IP Library Granted Patent US 12,470,533
Granted Patent B2
US 12,470,533 · App. 17/748,724 · Granted Nov 11, 2025

Network device proximity-based authentication

Inventor: Jeffrey Jason Griffin (Garner, NC)
Assignee: Truist Bank
H04L63/0492G06F21/31G06F21/316G06F21/35H04L63/0853H04L63/102H04L63/105G06F21/6245G06F2221/2111G06F2221/2137H04L2463/082H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,470,533
App. No.
17/748,724
Granted
Nov 11, 2025
Kind
B2
Abstract

A wireless system can be used to authenticate a user device via proximity information of wireless network devices. The system can include the user device, the wireless network devices, and a server. At least some of the wireless network devices can be wirelessly connected to the user device and at least some other wireless network devices can be wirelessly unconnected to the user device. The server can use proximity information about the user device with respect to the wireless network devices to authenticate a user.

Claims (64)

1 . A system comprising:

a processor device; and

a non-transitory computer-readable medium comprising instructions that are executable by the processor device to:

receive first proximity information from a user device of a user, the first proximity information indicating a first set of wireless network devices in wireless range of the user device during a set-up phase;

generate a fingerprint identifying the first set of wireless network devices;

store the fingerprint in a user profile for the user, wherein the stored fingerprint includes identifications of the first set of wireless network devices, the first set of wireless network devices including at least one device that is wirelessly connected to the user device and at least one other device that is not wirelessly connected to the user device; and

subsequent to the set-up phase:

receive second proximity information from the user device, the second proximity information indicating a second set of wireless network devices in wireless range of the user device subsequent to the set-up phase;

access the stored fingerprint in the user profile;

compare the second proximity information to the stored fingerprint to determine that the second set of wireless network devices does not match the stored fingerprint; and

in response to determining that the second set of wireless network devices does not match the stored fingerprint, update the stored fingerprint in the user profile to include at least one wireless network device from the second set of wireless network devices that is not already present in the stored fingerprint;

wherein the system is configured to prevent the user device from accessing sensitive information prior to authenticating the user of the user device.

2 . The system of claim 1 , wherein the non-transitory computer-readable medium further comprises instructions that are executable by the processor device for causing the processor device to conduct the set-up phase by:

authenticating the user of the user device;

outputting a request to the user device to receive the first proximity information; and

storing the first proximity information as at least part of the fingerprint.

3 . The system of claim 1 , wherein the non-transitory computer-readable medium further comprises instructions that are executable by the processor device for causing the processor device to:

in response to determining that the second set of wireless network devices does not match the first set of wireless network devices, authenticate the user of the user device to access the sensitive information.

4 . The system of claim 1 , wherein the non-transitory computer-readable medium further comprises instructions that are executable by the processor device for causing the processor device to:

determine a level of closeness of the second proximity information to the stored fingerprint by comparing the second set of wireless network devices to the first set of wireless network devices; and

execute one or more authentication actions based on the determined level of closeness, wherein the one or more authentication actions include authenticating the user of the user device to access the sensitive information in response to determining that the level of closeness is a first level of closeness, wherein the one or more authentication actions include performing a second-factor authentication process in response to determining that the level of closeness is a second level of closeness, and wherein the one or more authentication actions include preventing the user from accessing the sensitive information in response to determining that the level of closeness is a third level of closeness.

5 . The system of claim 4 , wherein the non-transitory computer-readable medium further comprises instructions that are executable by the processor device for causing the processor device to:

adjust the first level of closeness based on a date or time at which the second proximity information is received from the user device.

6 . A non-transitory computer-readable medium comprising program code that is executable by a processor device for causing the processor device to:

receive first proximity information from a user device of a user, the first proximity information indicating a first set of wireless network devices in wireless range of the user device during a set-up phase;

generate a fingerprint identifying the first set of wireless network devices;

store the fingerprint in a user profile for the user, wherein the stored fingerprint includes identifications of the first set of wireless network devices, the first set of wireless network devices including at least one device that is wirelessly connected to the user device and at least one other device that is not wirelessly connected to the user device;

subsequent to the set-up phase:

receive second proximity information from the user device, the second proximity information indicating a second set of wireless network devices in wireless range of the user device subsequent to the set-up phase;

access the stored fingerprint in the user profile;

compare the second proximity information to the stored fingerprint to determine that the second set of wireless network devices does not match the stored fingerprint; and

in response to determining that the second set of wireless network devices does not match the stored fingerprint, update the stored fingerprint in the user profile to include at least one wireless network device from the second set of wireless network devices that is not already present in the stored fingerprint; and

prevent the user device from accessing sensitive information prior to authenticating the user of the user device.

7 . The non-transitory computer-readable medium of claim 6 , further comprising program code that is executable by the processor device for causing the processor device to conduct the set-up phase by:

authenticating the user of the user device;

outputting a request to the user device to receive the first proximity information; and

storing the first proximity information as at least part of fingerprint.

8 . The non-transitory computer-readable medium of claim 6 , further comprising program code that is executable by the processor device for causing the processor device to:

in response to determining that the second set of wireless network devices does not match the first set of wireless network devices, authenticate the user of the user device to access the sensitive information.

9 . The non-transitory computer-readable medium of claim 6 , further comprising program code that is executable by the processor device for causing the processor device to:

determine a level of closeness of the second proximity information to the stored fingerprint by comparing the second set of wireless network devices to the first set of wireless network devices; and

execute one or more authentication actions based on the determined level of closeness, wherein the one or more authentication actions include modifying the stored fingerprint and authenticating the user of the user device to access the sensitive information in response to determining that the level of closeness is a first level of closeness, wherein the one or more authentication actions include performing a second-factor authentication process in response to determining that the level of closeness is a second level of closeness, and wherein the one or more authentication actions include preventing the user from accessing the sensitive information in response to determining that the level of closeness is a third level of closeness.

10 . The non-transitory computer-readable medium of claim 9 , further comprising program code that is executable by the processor device for causing the processor device to:

adjust the first level of closeness based on a date or time at which the second proximity information is received from the user device.

11 . A method comprising:

receiving, by a processor device, first proximity information from a user device of a user, the first proximity information indicating a first set of wireless network devices in wireless range of the user device during a set-up phase;

generating, by the processor device, a fingerprint identifying the first set of wireless network devices;

storing, by the processor device, the fingerprint in a user profile for the user, wherein the stored fingerprint includes identifications of the first set of wireless network devices, the first set of wireless network devices including at least one device that is wirelessly connected to the user device and at least one other device that is not wirelessly connected to the user device;

subsequent to the set-up phase:

receiving, by the processor device, second proximity information from the user device, the second proximity information indicating a second set of wireless network devices in wireless range of the user device subsequent to the set-up phase;

accessing, by the processor device, the stored fingerprint in the user profile;

comparing, by the processor device, the second proximity information to the stored fingerprint to determine that the second set of wireless network devices does not match the stored fingerprint; and

in response to determining that the second set of wireless network devices does not match the stored fingerprint, updating, by the processor device, the stored fingerprint in the user profile to include at least one wireless network device from the second set of wireless network devices that is not already present in the stored fingerprint; and

preventing the user device from accessing sensitive information prior to authenticating the user of the user device.

12 . The method of claim 11 , further comprising conducting the set-up phase by:

authenticating, by the processor device, the user of the user device;

transmitting, by the processor device, a request to the user device to receive the first proximity information; and

storing, by the processor device, the first proximity information as at least part of fingerprint.

13 . The method of claim 11 , further comprising:

determining, by the processor device, a level of closeness of the second proximity information to the stored fingerprint by comparing the second set of wireless network devices to the first set of wireless network devices; and

executing, by the processor device, one or more authentication actions based on the determined level of closeness, wherein the one or more authentication actions include modifying the fingerprint and authenticating the user of the user device to access the sensitive information in response to determining that the level of closeness is a first level of closeness, wherein the one or more authentication actions include performing a second-factor authentication process in response to determining that the level of closeness is a second level of closeness, and wherein the one or more authentication actions include preventing the user from accessing the sensitive information in response to determining that the level of closeness is a third level of closeness.

14 . The method of claim 13 , wherein the second level of closeness is less of a match than the first level of closeness, and wherein the third level of closeness is less of a match than the second level of closeness.

15 . The method of claim 13 , further comprising:

adjusting, by the processor device, the first level of closeness based on a date or time at which the second proximity information is received from the user device.

Assignments (2)
CHANGE OF NAME Recorded Aug 19, 2022
From: BRANCH BANKING AND TRUST COMPANY
To: TRUIST BANK
Reel/Frame 061232/0628 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 19, 2022
From: GRIFFIN, JEFFREY JASON
To: BRANCH BANKING AND TRUST COMPANY
Reel/Frame 061233/0126 →
Continuity (4)
Continuation 17014085 · Sep 8, 2020
Continuation 15665925 · Aug 1, 2017
Provisional Application 62374955 · Aug 15, 2016
Related Publication 20220278972A1 · Sep 1, 2022
References Cited (41)
US 9075979B1 · Queru · 2015 [cited by applicant]
US 9451397B1 · Lee · 2016 [cited by examiner]
US 10805278B2 · Griffin · 2020 [cited by applicant]
US 20070021126A1 · Nanda · 2007 [cited by examiner]
US 20070192349A1 · Farr et al. · 2007 [cited by applicant]
US 20080146230A1 · Pandian · 2008 [cited by examiner]
US 20090254975A1 · Turnbull · 2009 [cited by examiner]
US 20090265775A1 · Wisely · 2009 [cited by examiner]
US 20110059689A1 · Haverty · 2011 [cited by applicant]
US 20110154460A1 · Khare · 2011 [cited by examiner]
US 20120208463A1 · Causey · 2012 [cited by examiner]
US 20130281118A1 · Lipman et al. · 2013 [cited by applicant]
US 20130318581A1 · Counterman · 2013 [cited by examiner]
US 20140289827A1 · Tang · 2014 [cited by examiner]
US 20150113620A1 · Brewer · 2015 [cited by examiner]
US 20150116320A1 · Schwab et al. · 2015 [cited by applicant]
US 20150208226A1 · Kuusilinna · 2015 [cited by examiner]
US 20150229650A1 · Grigg et al. · 2015 [cited by applicant]
US 20150254465A1 · Ekberg · 2015 [cited by examiner]
US 20150281194A1 · Elliott · 2015 [cited by examiner]
US 20160205653A1 · Kim · 2016 [cited by examiner]
US 20170048659A1 · Silvestri · 2017 [cited by examiner]
US 20180048630A1 · Griffin · 2018 [cited by applicant]
US 20180062851A1 · Cronholm · 2018 [cited by examiner]
US 20180316671A1 · Brown · 2018 [cited by applicant]
Andre Kalamandeen et al., Ensemble: Cooperative Proximity-based Authentication; Jun. 2010, ACM, pp. 331-344. (Year: 2010). [cited by examiner]
Suhas Mathur et al., ProxiMate: Proximity-based Secure Pairing using Ambient Wireless Signals, Jun. 2011, ACM, pp. 211-224. (Year: 2011). [cited by examiner]
Athul Prasad et al., Energy Efficient Device Discovery for Social Cloud Applications in 3GPP LTE-Advanced Networks, Jun. 23-26, 2014, IEEE, pp. 1-6. (Year: 2014). [cited by examiner]
Liang Xiao et al., Proximity-Based Security Techniques for Mobile Users in Wireless Networks; Oct. 18, 2013, IEEE, vol. 8, Issue 12; pp. 2089-2100. (Year: 2013). [cited by examiner]
U.S. Appl. No. 15/665,925, “Advisory Action”, Nov. 20, 2019, 8 pages. [cited by applicant]
U.S. Appl. No. 15/665,925, “Final Office Action”, Aug. 7, 2019, 32 pages. [cited by applicant]
U.S. Appl. No. 15/665,925, “Non-Final Office Action”, Feb. 4, 2020, 28 pages. [cited by applicant]
U.S. Appl. No. 15/665,925, “Non-Final Office Action”, Jan. 30, 2019, 25 pages. [cited by applicant]
U.S. Appl. No. 15/665,925, “Notice of Allowance”, Jun. 23, 2020, 18 pages. [cited by applicant]
U.S. Appl. No. 17/014,085, “Notice of Allowance”, Apr. 19, 2022, 20 pages. [cited by applicant]
Kalamandeen, et al., “Ensemble: Cooperative Proximity-Based Authentication”, Mobisys '10: Proceedings of the 8th International Conference on Mobile Systems, Applications, and Services, Jun. 2010, pp. 331-343. [cited by applicant]
Mathur, et al., “ProxiMate: Proximity-Based Secure Pairing using Ambient Wireless Signals”, Mobisys '11: Proceedings of the 9th International Conference on Mobile Systems, Applications, and Services, Jun. 2011, pp. 211-… [cited by applicant]
Prasad, et al., “Energy Efficient Device Discovery for Social Cloud Applications in 3GPP LTE-Advanced Networks”, Institute of Electrical and Electronics Engineers, Jun. 2014, pp. 1-6. [cited by applicant]
Kiao, et al., “Proximity-Based Security Techniques for Mobile Users in Wireless Networks”, Institute of Electrical and Electronics Engineers, vol. 8, Issue 12, Dec. 2013, 12 pages. [cited by applicant]
Notice of Allowance, U.S. Appl. No. 17/748,732, 14 pages, Oct. 30, 2023. [cited by applicant]
Non-Final Office Action, U.S. Appl. No. 17/748,732, filed Jun. 23, 2023, 22 pages. [cited by applicant]