CN 104239577A · 2014 [cited by examiner]
CN 106529288A · 2017 [cited by examiner]
CN 104917779B · 2018 [cited by examiner]
JP 2002099792A · 2002 [cited by examiner]
JP 2002268922A · 2002 [cited by examiner]
JP 2004265255A · 2004 [cited by examiner]
JP 5530019B1 · 2014 [cited by examiner]
WO 2014000537A1 · 2014 [cited by applicant]
Christopher Kruegel, Giovanni Vigna, William Robertson; (A multi-model approach to the detection of web-based attacks); pp. 22; Available online: Mar. 11, 2005. [cited by examiner]
E-Commerce Applications: Vulnerabilities, Attacks and Countermeasures by P.S. Lokhande and B.B. Meshram International Journal of Advanced Research in Computer Engineering & Technology (IJARCET); vol. 2, Issue 2, Feb. 20… [cited by applicant]
Gang Wang et al., “Detecting Malicious Landing Pages in Malware Distribution Networks”; pp. 11; IEEE (Year: 2013). [cited by applicant]
Ayachi Yassine et al., “Detecting Xebsite Vulnerabilities based on Markov Chains Theory”, pp. 4; IEEE (Year: 2016). [cited by applicant]
Chia-Mei Chen et al., “Anomaly Behavoir Analysis For Web Page Inspection”, pp. 6, IEEE (Year: 2009). [cited by applicant]
Stevanovic et al., “Detection of Malicious and Non-Malicious Website Visitors Using Unsupervised Neural Network Learning”, (Year: 2012). [cited by applicant]
Andreas Dewald et al., “ADSandbox: Sandboxing JavaScript To Fight Malicious Websites”, pp. 6, Mar. 22-26, 2010. [cited by applicant]
Kyle Soska et al., “Automatically Detecting Vulnerable Websites Before They Turn Malicious” (Carnegie Mellon University), pp. 17; Aug. 20-22, 2014. [cited by applicant]
Mauro Andreolini et al., “Impact of Technology Trends on the Performance of Current and Future Web-Based Systems”, pp. 13; Dated: Jan. 2005. [cited by applicant]