IP Library Granted Patent US 11,848,957
Granted Patent B1
US 11,848,957 · App. 17/936,423 · Granted Dec 19, 2023

Session management

Inventors: Traci H. Nguyen (San Francisco, CA); Nairobi N. Kim (Piedmont, CA); Ian Jensen (Oakland, CA); Upul Hanwella (San Francisco, CA); Brian J. Hanafee (Pleasanton, CA); Christopher Wayne Howser (Concord, NC); Ajay Panikkar (Sunnyvale, CA); Michael Chang (Millbrae, CA)
Assignee: Wells Fargo Bank, N.A.
H04L63/1441H04L63/1408H04L67/14
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,848,957
App. No.
17/936,423
Granted
Dec 19, 2023
Kind
B1
Abstract

One or more embodiments of techniques or systems for session management, security scoring, and friction management are provided herein. Sessions may be monitored for commonalities or other attributes or aspects and closed, terminated, or a freeze placed on additional sessions from being initiated. A security score may be provided which is indicative of how secure a user is with respect to one or more ways the user interacts with a resource. One or more suggested actions or score improvement strategies may be suggested to facilitate improvement of a security score for a user. Friction management may be provided by having one or more additional layers of security applied to an account of a user or an entity based on suspicious behavior or other factors.

Claims (30)

1. A system for session management, comprising:

a processor; and

a memory storing instructions that, when executed by the processor, cause the processor to perform operations comprising:

determining a session behavior profile for a web-based session associated with an authenticated entity, wherein the session behavior profile establishes a degree of familiarity with the entity;

applying or more initial security measures to the web-based session based on the degree of familiarity;

determining an anomalous action based on data associated with the web-based session and the session behavior profile; and

applying or more additional security measures to the web-based session in response to the anomalous action.

2. The system of claim 1 , the operations further comprising denying one or more additional web-based sessions based on the anomalous action.

3. The system of claim 1 , the operations further comprising providing a notification based on the anomalous action.

4. The system of claim 1 , the operations further comprising updating dynamically the session behavior profile based on a machine learning technique.

5. The system of claim 1 , the operations further comprising terminating the web-based session based on the anomalous action.

6. The system of claim 1 , wherein the web-based session is associated with another web-based session with an authentication credential of the same entity.

7. The system of claim 1 , wherein the session behavior profile comprises one or more of: a session pattern, a behavior baseline, or a potentially malicious behavior.

8. The system of claim 7 , wherein the session pattern comprises one or more of: a location, a session rate, a number of sessions, or a session activity.

9. The system of claim 7 , wherein the behavior baseline comprises one or more of: a baseline location, a baseline session rate, a baseline number of sessions, or a baseline session activity associated with the entity.

10. The system of claim 7 , wherein the potentially malicious behavior comprises one or more of: a denial of service behavior, a brute force behavior, a fraud behavior, or a redirection behavior.

11. A method for session management comprising:

determining a session behavior profile for a web-based session associated with an authenticated entity, wherein the session behavior profile establishes a degree of familiarity with the entity;

applying one or more initial security measures to the web-based session based on the degree of familiarity;

determining an anomalous action based on data associated with the web-based session and the session behavior profile; and

applying one or more additional security measures to the web-based session in response to the anomalous action.

12. The method of claim 11 , further comprising denying one or more additional web-based sessions based on the anomalous action.

13. The method of claim 11 , further comprising providing a notification based on the anomalous action.

14. The method of claim 11 , further comprising updating dynamically the session behavior profile based on a machine learning technique.

15. The method of claim 11 , further comprising terminating the web-based session based on the anomalous action.

16. The method of claim 11 , wherein the web-based session is associated with another web-based session with an authentication credential of the same entity.

17. The method of claim 11 , wherein the session behavior profile comprises one or more of: a session pattern, a behavior baseline, or a potentially malicious behavior.

18. The method of claim 17 , wherein the session pattern comprises one or more of: a location, a session rate, a number of sessions, or a session activity.

19. The method of claim 17 , wherein the behavior baseline comprises one or more of: a baseline location, a baseline session rate, a baseline number of sessions, or a baseline session activity associated with the entity.

20. The method of claim 17 , wherein the potentially malicious behavior comprises one or more of: a denial of service behavior, a brute force behavior, a fraud behavior, or a redirection behavior.

Assignments (2)
ADDRESS CHANGE Recorded Jun 2, 2025
From: WELLS FARGO BANK, N.A.
To: WELLS FARGO BANK, N.A.
Reel/Frame 071769/0143 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 29, 2022
From: NGUYEN, TRACI H.; KIM, NAIROBI N.; JENSEN, IAN; HANWELLA, UPUL; HANAFEE, BRIAN; HOWSER, CHRISTOPHER WAYNE; PANIKKAR, AJAY; CHANG, MICHAEL
To: WELLS FARGO BANK, N.A.
Reel/Frame 061250/0099 →
Continuity (3)
Continuation 16355285 · Mar 15, 2019
Continuation 14694084 · Apr 23, 2015
Provisional Application 62013298 · Jun 17, 2014